| CVE-2026-46680 | |
| GHSA-fqw6-gf59-qr4w | |
| GHSA-m7cr-m3pv-hgrp | |
| Improper Encoding or Escaping of Output | |
| GHSA-crhj-59gh-8x96 | |
| Directory Traversal | |
| GHSA-389r-gv7p-r3rp | |
| Incorrect Behavior Order: Validate Before Canonicalize | |
| Insufficiently Protected Credentials | |
| GHSA-3xc5-wrhm-f963 | |
| Untrusted Search Path | |
| GHSA-hfvc-g4fc-pqhx | |
| GHSA-xmrv-pmrh-hhx2 | |
| Improper Validation of Array Index | |
| GHSA-gm2x-2g9h-ccm8 | |
| GHSA-jhf3-xxhw-2wpp | |
| Integer Underflow | |
| Uncaught Exception | |
| GHSA-4c29-8rgm-jvjj | |
| Directory Traversal | |
| GHSA-78h2-9frx-2jm8 | |
| Directory Traversal | |
| GHSA-4vrq-3vrq-g6gg | |
| GHSA-rv83-g57w-fr8j | |
| Directory Traversal | |
| Direct Request ('Forced Browsing') | |
| GHSA-j3gx-2473-5fp8 | |
| GHSA-9h8m-3fm2-qjrq | |
| Untrusted Search Path | |
| GHSA-hcg3-q754-cr77 | |
| GHSA-6v2p-p543-phr9 | |
| GHSA-v23v-6jw2-98fq | |
| CVE-2024-41110 | |
| GHSA-pwhc-rpq9-4c8w | |
| Incorrect Execution-Assigned Permissions | |
| GHSA-m6hq-p25p-ffr2 | |
| Memory Leak | |
| Race Condition | |
| CVE-2025-22872 | |
| CVE-2025-22871 | |
| Asymmetric Resource Consumption (Amplification) | |
| Integer Overflow or Wraparound | |
| CVE-2025-22870 | |
| CVE-2025-22869 | |
| CVE-2025-22868 | |
| CVE-2025-22866 | |
| CVE-2024-45341 | |
| CVE-2024-45336 | |
| Resource Exhaustion | |
| Arbitrary Argument Injection | |
| CVE-2024-45338 | |
| CVE-2024-45337 | |
| Improper Handling of Exceptional Conditions | |
| CVE-2024-34158 | |
| CVE-2024-34155 | |
| CVE-2024-34156 | |
| CVE-2024-24791 | |
| CVE-2024-24789 | |
| CVE-2024-24790 | |
| CVE-2024-32473 | |
| CVE-2023-45288 | |
| CVE-2024-24786 | |
| Incorrect Resource Transfer Between Spheres | |
| Race Condition | |
| Exposure of Resource to Wrong Sphere | |
| Directory Traversal | |
| Improper Check for Unusual or Exceptional Conditions | |
| Incorrect Authorization | |