This page is experimental and may change significantly in future releases.
Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')
Properties
id: d3f:CWE-96
- name
- Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection')
- definition
- The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes code syntax before inserting the input into an executable resource, such as a library, configuration file, or template.
Neighbors
CWE-96 has no direct neighbors in this release.