CWE Database
/

CWE-248

Back to CWE list

CWE-248

Uncaught Exception

Base
Draft

Description

An exception is thrown from a function, but it is not caught.

When an exception is not caught, it may cause the program to crash or expose sensitive information.

Common Consequences

Scope

Availability
Confidentiality

Impact

DoS: Crash, Exit, or Restart, Read Application Data

CVE-2023-41151

SDK for OPC Unified Architecture (OPC UA) server has uncaught exception when a socket is blocked for writing but the server tries to send an error

CVE-2023-21087

Java code in a smartphone OS can encounter a "boot loop" due to an uncaught exception

Applicable Platforms

C++
Java
C#

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now