CWE-235: Improper Handling of Extra Parameters
The product does not handle or incorrectly handles when the number of parameters, fields, or arguments with the same name exceeds the expected amount.
4 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2024-47651 — Parameter Pollution Vulnerability
- CVE-2026-20083 — A vulnerability in the Secure Copy Protocol (SCP) server feature of Cisco IOS XE Software could allow an authenticated,
- CVE-2026-27851 — When safe filter is used with variable expansion, all following pipelines on the same string are incorrectly interpreted
Recently published
- CVE-2026-27851 — When safe filter is used with variable expansion, all following pipelines on the same string are incorrectly interpreted
- CVE-2026-20083 — A vulnerability in the Secure Copy Protocol (SCP) server feature of Cisco IOS XE Software could allow an authenticated,
- CVE-2024-47651 — Parameter Pollution Vulnerability