CWE-686: Function Call With Incorrect Argument Type

low-risk

The product calls a function, procedure, or routine, but the caller specifies an argument that is the wrong data type, which may lead to resultant weaknesses.

Abstraction: Variant

Common Consequences

Other Quality Degradation

Detection Methods

Other

Because this function call often produces incorrect behavior, it will usually be detected during testing or normal operation of the product.

Real-World Examples (4)

CVE CVSS EPSS KEV
CVE-2023-5868 4.3 2.7%
CVE-2024-32632 6.6 0.2%
CVE-2025-14330 9.8 0.1%
CVE-2026-33783 6.5 0.0%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal