CWE · MITRE source
CWE-378Creation of Temporary File With Insecure Permissions
Opening temporary files without appropriate measures or controls can leave the file, its contents and any function that it impacts vulnerable to attack.
Last updated: 21 August 2026 20:21 UTC
Control responseHuman-reviewed
Answering this weakness across the control lifecycle, from our framework cross-walks.
NIST 800-53 r5 controls that address this weakness (0)AI-assisted
| Control | Title | Family | Why it addresses this CWE |
|---|---|---|---|
| No NIST controls proposed yet. | |||
Top CVEs of this weakness type, ranked by Risk Priority
| CVE | Risk | CVSS | EPSS | Published |
|---|---|---|---|---|
CVE-2024-39872 UPD | 6.8 | 9.6 | 0.0047 | 2024-07-09 |
CVE-2021-29428 UPD | 6.2 | 8.8 | 0.0053 | 2021-04-13 |
CVE-2016-9485 UPD | 6.1 | 7.8 | 0.0123 | 2018-07-13 |
CVE-2025-27148 UPD | 6.0 | 8.8 | 0.0024 | 2025-02-25 |
CVE-2025-32438 UPD | 6.0 | 8.8 | 0.0018 | 2025-04-15 |
CVE-2026-33572 | 6.0 | 8.4 | 0.0012 | 2026-03-29 |
CVE-2020-27216 UPD | 5.9 | 7.0 | 0.0435 | 2020-10-23 |
CVE-2021-25314 UPD | 5.8 | 7.8 | 0.0038 | 2021-04-14 |
CVE-2025-4953 UPD | 5.8 | 7.4 | 0.0064 | 2025-09-16 |
CVE-2022-24411 UPD | 5.7 | 7.8 | 0.0024 | 2022-04-12 |
CVE-2024-42052 UPD | 5.7 | 7.8 | 0.0021 | 2024-07-28 |
CVE-2024-7358 UPD | 5.7 | 7.8 | 0.0023 | 2024-08-01 |
CVE-2026-4137 UPD | 5.7 | 7.8 | 0.0019 | 2026-05-18 |
CVE-2025-38747 UPD | 5.6 | 7.8 | 0.0014 | 2025-08-06 |
CVE-2021-1496 UPD | 5.3 | 7.0 | 0.0053 | 2021-05-06 |
CVE-2025-7647 UPD | 5.3 | 7.3 | 0.0013 | 2025-09-27 |
CVE-2021-21290 UPD | 5.2 | 6.2 | 0.0178 | 2021-02-08 |
CVE-2021-1426 UPD | 5.2 | 7.0 | 0.0025 | 2021-05-06 |
CVE-2021-1427 UPD | 5.2 | 7.0 | 0.0025 | 2021-05-06 |
CVE-2021-1428 UPD | 5.2 | 7.0 | 0.0025 | 2021-05-06 |
CVE-2021-1429 UPD | 5.2 | 7.0 | 0.0025 | 2021-05-06 |
CVE-2021-1430 UPD | 5.2 | 7.0 | 0.0023 | 2021-05-06 |
CVE-2021-28168 UPD | 5.1 | 6.2 | 0.0091 | 2021-04-22 |
CVE-2026-4822 UPD | 5.1 | 7.0 | 0.0016 | 2026-03-25 |
CVE-2021-25654 UPD | 5.0 | 6.2 | 0.0078 | 2021-06-25 |