| Missing Authorization | |
| Authorization Bypass Through User-Controlled Key | |
| Origin Validation Error | |
| GHSA-4xgf-cpjx-pc3j | |
| Resource Exhaustion | |
| Improper Certificate Validation | |
| Interpretation Conflict | |
| Improper Verification of Cryptographic Signature | |
| Improper Input Validation | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Resource Exhaustion | |
| Improper Cleanup on Thrown Exception | |
| Improper Validation of Specified Quantity in Input | |
| Improper Authentication | |
| Resource Exhaustion | |
| Insufficient Verification of Data Authenticity | |
| Directory Traversal | |
| Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-26007 | |
| Use of Incorrectly-Resolved Name or Reference | |
| CVE-2026-48818 | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Certificate Validation | |
| Link Following | |
| HTTP Request Smuggling | |
| Inefficient Regular Expression Complexity | |
| Resource Exhaustion | |
| Out-of-Bounds | |