| GHSA-x2wq-9x2f-fhj7 | |
| GHSA-8mc5-53m5-3qj2 | |
| GHSA-x4m4-345f-5h5g | |
| CVE-2026-22751 | |
| CVE-2026-29129 | |
| GHSA-9m3c-qcxr-9x87 | |
| GHSA-95jq-rwvf-vjx4 | |
| Information Exposure Through Log Files | |
| Open Redirect | |
| Improper Input Validation | |
| CVE-2026-29145 | |
| GHSA-69cc-cv78-qc8g | |
| GHSA-rv64-5gf8-9qq8 | |
| CVE-2026-34500 | |
| GHSA-24j9-x2wg-9qv6 | |
| Improper Encoding or Escaping of Output | |
| GHSA-vxf7-qj7q-83fh | |
| CVE-2026-22746 | |
| Uncontrolled Memory Allocation | |
| GHSA-cx4m-2p55-rw7j | |
| GHSA-4v8g-86x5-3vrc | |
| XML External Entity (XXE) Injection | |
| GHSA-659w-93r5-9j6m | |
| Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') | |
| CVE-2026-22748 | |
| GHSA-wwpq-f5c3-7hvx | |
| GHSA-cvc6-q2cp-2xhw | |
| GHSA-rgrr-p7gp-5xj7 | |
| CVE-2026-22740 | |
| Improper Input Validation | |
| GHSA-cm33-6792-r9fm | |
| GHSA-mj4r-2hfc-f8p6 | |
| GHSA-45q3-82m4-75jr | |
| CRLF Injection | |
| GHSA-5843-p793-ghmm | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| HTTP Response Splitting | |
| Missing Release of Resource after Effective Lifetime | |
| CVE-2026-40973 | |
| GHSA-wg35-8jpf-2xv3 | |
| GHSA-rwm7-x88c-3g2p | |
| CVE-2026-22745 | |
| CVE-2026-22741 | |
| GHSA-jfg9-48mv-9qgx | |
| Resource Exhaustion | |
| GHSA-f6hv-jmp6-3vwv | |
| GHSA-6p4f-wcwh-5vvm | |
| Improper Neutralization | |
| GHSA-m4cv-j2px-7723 | |
| GHSA-r4q5-vmmm-2653 | |
| GHSA-v8h7-rr48-vmmv | |
| GHSA-xxqh-mfjm-7mv9 | |
| HTTP Request Smuggling | |
| GHSA-57rv-r2g8-2cj3 | |
| Integer Overflow or Wraparound | |
| GHSA-38f8-5428-x5cv | |
| CRLF Injection | |
| GHSA-9342-92gg-6v29 | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-98qh-xjc8-98pq | |
| GHSA-h468-7pvh-8vr8 | |
| CVE-2026-29146 | |
| Race Condition | |
| GHSA-5qcv-4rpc-jp93 | |
| GHSA-6hcq-hmm3-jj3c | |
| CVE-2026-4923 | |
| CVE-2026-22735 | |
| GHSA-mf92-479x-3373 | |
| GHSA-4773-3jfm-qmx3 | |
| CVE-2026-22732 | |
| GHSA-27v5-c462-wpq7 | |
| GHSA-j3q9-mxjg-w52f | |
| CVE-2026-4926 | |
| CVE-2026-22737 | |
| GHSA-w9fj-cfpg-grvv | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Request Smuggling | |
| GHSA-pwqr-wmgm-9rr8 | |
| Information Exposure Through Log Files | |
| GHSA-crhr-qqj8-rpxc | |
| GHSA-72hv-8253-57qq | |
| CVE-2026-2391 | |
| GHSA-fpj8-gq4v-p354 | |
| GHSA-w7fw-mjwx-w883 | |
| CVE-2026-24733 | |
| Improper Certificate Validation | |
| GHSA-qq5r-98hh-rxc9 | |
| GHSA-84h7-rjj3-6jx4 | |
| CRLF Injection | |
| CVE-2025-15284 | |
| GHSA-6rw7-vpxm-498p | |
| GHSA-pj86-cfqh-vqx6 | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-mh29-5h37-fv8m | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improper Resource Shutdown or Release | |
| CVE-2025-11226 | |
| CVE-2025-41254 | |
| CVE-2025-8916 | |
| CRLF Injection | |
| Improper Handling of Insufficient Permissions or Privileges | |
| CVE-2025-41248 | |
| CVE-2025-41249 | |
| HTTP Request Smuggling | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| CVE-2025-41242 | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2025-7339 | |
| CVE-2025-22227 | |
| Uncontrolled Recursion | |
| Authentication Bypass | |
| Authentication Bypass | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2025-41234 | |
| CVE-2025-27817 | |
| CVE-2025-22233 | |
| Improper Handling of Case Sensitivity | |
| XML External Entity (XXE) Injection | |
| Improper Encoding or Escaping of Output | |
| Incomplete Cleanup | |
| CVE-2024-38809 | |
| CVE-2024-47764 | |
| Out-of-bounds Write | |
| CVE-2025-22228 | |
| CVE-2020-36843 | |
| Deserialization of Untrusted Data | |
| CVE-2025-24970 | |
| Time-of-check Time-of-use (TOCTOU) | |
| Improper Authentication | |
| Time-of-check Time-of-use (TOCTOU) | |
| CVE-2024-12798 | |
| CVE-2024-12801 | |
| CVE-2024-38827 | |
| Improper Privilege Management | |
| Inefficient Regular Expression Complexity | |
| CVE-2024-38816 | |
| CVE-2024-38821 | |
| CVE-2024-38820 | |
| Cross-site Scripting (XSS) | |
| Out-of-bounds Write | |
| Uncontrolled Recursion | |
| CVE-2023-52428 | |
| Inefficient Regular Expression Complexity | |
| GHSA-wm9w-rjj3-j356 | |
| Resource Exhaustion | |
| Incorrect Conversion between Numeric Types | |
| Incorrect Default Permissions | |
| Inclusion of Functionality from Untrusted Control Sphere | |