| CVE-2026-6470 | |
| Access of Resource Using Incompatible Type ('Type Confusion') | |
| Heap-based Buffer Overflow | |
| Inclusion of Functionality from Untrusted Control Sphere | |
| Inclusion of Functionality from Untrusted Control Sphere | |
| Integer Overflow or Wraparound | |
| Access of Resource Using Incompatible Type ('Type Confusion') | |
| Access of Resource Using Incompatible Type ('Type Confusion') | |
| Arbitrary Code Injection | |
| Heap-based Buffer Overflow | |
| Access of Resource Using Incompatible Type ('Type Confusion') | |
| CVE-2026-6469 | |
| Heap-based Buffer Overflow | |
| CVE-2026-14673 | |
| CVE-2026-18024 | |
| CVE-2026-16241 | |
| Buffer Access with Incorrect Length Value | |
| SQL Injection | |
| Stack-based Buffer Overflow | |
| CVE-2026-14678 | |
| Out-of-bounds Write | |
| CVE-2026-14666 | |
| CVE-2026-14663 | |
| Buffer Overflow | |
| Use of Externally-Controlled Format String | |
| Missing Authorization | |
| Unchecked Input for Loop Condition | |
| Buffer Overflow | |
| Integer Overflow or Wraparound | |
| Covert Timing Channel | |
| Link Following | |
| Improper Validation of Specified Index, Position, or Offset in Input | |
| Improper Validation of Specified Type of Input | |
| Buffer Overflow | |
| Improper Validation of Specified Type of Input | |
| Integer Overflow or Wraparound | |
| Missing Authorization | |
| Exposure of Sensitive Information Through Metadata | |
| CRLF Injection | |
| Inclusion of Functionality from Untrusted Control Sphere | |
| Buffer Over-read | |
| Improper Neutralization | |
| Incorrect Privilege Assignment | |
| Use of Less Trusted Source | |
| External Control of System or Configuration Setting | |
| Improper Preservation of Consistency Between Independent Representations of Shared State | |
| Time-of-check Time-of-use (TOCTOU) | |
| Missing Authorization | |
| Privilege Dropping / Lowering Errors | |
| Information Exposure | |
| Function Call With Incorrect Argument Type | |
| Integer Overflow or Wraparound | |
| Resource Exhaustion | |
| Insufficient Granularity of Access Control | |
| Improper Input Validation | |
| SQL Injection | |
| Improper Input Validation | |