CWE-157: Failure to Sanitize Paired Delimiters
The product does not properly handle the characters that are used to mark the beginning and ending of a group of entities, such as parentheses, brackets, and braces.
2 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-25286 — Crayfish allows Remote Code Execution via Homarus Authorization header
- CVE-2026-25063 — gradle-completion has a Bash command injection issue
Recently published
- CVE-2026-25063 — gradle-completion has a Bash command injection issue
- CVE-2025-25286 — Crayfish allows Remote Code Execution via Homarus Authorization header