| GHSA-gcjh-h69q-9w9g | |
| CVE-2026-46600 | |
| GHSA-gg3m-vvp2-p2c5 | |
| Authentication Bypass | |
| GHSA-pxq6-2prw-chj9 | |
| GHSA-x744-4wpc-v9h2 | |
| Symlink Following | |
| Off-by-one Error | |
| GHSA-rg2x-37c3-w2rh | |
| GHSA-vp62-88p7-qqf5 | |
| Cross-site Scripting (XSS) | |
| GHSA-hrxh-6v49-42gf | |
| CVE-2026-42505 | |
| GHSA-ff52-ph69-cf7x | |
| GHSA-rgh6-rfwx-v388 | |
| GHSA-rm3j-f69w-wqmq | |
| GHSA-q4h4-gmj2-qvw2 | |
| Improper Input Validation | |
| GHSA-xhf5-7wjv-pqxp | |
| CVE-2026-50195 | |
| Uncontrolled Memory Allocation | |
| CVE-2026-47262 | |
| GHSA-33vj-92qq-66hc | |
| GHSA-5wrp-cwcj-q835 | |
| Symlink Following | |
| GHSA-cvxm-645q-p574 | |
| GHSA-jpcc-p29g-p8mq | |
| Improper Input Validation | |
| GHSA-w2q5-6q6x-x959 | |
| CVE-2026-39821 | |
| CVE-2026-42507 | |
| CVE-2026-27145 | |
| GHSA-h3gm-q7m7-mp28 | |
| GHSA-4279-q6mj-392r | |
| Incorrect Type Conversion or Cast | |
| Integer Overflow or Wraparound | |
| Improper Privilege Management | |
| GHSA-fqw6-gf59-qr4w | |
| GHSA-pmwq-pjrm-6p5r | |
| NULL Pointer Dereference | |
| Improper Encoding or Escaping of Output | |
| GHSA-2283-wf8c-rw8r | |
| GHSA-497x-jcxf-m478 | |
| Double Free | |
| GHSA-qf3q-3h68-mmh2 | |
| GHSA-3v2c-x6q9-f697 | |
| Out-of-bounds Write | |
| GHSA-5m4p-2gjx-p2g8 | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| CVE-2026-42501 | |
| GHSA-qc64-m6c2-v4x7 | |
| Cross-site Scripting (XSS) | |
| Link Following | |
| GHSA-8g2r-hhvj-mv99 | |
| Untrusted Search Path | |
| GHSA-hfvc-g4fc-pqhx | |
| GHSA-78h2-9frx-2jm8 | |
| Uncaught Exception | |
| Improper Validation of Array Index | |
| Integer Underflow | |
| GHSA-jhf3-xxhw-2wpp | |
| GHSA-gm2x-2g9h-ccm8 | |
| Directory Traversal | |
| GHSA-4c29-8rgm-jvjj | |
| GHSA-4vrq-3vrq-g6gg | |
| Directory Traversal | |
| Cross-site Request Forgery (CSRF) | |
| GHSA-q382-vc8q-7jhj | |
| GHSA-89xv-2j6f-qhc8 | |
| GHSA-p77j-4mvh-x3m3 | |
| Improper Authorization | |
| GHSA-rv83-g57w-fr8j | |
| Directory Traversal | |
| GHSA-j4j7-vw47-rhfq | |
| GHSA-j3gx-2473-5fp8 | |
| Direct Request ('Forced Browsing') | |
| Cross-site Scripting (XSS) | |
| CVE-2026-27141 | |
| GHSA-8fj7-8h3w-xwfm | |
| Untrusted Search Path | |
| GHSA-9h8m-3fm2-qjrq | |
| CVE-2026-1229 | |
| GHSA-q9hv-hpm4-hj6x | |
| GHSA-9f3f-wv7r-qc8r | |
| CVE-2026-26014 | |
| Improper Validation of Integrity Check Value | |
| GHSA-37cx-329c-33x3 | |
| GHSA-gm9r-q53w-2gh4 | |
| Out-of-bounds Write | |
| CVE-2025-61731 | |
| GHSA-cm6p-qc7v-m3jw | |
| GHSA-xvqr-69v8-f3gv | |
| CVE-2025-61730 | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-gr56-3gp6-6gmj | |
| CVE-2025-58181 | |
| CVE-2025-47914 | |
| GHSA-j5w8-q4qc-rx2x | |
| GHSA-f6x5-jh6r-wrfv | |
| Incorrect Execution-Assigned Permissions | |
| Memory Leak | |