CWE-203 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-203 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2024-39891In the Twilio Authy API, accessed by Authy Android before 25.1.0 and Authy iOS before 26.1.0, an una…1.7%보통5.3CVE-2026-63567Observable discrepancy in IesEngine.DecryptBlock in Legion of the Bouncy Castle Inc. bc-csharp befor…0.5%높음8.2CVE-2026-95270A flaw has been found in dgtlmoon changedetection.io up to 0.60.7. The affected element is the funct…0.4%낮음2.9CVE-2026-87478Observable discrepancy in Autofill in Google Chrome prior to 153.0.8010.36 allowed a remote attacker…0.4%보통6.5CVE-2026-103272Ghost versions from 2.10.0 before 6.63.0 contain a staff enumeration vulnerability in the content AP…0.4%높음8.7CVE-2026-53933Maravel, a PHP framework oriented towards dependency injection, prior to version 10.73.1 has a side-…0.3%보통6.9CVE-2026-59341A security vulnerability exists in the Sealed Secrets controller's unauthenticated POST endpoints. B…0.3%보통4.2CVE-2026-84461Zammad is a web based open source helpdesk/customer support system. Prior to 7.1.2, the two-factor l…0.3%보통6.9
전체 목록
27건
CVE-2026-104416Ghost from 4.39.0 before 6.64.0 contains an information disclosure vulnerability in the Admin API that allows …0.3%높음7.7
CVE-2026-63573Observable discrepancy in the CMS RSA PKCS#1 v1.5 key-transport unwrap (KeyTransRecipientInformation.UnwrapKey…0.3%높음8.2
CVE-2026-56098A flaw was found in rubygem-katello. The RegistryProxiesController in Katello contains an authorization bypass…0.3%보통4.3
CVE-2026-87518Observable discrepancy in Safebrowsing in Google Chrome on on iOS prior to 153.0.8010.36 allowed a remote atta…0.3%보통5.3
CVE-2025-5802The self-registration flow accepts user-supplied input for usernames without adequately preventing the disclos…0.3%보통5.3
CVE-2026-87459Observable discrepancy in Select in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain s…0.2%보통6.5
CVE-2026-91725Observable discrepancy in CSS in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to leak sensit…0.2%보통5.3
CVE-2026-91714Observable discrepancy in Fonts in Google Chrome prior to 153.0.8010.47 allowed a remote attacker leveraging s…0.2%보통5.3
CVE-2026-87623Observable discrepancy in DOM in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leveraging soc…0.2%보통6.5
CVE-2026-87620Observable discrepancy in SVG in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sens…0.2%보통6.5
CVE-2026-87516Observable discrepancy in Navigation in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak…0.2%보통4.3
CVE-2026-87566Observable discrepancy in Layout in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak sen…0.2%보통5.3
CVE-2025-13166The SMS OTP flow fails to adequately handle error messages, allowing an attacker to infer the existence of reg…0.2%낮음3.7
CVE-2026-87539Observable discrepancy in Network in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain …0.2%낮음3.1
CVE-2026-103275Ghost 5.42.2 before 6.58.0 contains an information disclosure vulnerability in the Admin API bulk post and pag…0.2%보통5.3
CVE-2026-104415Ghost from 0.7.2 before 6.64.0 contains an information disclosure vulnerability in the Admin API that allows s…0.2%낮음2.3
CVE-2026-87619Observable discrepancy in Prefetch in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to leak c…0.2%보통4.3
CVE-2026-11795Observable discrepancy vulnerability in Softtr Informatics Trading Limited Company E-Commerce Pack allows Acco…0.2%보통5.3
CVE-2026-56888In multiple locations, there is a possible permission bypass due to side channel information disclosure. This …0.1%보통6.2
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.