| CVE-2026-44979 | |
| CVE-2026-44974 | |
| CVE-2026-46625 | |
| Use of Uninitialized Resource | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Server-Side Request Forgery (SSRF) | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Response Splitting | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Permissive Whitelist | |
| CRLF Injection | |
| Improper Encoding or Escaping of Output | |
| Uncontrolled Recursion | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Permissive Whitelist | |
| Improper Authentication | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Allocation of Resources Without Limits or Throttling | |
| Out-of-bounds Write | |
| CVE-2026-5758 | |
| GHSA-rp42-5vxx-qpwr | |
| GHSA-r4q5-vmmm-2653 | |
| HTTP Response Splitting | |
| GHSA-6v7q-wjvx-w8wg | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| GHSA-vvjj-xcjg-gr5g | |
| Resource Exhaustion | |
| Arbitrary Code Injection | |
| Resource Exhaustion | |
| Arbitrary Code Injection | |
| GHSA-c7w3-x93f-qmm8 | |
| Inefficient Regular Expression Complexity | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| GHSA-442j-39wm-28r2 | |
| GHSA-7rx3-28cr-v5wh | |
| Arbitrary Code Injection | |
| Improper Certificate Validation | |
| CVE-2026-2950 | |
| CVE-2026-4800 | |
| Inefficient Regular Expression Complexity | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improper Check for Unusual or Exceptional Conditions | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Off-by-one Error | |
| Directory Traversal | |
| Directory Traversal | |
| CVE-2026-3449 | |
| Inefficient Regular Expression Complexity | |
| Algorithmic Complexity | |
| CVE-2025-25012 | |
| CVE-2026-0528 | |
| Directory Traversal | |
| Improperly Implemented Security Check for Standard | |
| CVE-2025-68389 | |
| CVE-2025-25018 | |
| CVE-2025-68385 | |
| CVE-2025-25009 | |
| CVE-2026-0531 | |
| CVE-2025-68422 | |
| CVE-2025-37732 | |
| CVE-2026-0530 | |
| CVE-2025-68387 | |
| CVE-2025-25017 | |
| CVE-2024-23443 | |
| CVE-2025-68386 | |
| CVE-2025-37728 | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-0532 | |
| Inefficient Regular Expression Complexity | |
| Directory Traversal | |
| CVE-2026-2327 | |
| Improper Check for Unusual or Exceptional Conditions | |
| CVE-2025-13465 | |
| Directory Traversal | |
| Improper Handling of Unicode Encoding | |
| Directory Traversal | |
| Improper Check or Handling of Exceptional Conditions | |
| CVE-2025-12816 | |
| GHSA-rcmh-qjqh-p98v | |
| Integer Overflow or Wraparound | |
| Uncontrolled Recursion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improper Validation of Syntactic Correctness of Input | |
| Directory Traversal | |
| Inefficient Regular Expression Complexity | |
| CVE-2024-12905 | |
| Cross-site Scripting (XSS) | |
| Server-Side Request Forgery (SSRF) | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| Directory Traversal | |
| CVE-2025-7783 | |