| Out-of-bounds Read | |
| Heap-based Buffer Overflow | |
| Uncontrolled Memory Allocation | |
| Exposure of Resource to Wrong Sphere | |
| Heap-based Buffer Overflow | |
| Cross-site Scripting (XSS) | |
| Use After Free | |
| Buffer Over-read | |
| Improper Privilege Management | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Heap-based Buffer Overflow | |
| Buffer Underflow | |
| Use After Free | |
| Heap-based Buffer Overflow | |
| Allocation of Resources Without Limits or Throttling | |
| NULL Pointer Dereference | |
| Information Exposure | |
| Out-of-bounds Read | |
| Double Free | |
| Improper Privilege Management | |
| NULL Pointer Dereference | |
| CVE-2026-33523 | |
| Buffer Over-read | |
| Out-of-bounds Read | |
| Information Exposure | |
| Server-Side Request Forgery (SSRF) | |
| Integer Overflow or Wraparound | |
| CVE-2025-66200 | |
| Improper Neutralization | |
| Improper Access Control | |
| Improper Input Validation | |
| Improper Neutralization | |
| Memory Leak | |
| Server-Side Request Forgery (SSRF) | |
| Improper Authentication | |
| Reachable Assertion | |
| Incorrect Check of Function Return Value | |
| Server-Side Request Forgery (SSRF) | |