CWE-289 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-289 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-73511Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36…0.6%보통5.3CVE-2026-76183Authentication Bypass by Alternate Name vulnerability in Apache Tomcat allowed the security constrai…0.4%심각9.8CVE-2026-95514Unauthenticated Bypass Vulnerability in Netgsm <= 2.10.0 versions.0.3%보통5.3CVE-2026-57176Python Social Auth is a social authentication/registration mechanism. Prior to version 5.0.0, the Ve…0.2%보통6.8CVE-2026-92579In AVideo through 29.0, the autoCSRFGuard() function maintains a hardcoded allowlist of exempt basen…0.2%보통5.3CVE-2026-12101IBM Verify Identity Access could allow an administrator to execute additional commands they are not …0.1%미평가
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.