| Resource Exhaustion | |
| Origin Validation Error | |
| Authorization Bypass Through User-Controlled Key | |
| Resource Exhaustion | |
| Missing Authorization | |
| Improper Certificate Validation | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Interpretation Conflict | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Improper Validation of Specified Quantity in Input | |
| Improper Cleanup on Thrown Exception | |
| Improper Verification of Cryptographic Signature | |
| CVE-2025-7783 | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| CVE-2026-4800 | |
| Improper Authentication | |
| Arbitrary Code Injection | |
| Resource Exhaustion | |
| GHSA-537c-gmf6-5ccf | |
| Resource Exhaustion | |
| CVE-2026-12143 | |
| CVE-2024-37890 | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Certificate Validation | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| XML External Entity (XXE) Injection | |
| Insecure Temporary File | |
| Use of Incorrectly-Resolved Name or Reference | |
| CVE-2026-48818 | |
| Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection') | |
| CVE-2026-26007 | |
| Inefficient Regular Expression Complexity | |
| Link Following | |
| Out-of-Bounds | |
| Insufficient Verification of Data Authenticity | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Request Smuggling | |
| Directory Traversal | |
| Information Exposure | |