| Unchecked Input for Loop Condition | |
| CVE-2026-42504 | |
| Cross-site Scripting (XSS) | |
| Excessive Platform Resource Consumption within a Loop | |
| Improper Restriction of Rendered UI Layers or Frames | |
| Improper Validation of Unsafe Equivalence in Input | |
| Improper Output Neutralization for Logs | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Unchecked Input for Loop Condition | |
| CVE-2026-33811 | |
| Cross-site Scripting (XSS) | |
| Improper Validation of Unsafe Equivalence in Input | |
| External Control of Assumed-Immutable Web Parameter | |
| Unchecked Input for Loop Condition | |
| Creation of Immutable Text Using String Concatenation | |
| Compiler Optimization Removal or Modification of Security-critical Code | |
| Multiple Locks of a Critical Resource | |
| Allocation of Resources Without Limits or Throttling | |
| Time-of-check Time-of-use (TOCTOU) | |
| Excessive Platform Resource Consumption within a Loop | |
| Expected Behavior Violation | |
| Cross-site Scripting (XSS) | |
| Allocation of Resources Without Limits or Throttling | |
| Incorrect Behavior Order: Authorization Before Parsing and Canonicalization | |
| Directory Traversal | |
| Cross-site Scripting (XSS) | |
| Improper Validation of Syntactic Correctness of Input | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2025-68121 | |
| Allocation of Resources Without Limits or Throttling | |
| Missing Required Cryptographic Step | |
| Improper Certificate Validation | |
| Excessive Platform Resource Consumption within a Loop | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Output Neutralization for Logs | |
| CVE-2025-58186 | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Reachable Assertion | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Validation of Syntactic Correctness of Input | |
| Creation of Immutable Text Using String Concatenation | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2025-4673 | |
| Improper Certificate Validation | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |