CWE-113 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-113 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-77360oRPC is an tool that helps build APIs that are end-to-end type-safe and adhere to OpenAPI standards.…0.6%보통6.3CVE-2026-90819A weakness has been identified in a2aproject a2a-java 1.2.0. The affected element is the function Ba…0.4%보통6.9CVE-2026-93711Dancer2 versions before 2.2.0 for Perl do not strip CR and LF from response header names in headers_…0.4%보통6.5CVE-2026-85077Sanic is an opensource python web server/framework. Prior to version 24.12.1, and in version 25.12.0…0.3%높음8.2CVE-2024-58384Tornado before 6.4.1 contains a CRLF injection vulnerability in CurlAsyncHTTPClient that fails to re…0.2%보통6.3CVE-2026-91991Tornado before 6.5.8 contains an incomplete fix for cookie attribute injection that allows attackers…0.2%보통6.3CVE-2026-69211Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, ResponseCookie.render…0.2%보통4.8CVE-2018-3911An exploitable HTTP header injection vulnerability exists in the remote servers of Samsung SmartThin…높음8.6
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.