On this page

CWE-829: Inclusion of Functionality from Untrusted Control Sphere

Weakness Summary

The product imports, requires, or includes executable functionality (such as a library) from a source that is outside of the intended control sphere.

  • Canonical source: MITRE CWE-829 (opens in a new tab)
  • Published Atomicorp CVE observations: 13
  • Distinct affected products in those observations: 11
  • Active Atomicorp rules associated with this weakness: 20

Atomicorp Research Context

Atomicorp has published CVE-specific research observations associated with this weakness category. Each linked CVE page states whether the tested request was detected or blocked and is the authoritative customer-facing finding.

The CVEs and rules shown here are selected published examples, not a complete list of Atomicorp protections. If a CWE, CVE, or rule is absent from this page, no conclusion should be drawn about whether Atomicorp protects against that weakness or attack method.

A CWE describes a class of software weakness. It does not identify one exploit request, and association with a CWE does not mean that every vulnerability or exploitation path in that category is detected or blocked.

Selected Published CVE Observations

CVEVulnerabilityProductAtomicorp findingObserved rules
CVE-2018-17246Kibana - Local File InclusionkibanaAttack Blocked by Atomicorp340007 , 344360 , 347009 , 390709
CVE-2026-0770Langflow < 1.3.0 - Remote Code Execution via validate_code() exec()langflowAttack Blocked by Atomicorp344360 , 344370
CVE-2026-45272MyBooks: Remote Code Execution via SOCIAL_AUTH Key Name Injection in Python Config FiletalebookAttack Blocked by Atomicorp340014 , 340023 , 340029 , 344360 , 344361 , 344363 , 344364 , 344366 , 344370 , 393655
CVE-2024-8252WordPress Clean Login <= 1.14.5 Authenticated (Contributor+) - Local File Inclusionclean loginAttack Blocked by Atomicorp344360
CVE-2026-45711Mailpit: Path traversal & arbitrary file write in mailpit dump –http via attacker-controlled message IDsmailpitAttack Blocked by Atomicorp340007 , 344360 , 390709
CVE-2017-14095Trend Micro Smart Protection Server - Session Hijacking / Log File Disclosure / Remote Command Execution / Cron Job Injection / Local File Inclusion / Stored Cross-Site Scripting / Improper Access Controlsmart protection serverAttack Blocked by Atomicorp330791 , 340007 , 340152
CVE-2026-47398PraisonAI: Arbitrary code execution via unguarded spec.loader.exec_module in agents_generator.py - sibling of CVE-20PraisonAIAttack Blocked by Atomicorp340014 , 340023 , 340029 , 344360 , 344361 , 344363 , 344364 , 344366 , 344370 , 393655
CVE-2022-25485Cuppa CMS v1.0 - Local File InclusioncuppacmsAttack Blocked by Atomicorp340007 , 344360 , 390709
CVE-2022-25486Cuppa CMS v1.0 - Local File InclusioncuppacmsAttack Blocked by Atomicorp340007 , 344360 , 390709
CVE-2018-7422WordPress Site Editor <=1.1.1 - Local File Inclusionsite editorAttack Blocked by Atomicorp336461 , 344360 , 347009 , 381206 , 390709 , 393771
CVE-2021-41569SAS/Internet 9.4 1520 - Local File Inclusionsas/intrnetAttack Blocked by Atomicorp344360 , 347009
CVE-2022-34121CuppaCMS v1.0 - Local File InclusioncuppacmsAttack Blocked by Atomicorp340007 , 344360 , 390709
CVE-2026-34442FreeScout: Host Header Injection Leading to External Resource Loading and Open Redirect in FreeScoutfreescoutAttack Blocked by Atomicorp340165 , 344365

Associated Atomicorp WAF Rules

RuleStatusBehavior
330791Activedisruptive (deny)
336461Activedisruptive (deny)
340007Activedisruptive (deny)
340014Activedisruptive (deny)
340023Activedisruptive (deny)
340029Activedisruptive (deny)
340152Activedisruptive (deny)
340165Activedisruptive (deny)
344360Activedisruptive (deny)
344361Activedisruptive (deny)
344363Activedisruptive (deny)
344364Activedisruptive (deny)
344365Activedisruptive (deny)
344366Activedisruptive (deny)
344370Activedisruptive (deny)
347009Activedisruptive (deny)
381206Activedisruptive (deny)
390709Activedisruptive (deny)
393655Activedisruptive (deny)
393771Activedisruptive (deny)

MITRE associates this CWE with the following attack-pattern entries. These taxonomy relationships are context, not Atomicorp coverage claims:

CAPEC-175 (opens in a new tab) , CAPEC-201 (opens in a new tab) , CAPEC-228 (opens in a new tab) , CAPEC-251 (opens in a new tab) , CAPEC-252 (opens in a new tab) , CAPEC-253 (opens in a new tab) , CAPEC-263 (opens in a new tab) , CAPEC-538 (opens in a new tab) , CAPEC-549 (opens in a new tab) , CAPEC-640 (opens in a new tab) , CAPEC-660 (opens in a new tab) , CAPEC-695 (opens in a new tab) , CAPEC-698 (opens in a new tab)