CWE-434 · High · OWASP A04:2021

CWE-434: Unrestricted Upload of File with Dangerous Type

The software allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment.

About CWE-434

CWE-434 (Unrestricted Upload of File with Dangerous Type) is classified as high severity and falls under the OWASP Top 10 category A04:2021.

The official CWE entry is maintained by MITRE at cwe.mitre.org/data/definitions/434.html.

References

Detect CWE-434 automatically

Orbis AppSec automatically detects and fixes Unrestricted Upload of File with Dangerous Type vulnerabilities in your code with AI-powered static analysis.