| GHSA-642r-3gj9-2pj5 | |
| CVE-2026-68494 | |
| GHSA-gx83-3vf8-gh7j | |
| CVE-2026-83557 | |
| GHSA-q4xh-88c3-wmh7 | |
| GHSA-wjgm-6hv5-3cvf | |
| CVE-2026-19032 | |
| CVE-2026-68497 | |
| GHSA-qp49-qgx5-5m26 | |
| CVE-2026-13506 | |
| GHSA-9pwp-9qqc-pr26 | |
| CVE-2026-8763 | |
| CVE-2026-70430 | |
| GHSA-c232-r242-w9v9 | |
| GHSA-xvrr-fjq7-cfrw | |
| CVE-2026-70426 | |
| GHSA-v269-8r2r-vj93 | |
| GHSA-7fgq-gph8-29q5 | |
| GHSA-xv7v-hw45-9jgw | |
| CVE-2026-70428 | |
| CVE-2026-70427 | |
| CVE-2026-70429 | |
| Incorrect Authorization | |
| GHSA-rmj7-2vxq-3g9f | |
| GHSA-j3rv-43j4-c7qm | |
| GHSA-r7wm-3cxj-wff9 | |
| Server-Side Request Forgery (SSRF) | |
| GHSA-hgj6-7826-r7m5 | |
| Incorrect Authorization | |
| Incomplete Blacklist | |
| Incorrect Authorization | |
| GHSA-v3pr-hxpr-mfm8 | |
| Incomplete Blacklist | |
| GHSA-5gvw-p9qm-jgwh | |
| GHSA-5hh8-q8hv-fr38 | |
| Deserialization of Untrusted Data | |
| GHSA-rcqc-6cw3-h962 | |
| GHSA-mhm7-754m-9p8w | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-5jmj-h7xm-6q6v | |
| GHSA-3pjw-73gf-8qr5 | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-9fxm-vc8v-hj55 | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-7p3p-8qv8-m2vh | |
| Use of Non-Canonical URL Paths for Authorization Decisions | |
| GHSA-w7x5-g22v-xqhr | |
| Information Exposure | |
| Improper Handling of Alternate Encoding | |
| GHSA-f4v5-65jj-pcr2 | |
| GHSA-2fvj-hgj9-j2gr | |
| Improper Input Validation | |