The product contains dead code, which can never be executed.
Volume of CVEs assigned to CWE-561 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-34205CRITICAL Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.843 and Application prior to 20.0.1923 (VA and SaaS deployments) contains dangerous PHP dead code | Sep 19, 2025 | 9.8 | 35 | NO | NO |
CVE-2018-0039CRITICAL Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with hardcoded credentials. These credentials allow network based at | Jul 11, 2018 | 9.8 | 30 | NO | NO |
CVE-2024-8300HIGH Dead Code vulnerability in Mitsubishi Electric GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3, Mitsubishi Electric Iconics Digital Solutions GENESIS64 Version 10 | Nov 28, 2024 | 7.0 | 21 | NO | NO |
A dead bounds check in the Spotlight RPC unmarshaller in Netatalk 3.0.0 through 4.4.2 results in an unreachable code path that provides no effective bounds protection, which may al | May 21, 2026 | 3.1 | 20 | NO | NO |
CVE-2022-30748MEDIUM Unprotected dynamic receiver in Samsung Members prior to version 4.2.005 allows attacker to launch arbitrary activity. | Jun 7, 2022 | 5.5 | 20 | NO | NO |
CVE-2022-33685MEDIUM Unprotected dynamic receiver in Wearable Manager Service prior to SMR Jul-2022 Release 1 allows attacker to launch arbitray activity and access senstive information. | Jul 12, 2022 | 5.5 | 19 | NO | NO |
CVE-2024-32634MEDIUM In huge memory get unmapped area check, code can never be reached because of a logical contradiction. | Apr 16, 2024 | 6.1 | 18 | NO | NO |
Unprotected dynamic receiver in Samsung Galaxy Friends prior to SMR Aug-2022 Release 1 allows attacker to launch activity. | Aug 5, 2022 | 3.3 | 15 | NO | NO |
Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts. | Jun 11, 2021 | 3.3 | 15 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.