CWE-776 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-776 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
CVE-2026-54077ArcadeDB is a Multi-Model DBMS. Prior to 26.6.1, the IMPORT DATABASE statement in engine/src/main/ja…0.4%높음7.1CVE-2023-46035The svg_optimizer gem before 0.3.0 for Ruby performs entity expansion on untrusted documents.0.4%보통5.9CVE-2026-16180IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.28 and IBM Integr…0.2%보통5.7CVE-2026-58234SAP Process Integration (SOAP Adapter) allows a privileged user to send specially crafted requests c…0.2%낮음2.2CVE-2026-92001Improper restriction of recursive entity references in DTDs ('XML entity expansion') vulnerability i…0.2%보통6.1
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.