Directory Traversal | |
Directory Traversal | |
Use of Incorrectly-Resolved Name or Reference | |
Directory Traversal | |
Use After Free | |
Untrusted Search Path | |
Improper Handling of Inconsistent Special Elements | |
Server-side Request Forgery (SSRF) | |
Untrusted Search Path | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Improper Validation of Specified Type of Input | |
Unquoted Search Path or Element | |
Asymmetric Resource Consumption (Zip Bomb) | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14)[3.12.2,3.12.7) |
Improper Link Resolution Before File Access ('Link Following') | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14)[3.12.2,3.12.7) |
Buffer Over-read | |
Improper Authentication | |
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') | |
Uncontrolled Resource Consumption ('Resource Exhaustion') | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Regular Expression Denial of Service (ReDoS) | |
Race Condition | [,3.10.14)[3.12.2,3.12.7) |
Expected Behavior Violation | |
Improper Access Control | |
Denial of Service (DoS) | |
Timing Attack | |
XML External Entity (XXE) Injection | |
Use After Free | |
Access Restriction Bypass | [3.8.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Improper Validation of Syntactic Correctness of Input | |
Improper Input Validation | |
Denial of Service (DoS) | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Privilege Escalation | |
Arbitrary File Write via Archive Extraction (Zip Slip) | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Denial of Service (DoS) | [3.7.12,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Directory Traversal | |
Open Redirect | [,3.8.19)[3.9.7,3.9.19)[3.10.0,3.10.14) |
Denial of Service (DoS) | |
Information Exposure | |
Access Restriction Bypass | |
Denial of Service (DoS) | |
Race Condition | |
Improper Input Validation | |
Race Condition | |
Resource Management Errors | |
Out-of-Bounds | |
Denial of Service (DoS) | |
Buffer Overflow | |
Out-of-bounds Write | |
Denial of Service (DoS) | |
HTTP Request Smuggling | |
Insufficiently Protected Credentials | |
Denial of Service (DoS) | |
Integer Overflow or Wraparound | |
Denial of Service (DoS) | |
Divide By Zero | |
Arbitrary Code Execution | |
Symlink Attack | |
CVE-2015-5652 | |
Information Exposure | |
Integer Overflow or Wraparound | |
Cryptographic Issues | |
Improper Input Validation | |
Denial of Service (DoS) | |
Improper Input Validation | |
Denial of Service (DoS) | |