Cyber Resilience

CWE · MITRE source

CWE-233Improper Handling of Parameters

Abstraction: Base · CVEs in our corpus: 31

The product does not properly handle when the expected number of parameters, fields, or arguments is not provided in input, or if those parameters are undefined.

Last updated: 22 August 2026 14:14 UTC

Control responseHuman-reviewed

Answering this weakness across the control lifecycle, from our framework cross-walks.

Prevent
Stop it (NIST 800-53 / CSF Protect)
  • PR.PS-06
  • SI-10 Information Input Validation
Detect
Catch it (CSF Detect / Respond)

Harden
Shrink the surface (DISA STIG)

Validate
Prove the fix (OWASP ASVS)

NIST 800-53 r5 controls that address this weakness (0)AI-assisted

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2022-45182 7.59.80.00942022-11-11
CVE-2024-24525 7.59.80.01092024-02-29
CVE-2025-52970 7.08.10.09832025-08-12
CVE-2021-0269 6.78.80.00872021-04-22
CVE-2024-31808 6.78.80.00932024-04-08
CVE-2021-1230 6.58.60.01482021-02-24
CVE-2026-2370 6.18.10.00432026-03-30
CVE-2022-3697 6.07.50.00732022-10-28
CVE-2023-26549 5.87.50.00422023-03-27
CVE-2023-20076 5.77.20.01512023-02-12
CVE-2023-7261 5.67.80.00162024-06-07
CVE-2022-22792 5.26.60.00592022-02-16
CVE-2021-45477 5.26.50.00592023-03-02
CVE-2021-45478 5.26.50.00592023-03-02
CVE-2025-55080 5.17.10.00132025-10-15
CVE-2024-9329 4.76.10.00682024-09-30
CVE-2018-25233 4.76.20.00212026-03-30
CVE-2022-32261 4.65.30.00692022-06-14
CVE-2023-1419 4.65.90.00382024-11-17
CVE-2026-05154.66.20.00112026-07-14
CVE-2024-25979 4.55.30.00592024-02-19
CVE-2024-20306 4.56.00.00192024-03-27
CVE-2023-408194.56.10.00312024-08-06
CVE-2025-55078 4.25.50.00162025-10-14
CVE-2023-28898 4.15.30.00232024-01-12