SECURITY PATCH SCHEDULE

보안 패치 캘린더

정기 보안 업데이트, 긴급 패치, CISA KEV 조치기한과 지원 종료 일정을 구분해 확인합니다.

전체 일정292026년 4월 표시
긴급·Critical27긴급 대응 우선
KEV 기한 임박·초과0패치 발표일과 별도
발표 완료27공식 자료 확인
예정 일정2변경 가능
2026년 4월한국 기준 일정
이번 달
01(수)
긴급KEV 기한

CVE-2025-66376 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

SynacorCVE 1공식 발표 확인
02(목)
긴급KEV 기한

CVE-2026-3055 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CitrixCVE 1공식 발표 확인
03(금)
긴급KEV 기한

CVE-2025-31277 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AppleCVE 1공식 발표 확인
03(금)
긴급KEV 기한

CVE-2025-32432 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Craft CMSCVE 1공식 발표 확인
03(금)
긴급KEV 기한

CVE-2025-43510 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AppleCVE 1공식 발표 확인
03(금)
긴급KEV 기한

CVE-2025-43520 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AppleCVE 1공식 발표 확인
03(금)
긴급KEV 기한

CVE-2025-54068 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

LaravelCVE 1공식 발표 확인
08(수)
긴급KEV 기한

CVE-2026-33017 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

LangflowCVE 1공식 발표 확인
09(목)
긴급KEV 기한

CVE-2026-33634 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AquasecurityCVE 1공식 발표 확인
09(목)
긴급KEV 기한

CVE-2026-35616 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

FortinetCVE 1공식 발표 확인
11(토)
긴급KEV 기한

CVE-2026-1340 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

IvantiCVE 1공식 발표 확인
15(수)
발표 확인 전Microsoft 정기

2026년 4월 Microsoft 정기 보안 업데이트

Microsoft 월간 보안 업데이트 예정 일정입니다. 실제 발표 후 CVE 및 제품 정보가 확정됩니다.

Microsoft예정 일정
15(수)
긴급KEV 기한

CVE-2026-5281 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

GoogleCVE 1공식 발표 확인
16(목)
긴급KEV 기한

CVE-2026-21643 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

FortinetCVE 1공식 발표 확인
16(목)
긴급KEV 기한

CVE-2026-3502 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

TrueConfCVE 1공식 발표 확인
21(화)
발표 확인 전Oracle CPU

2026년 4월 Oracle CPU

Oracle Critical Patch Update 예정 일정입니다. 실제 보안 권고 발표 후 세부 제품과 CVE가 확정됩니다.

Oracle예정 일정
23(목)
긴급KEV 기한

CVE-2025-48700 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

SynacorCVE 1공식 발표 확인
23(목)
긴급KEV 기한

CVE-2026-20122 CISA KEV 조치기한

Please adhere to CISA’s guidelines to assess exposure and mitigate risks associated with Cisco SD-WAN devices as outlines in CISA’s Emergency Directive 26-03 (URL listed below in Notes) and CISA’s “Hunt & Hardening Guidance for Cisco SD-WAN Devices (URL listed below in Notes). Adhere to the applicable BOD 22-01 guidance for cloud services or discontinue use of the product if mitigations are not available.

CiscoCVE 1공식 발표 확인
23(목)
긴급KEV 기한

CVE-2026-20128 CISA KEV 조치기한

Please adhere to CISA’s guidelines to assess exposure and mitigate risks associated with Cisco SD-WAN devices as outlines in CISA’s Emergency Directive 26-03 (URL listed below in Notes) and CISA’s “Hunt & Hardening Guidance for Cisco SD-WAN Devices (URL listed below in Notes). Adhere to the applicable BOD 22-01 guidance for cloud services or discontinue use of the product if mitigations are not available.

CiscoCVE 1공식 발표 확인
23(목)
긴급KEV 기한

CVE-2026-20133 CISA KEV 조치기한

Please adhere to CISA’s guidelines to assess exposure and mitigate risks associated with Cisco SD-WAN devices as outlines in CISA’s Emergency Directive 26-03 (URL listed below in Notes) and CISA’s “Hunt & Hardening Guidance for Cisco SD-WAN Devices (URL listed below in Notes). Adhere to the applicable BOD 22-01 guidance for cloud services or discontinue use of the product if mitigations are not available.

CiscoCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2012-1854 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2020-9715 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AdobeCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2023-21529 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2023-36424 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2025-60710 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
27(월)
긴급KEV 기한

CVE-2026-34621 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

AdobeCVE 1공식 발표 확인
28(화)
긴급KEV 기한

CVE-2009-0238 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
28(화)
긴급KEV 기한

CVE-2026-32201 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

MicrosoftCVE 1공식 발표 확인
30(목)
긴급KEV 기한

CVE-2026-34197 CISA KEV 조치기한

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

ApacheCVE 1공식 발표 확인

일정 해석 안내

Microsoft 일정은 미국 태평양시간 공식 발표 시각을 한국시간으로 환산해 다음 날 달력에 표시합니다.

CISA KEV 날짜는 패치 발표일이 아니라 CISA가 지정한 조치 완료기한입니다.

예정 일정은 공급사 정책 변경이나 긴급 상황에 따라 변경될 수 있으므로 적용 전 공식 원문을 확인해야 합니다.

Critical·High 취약점은 공식 공급사 수정 버전과 공식 원문이 확인된 항목만 일정에 포함합니다.