Cyber Resilience

CWE · MITRE source

CWE-704Incorrect Type Conversion or Cast

Abstraction: Class · CVEs in our corpus: 280

The product does not correctly convert an object, resource, or structure from one type to a different type.

Last updated: 21 August 2026 20:21 UTC

Control responseHuman-reviewed

Answering this weakness across the control lifecycle, from our framework cross-walks.

Prevent
Stop it (NIST 800-53 / CSF Protect)
  • PR.PS-06
  • SA-11 Developer Testing and Evaluation
  • SA-8 Security and Privacy Engineering Principles
  • SA-15 Development Process, Standards, and Tools
Detect
Catch it (CSF Detect / Respond)

Harden
Shrink the surface (DISA STIG)

Validate
Prove the fix (OWASP ASVS)

NIST 800-53 r5 controls that address this weakness (0)AI-assisted

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2025-41646 9.29.80.45122025-06-06
CVE-2018-15981 8.39.80.11702018-11-29
CVE-2018-4944 8.19.80.08802018-05-19
CVE-2018-12812 8.19.80.08562018-07-20
CVE-2016-7979 8.09.80.06422017-05-23
CVE-2017-5115 8.08.80.26332017-10-27
CVE-2016-7398 8.09.80.06802019-09-06
CVE-2021-28918 8.09.10.16662021-04-01
CVE-2017-3106 7.98.80.22312017-08-11
CVE-2018-3843 7.98.80.24032018-04-19
CVE-2017-9183 7.79.80.01932017-05-23
CVE-2018-14403 7.79.80.02602018-07-19
CVE-2018-12794 7.78.80.15882018-07-20
CVE-2018-5007 7.78.80.18002018-07-20
CVE-2021-33318 7.79.80.02022022-05-16
CVE-2026-158267.79.80.02482026-08-15
CVE-2020-6151 7.69.80.01622020-09-01
CVE-2020-25576 7.69.80.01562020-09-14
CVE-2011-1460 7.59.80.00912019-11-05
CVE-2017-11221 7.48.80.08872017-08-11
CVE-2017-11257 7.48.80.08422017-08-11
CVE-2018-4953 7.48.80.09462018-07-09
CVE-2018-5057 7.48.80.09242018-07-20
CVE-2018-6056 7.48.80.08792019-01-09
CVE-2011-2337 7.49.80.00812019-11-07