CWE-1289 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-1289 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2026-48710Starlette is a lightweight ASGI framework/toolkit. Prior to version 1.0.1, the HTTP `Host` request h…7.1%보통6.5CVE-2026-86831Improper validation of pod identifier uniqueness in aws-network-policy-agent in Amazon EKS Network P…0.5%높음8.7CVE-2026-88255Improper Validation of Unsafe Equivalence in Input in ZenHive mpp allows an unauthenticated remote c…0.4%보통6.3CVE-2026-89049A server-side request forgery issue due to improper validation of equivalent address representations…0.4%높음8.5CVE-2026-100255In JetBrains TeamCity before 2026.2, 2026.1.4, 2025.11.8 administrator account takeover was possible…0.4%높음8.1CVE-2026-97196Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / StellarWP GiveWP al…0.3%심각9.1CVE-2026-101015A flaw has been found in Trusted Domain Project OpenDMARC up to 1.4.2. Affected by this issue is som…0.3%보통5.5CVE-2026-76977SAP UI5 does not sufficiently validate the parent frame's origin against the configured allowlist. A…0.2%보통4.3
전체 목록
10건
CVE-2026-100837Contrast (Edgeless Systems) through 1.20.0 performs unanchored suffix matching when selecting per-registry con…0.2%보통6.3
CVE-2026-105048The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).0.2%보통4.0
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.