$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
CVE Ledger

CWE-401 관련 취약점

같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.

원장 17,280건이 중 악용 확인 1,734건분류: CWE-401

전체 목록

42건

CVE-2026-63448Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring …0.7%보통5.9
CVE-2026-63446Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring …0.7%높음7.5
CVE-2026-87078Net::IDN::Punycode versions from 2.302 before 2.590 for Perl leak the output buffer on every rejected label in…0.7%심각9.1
CVE-2026-16028Protocol::HTTP2 versions before 1.14 for Perl allow memory exhaustion via closed streams that stream_state nev…0.6%높음7.5
CVE-2026-94627vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache block ownership when concurrent c…0.6%높음8.7
CVE-2026-69405Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to den…0.6%보통5.7
CVE-2026-63128RMCP is an official Rust SDK for the Model Context Protocol. Prior to 2.0.0, the rmcp crate's stateful Streama…0.5%높음7.5
CVE-2026-18212A flaw was found in the SAML Redirect Binding implementation of Keycloak, an open-source identity and access m…0.5%높음7.5
CVE-2026-69781Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to d…0.5%보통6.5
CVE-2026-81563A BIND resolver encountering an SVCB/HTTPS AliasMode record referencing 14 or more SVCB/HTTPS ServiceMode reco…0.5%높음7.5
CVE-2026-92230Apache Karaf's XmlUtils cached XML parser/transformer factories in static ThreadLocal fields on long-lived con…0.5%높음7.5
CVE-2026-90784A vulnerability has been found in Dvidelabs flatcc up to 0.6.3. The impacted element is the function fb_clear_…0.4%보통5.5
CVE-2026-94652Missing release of memory after effective lifetime vulnerability in Apache Thrift c++ bindings. This issue aff…0.4%보통6.3
CVE-2026-93926Missing release of memory after effective lifetime, Missing release of resource after effective lifetime vulne…0.4%높음8.7
CVE-2026-69208Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, the DigestAuth server middlewar…0.4%높음7.5
CVE-2026-13148Missing release of memory after effective lifetime vulnerability in Softing smartLink allows resource leak exp…0.4%보통6.3
CVE-2026-86040libp2p is a JavaScript implementation of the libp2p networking stack. Prior to 11.0.26, @libp2p/floodsub accep…0.4%높음7.5
CVE-2026-87776compression is a Node.js and Express compression middleware. In versions before 1.8.2, when a client aborts th…0.4%높음7.5
CVE-2026-78127libcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in th…0.4%낮음3.7
CVE-2026-48987pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev101, EventManager in …0.3%보통6.5
CVE-2026-104874Multidict is an implementation of a multidict data structure. From 6.7.0 until 6.9.1, the C extension's items-…0.3%보통5.3
CVE-2026-15892The mcumgr SMP settings-management group handlers settings_mgmt_read(), settings_mgmt_write(), and settings_mg…0.3%보통5.3
CVE-2026-18076IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a…0.3%보통4.3
CVE-2026-102716An unauthenticated client can drain the RTSP server's packet pool with a couple of dozen requests that carry a…0.3%높음8.7
CVE-2026-91926A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALL…0.2%낮음3.7
CVE-2026-78131strongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the x509 plugin…0.2%낮음3.7
CVE-2026-18313rpcapd can allocate up to 65536 bytes per each RPCAP_MSG_UPDATEFILTER_REQ or RPCAP_MSG_STARTCAP_REQ message re…0.2%보통4.3
CVE-2026-102762The NetX Duo MQTT client leaks the packet carrying a malformed PUBLISH message. Each malformed PUBLISH costs o…0.2%높음8.2
CVE-2026-78124strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lac…0.2%낮음3.7
CVE-2026-20222A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Softwar…0.2%높음7.4
CVE-2026-95395IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial …0.1%보통5.5
CVE-2026-47566NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where an unprivileged us…0.1%보통5.5
CVE-2026-102006In Wind River VxWorks 7 prior to 26.09, specific system call arguments can result in the process management su…0.1%보통5.5
CVE-2026-102005Wind River VxWorks 7 24.03 through 26.03, a memory leak occurs under specific, non-default configuration state…0.1%보통5.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.