Due to a flaw in the execution order of scripts during shutdown, the firewall is terminated prematurely during system sh
UltraDAG is a minimal DAG-BFT blockchain in Rust. In version 0.1, a non-council attacker can submit a signed SmartOp::Vo
Due to incorrect behavior order a low privileged remote attacker could trigger account inconsistent state via crafted in
GitHub Copilot CLI brings AI-powered coding assistance directly to your command line. Prior to 1.0.43, a security vulne
OpenClaw before 2026.3.22 performs cite expansion before completing channel and DM authorization checks, allowing cite w
OpenClaw before 2026.3.22 performs cryptographic and dispatch operations on inbound Nostr direct messages before enforci
OpenClaw versions 2026.3.11 through 2026.3.24 contain a session isolation bypass vulnerability where session_status reso
OpenClaw before 2026.3.22 contains an authorization bypass vulnerability in interactive callback dispatch that allows no
Russh is a Rust SSH client & server library. Prior to 0.62.5, russh dispatches channel-scoped Handler callbacks for reci
OpenEMR is a free and open source electronic health records and medical practice management application. Prior to 8.0.0.
OpenClaw before 2026.3.25 parses JSON request bodies before validating webhook signatures, allowing unauthenticated atta
An issue was discovered in OpenStack Horizon 25.6 and 25.7 before 25.7.3. There is a write operation to the session stor
cJSON through 1.7.19 applies RFC 6902 JSON Patch operations non-atomically in apply_patch() in cJSON_Utils.c. For a repl
Apache Traffic Server updates the HTTP/2 HPACK dynamic table before confirming the header block encoded successfully, so
In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and User=<unset> unit exi
In OpenStack Ironic through 35.x before a3f6d73, during image handling, an infinite loop in checksum calculations can oc
Little CMS (lcms2) through 2.18 has an integer overflow in CubeSize in cmslut.c because the overflow check is performed
Tor before 0.4.9.7 mishandles accounting of the conflux out-of-order queue during the clearing of a queue, aka TROVE-202
GNU Savannah Administration Savane through 3.17 uses untrusted data as part of authorization.
In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This r
Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stre
Incorrect behavior order in the Infotainment / Digital Round display of the Indian Motorcycle Scout Bobber + Tech 2025 m
Incorrect behavior order in the Infotainment / Digital Round display of the Indian Motorcycle Scout Bobber + Tech 2025 m
Frequently Asked Questions
What is CWE-696?
CWE-696 (CWE-696) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-696?
There are 23 CVE records associated with CWE-696 in our database. Of these, 1 are critical severity, 4 are high severity, and 12 are medium severity.
How can I protect against CWE-696 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-696 using AI-powered security agents.
Detect CWE-696 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-696 vulnerabilities across your infrastructure.
Get Started