CWE-754 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-754 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2024-3393A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software …29.1%높음8.7● 실제 악용이 확인됨CVE-2023-41993The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web…24.3%높음8.8● 실제 악용이 확인됨CVE-2021-3560It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, e…23.7%높음7.8● 실제 악용이 확인됨CVE-2023-41992The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 a…9.5%높음7.8● 실제 악용이 확인됨CVE-2025-39682In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length…2.9%높음7.1CVE-2026-73549Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36…0.6%보통5.3CVE-2026-73314XenForo before 2.3.13 contains a signature verification logic error in the PayPal REST webhook handl…0.5%높음8.7CVE-2026-77411RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, readLongstr in read.go returns an em…0.4%심각9.5
전체 목록
23건
CVE-2026-94105NivoCart through 2.4.0 contains a destructive configuration write vulnerability in the admin password reset co…0.4%보통6.9
CVE-2026-85014undici's experimental WebSocketStream client crashes the whole Node.js process when a remote peer closes the T…0.4%보통5.9
CVE-2026-100296In Anjvision YSSD-RTMP-H5 firmware version 3.3.2.4, an empty-body POST to /setUserConfig, dispatched through t…0.3%높음7.2
CVE-2026-91733Improper state validation in Skia in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had co…0.3%높음8.3
CVE-2026-104432Zebra before 6.3.0 contains an improper exceptional condition check in ChainSync::obtain_tips that discards va…0.3%보통6.9
CVE-2026-87548Improper state validation in Installer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to by…0.3%미평가
CVE-2026-87012Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.1,…0.3%보통4.3
CVE-2026-65838Skipper is an HTTP router and reverse proxy for service composition. Prior to 0.27.35, the opaAuthorizeRequest…0.3%높음8.2
CVE-2026-95330Improper state validation in Downloads in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to by…0.3%보통6.5
CVE-2026-10556Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 fail to validate…0.2%보통5.3
CVE-2026-93387Improper state validation in Skia in Google Chrome prior to 153.0.8010.52 allowed a remote attacker to obtain …0.3%보통4.3
CVE-2026-13417Mattermost versions 11.9.x <= 11.9.0, 11.8.x <= 11.8.4, 11.7.x <= 11.7.7, 10.11.x <= 10.11.22 fail to validate…0.2%보통4.3
CVE-2026-87532Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to…0.2%미평가
CVE-2026-87656Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to…0.2%미평가
CVE-2026-87645Improper state validation in Safebrowsing in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to…0.2%미평가
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.