| Improper Input Validation | |
| Improper Privilege Management | |
| Insufficient Verification of Data Authenticity | |
| Insufficient Granularity of Access Control | |
| CVE-2022-3854 | |
| CVE-2022-3650 | |
| CVE-2022-0670 | |
| Improper Authentication | |
| Improper Input Validation | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Improper Authentication | |
| Insufficiently Protected Credentials | |
| Insufficiently Protected Credentials | |
| Cleartext Storage of Sensitive Information | |
| Authentication Bypass | |
| HTTP Response Splitting | |
| NULL Pointer Dereference | |
| Cross-site Scripting (XSS) | |
| Reusing a Nonce | |
| Resource Exhaustion | |
| Directory Traversal | |
| Improper Handling of Exceptional Conditions | |
| Information Exposure | |
| Incorrect Permission Assignment for Critical Resource | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Input Validation | |
| Improper Input Validation | |
| Use of Externally-Controlled Format String | |
| Information Exposure | |
| Improper Input Validation | |
| CVE-2015-5245 | |