CWE-1385
Overview
- CWE ID
- 1385
- CWE Name
- Missing Origin Validation in WebSockets
- CWE Abstraction
- Variant
- CWE structure
- Simple
- CWE Status
- Incomplete
Description
The software uses a WebSocket, but it does not properly verify that the source of data or communication is valid.
Extended Description
Related CWEs
CWE ID | View ID | Nature | Ordinal |
---|---|---|---|
346 | 1000 | ChildOf | Primary |