| Improper Certificate Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Unchecked Input for Loop Condition | |
| Allocation of Resources Without Limits or Throttling | |
| Excessive Platform Resource Consumption within a Loop | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Excessive Platform Resource Consumption within a Loop | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Validation of Unsafe Equivalence in Input | |
| Allocation of Resources Without Limits or Throttling | |
| Creation of Immutable Text Using String Concatenation | |
| Out-of-bounds Read | |
| Excessive Platform Resource Consumption within a Loop | |
| Incomplete Filtering of Special Elements | |
| Incorrect Conversion between Numeric Types | |
| Link Following | |
| Link Following | |
| Directory Traversal | |
| Unchecked Input for Loop Condition | |
| Unchecked Input for Loop Condition | |
| Unchecked Input for Loop Condition | |
| Unchecked Input for Loop Condition | |
| Time-of-check Time-of-use (TOCTOU) | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Improper Verification of Cryptographic Signature | |
| Improper Resource Locking | |
| Improper Resource Locking | |
| Uncaught Exception | |
| Improper Validation of Specified Type of Input | |
| Improper Validation of Specified Type of Input | |
| Deadlock | |
| Deadlock | |
| Deadlock | |
| Deadlock | |
| NULL Pointer Dereference | |
| NULL Pointer Dereference | |
| Link Following | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Trust Boundary Violation | |
| Trust Boundary Violation | |
| Improper Verification of Source of a Communication Channel | |
| Improper Verification of Source of a Communication Channel | |
| Origin Validation Error | |
| Origin Validation Error | |
| Excessive Platform Resource Consumption within a Loop | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Cross-site Scripting (XSS) | |
| Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion') | |
| Time-of-check Time-of-use (TOCTOU) | |
| Allocation of Resources Without Limits or Throttling | |
| Out-of-bounds Read | |
| Out-of-bounds Read | |
| Excessive Platform Resource Consumption within a Loop | |
| Incorrect Behavior Order: Authorization Before Parsing and Canonicalization | |
| Improper Validation of Unsafe Equivalence in Input | |
| Time-of-check Time-of-use (TOCTOU) | |
| Excessive Platform Resource Consumption within a Loop | |
| Improper Validation of Specified Quantity in Input | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Preservation of Permissions | |
| Improper Certificate Validation | |
| Incorrect Implementation of Authentication Algorithm | |
| Missing Release of Resource after Effective Lifetime | |
| CVE-2026-33811 | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Preservation of Permissions | |
| Improper Validation of Syntactic Correctness of Input | |
| Allocation of Resources Without Limits or Throttling | |
| NULL Pointer Dereference | |
| Plaintext Storage of a Password | |
| Out-of-bounds Write | |
| Improper Certificate Validation | |
| Multiple Locks of a Critical Resource | |
| Out-of-bounds Write | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| External Control of Assumed-Immutable Web Parameter | |
| Improper Validation of Specified Type of Input | |
| Improper Output Neutralization for Logs | |
| Improper Validation of Unsafe Equivalence in Input | |
| SQL Injection | |
| Open Redirect | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Output Neutralization for Logs | |
| Expected Behavior Violation | |
| Allocation of Resources Without Limits or Throttling | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Validation of Specified Quantity in Input | |
| Out-of-bounds Read | |
| Improper Validation of Integrity Check Value | |
| Allocation of Resources Without Limits or Throttling | |
| Open Redirect | |
| Excessive Platform Resource Consumption within a Loop | |
| Excessive Platform Resource Consumption within a Loop | |
| Allocation of Resources Without Limits or Throttling | |
| Improper Certificate Validation | |
| Improper Certificate Validation | |
| Server-Side Request Forgery (SSRF) | |
| Server-Side Request Forgery (SSRF) | |
| Server-Side Request Forgery (SSRF) | |
| Improper Handling of Unexpected Data Type | |
| Improper Handling of Unexpected Data Type | |
| Improper Handling of Unexpected Data Type | |
| Creation of Immutable Text Using String Concatenation | |
| Creation of Immutable Text Using String Concatenation | |
| Improper Validation of Syntactic Correctness of Input | |
| Improper Validation of Syntactic Correctness of Input | |
| Race Condition | |
| HTTP Request Smuggling | |
| Improper Input Validation | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Expected Behavior Violation | |
| Time-of-check Time-of-use (TOCTOU) | |
| CVE-2025-4673 | |
| Improper Handling of Highly Compressed Data (Data Amplification) | |
| Expected Behavior Violation | |
| Expected Behavior Violation | |
| Race Condition | |
| Time-of-check Time-of-use (TOCTOU) | |
| CVE-2025-4673 | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |