CWE-241: Improper Handling of Unexpected Data Type
The product does not handle or incorrectly handles when a particular element is not the expected type, e.g. it expects a digit (0-9) but is provided with a letter (A-Z).
29 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-2268 — HP LaserJet MFP M232-M237 Printer Series - Potential Denial of Service
- CVE-2025-1004 — Certain HP LaserJet Pro Printers – Potential Denial of Service
- CVE-2026-47110 — Tiptap for PHP < 2.1.1 DoS via Malformed href Attribute
- CVE-2025-66550 — Nextcloud Calendar attachments of local files are offered to downloaded
- CVE-2024-9423 — Certain HP LaserJet Printers – Potential Denial of Service
- CVE-2024-37316 — Nextcloud Calendar's event create can create attachments that link to other websites
- CVE-2025-7339 — on-headers vulnerable to http response header manipulation
- CVE-2024-0151 — Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), th
Recently published
- CVE-2026-47110 — Tiptap for PHP < 2.1.1 DoS via Malformed href Attribute
- CVE-2025-66550 — Nextcloud Calendar attachments of local files are offered to downloaded
- CVE-2025-7339 — on-headers vulnerable to http response header manipulation
- CVE-2025-2268 — HP LaserJet MFP M232-M237 Printer Series - Potential Denial of Service
- CVE-2025-1004 — Certain HP LaserJet Pro Printers – Potential Denial of Service
- CVE-2024-9423 — Certain HP LaserJet Printers – Potential Denial of Service
- CVE-2024-37316 — Nextcloud Calendar's event create can create attachments that link to other websites
- CVE-2024-0151 — Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), th