| Missing Authorization | |
| Improper Neutralization | |
| Authorization Bypass Through User-Controlled Key | |
| Authorization Bypass Through User-Controlled Key | |
| Incorrect Authorization | |
| Server-Side Request Forgery (SSRF) | |
| Cross-site Scripting (XSS) | |
| Allocation of Resources Without Limits or Throttling | |
| Incorrect Type Conversion or Cast | |
| CVE-2026-46598 | |
| CVE-2026-46595 | |
| Improper Certificate Validation | |
| Improper Certificate Validation | |
| Out-of-Bounds | |
| Improper Certificate Validation | |
| CVE-2026-39821 | |
| Integer Overflow or Wraparound | |
| Improper Verification of Cryptographic Signature | |
| CVE-2026-42507 | |
| CVE-2026-42504 | |
| CVE-2026-27145 | |
| CVE-2026-27141 | |
| Allocation of Resources Without Limits or Throttling | |
| Incorrect Authorization | |
| Use of Incorrectly-Resolved Name or Reference | |
| Uncontrolled Memory Allocation | |
| Allocation of Resources Without Limits or Throttling | |
| Missing Authorization | |
| Improper Encoding or Escaping of Output | |
| Double Free | |
| CVE-2026-42501 | |
| Link Following | |
| NULL Pointer Dereference | |
| Allocation of Resources Without Limits or Throttling | |
| Cross-site Scripting (XSS) | |
| CVE-2026-42499 | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| CVE-2026-39825 | |
| Out-of-bounds Write | |