2

Lee can bypass application controls because dangerous/risky programming language functions have been used instead of safer alternatives, or there are type conversion errors, or because the application is unreliable when an external resource is unavailable, or there are race conditions, or there are resource initialization or allocation issues, or overflows can occur

OWASP SCP
194-202, 205-209
OWASP ASVS
14.1.2
OWASP AppSensor
CAPEC
25, 26, 29, 96, 123, 124, 128, 129, 264, 265
SAFECODE
3, 5, 6, 7, 9, 22, 25, 26, 34