| Information Exposure | <2.4.29-1ubuntu4.27+esm11 |
| Use After Free | <2.4.29-1ubuntu4.27+esm11 |
| Cross-site Scripting (XSS) | <2.4.29-1ubuntu4.27+esm11 |
| Heap-based Buffer Overflow | <2.4.29-1ubuntu4.27+esm10 |
| Loop with Unreachable Exit Condition ('Infinite Loop') | <2.4.29-1ubuntu4.27+esm10 |
| Buffer Over-read | <2.4.29-1ubuntu4.27+esm10 |
| Use After Free | |
| Uncontrolled Memory Allocation | <2.4.29-1ubuntu4.27+esm10 |
| Exposure of Resource to Wrong Sphere | <2.4.29-1ubuntu4.27+esm10 |
| Out-of-bounds Read | <2.4.29-1ubuntu4.27+esm10 |
| Buffer Underflow | <2.4.29-1ubuntu4.27+esm10 |
| Improper Privilege Management | <2.4.29-1ubuntu4.27+esm10 |
| Heap-based Buffer Overflow | <2.4.29-1ubuntu4.27+esm10 |
| CVE-2026-33523 | <2.4.29-1ubuntu4.27+esm10 |
| Heap-based Buffer Overflow | <2.4.29-1ubuntu4.27+esm10 |
| Out-of-bounds Read | <2.4.29-1ubuntu4.27+esm10 |
| NULL Pointer Dereference | <2.4.29-1ubuntu4.27+esm10 |
| Out-of-bounds Read | <2.4.29-1ubuntu4.27+esm10 |
| Heap-based Buffer Overflow | |
| Improper Privilege Management | |
| NULL Pointer Dereference | |
| Buffer Over-read | |
| Improper Neutralization | |
| CVE-2025-66200 | |
| Information Exposure | |
| Improper Input Validation | |
| Improper Encoding or Escaping of Output | |
| Improper Resource Shutdown or Release | |
| Server-Side Request Forgery (SSRF) | |
| Improper Neutralization | |
| Improper Input Validation | |
| Improper Access Control | |
| Improper Authentication | |
| Reachable Assertion | |
| Memory Leak | |
| Improper Encoding or Escaping of Output | |
| NULL Pointer Dereference | |
| CVE-2024-38476 | |
| Improper Encoding or Escaping of Output | |
| CVE-2023-38709 | |
| Allocation of Resources Without Limits or Throttling | |
| CVE-2024-24795 | |
| Out-of-bounds Read | |
| HTTP Request Smuggling | |
| Out-of-bounds Write | |
| HTTP Response Splitting | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Insufficient Verification of Data Authenticity | |
| CVE-2022-30556 | |
| Integer Overflow or Wraparound | |
| Integer Overflow or Wraparound | |
| Improper Initialization | |
| Integer Overflow or Wraparound | |
| HTTP Request Smuggling | |
| Out-of-bounds Write | |
| NULL Pointer Dereference | |
| Out-of-bounds Write | |
| Server-Side Request Forgery (SSRF) | |
| Buffer Overflow | |
| NULL Pointer Dereference | |
| CVE-2021-33193 | |
| HTTP Request Smuggling | |
| NULL Pointer Dereference | |
| Out-of-bounds Write | |
| CVE-2021-30641 | |
| Out-of-bounds Write | |
| HTTP Request Smuggling | |
| HTTP Request Smuggling | |
| Open Redirect | |
| Use of Uninitialized Resource | |
| Open Redirect | |
| Use After Free | |
| Out-of-bounds Write | |
| Cross-site Scripting (XSS) | |
| Allocation of Resources Without Limits or Throttling | |
| Use After Free | |
| HTTP Request Smuggling | |
| Use After Free | |
| Race Condition | |
| Use of Incorrectly-Resolved Name or Reference | |
| Session Fixation | |
| Resource Exhaustion | |
| CVE-2018-11763 | |
| Resource Exhaustion | |
| Out-of-bounds Read | |
| CVE-2018-1283 | |
| Improper Authentication | |
| NULL Pointer Dereference | |
| Out-of-Bounds | |
| Improper Input Validation | |
| Out-of-bounds Write | |