Execution with Unnecessary Privileges | |
Arbitrary File Write via Archive Extraction (Zip Slip) | |
Improper Authentication | [5.3.0,8.11.4)[9.0.0,9.7.0) |
Insecure Default Initialization of Resource | [6.6.0,8.11.4)[9.0.0,9.7.0) |
Exposure of Sensitive Information to an Unauthorized Actor | [6.0.0,8.11.3)[9.0.0,9.4.1) |
Incorrect Permission Assignment for Critical Resource | [8.10.0,8.11.3)[9.0.0,9.3.0) |
Unrestricted Upload of File with Dangerous Type | [6.0.0,8.11.3)[9.0.0,9.4.1) |
Insufficiently Protected Credentials | [6.0.0,8.11.3)[9.0.0,9.3.0) |
Information Exposure | |
Denial of Service (DoS) | |
Improper Input Validation | |
Remote Code Execution (RCE) | |
Server-Side Request Forgery (SSRF) | |
Access Restriction Bypass | |
Information Exposure | |
Remote Code Execution (RCE) | |
Arbitrary File Access | |
Authentication Bypass | [6.0.0,6.6.6)[7.0.0,7.7.0) |
Information Exposure | |
XML External Entity (XXE) Injection | |
Server-side Request Forgery (SSRF) | |
Deserialization of Untrusted Data | |
XML External Entity (XXE) Injection | |
XML External Entity (XXE) Injection | [6.0.0,6.6.4)[7.0.0,7.3.1) |
XML External Entity (XXE) Injection | [5.5.0,5.5.5)[6.0.0,6.6.2)[7.0.0,7.1.0) |
Privilege Escalation | |
Information Exposure | [5.3.0,5.5.5)[6.0.0,6.6.0) |
Directory Traversal | [1.4.0,5.5.4)[6.0.0,6.4.1) |
XML External Entity (XXE) Injection | |
XML External Entity (XXE) Injection | |
XML External Entity (XXE) Injection | |
Directory Traversal | |