| Execution with Unnecessary Privileges | |
| Arbitrary File Write via Archive Extraction (Zip Slip) | |
| Improper Authentication | [5.3.0,8.11.4)[9.0.0,9.7.0) |
| Insecure Default Initialization of Resource | [6.6.0,8.11.4)[9.0.0,9.7.0) |
| Exposure of Sensitive Information to an Unauthorized Actor | [6.0.0,8.11.3)[9.0.0,9.4.1) |
| Incorrect Permission Assignment for Critical Resource | [8.10.0,8.11.3)[9.0.0,9.3.0) |
| Unrestricted Upload of File with Dangerous Type | [6.0.0,8.11.3)[9.0.0,9.4.1) |
| Insufficiently Protected Credentials | [6.0.0,8.11.3)[9.0.0,9.3.0) |
| Information Exposure | |
| Denial of Service (DoS) | |
| Improper Input Validation | |
| Remote Code Execution (RCE) | |
| Server-Side Request Forgery (SSRF) | |
| Access Restriction Bypass | |
| Information Exposure | |
| Remote Code Execution (RCE) | |
| Arbitrary File Access | |
| Authentication Bypass | [6.0.0,6.6.6)[7.0.0,7.7.0) |
| Information Exposure | |
| XML External Entity (XXE) Injection | |
| Server-side Request Forgery (SSRF) | |
| Deserialization of Untrusted Data | |
| XML External Entity (XXE) Injection | |
| XML External Entity (XXE) Injection | [6.0.0,6.6.4)[7.0.0,7.3.1) |
| XML External Entity (XXE) Injection | [5.5.0,5.5.5)[6.0.0,6.6.2)[7.0.0,7.1.0) |
| Privilege Escalation | |
| Information Exposure | [5.3.0,5.5.5)[6.0.0,6.6.0) |
| Directory Traversal | [1.4.0,5.5.4)[6.0.0,6.4.1) |
| XML External Entity (XXE) Injection | |
| XML External Entity (XXE) Injection | |
| XML External Entity (XXE) Injection | |
| Directory Traversal | |