| CVE-2026-89425 | |
| GHSA-p6pp-m3f8-5c89 | |
| CVE-2026-89407 | |
| GHSA-7hhh-6rmp-j9qf | |
| CVE-2026-91777 | |
| GHSA-wv8q-qhhj-9h54 | |
| GHSA-cxp5-3px4-pw24 | |
| CVE-2026-91776 | |
| GHSA-q4xh-88c3-wmh7 | |
| GHSA-gx83-3vf8-gh7j | |
| CVE-2026-68497 | |
| CVE-2026-83557 | |
| GHSA-wjgm-6hv5-3cvf | |
| CVE-2026-19032 | |
| GHSA-c2rv-hwqm-wjpg | |
| Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') | |
| GHSA-qv9r-c865-cp47 | |
| Improper Encoding or Escaping of Output | |
| GHSA-7p3p-8qv8-m2vh | |
| Improper Input Validation | |
| GHSA-f4v5-65jj-pcr2 | |
| GHSA-w7x5-g22v-xqhr | |
| GHSA-2fvj-hgj9-j2gr | |
| Improper Handling of Alternate Encoding | |
| Information Exposure | |
| Use of Non-Canonical URL Paths for Authorization Decisions | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-5jmj-h7xm-6q6v | |