CWE-75: Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)
The product does not adequately filter user-controlled input for special elements with control implications.
Last updated
Overview
CWE-75 (Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)) is a class-level software weakness catalogued by MITRE in the Common Weakness Enumeration (CWE). It describes a recurring type of mistake that can lead to exploitable security vulnerabilities.
Real-world CVEs
30 recorded CVEs are caused by CWE-75 (Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)). The highest-severity and most recent are shown first. 2 new CWE-75 CVEs have been recorded so far in 2026 (2 in 2025).