CWE-491 - Public cloneable() Method Without Final ('Object Hijack')

Description

A class has a cloneable() method that is not declared final, which allows an object to be created without calling the constructor. This can cause the object to be in an unexpected state.

Latest vulnerabilities for CWE-491

No vulnerabilities found using your search criteria

References

Description of CWE-491 on Mitre website