| Allocation of Resources Without Limits or Throttling | |
| Improper Handling of Length Parameter Inconsistency | |
| Allocation of Resources Without Limits or Throttling | |
| Access of Resource Using Incompatible Type ('Type Confusion') | |
| Regular Expression Denial of Service (ReDoS) | |
| Directory Traversal | |
| Directory Traversal | |
| Directory Traversal | |
| Use of Incorrectly-Resolved Name or Reference | |
| Directory Traversal | |
| Use After Free | |
| Untrusted Search Path | |
| Improper Handling of Inconsistent Special Elements | |
| Server-side Request Forgery (SSRF) | |
| Untrusted Search Path | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Improper Validation of Specified Type of Input | |
| Unquoted Search Path or Element | |
| Asymmetric Resource Consumption (Zip Bomb) | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14)[3.12.2,3.12.7) |
| Improper Link Resolution Before File Access ('Link Following') | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14)[3.12.2,3.12.7) |
| Buffer Over-read | |
| Improper Authentication | |
| Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') | |
| Uncontrolled Resource Consumption ('Resource Exhaustion') | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Regular Expression Denial of Service (ReDoS) | |
| Race Condition | [,3.10.14)[3.12.2,3.12.7) |
| Expected Behavior Violation | |
| Improper Access Control | |
| Denial of Service (DoS) | |
| Timing Attack | |
| XML External Entity (XXE) Injection | |
| Use After Free | |
| Access Restriction Bypass | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Improper Validation of Syntactic Correctness of Input | |
| Improper Input Validation | |
| Denial of Service (DoS) | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Privilege Escalation | |
| Arbitrary File Write via Archive Extraction (Zip Slip) | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Denial of Service (DoS) | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Directory Traversal | [3.7.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
| Denial of Service (DoS) | |
| Improper Input Validation | |
| Race Condition | |
| Resource Management Errors | |
| HTTP Request Smuggling | |
| Insufficiently Protected Credentials | |
| Divide By Zero | |
| CVE-2015-5652 | |
| Cryptographic Issues | |
| Improper Input Validation | |
| Improper Input Validation | |