CWE-330 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-330 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-80154All firmware versions of Lantronix SLC8000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain a…0.6%높음8.9CVE-2026-19407Bucket Squatting in Google Cloud Gemini Enterprise Agent Platform SDK for Python versions prior to 1…0.5%높음7.7CVE-2026-92913AVideo through commit c3edcc274c389816d434acadac07ee78eaf330c1 uses a cryptographically weak pseudo-…0.5%심각9.1CVE-2026-94456Postiz generates security-sensitive credentials using `Math.random()` instead of a cryptographically…0.5%심각9.1CVE-2026-96599Isotope eCommerce through 2.9.10 derives order identifiers from uniqid() instead of a cryptographica…0.4%높음8.2CVE-2026-84606A privacy issue was addressed with improved handling of identifiers. This issue is fixed in iOS 27 a…0.3%높음7.5CVE-2026-3416The API Publisher component previously used a non-cryptographic pseudorandom number generator (PRNG)…0.3%보통5.9CVE-2026-79575The JWT signing secret in yfexam-exam v2.0 is derived from the username and the current month instea…0.2%높음7.5
전체 목록
14건
CVE-2026-17274IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due t…0.2%보통5.4
CVE-2026-92912AVideo through c3edcc274c389816d434acadac07ee78eaf330c1 uses cryptographically weak uniqid() values for RTMP p…0.2%높음8.3
CVE-2026-86187WWBN AVideo generates passwords for external-login accounts using rand() instead of a cryptographic generator,…0.2%높음7.4
CVE-2026-53939OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). In versions 0.6…0.2%심각9.1
CVE-2026-92930OpenEye Apex Network Video Recorder (NVR) firmware 3.2.9.376 uses an administrator password-reset unlock-code …0.2%보통6.2
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.