| HTTP Request Smuggling | |
| Uncontrolled Recursion | |
| Buffer Over-read | |
| NULL Pointer Dereference | |
| Improper Validation of Specified Index, Position, or Offset in Input | |
| Buffer Overflow | |
| Out-of-Bounds | |
| Information Exposure | |
| Out-of-Bounds | |
| Incorrect Calculation of Buffer Size | |
| Improper Input Validation | |
| Use of Potentially Dangerous Function | |
| Information Exposure Through Caching | |
| Improper Input Validation | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Memory Leak | |
| Integer Overflow or Wraparound | |
| Allocation of Resources Without Limits or Throttling | |
| Reachable Assertion | |
| Buffer Over-read | |
| HTTP Request Smuggling | |
| CVE-2019-12528 | |
| HTTP Request Smuggling | |
| Exposure of Resource to Wrong Sphere | |
| Improper Locking | |
| Out-of-bounds Write | |
| HTTP Request Smuggling | |
| Out-of-bounds Write | |
| Integer Overflow or Wraparound | |
| Out-of-bounds Write | |
| Out-of-bounds Write | |
| Cross-site Scripting (XSS) | |
| Out-of-bounds Write | |
| Integer Overflow or Wraparound | |
| Out-of-bounds Write | |
| Missing Release of Resource after Effective Lifetime | |
| CVE-2018-1000024 | |
| NULL Pointer Dereference | |
| Heap-based Buffer Overflow | |
| Out-of-Bounds | |
| Out-of-Bounds | |
| Out-of-Bounds | |
| Improper Input Validation | |
| Out-of-Bounds | |
| Insufficient Verification of Data Authenticity | |
| Out-of-Bounds | |
| Improper Input Validation | |
| Improper Input Validation | |
| Out-of-Bounds | |
| Improper Input Validation | |
| Out-of-Bounds | |
| Improper Input Validation | |