| Out-of-bounds Read | |
| Inefficient Regular Expression Complexity | |
| Improper Handling of Exceptional Conditions | |
| CVE-2021-31810 | |
| OS Command Injection | |
| Arbitrary Code Injection | |
| Arbitrary Code Injection | |
| Arbitrary Argument Injection | |
| Improper Input Validation | |
| Use of Externally-Controlled Format String | |
| Arbitrary Code Injection | |
| Arbitrary Code Injection | |
| Directory Traversal | |
| Directory Traversal | |
| Resource Exhaustion | |
| Directory Traversal | |
| CVE-2018-16396 | |
| CVE-2018-16395 | |
| Directory Traversal | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Improper Verification of Cryptographic Signature | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Deserialization of Untrusted Data | |
| Link Following | |
| HTTP Response Splitting | |
| Arbitrary Code Injection | |
| OS Command Injection | |
| Arbitrary Code Injection | |
| Improper Authentication | |
| CVE-2019-15845 | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| HTTP Request Smuggling | |
| Improper Handling of Exceptional Conditions | |
| CVE-2021-31810 | |
| OS Command Injection | |