| Race Condition | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Certificate Validation | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2026-32280 | |
| Cross-site Scripting (XSS) | |
| Incorrect Authorization | |
| Link Following | |
| Use of Externally-Controlled Format String | |
| HTTP Request Smuggling | |
| Uncontrolled Recursion | |
| GHSA-72hv-8253-57qq | |
| CVE-2026-27139 | |
| CVE-2026-27142 | |
| CVE-2026-25679 | |
| Directory Traversal | |
| Arbitrary Code Injection | |
| Cross-site Scripting (XSS) | |
| GHSA-wx95-c6cv-8532 | |
| Server-Side Request Forgery (SSRF) | |
| CVE-2025-68121 | |
| CVE-2025-61732 | |
| CVE-2025-61731 | |
| CVE-2025-61730 | |
| Allocation of Resources Without Limits or Throttling | |
| Out-of-bounds Write | |
| Allocation of Resources Without Limits or Throttling | |
| Information Exposure | |
| Improper Certificate Validation | |
| CVE-2025-14762 | |
| CRLF Injection | |
| Improper Certificate Validation | |
| Improper Certificate Validation | |
| Resource Exhaustion | |
| Inefficient Regular Expression Complexity | |