$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
CVE Ledger

CWE-441 관련 취약점

같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.

원장 17,280건이 중 악용 확인 1,734건분류: CWE-441

전체 목록

38건

CVE-2026-50022Metacat is data repository software that helps researchers preserve, share, and discover data. Prior to 3.4.2,…0.4%보통5.8
CVE-2026-87582Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had comp…0.4%높음8.3
CVE-2026-54628Anyquery is an SQL query engine built on top of SQLite. Prior to 0.4.5, anyquery server exposes URL-capable SQ…0.3%높음8.6
CVE-2026-86600In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and a…0.3%높음8.2
CVE-2026-69531Unintended proxy or intermediary ('confused deputy') in Microsoft Windows Speech allows an authorized attacker…0.3%보통5.5
CVE-2026-86115Sim before 0.8.14 classifies tool requests as internal based on URL prefix matching without scheme normalizati…0.3%보통5.3
CVE-2026-81303A flaw was found in hawtio-operator. The operator holds routes/custom-host:create permission cluster-wide and …0.3%보통6.3
CVE-2026-101905Axios is a promise-based HTTP client for the browser and Node.js. From 1.15.2 until 1.20.0, the Node HTTP adap…0.3%높음7.6
CVE-2026-87442Confused deputy in Prerender in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had comprom…0.3%낮음3.1
CVE-2026-87453Confused deputy in BackgroundFetch in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had c…0.3%보통5.3
CVE-2026-95361Confused deputy in DevTools in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging socia…0.3%보통4.3
CVE-2026-100625Capgo (capgo.app) exposes a native build TUS upload proxy (supabase/functions/_backend/public/build/upload.ts)…0.3%높음8.7
CVE-2026-75886A flaw was found in openshift/console. An unauthenticated remote attacker can exploit a misconfiguration in th…0.3%높음7.2
CVE-2026-91742Confused deputy in PriceTracking in Google Chrome on on iOS prior to 153.0.8010.47 allowed a remote attacker l…0.2%미평가
CVE-2026-95328Confused deputy in Mobile in Google Chrome on on Android prior to 154.0.8037.57 allowed a local attacker lever…0.2%보통6.5
CVE-2026-77246MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to …0.2%높음7.4
CVE-2026-103922Capacitor is a cross-platform native runtime for web applications. From 6.0.0 until 6.2.2, 7.6.9, 8.3.5, 8.4.3…0.2%심각9.3
CVE-2026-72668Unintended Proxy or Intermediary ('Confused Deputy') (CWE-441) in Kibana Agent Builder can lead to privilege e…0.2%높음7.3
CVE-2026-87502Confused deputy in Fullscreen in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compro…0.2%보통4.2
CVE-2026-55225Strimzi provides a way to run an Apache Kafka cluster on Kubernetes or OpenShift in various deployment configu…0.2%높음8.0
CVE-2026-57042In multiple functions of DreamPickerReceiver.kt, there is a possible permission bypass due to a confused deput…0.1%보통6.7
CVE-2026-56986In multiple files, there is a possible out-of-bounds read due to type confusion. This could lead to local esca…0.1%높음8.4
CVE-2026-56985In multiple files, there is a possible way to obtain signatures due to type confusion. This could lead to loca…0.1%높음8.4
CVE-2026-58698In ap_pmic_poll_msg_handler of ap_pmic_ipc.c, there is a possible permission bypass due to a confused deputy. …0.1%보통6.7
CVE-2026-56992In multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local es…0.1%보통6.7
CVE-2026-56922In CPM, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of…0.1%보통6.7
CVE-2026-58739In platform_msg_handler_init of default_msg_handlers.c, there is a possible confused deputy due to a confused …0.1%보통6.7
CVE-2026-56879In gmc_mb_msg_handler of gmc_mba.c, there is a possible memory corruption due to a confused deputy. This could…0.1%보통6.7
CVE-2026-0183In CPM, there is a possible information disclosure due to a confused deputy. This could lead to local informat…0.1%보통4.4
CVE-2026-56945In VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation …0.1%높음7.8
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.