| HTTP Request Smuggling | |
| Session Fixation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Deserialization of Untrusted Data | |
| CVE-2020-1938 | |
| CVE-2018-1304 | |
| CVE-2018-1305 | |
| Improper Certificate Validation | |
| Insecure Default Initialization of Resource | |
| Open Redirect | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Insufficient Verification of Data Authenticity | |
| Unrestricted Upload of File with Dangerous Type | |
| Information Exposure | |
| Unrestricted Upload of File with Dangerous Type | |
| Incorrect Authorization | |
| CVE-2016-5018 | |
| CVE-2016-6796 | |
| CVE-2016-6794 | |
| Information Exposure | |
| Improper Handling of Exceptional Conditions | |
| Exposure of Resource to Wrong Sphere | |
| Error Handling | |
| Improper Input Validation | |
| Cross-site Request Forgery (CSRF) | |
| Access Restriction Bypass | |
| Improper Input Validation | |
| CVE-2015-5346 | |
| Directory Traversal | |
| Directory Traversal | |
| Information Exposure | |
| Improper Access Control | |
| Access Restriction Bypass | |
| Incorrect Default Permissions | |
| Access Restriction Bypass | |
| Improper Access Control | |
| Improper Data Handling | |
| Access Restriction Bypass | |
| Numeric Errors | |
| Access Restriction Bypass | |
| Numeric Errors | |
| CVE-2014-0186 | |
| Improper Input Validation | |
| Improper Input Validation | |