弱点目录

按CWE类型
查看漏洞

按CWE类型浏览漏洞。

CWE ID弱点名称总计CVE严重在KEV中
CWE-79Cross-site Scripting (XSS)2414
CWE-89SQL Injection1639
CWE-8621538
CWE-74Injection117
CWE-94Code Injection9113
CWE-78OS Command Injection8538
CWE-22Path Traversal737
CWE-787Out-of-bounds Write728
CWE-77Command Injection6830
CWE-119Buffer Overflow633
CWE-918Server-Side Request Forgery (SSRF)626
CWE-284Improper Access Control525
CWE-121433
CWE-416Use After Free412
CWE-190Integer Overflow401
CWE-122403
CWE-352Cross-Site Request Forgery (CSRF)36
CWE-125Out-of-bounds Read351
CWE-120331
CWE-63933
CWE-863322
CWE-306Missing Authentication316
CWE-200Information Exposure29
CWE-434Unrestricted File Upload278
CWE-502Deserialization of Untrusted Data253
CWE-20Improper Input Validation235
CWE-287Improper Authentication223
CWE-770201
CWE-400Resource Exhaustion17
CWE-28517
CWE-32116
CWE-73142
CWE-98131
CWE-362Race Condition13
CWE-32012
CWE-266111
CWE-269Improper Privilege Management112
CWE-601Open Redirect11
CWE-427101
CWE-295101
CWE-20110
CWE-4289
CWE-809
CWE-5228
CWE-3408
CWE-4978
CWE-8438
CWE-6747
CWE-6697
CWE-1917
CWE-82972
CWE-69371
CWE-3197
CWE-5327
CWE-3677
CWE-476NULL Pointer Dereference6
CWE-2886
CWE-3386
CWE-936
CWE-18462
CWE-3476
CWE-327Broken Cryptography5
CWE-1935
CWE-30751
CWE-13365
CWE-3465
CWE-133351
CWE-6705
CWE-8355
CWE-6685
CWE-798Hard-coded Credentials5
CWE-5384
CWE-594
CWE-1164
CWE-91541
CWE-614
CWE-9424
CWE-234
CWE-884
CWE-611XXE (XML External Entity)41
CWE-41541
CWE-4943
CWE-4723
CWE-13132
CWE-128931
CWE-12931
CWE-2093
CWE-118831
CWE-732Incorrect Permission Assignment3
CWE-12843
CWE-3123
CWE-80731
CWE-2263
CWE-2563
CWE-13213
CWE-34531
CWE-4263
CWE-953
CWE-2043
CWE-55231