The CWE object represents a weakness in a software system that can be exploited by a threat actor to perform an attack. The CWE object is based on the Common Weakness Enumeration (CWE) catalog.

Attributes

CaptionNameTypeDescription
Caption caption String The caption assigned to the Common Weakness Enumeration unique identifier.
Raw Data raw_data JSON The event data as received from the event source.
Record ID record_id String Unique identifier for the object
Source URL src_url URL String URL pointing to the CWE Specification. For more information see CWE.
CWE ID uid String The Common Weakness Enumeration unique number assigned to a specific weakness. A CWE Identifier begins "CWE" followed by a sequence of digits that acts as a unique identifier. For example: CWE-123.
Unmapped Data unmapped Unmapped[] The attributes that are not mapped to the event schema. The names and values of those attributes are specific to the event source.

Relationships

CWE shown in context

Inbound Relationships

These objects and events reference CWE in their attributes:

Outbound Relationships

CWE references the following objects and events in its attributes:

This page describes qdm-1.3.2+ocsf-1.3.0