| Insertion of Sensitive Information Into Sent Data | |
| Allocation of Resources Without Limits or Throttling | |
| Insertion of Sensitive Information Into Sent Data | |
| Regular Expression Denial of Service (ReDoS) | |
| Prototype Pollution | |
| Server-side Request Forgery (SSRF) | |
| Prototype Pollution | |
| Prototype Pollution | |
| Prototype Pollution | |
| Prototype Pollution | |
| Server-side Request Forgery (SSRF) | |
| Incomplete List of Disallowed Inputs | |
| Improper Encoding or Escaping of Output | |
| HTTP Response Splitting | |
| Allocation of Resources Without Limits or Throttling | |
| Allocation of Resources Without Limits or Throttling | |
| Insertion of Sensitive Information Into Sent Data | |
| CRLF Injection | |
| Prototype Pollution | |
| Improperly Controlled Modification of Dynamically-Determined Object Attributes | |
| Uncontrolled Recursion | |
| Prototype Pollution | |
| HTTP Response Splitting | |
| Unintended Proxy or Intermediary ('Confused Deputy') | |
| Allocation of Resources Without Limits or Throttling | |
| Prototype Pollution | |
| Allocation of Resources Without Limits or Throttling | |
| Server-side Request Forgery (SSRF) | |
| Server-side Request Forgery (SSRF) | |
| Server-side Request Forgery (SSRF) | |
| Prototype Pollution | |
| Regular Expression Denial of Service (ReDoS) | |
| Cross-site Request Forgery (CSRF) | [1.0.0,1.6.0)[0.8.1,0.28.0) |
| Regular Expression Denial of Service (ReDoS) | |
| Server-Side Request Forgery (SSRF) | |
| Denial of Service (DoS) | |