| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Least Privilege Violation | |
| Cross-site Scripting (XSS) | |
| Insufficient Verification of Data Authenticity | |
| Cross-site Scripting (XSS) | |
| Directory Traversal | |
| Allocation of Resources Without Limits or Throttling | |
| NULL Pointer Dereference | |
| Improper Input Validation | |
| Insufficient Granularity of Access Control | |
| Resource Exhaustion | |
| Inefficient Regular Expression Complexity | |
| Improper Handling of URL Encoding (Hex Encoding) | |
| Placement of User into Incorrect Group | |
| Incorrect Authorization | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Overly Restrictive Regular Expression | |
| Overly Restrictive Regular Expression | |
| Directory Traversal | |
| Improper Authentication | |
| Out-of-bounds Read | |
| Improper Input Validation | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |