| Information Exposure | |
| CVE-2026-2473 | |
| CVE-2026-2472 | |
| CVE-2026-26007 | |
| Incorrect Use of Privileged APIs | |
| GHSA-27jp-wm6q-gp25 | |
| Information Exposure | |
| CVE-2026-0994 | |
| Directory Traversal | |
| Directory Traversal | |
| Directory Traversal | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Handling of Windows Device Names | |
| Link Following | |
| Deserialization of Untrusted Data | |
| Logging of Excessive Data | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Directory Traversal | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |
| Information Exposure Through Log Files | |
| Information Exposure | |
| Improper Certificate Validation | |
| Asymmetric Resource Consumption (Amplification) | |
| Incomplete Blacklist | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| Cross-site Request Forgery (CSRF) | |
| Link Following | |
| Information Exposure | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| Allocation of Resources Without Limits or Throttling | |
| Insecure Default Initialization of Resource | |
| Improper Handling of Windows Device Names | |
| Arbitrary Code Injection | |
| Algorithmic Complexity | |
| HTTP Request Smuggling | |
| Directory Traversal | |
| Resource Exhaustion | |
| Uncontrolled Recursion | |
| CVE-2024-34069 | |