CWE•Variant•Draft•20 recent CVEs
CWE-321Use of Hard-coded Cryptographic Key
Description
The product uses a hard-coded, unchangeable cryptographic key.
Common consequences
- Access Control→Bypass Protection Mechanism,Gain Privileges or Assume Identity,Read Application DataIf hard-coded cryptographic keys are used, it is almost certain that malicious users will gain access through the account in question. The use of a hard-coded cryptographic key significantly increases the possibility that encrypted data may
Potential mitigations
- Architecture and DesignPrevention schemes mirror that of hard-coded password storage.
Related CWEs
Recent CVEs classified under this CWE
CVE-2026-905108.32026-09-13CVE-2026-879299.82026-09-09CVE-2026-797354.42026-09-09CVE-2026-784864.42026-09-09CVE-2026-784816.52026-09-09CVE-2026-539399.12026-09-09CVE-2026-818218.42026-09-08CVE-2026-801675.52026-09-07CVE-2026-800575.52026-09-07CVE-2026-784875.52026-09-07CVE-2026-862414.32026-09-07CVE-2026-801147.82026-09-04CVE-2026-754319.12026-09-04CVE-2026-183302026-09-03CVE-2026-844835.32026-09-01CVE-2026-742339.82026-08-27CVE-2026-241665.12026-08-25CVE-2026-154692026-08-24CVE-2026-768478.82026-08-24CVE-2026-762586.52026-08-19