CWE-1038: Insecure Automated Optimizations

low-risk

The product uses a mechanism that automatically optimizes code, e.g. to improve a characteristic such as performance, but the optimizations can have an unintended side effect that might violate an intended security assumption.

Abstraction: Class

Common Consequences

Integrity Alter Execution Logic

Real-World Examples (6)

CVE CVSS EPSS KEV
CVE-2025-48877 9.8 0.7%
CVE-2023-52969 4.9 0.2%
CVE-2023-52970 4.9 0.2%
CVE-2023-52971 4.9 0.1%
CVE-2022-31220 3.0 0.1%
CVE-2022-26861 7.9 0.0%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal