| CVE-2026-63142 | |
| CVE-2026-63259 | |
| CVE-2026-56147 | |
| CVE-2026-63261 | |
| CVE-2026-63143 | |
| CVE-2026-63145 | |
| CVE-2026-56146 | |
| CVE-2026-42397 | |
| CVE-2026-63260 | |
| CVE-2026-63262 | |
| CVE-2026-63141 | |
| CVE-2026-63139 | |
| CVE-2026-49092 | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-13676 | |
| Use of Less Trusted Source | |
| Algorithmic Complexity | |
| Cross-site Scripting (XSS) | |
| Race Condition | |
| CVE-2026-6734 | |
| CVE-2026-11525 | |
| CVE-2026-12151 | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-9697 | |
| Allocation of Resources Without Limits or Throttling | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Algorithmic Complexity | |
| CVE-2026-6733 | |
| Arbitrary Code Injection | |
| CVE-2026-12590 | |
| CVE-2026-9678 | |
| Uncaught Exception | |
| Incorrect Type Conversion or Cast | |
| CVE-2026-9679 | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| CVE-2026-56151 | |
| GHSA-p6gq-j5cr-w38f | |
| Overly Permissive Cross-domain Whitelist | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Information Exposure | |
| Uncaught Exception | |
| Protection Mechanism Failure | |
| Uncontrolled Recursion | |
| Resource Exhaustion | |
| Interpretation Conflict | |
| Cross-site Scripting (XSS) | |
| Cleartext Transmission of Sensitive Information | |
| HTTP Response Splitting | |
| HTTP Response Splitting | |
| GHSA-76mc-f452-cxcm | |
| Allocation of Resources Without Limits or Throttling | |
| Uncontrolled Recursion | |
| Server-Side Request Forgery (SSRF) | |
| Information Exposure | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Uncaught Exception | |
| Directory Traversal | |
| Inefficient Regular Expression Complexity | |
| Improper Encoding or Escaping of Output | |
| Resource Exhaustion | |
| Directory Traversal | |
| Cross-site Scripting (XSS) | |
| Uncontrolled Recursion | |
| Use of Less Trusted Source | |
| CVE-2026-12143 | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| GHSA-vxr8-fq34-vvx9 | |
| Inefficient Regular Expression Complexity | |
| GHSA-x4vx-rjvf-j5p4 | |
| Algorithmic Complexity | |
| Insufficient Verification of Data Authenticity | |
| GHSA-cmwh-pvxp-8882 | |
| GHSA-gvmj-g25r-r7wr | |
| Resource Exhaustion | |
| CVE-2026-45618 | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Resource Exhaustion | |
| Incorrect Regular Expression | |
| HTTP Request Smuggling | |
| Improper Authorization | |
| Uncaught Exception | |
| OS Command Injection | |
| XML Injection | |
| Out-of-bounds Write | |
| CVE-2026-6322 | |
| CVE-2026-2739 | |
| OS Command Injection | |
| CVE-2026-6321 | |
| OS Command Injection | |
| Uncontrolled Recursion | |
| XML Injection | |
| XML Injection | |
| Improper Handling of Exceptional Conditions | |
| CVE-2026-33464 | |
| CVE-2026-49095 | |
| CVE-2026-42400 | |
| Improper Handling of Unicode Encoding | |
| GHSA-vvjj-xcjg-gr5g | |
| Uncontrolled Recursion | |
| Interpretation Conflict | |
| Uncontrolled Recursion | |
| CVE-2026-4800 | |
| Arbitrary Code Injection | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Injection | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| GHSA-c7w3-x93f-qmm8 | |
| Improper Input Validation | |
| Arbitrary Code Injection | |
| CVE-2026-8723 | |
| CVE-2026-2950 | |
| Arbitrary Code Injection | |
| Improper Validation of Specified Quantity in Input | |
| Resource Exhaustion | |
| Use of Uninitialized Resource | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Deserialization of Untrusted Data | |
| Information Exposure Through Caching | |
| Information Exposure | |