| Expected Behavior Violation | |
| Expected Behavior Violation | |
| Allocation of Resources Without Limits or Throttling | |
| Authorization Bypass Through User-Controlled Key | |
| Authorization Bypass Through User-Controlled Key | |
| Authentication Bypass by Primary Weakness | |
| Authorization Bypass Through User-Controlled Key | |
| Authorization Bypass Through User-Controlled Key | |
| Memory Leak | |
| Memory Leak | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Memory Leak | |
| Memory Leak | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Uncontrolled Recursion | |
| Use of Uninitialized Variable | |
| Use of Uninitialized Variable | |
| Use of Uninitialized Variable | |
| Use of Uninitialized Variable | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Uncontrolled Recursion | |
| Cross-site Scripting (XSS) | |
| Uncontrolled Recursion | |
| Cross-site Scripting (XSS) | |
| Uncontrolled Recursion | |
| HTTP Request Smuggling | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| HTTP Request Smuggling | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Asymmetric Resource Consumption (Amplification) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Asymmetric Resource Consumption (Amplification) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Asymmetric Resource Consumption (Amplification) | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| HTTP Request Smuggling | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Asymmetric Resource Consumption (Amplification) | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Time-of-check Time-of-use (TOCTOU) | |
| Link Following | |
| Allocation of Resources Without Limits or Throttling | |
| Inefficient Regular Expression Complexity | |
| Open Redirect | |
| Use of Insufficiently Random Values | |
| CVE-2025-4673 | |
| Improper Input Validation | |
| Inefficient Regular Expression Complexity | |
| Improper Input Validation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Origin Validation Error | |
| Exposed Dangerous Method or Function | |
| Improper Access Control | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Incomplete Filtering of Special Elements | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Asymmetric Resource Consumption (Amplification) | |
| Improper Input Validation | |
| Resource Exhaustion | |
| Arbitrary Argument Injection | |
| Use of Uninitialized Variable | |
| Cross-site Scripting (XSS) | |
| Use of Uninitialized Variable | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Arbitrary Argument Injection | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Use of Uninitialized Variable | |
| Server-Side Request Forgery (SSRF) | |
| Arbitrary Code Injection | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Uncontrolled Recursion | |
| Cross-site Scripting (XSS) | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Authorization Bypass Through User-Controlled Key | |
| Memory Leak | |
| Memory Leak | |
| Authorization Bypass Through User-Controlled Key | |
| Authorization Bypass Through User-Controlled Key | |
| Memory Leak | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Information Exposure | |
| Improper Verification of Cryptographic Signature | |
| Information Exposure | |
| Resource Exhaustion | |
| Arbitrary Argument Injection | |
| Resource Exhaustion | |
| Arbitrary Argument Injection | |
| CRLF Injection | |
| Improper Handling of Exceptional Conditions | |
| Authorization Bypass Through User-Controlled Key | |
| Use of Uninitialized Variable | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Use of Uninitialized Variable | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Use of Uninitialized Variable | |
| Insufficient Compartmentalization | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Insufficiently Protected Credentials | |
| Inefficient Regular Expression Complexity | |
| Improperly Controlled Sequential Memory Allocation | |
| Uncontrolled Recursion | |
| Uncontrolled Recursion | |
| Authorization Bypass Through User-Controlled Key | |
| Memory Leak | |
| Resource Exhaustion | |
| Allocation of Resources Without Limits or Throttling | |
| External Control of Assumed-Immutable Web Parameter | |
| Information Exposure | |
| Incorrect Implementation of Authentication Algorithm | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | |
| Authentication Bypass by Primary Weakness | |
| CVE-2022-41715 | |
| Improper Authentication | |
| Authentication Bypass | |
| HTTP Request Smuggling | |
| Resource Exhaustion | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Incorrect Authorization | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Scripting (XSS) | |
| Missing Release of Resource after Effective Lifetime | |
| Information Exposure | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| Cross-site Scripting (XSS) | |
| Improper Authentication | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Improper Input Validation | |
| Information Exposure Through Log Files | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Authentication Bypass | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Authorization Bypass Through User-Controlled Key | |
| Memory Leak | |
| Arbitrary Code Injection | |
| Improper Input Validation | |
| Misinterpretation of Input | |
| Improper Input Validation | |
| Information Exposure | |
| Directory Traversal | |
| Information Exposure | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Buffer Access with Incorrect Length Value | |
| Cross-site Scripting (XSS) | |
| Allocation of Resources Without Limits or Throttling | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Authentication Bypass by Primary Weakness | |
| Inefficient Regular Expression Complexity | |
| Missing Synchronization | |
| Improper Access Control | |
| Resource Exhaustion | |
| Information Exposure | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Arbitrary Code Injection | |
| Resource Exhaustion | |
| Inefficient Regular Expression Complexity | |
| Inefficient Regular Expression Complexity | |
| Inefficient Regular Expression Complexity | |
| Cross-site Scripting (XSS) | |
| Resource Exhaustion | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| External Control of Assumed-Immutable Web Parameter | |
| Allocation of Resources Without Limits or Throttling | |
| Authentication Bypass by Primary Weakness | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Incorrect Implementation of Authentication Algorithm | |
| Information Exposure | |
| Inefficient Regular Expression Complexity | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| CVE-2022-39201 | |
| Insufficiently Protected Credentials | |
| Improper Verification of Cryptographic Signature | |
| CVE-2022-41715 | |
| CVE-2022-41715 | |
| CVE-2022-41715 | |
| CVE-2022-41715 | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Authentication Bypass | |
| Authentication Bypass | |
| Authentication Bypass | |
| Authentication Bypass | |
| Inefficient Regular Expression Complexity | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Resource Exhaustion | |
| Information Exposure | |
| Information Exposure | |
| Information Exposure | |
| Information Exposure | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improper Authentication | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| Improperly Controlled Sequential Memory Allocation | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Directory Traversal | |
| Open Redirect | |
| Insufficient Entropy | |
| Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') | |
| Missing Release of Resource after Effective Lifetime | |
| Missing Release of Resource after Effective Lifetime | |
| Missing Release of Resource after Effective Lifetime | |
| Missing Release of Resource after Effective Lifetime | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Incorrect Authorization | |
| Incorrect Authorization | |
| Incorrect Authorization | |
| Incorrect Authorization | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Request Forgery (CSRF) | |
| Cross-site Request Forgery (CSRF) | |
| Information Exposure | |
| Information Exposure | |
| Information Exposure | |
| Information Exposure | |