| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Reliance on Untrusted Inputs in a Security Decision | |
| Directory Traversal | |
| Incorrect Default Permissions | |
| Improper Validation of Certificate with Host Mismatch | |
| Improper Input Validation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Eval Injection | |
| HTTP Response Splitting | |
| Improper Authentication | |
| Insufficiently Protected Credentials | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Improper Input Validation | |
| Improperly Implemented Security Check for Standard | |
| Cross-site Scripting (XSS) | |
| CVE-2018-3258 | |
| Missing Authorization | |
| Information Exposure | |
| Information Exposure | |
| Missing Authorization | |
| Missing Authorization | |
| Information Exposure Through Log Files | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Information Exposure | |
| Insufficiently Protected Credentials | |
| Improper Authentication | |
| Information Exposure | |
| Information Exposure | |
| Information Exposure | |
| Incorrect Default Permissions | |
| SQL Injection | |
| SQL Injection | |
| Improperly Implemented Security Check for Standard | |
| Missing Authorization | |
| Improper Validation of Certificate with Host Mismatch | |
| Execution with Unnecessary Privileges | |
| Execution with Unnecessary Privileges | |
| HTTP Request Smuggling | |
| Out-of-Bounds | |
| Out-of-Bounds | |
| Information Exposure | |
| Information Exposure | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Request Forgery (CSRF) | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Improper Input Validation | |
| Improper Input Validation | |
| Improper Input Validation | |
| Eval Injection | |
| Directory Traversal | |
| HTTP Response Splitting | |
| Reliance on Untrusted Inputs in a Security Decision | |
| CVE-2018-3258 | |
| Covert Timing Channel | |
| Covert Timing Channel | |
| Covert Timing Channel | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Information Exposure | |
| Information Exposure | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Deserialization of Untrusted Data | |
| Use After Free | |
| Use After Free | |