| Incorrect Authorization | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-33810 | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Certificate Validation | |
| Cross-site Scripting (XSS) | |
| Link Following | |
| CVE-2026-32280 | |
| CVE-2026-1229 | |
| Untrusted Search Path | |
| CVE-2025-15558 | |
| CVE-2026-27138 | |
| CVE-2026-27139 | |
| CVE-2026-27142 | |
| CVE-2026-27137 | |
| CVE-2026-25679 | |
| Improper Initialization | |
| Improper Validation of Integrity Check Value | |
| Directory Traversal | |
| Directory Traversal | |
| NULL Pointer Dereference | |
| Server-Side Request Forgery (SSRF) | |
| CVE-2025-68121 | |
| CVE-2025-61732 | |
| Reachable Assertion | |
| Improper Verification of Cryptographic Signature | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Out-of-bounds Write | |
| CVE-2025-61731 | |
| CVE-2025-61730 | |
| Improper Privilege Management | |
| Allocation of Resources Without Limits or Throttling | |
| Asymmetric Resource Consumption (Amplification) | |
| Server-Side Request Forgery (SSRF) | |
| Asymmetric Resource Consumption (Amplification) | |
| Insufficient Verification of Data Authenticity | |