CWE-1284 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-1284 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2022-20699Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could…72.5%심각9.8● 실제 악용이 확인됨CVE-2010-3904The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol im…15.7%높음7.8CVE-2026-94450Improper validation of the Destination Connection ID length in s2n-quic 1.88.0 and earlier may allow…1.9%높음8.7CVE-2026-50285Pomerium is an identity and context-aware access proxy. Prior to 0.32.8, decodeQueryStringV2 in pkg/…0.7%높음7.5CVE-2026-93749source-map-js through 1.2.1 fails to validate the per-section offset line value in indexed source ma…0.6%높음8.7CVE-2026-93345MikroTik RouterOS before 7.25beta4 contains an improper input validation vulnerability in the labell…0.5%높음8.7CVE-2026-69210Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, WebSocket FrameTransc…0.5%높음7.5CVE-2026-48977OpenSlide is a C library for reading whole slide image files. From 3.4.1 until 4.0.1, OpenSlide's pa…0.5%높음7.7
전체 목록
40건
CVE-2026-89420Improper Validation of Specified Quantity in Input in ZenHive mpp allows a client holding an open payment chan…0.5%높음7.1
CVE-2026-94646Uncaught exception, Improper validation of specified quantity in input, Improperly controlled modification of …0.5%높음8.7
CVE-2026-87962t-digest versions 3.1 through 3.3 contain a denial of service vulnerability in MergingDigest.fromBytes that fa…0.4%높음8.7
CVE-2026-91137Improper validation of specified quantity in input, Allocation of resources without limits or throttling, Exce…0.4%높음8.7
CVE-2026-94645Improper validation of specified quantity in input, Allocation of resources without limits or throttling vulne…0.4%높음8.2
CVE-2026-94636Improper handling of highly compressed data (data amplification), Function call with incorrectly specified arg…0.4%높음8.2
CVE-2026-103484IVFFlat index build in pgvector before 0.8.7 allows a database user to write data out-of-bounds, which can lea…0.4%높음8.8
CVE-2026-87470Improper quantity validation in Tint in Google Chrome on on Mac prior to 153.0.8010.36 allowed a remote attack…0.4%심각9.6
CVE-2026-76899CordysCRM is an open source AI-powered customer relationship management system that supports private deploymen…0.4%보통5.7
CVE-2026-97057redis-parser through 3.0.0 fails to validate the multi-bulk length value in RESP protocol parsing, allowing at…0.4%높음8.7
CVE-2026-75806Issue summary: An established DTLS 1.2 association using an AEAD cipher suite can be terminated by a single un…0.4%보통5.3
CVE-2026-76442As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gatewa…0.4%높음7.5
CVE-2026-97058sprintf-js through 1.1.3 passes unbounded precision specifiers to toFixed, toExponential, and toPrecision meth…0.4%보통6.9
CVE-2026-82751Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to i…0.3%높음8.3
CVE-2026-82750Improper Validation of Specified Quantity in Input in ZenHive mpp allows an unauthenticated remote client to i…0.3%높음8.3
CVE-2026-16025Improper validation of specified quantity in input vulnerability in PayTR Payment and Electronic Money Institu…0.3%높음7.5
CVE-2026-86133An integer underflow vulnerability in the WatchGuard Fireware OS IKE daemon (iked) allows a remote attacker wh…0.3%높음8.2
CVE-2026-12974A Security Policy Bypass vulnerability exists in Forcepoint Security Engine (NGFW). This issue affects Forcepo…0.3%높음7.9
CVE-2026-93015BlueKitchen BTstack through 1.8.2 fails to validate the peer-reported endpoint count against table bounds in A…0.2%높음7.0
CVE-2026-73436On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specially crafte…0.2%보통6.0
CVE-2025-36178IBM Controller 11.0.0 through 11.0.1 FP7, and 11.1.0 through 11.1.3 FP1 could allow an authenticated user to b…0.2%보통5.4
CVE-2026-79376An issue in the l2cap_handle_data() function of Bestechnic Co., Ltd BES2300 Bluetooth Audio SoC firmware v3.x …0.2%높음8.8
CVE-2026-102111Kiteworks did not enforce the maximum permitted value for a configurable security-policy setting. An authentic…0.2%보통4.9
CVE-2026-103065Improper Validation of Specified Quantity in Input vulnerability in Themeum Kirki kirki allows Accessing Funct…0.2%높음8.2
CVE-2024-53922An issue was discovered in the buffer queue driver in Samsung Automotive Processor Exynos Auto 8890, V7, V9, a…0.2%보통5.7
CVE-2026-87735An issue was discovered in the mirage-crypto-pk package before 2.3.0 for OCaml. There is an undocumented excep…0.1%보통4.3
CVE-2026-82752Improper Validation of Specified Quantity in Input vulnerability in ash-project ash allows an attacker to stor…0.1%보통5.9
CVE-2026-53720pymonocypher uses cython to wrap the Monocypher C library. Prior to version 4.0.2.8, the argon2i_32 implementa…0.1%보통5.1
CVE-2026-85201In Eclipse Ankaios versions 0.1.0 through 1.0.1, the agent does not limit the length declared by a workload in…0.1%보통6.8
CVE-2026-102730Mounting an attacker-controlled NAND flash image (`lx_nand_flash_open()`) triggers an unbounded out-of-bounds …0.1%높음8.6
CVE-2026-102711Two issues in the ThreadX loadable-module loader, reached when a device loads an attacker-controlled module ob…0.1%보통5.7
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.