| CVE-2025-24293 | <2:6.0.3.7+dfsg-2+deb11u4 |
| Improper Neutralization | <2:6.0.3.7+dfsg-2+deb11u4 |
| Cross-site Scripting (XSS) | <2:6.0.3.7+dfsg-2+deb11u3 |
| Inefficient Regular Expression Complexity | <2:6.0.3.7+dfsg-2+deb11u3 |
| Inefficient Regular Expression Complexity | <2:6.0.3.7+dfsg-2+deb11u3 |
| CVE-2024-47888 | <2:6.0.3.7+dfsg-2+deb11u3 |
| Allocation of Resources Without Limits or Throttling | <2:6.0.3.7+dfsg-2+deb11u3 |
| CVE-2023-38037 | <2:6.0.3.7+dfsg-2+deb11u3 |
| CVE-2023-28362 | <2:6.0.3.7+dfsg-2+deb11u3 |
| CVE-2023-28120 | <2:6.0.3.7+dfsg-2+deb11u2 |
| CVE-2023-23913 | <2:6.0.3.7+dfsg-2+deb11u2 |
| SQL Injection | <2:6.0.3.7+dfsg-2+deb11u1 |
| Inefficient Regular Expression Complexity | <2:6.0.3.7+dfsg-2+deb11u1 |
| Inefficient Regular Expression Complexity | <2:6.0.3.7+dfsg-2+deb11u1 |
| CVE-2022-44566 | <2:6.0.3.7+dfsg-2+deb11u3 |
| Inefficient Regular Expression Complexity | <2:6.0.3.7+dfsg-2+deb11u1 |
| Improper Enforcement of Message or Data Structure | |
| Deserialization of Untrusted Data | |
| Cross-site Scripting (XSS) | <2:6.0.3.7+dfsg-2+deb11u1 |
| Cross-site Scripting (XSS) | <2:6.0.3.7+dfsg-2+deb11u1 |
| Arbitrary Code Injection | <2:6.0.3.7+dfsg-2+deb11u1 |
| Improper Cross-boundary Removal of Sensitive Data | <2:6.0.3.7+dfsg-2+deb11u1 |
| Open Redirect | <2:6.0.3.7+dfsg-2+deb11u1 |
| Open Redirect | <2:6.0.3.7+dfsg-2+deb11u1 |
| CVE-2021-22902 | |
| Information Exposure | |
| CVE-2021-22904 | |
| Open Redirect | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Injection | |
| Deserialization of Untrusted Data | |
| Cross-site Request Forgery (CSRF) | |
| Unrestricted Upload of File with Dangerous Type | |
| Cross-site Request Forgery (CSRF) | |
| Deserialization of Untrusted Data | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2019-5418 | |
| Deserialization of Untrusted Data | |
| CVE-2018-16477 | |
| Missing Encryption of Sensitive Data | |
| SQL Injection | |
| SQL Injection | |
| SQL Injection | |
| SQL Injection | |
| Improper Access Control | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Directory Traversal | |
| Improper Input Validation | |
| Resource Management Errors | |
| Security Features | |
| Resource Management Errors | |
| Directory Traversal | |
| Improper Access Control | |
| CVE-2015-3227 | |
| Cross-site Scripting (XSS) | |
| Directory Traversal | |
| Directory Traversal | |
| Access Restriction Bypass | |
| SQL Injection | |
| SQL Injection | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| CVE-2013-0277 | |
| Access Restriction Bypass | |
| CVE-2013-0333 | |
| Access Restriction Bypass | |
| Improper Input Validation | |
| SQL Injection | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Injection | |
| SQL Injection | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Improper Authentication | |
| Cross-site Request Forgery (CSRF) | |
| SQL Injection | |
| Race Condition | |
| Information Exposure | |
| CVE-2007-5380 | |
| Cross-site Scripting (XSS) | |
| CVE-2006-4112 | |
| Arbitrary Code Injection | |