| Use of Web Browser Cache Containing Sensitive Information | |
| Brute Force | |
| Cleartext Storage of Sensitive Information | |
| Missing Authentication for Critical Function | |
| Allocation of Resources Without Limits or Throttling | |
| Cross-site Scripting (XSS) | |
| Authorization Bypass Through User-Controlled Key | |
| Directory Traversal | |
| Unchecked Input for Loop Condition | |
| Open Redirect | |
| Use of Default Credentials | |
| Server-side Request Forgery (SSRF) | |
| Insertion of Sensitive Information Into Sent Data | |
| Cross-site Scripting (XSS) | |
| Timing Attack | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Open Redirect | |
| Observable Discrepancy | |
| Insecure Default Initialization of Resource | |
| Open Redirect | |
| Incorrect Authorization | |
| Incorrect Authorization | |
| Insertion of Sensitive Information Into Sent Data | |
| Cross-site Scripting (XSS) | |
| Cross-site Request Forgery (CSRF) | |
| Observable Discrepancy | |
| Insecure Default Initialization of Resource | |
| Arbitrary File Write via Archive Extraction (Zip Slip) | |
| Open Redirect | |
| Access Restriction Bypass | |
| Information Exposure | |
| Improper Validation | |
| Information Exposure | |
| Improper Authorization | |
| Privilege Escalation | |
| Arbitrary File Access | |
| Deserialization of Untrusted Data | [4.0.0,4.7.0)[3.0.0,3.49.0)[,2.65.3) |
| Cross-site Scripting (XSS) | |