CWE-159: Improper Handling of Invalid Use of Special Elements
The product does not properly filter, remove, quote, or otherwise manage the invalid use of special elements in user-controlled input, which could cause adverse effect on its behavior and integrity.
Last updated
Overview
CWE-159 (Improper Handling of Invalid Use of Special Elements) is a class-level software weakness catalogued by MITRE in the Common Weakness Enumeration (CWE). It describes a recurring type of mistake that can lead to exploitable security vulnerabilities.
Real-world CVEs
12 recorded CVEs are caused by CWE-159 (Improper Handling of Invalid Use of Special Elements). The highest-severity and most recent are shown first. 2 new CWE-159 CVEs have been recorded so far in 2026 (2 in 2025).