Cyber Resilience

CWE · MITRE source

CWE-358Improperly Implemented Security Check for Standard

Abstraction: Base · CVEs in our corpus: 132

The product does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.

Last updated: 22 August 2026 14:14 UTC

Control responseHuman-reviewed

Answering this weakness across the control lifecycle, from our framework cross-walks.

Prevent
Stop it (NIST 800-53 / CSF Protect)
  • CA-2 Control Assessments
  • PR.PS-06
Detect
Catch it (CSF Detect / Respond)

Harden
Shrink the surface (DISA STIG)

Validate
Prove the fix (OWASP ASVS)
  • V17.2.8

NIST 800-53 r5 controls that address this weakness (1)AI-assisted

Control Title Family Why it addresses this CWE
CA-2Control AssessmentsCAAssessments identify and document improperly implemented security checks, allowing fixes that reduce exploitation of flawed checks.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2018-1270 9.99.80.77242018-04-06
CVE-2018-1275 9.59.80.57632018-04-11
CVE-2024-7965 KEV 9.28.80.18532024-08-21
CVE-2016-10229 8.39.80.12822017-04-04
CVE-2018-0268 8.010.00.05202018-05-17
CVE-2019-6742 8.09.80.05922019-06-03
CVE-2024-2174 7.68.80.12662024-03-06
CVE-2023-3266 7.59.80.00882023-08-14
CVE-2023-4501 7.49.80.00622023-09-12
CVE-2026-50628 7.49.80.00682026-06-12
CVE-2022-25152 7.39.90.01742022-06-09
CVE-2025-625837.39.80.00472025-10-16
CVE-2025-66603 7.29.80.00262026-02-09
CVE-2017-15663 6.97.50.13182018-01-10
CVE-2019-3894 6.88.80.01512019-05-03
CVE-2016-10834 6.88.80.01362019-08-01
CVE-2023-39403 6.89.10.00382023-08-13
CVE-2017-15662 6.77.50.09152018-01-10
CVE-2017-15664 6.77.50.09152018-01-10
CVE-2017-15665 6.77.50.09152018-01-10
CVE-2024-6101 6.78.80.00812024-06-20
CVE-2025-69234 6.79.10.00262025-12-30
CVE-2026-44513 6.78.80.00852026-05-14
CVE-2024-6772 6.68.80.00532024-07-16
CVE-2026-1486 6.68.80.00452026-02-09