CWE-93 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-93 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 랜섬웨어 캠페인에 사용됨CVE-2025-61884Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI).…95.9%높음7.5CVE-2026-55159luci-app-adblock-fast a WebUI for fast, lightweight DNS-based ad-blocker for OpenWrt that works with…1.0%높음8.8CVE-2026-48019Laravel is a web application framework. Prior to versions 12.60.0 and 13.10.0, a CRLF injection vuln…0.7%높음8.9CVE-2026-75925Improper neutralization of CRLF sequences in IXON VPN Client before version 1.4.7 allows an attacker…0.7%심각9.4CVE-2026-40530An improper neutralization of CRLF sequences ('CRLF injection') vulnerability in User API in Synolog…0.5%높음8.0CVE-2026-93576A flaw was found in Netty netty-codec-smtp. The component does not properly validate Carriage Return…0.5%높음7.5CVE-2026-82973Improper neutralization of CRLF sequences in IMAP command construction in psyb0t/docker-mailbox befo…0.4%심각9.4CVE-2026-90990Improper neutralization of newlines in filter values in the monitoring host and service list APIs in…0.4%보통5.3
전체 목록
24건
CVE-2026-90819A weakness has been identified in a2aproject a2a-java 1.2.0. The affected element is the function BasePushNoti…0.4%보통6.9
CVE-2026-100717froxlor is a server administration panel. In versions 2.3.10 and earlier, Validate::validateUrl rejects carria…0.3%높음8.5
CVE-2026-102145An authenticated administrator could cause the server to issue requests to, and interact with, internal networ…0.3%보통6.6
CVE-2026-90937froxlor versions before 2.2.5 fail to validate newline characters in subdomain redirect URLs, allowing authent…0.3%심각9.4
CVE-2026-90767Froxlor before 2.3.12 fails to properly validate multi-line SSH public keys in the SshKeys::add() endpoint, al…0.2%높음7.1
CVE-2026-13666An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability in Sharing API in Synology DiskS…0.2%낮음3.5
CVE-2026-91839A flaw was found in NetworkManager-fortisslvpn, the FortiSSLVPN plugin for NetworkManager. The nm-fortisslvpn-…0.2%높음7.8
CVE-2026-94057Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and i…0.2%보통4.0
CVE-2026-91841A flaw was found in NetworkManager-vpnc, a VPN plugin for NetworkManager. A local unprivileged user can exploi…0.2%높음7.8
CVE-2026-91840A flaw was found in NetworkManager-vpnc. This vulnerability allows a local unprivileged user to escalate privi…0.2%높음7.8
CVE-2026-61815zbateson/mail-mime-parser is a mail mime parser alternative to PHP's imap* functions and Pear libraries for re…0.2%높음7.2
CVE-2026-86813The MetForm WordPress plugin before 4.1.9 does not properly neutralize newline characters in user-submitted va…0.2%보통4.8
CVE-2026-19862The JetFormBuilder WordPress plugin before 3.6.5.2 does not validate or strip line breaks from address values …0.2%보통4.8
CVE-2026-102938virtualenv is a tool for creating isolated virtual python environments. Prior to 21.7.11, PyEnvCfg.write() wri…0.1%보통5.8
CVE-2026-102136In multi-node deployments, an attacker who had already obtained code execution on one appliance node could sub…0.1%보통6.3
CVE-2026-84962An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticat…0.1%보통5.7
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.