| Directory Traversal | |
| Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) | |
| Improper Certificate Validation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Use After Free | |
| Use of a Broken or Risky Cryptographic Algorithm | |
| CVE-2019-15606 | |
| Authentication Bypass | |
| CVE-2024-27982 | |
| HTTP Request Smuggling | |
| CVE-2024-27983 | |
| Improper Input Validation | |
| Information Exposure | |
| Directory Traversal | |
| OS Command Injection | |
| HTTP Request Smuggling | |
| Use After Free | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Resource Exhaustion | |
| Improper Certificate Validation | |
| CVE-2021-22884 | |
| Uncontrolled Search Path Element | |
| Integer Underflow | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Improper Certificate Validation | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Improper Certificate Validation | |
| Improper Enforcement of Message or Data Structure | |
| Resource Exhaustion | |
| Information Exposure | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| HTTP Request Smuggling | |
| Use of a Broken or Risky Cryptographic Algorithm | |
| Improper Input Validation | |
| Insufficient Verification of Data Authenticity | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Request Smuggling | |
| CVE-2017-15896 | |
| CVE-2023-39333 | |
| HTTP Request Smuggling | |
| Improper Input Validation | |
| Improper Certificate Validation | |
| Improper Certificate Validation | |
| HTTP Request Smuggling | |