| GHSA-mfg7-5gfp-c4w3 | |
| CVE-2026-59949 | |
| Resource Exhaustion | |
| CVE-2026-59900 | |
| CVE-2026-59899 | |
| Resource Exhaustion | |
| CVE-2026-59898 | |
| CVE-2026-59901 | |
| Improper Access Control | |
| CRLF Injection | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| GHSA-r7wm-3cxj-wff9 | |
| CVE-2026-56148 | |
| CVE-2026-56149 | |
| CVE-2025-14813 | |
| Server-Side Request Forgery (SSRF) | |
| Incomplete Blacklist | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Incomplete Blacklist | |
| Improper Verification of Cryptographic Signature | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Access Control | |
| Resource Exhaustion | |
| Use of Insufficiently Random Values | |
| Insufficient Verification of Data Authenticity | |
| Insufficient Verification of Data Authenticity | |
| Resource Exhaustion | |
| HTTP Request Smuggling | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Integer Overflow or Wraparound | |
| HTTP Response Splitting | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| CRLF Injection | |
| CVE-2026-5588 | |
| Improper Encoding or Escaping of Output | |
| CVE-2026-0636 | |
| Improper Output Neutralization for Logs | |
| Improper Validation of Certificate with Host Mismatch | |
| CVE-2026-5598 | |
| HTTP Request Smuggling | |
| Improper Encoding or Escaping of Output | |
| Allocation of Resources Without Limits or Throttling | |
| GHSA-72hv-8253-57qq | |
| CVE-2025-22227 | |
| Uncontrolled Recursion | |
| Improper Certificate Validation | |