CWE-696: Incorrect Behavior Order
The product performs multiple related behaviors, but the behaviors are performed in the wrong order in ways that may produce resultant weaknesses.
Last updated
Overview
CWE-696 (Incorrect Behavior Order) is a class-level software weakness catalogued by MITRE in the Common Weakness Enumeration (CWE). It describes a recurring type of mistake that can lead to exploitable security vulnerabilities.
Real-world CVEs
30 recorded CVEs are caused by CWE-696 (Incorrect Behavior Order). The highest-severity and most recent are shown first. 13 new CWE-696 CVEs have been recorded so far in 2026 (8 in 2025).
- CVE-2026-40583
UltraDAG: SmartOp Vote Path Triggers Fatal Supply Invariant Halt
High · CVSS 8.82026-04-21 - CVE-2026-45033
GitHub Copilot CLI: Nested Bare Repository Can Execute Arbitrary Commands via core.fsmonitor
High · CVSS 8.52026-05-13 - CVE-2025-31485
GraphQL grant on a property might be cached with different objects
High · CVSS 7.52025-04-03