Common Weakness Enumeration
A community catalog of software and hardware weakness types (e.g., CWE-79 XSS, CWE-787 out-of-bounds write). Useful in threat modeling and root-cause analysis.