| Improper Authorization | |
| Remote Code Execution (RCE) | |
| Information Exposure | |
| Improper Authorization | |
| Insufficient Validation | |
| Improper Authorization | |
| SQL Injection | |
| Cross-site Scripting (XSS) | |
| Improper Authorization | |
| Cross-Site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| SQL Injection | |
| Arbitrary Code Execution | |
| Directory Traversal | |
| Cross-site Scripting (XSS) | |
| Deserialization of Untrusted Data | |
| Security Bypass | |
| Security Bypass | |
| Privilege Escalation | |
| Authorization Bypass | |
| Command Injection | |
| Arbitrary Code Execution | |
| Cross-site Scripting (XSS) | |
| Command Injection | |
| Improper Authorization | |
| Command Injection | |
| Arbitrary Code Execution | |
| Command Injection | |
| Arbitrary Code Execution | >=2.3.5, <2.3.5-p1<2.3.4-p2 |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Signature Validation Bypass | |
| Arbitrary Code Execution | |
| Information Exposure | |
| Arbitrary Code Execution | |
| Remote Code Execution (RCE) | |
| Remote Code Execution (RCE) | |
| Cross-site Scripting (XSS) | |
| Remote Code Execution (RCE) | |
| Race Condition | |
| Remote Code Execution (RCE) | |
| Cross-site Scripting (XSS) | |
| Remote Code Execution (RCE) | <1.9.4.3>=1.10.0, <1.14.4.3 |
| Information Exposure | |
| Session Fixation | |
| Server-side Request Forgery (SSRF) | |
| Remote Code Execution (RCE) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| SQL Injection | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Request Forgery (CSRF) | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Information Disclousure | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Remote Code Execution (RCE) | |
| SQL Injection | |
| Privilege Escalation | |
| Information Exposure | |
| Authentication Bypass | |
| Remote Code Execution (RCE) | |
| Remote Code Execution (RCE) | |
| Privilege Escalation | |
| Remote Code Execution (RCE) | |
| Remote Code Execution (RCE) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Information Exposure | |
| Cross-Site Request Forgery (CSRF) | |
| Cross-Site Request Forgery (CSRF) | |
| Cross-Site Request Forgery (CSRF) | |
| Information Exposure | |