CWE-459 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-459 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-87776compression is a Node.js and Express compression middleware. In versions before 1.8.2, when a client…0.4%높음7.5CVE-2026-95303Incomplete cleanup in SmartCard in Google Chrome prior to 154.0.8037.57 allowed a remote attacker le…0.4%미평가CVE-2026-87446Incomplete cleanup in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote attacker l…0.3%미평가CVE-2026-87436Incomplete cleanup in Browser in Google Chrome prior to 153.0.8010.36 allowed a remote attacker leve…0.3%미평가CVE-2026-87549Incomplete cleanup in Downloads in Google Chrome prior to 153.0.8010.36 allowed a remote attacker le…0.3%미평가CVE-2026-85043Incomplete cleanup in Network in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to b…0.3%심각9.1CVE-2026-88932multer is a Node.js middleware for handling multipart/form-data uploads. In versions 2.2.0 through 2…0.3%보통5.3CVE-2026-104427Zebra before 6.1.0 contains an incomplete cleanup vulnerability in the state write task that allows …0.3%높음8.2
전체 목록
17건
CVE-2026-104421Zebra before 6.2.1 contains an incomplete cleanup vulnerability that allows unauthenticated peers to block dow…0.3%보통6.9
CVE-2026-101100A flaw has been found in ag-ui-protocol ag-ui up to 2026-09-07. This vulnerability affects the function Filter…0.3%보통5.3
CVE-2026-15390Das U-Boot with CONFIG_IP_DEFRAG=y parameter fails to clear IP reassembly state after delivering a complete da…0.3%심각9.0
CVE-2026-95326Incomplete cleanup in Bluetooth in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging s…0.3%미평가
CVE-2026-78437Incomplete cleanup vulnerability in Apache Tomcat allows a malformed request to potentially (depends on timing…0.3%높음7.3
CVE-2026-91730Incomplete cleanup in GetUserMedia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had c…0.2%낮음3.1
CVE-2026-75944A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. …0.1%보통5.6
CVE-2026-75945A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command …0.1%낮음2.1
CVE-2026-75943A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either v…0.1%낮음2.1
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.