CWE Database
/

CWE-103

Back to CWE list

CWE-103

Struts: Incomplete validate() Method Definition

Variant
Draft

Description

The product has a validator form that either does not define a validate() method, or defines a validate() method but does not call super.validate().

Common Consequences

Scope

Other

Impact

Unexpected State, Varies by Context

Scope

Confidentiality
Integrity
Availability
Other

Impact

Other

Potential Mitigations

Implementation

Implement the validate() method and call super.validate() within that method.

Applicable Platforms

Java

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now