CWE-159: Improper Handling of Invalid Use of Special Elements
low-riskThe product does not properly filter, remove, quote, or otherwise manage the invalid use of special elements in user-controlled input, which could cause adverse effect on its behavior and integrity.
Abstraction: Class
Common Consequences
Integrity
→
Unexpected State
Real-World Examples (10)
| CVE | CVSS | EPSS | KEV |
|---|---|---|---|
| CVE-2019-9505 | 9.8 | 2.0% | — |
| CVE-2021-21707 | 5.3 | 0.6% | — |
| CVE-2020-1653 | 7.5 | 0.5% | — |
| CVE-2020-1648 | 7.5 | 0.4% | — |
| CVE-2020-1646 | 7.5 | 0.4% | — |
| CVE-2020-29022 | 5.3 | 0.2% | — |
| CVE-2024-51500 | 5.3 | 0.1% | — |
| CVE-2021-42375 | 5.5 | 0.1% | — |
| CVE-2026-35536 | 7.2 | 0.1% | — |
| CVE-2026-2636 | 5.5 | 0.0% | — |
0
/ 100
low-risk
Active Threat
0/50 · Minimal
Exploit Availability
0/50 · Minimal