The product declares a critical variable, field, or member to be public when intended security policy requires it to be private.
Data should be private, static, and final whenever possible. This will assure that your code is protected by instantiating early, preventing access, and preventing tampering.
Our security experts can help you identify and remediate CWE-766 vulnerabilities in your codebase.
Get Security Assessment