CWE-354 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-354 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-103601Release of unverified plaintext in the CCM (CcmBlockCipher) and DSTU 7624 CCM (KCcmBlockCipher) AEAD…0.3%높음8.2CVE-2026-54580mport is the MidnightBSD Package Manager. Prior to 2.7.8, libmport/util.c did not make every truncat…0.3%높음8.3CVE-2026-92701trusted execution environments. In versions up to and including 0.8.2, the intra-handshake attested …0.3%심각9.1CVE-2026-76852Netcore NR268 firmware version 1.7.121109 has an improper integrity verification flaw in mtd_write a…0.2%높음8.7CVE-2026-72929Improper validation of integrity check value in Windows Installer allows an authorized attacker to e…0.2%높음7.8CVE-2026-15999Improper validation of integrity check value in the AES-CCM implementation (CcmParameters and CcmBlo…0.2%높음8.2CVE-2026-16001Exposure of the message authentication key through the encryption keystream in the stream mode of Ie…0.2%높음8.2CVE-2026-73459On affected platforms running Arista EOS with IS-IS configured, an unauthenticated attacker who can …0.2%높음7.0
전체 목록
15건
CVE-2026-85515In Bouncy Castle for Java before 1.86, a truncated OpenPGP encrypted message was accepted with no error report…0.2%높음8.2
CVE-2026-102759NetX Secure TLS accepts an empty application-data record without verifying its message authentication code. In…0.2%보통6.3
CVE-2026-95625The Tauri updater plugin verifies update binaries using minisign signatures, but the signature covers only the…0.2%보통5.9
CVE-2026-54578mport is the MidnightBSD Package Manager. Prior to 2.7.8, mport_verify_package() in libmport/verify.c could co…0.1%낮음2.0
CVE-2026-71888In Bouncy Castle for Java before 1.86, the streaming CMS AuthenticatedData parser accepted a message whose dig…0.1%높음8.7
CVE-2026-54174melange allows users to build apk packages using declarative pipelines. Apko prior to version 1.2.9, correspon…0.1%높음8.3
CVE-2020-7807A vulnerability that can hijack a DLL file that is loaded during products(LGPCSuite_Setup, IPSFULLHD, LG_ULTRA…보통5.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.