$_SecureScope악용 확인 · 악용 확률 · 한국어 권고
CVE Ledger

CWE-829 관련 취약점

같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.

원장 17,280건이 중 악용 확인 1,734건분류: CWE-829

전체 목록

25건

CVE-2026-96443Insufficient validation of the JDBC driver URL in Apache Doris allows a privileged user to achieve remote code…0.3%보통6.5
CVE-2026-105080In ConvertX before 0.19.0, converters/calibre.ts does not block recipe files, and instead passes them to the e…0.3%심각9.4
CVE-2026-86131A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows…0.3%심각9.2
CVE-2026-79721Code execution can occur in versions of the MLflow platform running version 0.0.1 or newer, enabling a malicio…0.3%높음8.6
CVE-2026-81305CM2507 IP cameras automatically execute a predetermined script from removable media without verifying its auth…0.3%높음7.0
CVE-2026-17647IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to execute arbitrary…0.2%높음8.8
CVE-2026-54160Network UPS Tools is a collection of programs which provide a common interface for monitoring and administerin…0.2%높음8.2
CVE-2026-87114A flaw was found in kube-compare. When processing a 'container://' reference path, the tool incorrectly execut…0.2%높음7.1
CVE-2026-89332Inclusion of functionality from an untrusted control sphere in the Kiro Powers feature in Amazon Kiro IDE befo…0.2%보통6.7
CVE-2026-49449Joplin is an open source note-taking and to-do application that organises notes and lists into notebooks. From…0.2%낮음2.5
CVE-2026-82525Exterro FTK Imager before 8.3 contains an XML external entity (XXE) injection vulnerability that allows attack…0.1%보통6.8
CVE-2026-96269GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of…0.1%높음7.5
CVE-2026-0303A code execution vulnerability in Palo Alto Networks Checkov by Prisma® Cloud can allow arbitrary code executi…0.1%낮음2.4
CVE-2026-86504In JetBrains IntelliJ IDEA before 2026.2.2 missing project-trust confirmation before building a Dev Container …0.1%높음7.8
CVE-2026-95985The file write tool in Amazon Kiro IDE versions before 1.0.242 might allow remote unauthenticated actors to in…0.1%높음8.6
CVE-2026-100256In JetBrains IntelliJ IDEA before 2026.2.3 rCE via Structural Search script constraints was possible in untrus…0.1%높음7.8
CVE-2026-55251NetBox Device Type Library is a collection of community-sourced device type definitions for import into NetBox…0.1%보통6.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.