CWE-617 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-617 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-94623vLLM through 0.29.0 contains a denial of service vulnerability in the NIXL connector's prefix cachin…0.6%높음8.7CVE-2026-75894In osmo-iuh from 0.1.0 through 1.8.0 a reachable assertion was found in the ranap_handle_co_dt() fun…0.5%미평가CVE-2026-92971InternLM LMDeploy through 0.17.0 contains a reachable assertion vulnerability in the DistServe decod…0.5%높음8.7CVE-2026-91147A flaw was found in `cockpit-ws`. This vulnerability allows a remote, unauthenticated attacker to ca…0.5%보통5.9CVE-2026-80274If a BIND resolver sends a query for a DNSSEC-signed authoritative zone, and the authoritative serve…0.5%높음7.5CVE-2026-76163If BIND is loaded with a "`named.conf`" file that contains no global "`options`" block, an attacker …0.5%높음7.5CVE-2026-55776OpenBao is an open source identity-based secrets management system. Prior to 2.5.5, an authenticated…0.5%보통6.5CVE-2026-90786A vulnerability was determined in Dvidelabs flatcc up to 0.6.3. This impacts the function align_orde…0.4%보통5.5
전체 목록
44건
CVE-2026-75584ION-DTN before 4.2.1-a.1 contains a denial of service vulnerability that allows unauthenticated remote attacke…0.4%높음8.7
CVE-2026-89146libp2p-rendezvous through 0.17.1 fails to validate registration TTL values in discovery responses, allowing at…0.4%높음8.7
CVE-2026-90785A vulnerability was found in Dvidelabs flatcc up to 0.6.3. This affects the function analyze_struct of the fil…0.4%보통5.5
CVE-2026-86317A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserial…0.4%보통6.9
CVE-2026-92416A vulnerability has been found in Open5GS up to 2.8.0. Affected by this issue is the function smf_n4_handle_se…0.4%보통5.3
CVE-2026-84450libheif is a HEIF and AVIF file format decoder and encoder. From 1.19.0 until 1.23.3, a crafted image item con…0.4%보통4.3
CVE-2026-104428The getblock RPC method in zebra-rpc before 11.0.0, used by the Zcash Foundation's Zebra node, panics on verbo…0.4%보통6.9
CVE-2026-82052The $regexFindAll expression can be used by an authenticated user who can run aggregation pipeline stages to c…0.4%높음7.1
CVE-2026-91951FreeRDP versions before 3.31.0 contain an out-of-bounds write vulnerability in the urbdrc client channel's urb…0.3%높음7.1
CVE-2026-91961FreeRDP before 3.31.0 contains a denial-of-service vulnerability in the URBDRC control-transfer request path t…0.3%높음7.1
CVE-2026-85534A flaw was found in libsoup. When a client sends an HTTP/2 request body from a non-pollable input stream, the …0.3%보통5.9
CVE-2026-8674Initializing the DNS stub resolver from an /etc/resolv.conf file, or a LOCALDOMAIN environment variable, whose…0.3%보통5.3
CVE-2026-82064A security issue in MongoDB Server allows an unauthenticated network user to cause a denial of service on a sp…0.3%높음8.7
CVE-2026-103108Pexip Infinity before 38.2, plus 39.0, 39.1, and 40.0, is affected by improper input validation in the media i…0.3%높음7.5
CVE-2026-103099Pexip Infinity before 41.1 is affected by improper input validation in the media implementation that allows a …0.3%높음7.5
CVE-2026-103104Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media im…0.3%높음7.5
CVE-2026-104434ZcashFoundation Zebra zebra-rpc before 8.0.0 and zebrad before 4.5.0 contain a reachable assertion in the z_li…0.3%높음7.1
CVE-2026-82065A security issue in the MongoDB Server's storage engine integration layer allows an authenticated user with co…0.3%높음7.1
CVE-2026-82068A security issue in MongoDB Server allows an authenticated user with write privileges to trigger a persistent …0.3%높음7.1
CVE-2026-82059An internal aggregation expression in MongoDB Server was incorrectly registered as accessible to any authentic…0.3%보통6.0
CVE-2026-103100Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allow…0.3%높음7.5
CVE-2026-73438On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, an unaut…0.2%높음7.0
CVE-2026-15893net_if_ipv6_calc_reachable_time() in subsys/net/ip/net_if.c derives a randomized ND reachable time from ipv6->…0.2%보통6.5
CVE-2026-20503In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of …0.2%보통5.3
CVE-2026-20504In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of …0.2%보통5.3
CVE-2026-88341A reachable assertion vulnerability exists in YARA 4.5.8 when loading crafted .yrc compiled rule files. An att…0.2%보통5.5
CVE-2026-84971Improper handling of an unexpected value size in the decryption path of a client-side encryption library can c…0.2%높음7.1
CVE-2026-96422Frame protocol metadissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service0.1%보통5.5
CVE-2026-90611A vulnerability was determined in GPAC up to f1219cde. This impacts the function xmt_parse_element of the file…0.1%낮음1.9
CVE-2026-90683A vulnerability was detected in GPAC up to f1219cde. Affected is the function gf_node_unregister of the file s…0.1%낮음1.9
CVE-2026-90612A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the…0.1%낮음1.9
CVE-2026-90613A security flaw has been discovered in GPAC up to f1219cde. Affected by this vulnerability is the function stb…0.1%낮음1.9
CVE-2026-90685A vulnerability has been found in GPAC up to f1219cde. Affected by this issue is the function lsr_exec_command…0.1%낮음0.9
CVE-2026-90684A flaw has been found in GPAC up to f1219cde. Affected by this vulnerability is the function gf_node_get_field…0.1%낮음0.9
CVE-2026-31911libpcap BPF interpreter calls abort() if it encounters a BPF instruction that has an invalid opcode. In partic…0.1%보통5.5
CVE-2026-20525In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial …미평가
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.