CRLF Injection | |
Improper Handling of Exceptional Conditions | |
Authorization Bypass Through User-Controlled Key | |
Resource Exhaustion | |
Cross-site Scripting (XSS) | |
Improper Verification of Cryptographic Signature | |
Use of Uninitialized Variable | |
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
Use of Uninitialized Variable | |
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
Insufficient Compartmentalization | |
Insufficiently Protected Credentials | |
Missing Required Cryptographic Step | |
Missing Required Cryptographic Step | |
Missing Required Cryptographic Step | |
CVE-2022-39201 | |
Incorrect Implementation of Authentication Algorithm | |
Information Exposure | |
Insufficiently Protected Credentials | |
Improper Verification of Cryptographic Signature | |
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
Improper Input Validation | |
Misinterpretation of Input | |
Improper Input Validation | |
Resource Exhaustion | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Resource Exhaustion | |
Resource Exhaustion | |
External Control of Assumed-Immutable Web Parameter | |
Allocation of Resources Without Limits or Throttling | |
Arbitrary Code Injection | |
Allocation of Resources Without Limits or Throttling | |
Resource Exhaustion | |
Misinterpretation of Input | |
Arbitrary Code Injection | |
Resource Exhaustion | |
Information Exposure | |
Resource Exhaustion | |
Loop with Unreachable Exit Condition ('Infinite Loop') | |
Improper Input Validation | |
Cross-site Scripting (XSS) | |
CVE-2023-39321 | |
Cross-site Scripting (XSS) | |
Authentication Bypass | |
Information Exposure | |
Allocation of Resources Without Limits or Throttling | |
Improper Input Validation | |
Memory Leak | |
Authorization Bypass Through User-Controlled Key | |