CWE-494 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-494 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2022-40799Data Integrity Failure in 'Backup Config' in D-Link DNR-322L <= 2.60B15 allows an authenticated atta…33.7%높음8.8● 실제 악용이 확인됨CVE-2025-15556Notepad++ versions prior to 8.8.9, when using the WinGUp updater, contain an update integrity verifi…1.8%높음7.7● 실제 악용이 확인됨CVE-2021-44168A download of code without integrity check vulnerability in the "execute restore src-vis" command of…0.9%높음7.8● 실제 악용이 확인됨CVE-2026-3502TrueConf Client downloads application update code and applies it without performing verification. An…0.3%높음7.8CVE-2026-85427MOOS essential-moos pAntler through 10.0.1 contains a remote code execution vulnerability that allow…0.4%심각9.2CVE-2026-63696Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download of Code Without Inte…0.3%심각9.1CVE-2026-92128Jenkins Script Security Plugin 1415.v9a_f9b_3a_c253d and earlier downloads a JAR file specified by U…0.2%높음7.5CVE-2026-93534A vulnerability was identified in spatie Scotty up to 1.4.2. Affected is the function SelfUpdater::u…0.2%보통5.3
전체 목록
21건
CVE-2026-79963Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.2%높음7.4
CVE-2026-49450Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. Prio…0.2%높음7.1
CVE-2026-96455The Reachy Mini daemon exposes an HTTP API for managing the robot. Its app installation endpoint, POST /apps/i…0.2%높음8.8
CVE-2026-102930virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.12, download_wheel() acc…0.2%높음7.7
CVE-2026-81052Dell ThinOS 10, versions prior to 2605_10.2616, contain a Download of Code Without Integrity Check vulnerabili…0.1%보통6.8
CVE-2026-7006Sublime Text for Windows through Build 4192 (Sublime Text 4) and Build 3207 (Sublime Text 3) contains a local …0.1%높음7.0
CVE-2026-62654A vulnerability has been identified in Reyrolle 7SR5 (All versions < V2.70). A special maintenance mode can be…0.1%높음7.0
CVE-2026-55251NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox…0.1%보통6.5
CVE-2026-73595Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, Versions prior to 5.36, contai…0.1%보통4.7
CVE-2026-100265In JetBrains Rider before 2026.2.1 aI Assistant could auto-update third-party skills without user confirmation0.1%보통4.8
CVE-2026-105295GitAhead 2.5.0 through 2.7.1 contains an insecure update mechanism that installs downloaded updates without in…높음7.7
CVE-2026-105137A vulnerability was found in Laradock up to 20.4. Impacted is an unknown function of the file workspace/Docker…낮음1.3
CVE-2020-9751Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's serve…심각9.1
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.