| Cross-site Request Forgery (CSRF) | |
| Open Redirect | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Improper Input Validation | |
| Deserialization of Untrusted Data | |
| Inclusion of Functionality from Untrusted Control Sphere | |
| Link Following | |
| Deserialization of Untrusted Data | <7.44-1ubuntu1~16.04.0+esm2 |
| Cross-site Scripting (XSS) | <7.44-1ubuntu1~16.04.0+esm3 |
| Cross-site Scripting (XSS) | <7.44-1ubuntu1~16.04.0+esm3 |
| Directory Traversal | |
| Incorrect Authorization | |
| Unrestricted Upload of File with Dangerous Type | <7.44-1ubuntu1~16.04.0+esm2 |
| Arbitrary Code Injection | <7.44-1ubuntu1~16.04.0+esm2 |
| CVE-2018-7602 | <7.44-1ubuntu1~16.04.0+esm1 |
| Files or Directories Accessible to External Parties | |
| Improper Input Validation | <7.44-1ubuntu1~16.04.0+esm1 |
| Open Redirect | |
| Incorrect Permission Assignment for Critical Resource | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Open Redirect | |
| Access Restriction Bypass | |
| Cross-site Request Forgery (CSRF) | |