CWE-446: UI Discrepancy for Security Feature

low-risk

The user interface does not correctly enable or configure a security feature, but the interface provides feedback that causes the user to believe that the feature is in a secure state.

Abstraction: Class

Common Consequences

Other Varies by Context

Real-World Examples (3)

CVE CVSS EPSS KEV
CVE-2025-52983 7.2 0.2%
CVE-2023-1768 3.7 0.1%
CVE-2025-8353 5.9 0.1%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal