CWE-683: Function Call With Incorrect Order of Arguments
The product calls a function, procedure, or routine, but the caller specifies the arguments in an incorrect order, leading to resultant weaknesses.
4 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-32269 — Parse Server OAuth2 adapter app ID validation sends wrong token to introspection endpoint
- CVE-2026-24846 — malcontent's archive extraction could write outside extraction directory
- CVE-2025-47278 — Flask uses fallback key instead of current signing key
Recently published
- CVE-2026-32269 — Parse Server OAuth2 adapter app ID validation sends wrong token to introspection endpoint
- CVE-2026-24846 — malcontent's archive extraction could write outside extraction directory
- CVE-2025-47278 — Flask uses fallback key instead of current signing key