| Out-of-bounds Write | |
| Integer Overflow or Wraparound | |
| Algorithmic Complexity | |
| Use of Uninitialized Resource | |
| Link Following | |
| Symlink Following | |
| Incorrect Authorization | |
| Link Following | |
| Link Following | |
| Link Following | |
| Link Following | |
| Link Following | |
| Incorrect Authorization | |
| Directory Traversal | |
| Link Following | |
| Improper Validation of Specified Quantity in Input | |
| Incorrect Type Conversion or Cast | |
| Link Following | |
| Link Following | |
| Out-of-bounds Write | |
| Improper Certificate Validation | |
| Allocation of Resources Without Limits or Throttling | |
| Link Following | |
| Allocation of Resources Without Limits or Throttling | |
| Authentication Bypass | |
| CRLF Injection | |
| Not Failing Securely ('Failing Open') | |
| Reliance on Untrusted Inputs in a Security Decision | |
| Out-of-bounds Write | |
| Incorrect Calculation of Buffer Size | |
| Link Following | |
| Improper Validation of Array Index | |
| OS Command Injection | |
| Link Following | |
| Out-of-bounds Read | |
| Time-of-check Time-of-use (TOCTOU) | |
| Off-by-one Error | |
| Authentication Bypass | |
| Out-of-bounds Read | |
| Improper Handling of Length Parameter Inconsistency | |
| CVE-2025-10158 | |
| Directory Traversal | |
| Race Condition | |
| Use of Uninitialized Resource | |
| Out-of-bounds Write | |
| Detection of Error Condition Without Action | |
| Directory Traversal | |
| Improper Input Validation | |
| Improper Validation of Certificate with Host Mismatch | |
| CVE-2018-5764 | |
| Missing Authorization | |
| CVE-2017-17434 | |
| Out-of-bounds Read | |
| Numeric Errors | |
| Numeric Errors | |
| Numeric Errors | |
| Numeric Errors | |
| Link Following | |
| Improper Input Validation | |
| Out-of-Bounds | |
| Out-of-Bounds | |
| Access Restriction Bypass | |
| Configuration | |
| CVE-2007-4091 | |
| CVE-2006-2083 | |
| CVE-2004-0792 | |
| CVE-2004-0426 | |
| CVE-2004-2093 | |
| CVE-2003-0962 | |