CWE · MITRE source
CWE-676Use of Potentially Dangerous Function
The product invokes a potentially dangerous function that could introduce a vulnerability if it is used incorrectly, but the function can also be used safely.
Last updated: 22 August 2026 14:14 UTC
OWASP Top 10 for Web (2025)
This weakness contributes to A06:2025 Insecure Design.
Control responseHuman-reviewed
Answering this weakness across the control lifecycle, from our framework cross-walks.
NIST 800-53 r5 controls that address this weakness (0)AI-assisted
| Control | Title | Family | Why it addresses this CWE |
|---|---|---|---|
| No NIST controls proposed yet. | |||
Top CVEs of this weakness type, ranked by Risk Priority
| CVE | Risk | CVSS | EPSS | Published |
|---|---|---|---|---|
CVE-2021-27474 UPD | 7.6 | 10.0 | 0.0161 | 2022-03-23 |
CVE-2022-39063 UPD | 6.1 | 7.5 | 0.0114 | 2022-09-16 |
CVE-2026-54499 | 5.6 | 7.5 | 0.0034 | 2026-07-08 |
CVE-2025-65117 | 5.2 | 7.4 | 0.0020 | 2026-01-16 |
CVE-2024-38434 UPD | 5.1 | 6.5 | 0.0044 | 2024-07-21 |
CVE-2026-48696 UPD | 4.6 | 6.2 | 0.0012 | 2026-05-26 |
CVE-2024-50307 UPD | 4.3 | 5.5 | 0.0026 | 2024-10-28 |
CVE-2025-67604 UPD | 4.3 | 5.3 | 0.0042 | 2026-05-12 |
CVE-2026-14501 UPD | 3.6 | 4.3 | 0.0032 | 2026-07-17 |
CVE-2024-37387 UPD | 3.3 | 4.0 | 0.0016 | 2024-06-19 |