Common Weakness Enumeration
CWE Definition / CWE-641
CWE-641: Improper Restriction of Names for Files and Other Resources
The product constructs the name of a file or other resource using input from an upstream component, but it does not restrict or incorrectly restricts the resulting name.
Published:30 Jan 2008
Organization:MITRE
Modified:11 Dec 2025
Related Weakness
CWE-99: Improper Control of Resource Identifiers ('Resource Injection')
