| Improper Check for Certificate Revocation | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Handling of Length Parameter Inconsistency | |
| CVE-2026-86248 | |
| Missing Release of Resource after Effective Lifetime | |
| Race Condition | |
| Incomplete Cleanup | |
| Resource Exhaustion | |
| Authentication Bypass | |
| Improper Authentication | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Improper Input Validation | |
| Insufficient Session Expiration | |
| Improper Authorization | |
| Incorrect Authorization | |
| Authentication Bypass | |
| Time-of-check Time-of-use (TOCTOU) | |
| Improper Authentication | |
| Improper Access Control | |
| Off-by-one Error | |
| Resource Exhaustion | |
| Incomplete Documentation | |
| Improper Handling of URL Encoding (Hex Encoding) | |