CWE-488 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-488 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-86492In JetBrains YouTrack before 2026.2.18634 a shared token cache allowed cross-tenant theft of GitHub …0.6%높음8.5CVE-2026-82806Exposure of data element to wrong session vulnerability in Apache APISIX. This issue affects Apache …0.4%보통5.3CVE-2026-18489IBM ContextForge MCP Gateway - Translate utility <= 1.0.8 MCP Context Forge could allow a remote att…0.3%높음7.4CVE-2026-88017rclone is a command-line program to sync files and directories to and from different cloud storage p…0.2%높음7.3CVE-2026-103544A vulnerability was found in datadrivenconstruction OpenConstructionERP up to 14.8.1. The impacted e…0.2%낮음2.1CVE-2026-84685The react-native-auth0 SDK's web platform implementation does not scope its in-memory token cache to…0.2%보통6.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.