| Improper Encoding or Escaping of Output | |
| CVE-2026-22741 | |
| CVE-2026-22745 | |
| Incomplete Blacklist | |
| Improper Input Validation | |
| CVE-2026-52760 | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Integer Overflow or Wraparound | |
| LDAP Injection | |
| Cross-site Scripting (XSS) | |
| Integer Overflow or Wraparound | |
| Improper Handling of Case Sensitivity | |
| CVE-2026-53917 | |
| Incomplete Blacklist | |
| Improper Input Validation | |
| Exposure of Sensitive Information Through Metadata | |
| CVE-2026-22737 | |
| CVE-2026-43827 | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Improper Input Validation | |
| CVE-2026-49434 | |
| Incorrect Default Permissions | |
| GHSA-r7wm-3cxj-wff9 | |
| CVE-2026-54475 | |
| GHSA-72hv-8253-57qq | |
| Information Exposure | |
| Improper Certificate Validation | |
| CVE-2026-22735 | |
| CVE-2026-53916 | |
| Improper Authorization | |
| Cross-site Scripting (XSS) | |
| Directory Traversal | |
| CVE-2026-39304 | |
| CVE-2026-50734 | |
| Improper Output Neutralization for Logs | |
| Authentication Bypass | |
| CVE-2026-49432 | |
| Improper Input Validation | |
| Server-Side Request Forgery (SSRF) | |
| Improper Validation of Certificate with Host Mismatch | |
| Improper Input Validation | |
| CVE-2026-49877 | |