| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | [3.3,3.3.6)[4.0,4.0.9)[4.1,4.1.6)[4.3,4.3.2) |
| Server-side Request Forgery (SSRF) | |
| Cross-site Scripting (XSS) | |
| Server-side Request Forgery (SSRF) | |
| Cross-site Scripting (XSS) | |
| Access Restriction Bypass | |
| Server-side Request Forgery (SSRF) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Server-side Request Forgery (SSRF) | |
| XML External Entity (XXE) Injection | |
| XML External Entity (XXE) Injection | |
| Weak Password Requirements | |
| SQL Injection | |
| Cross-site Scripting (XSS) | |
| Privilege Escalation | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Execution | |
| Information Exposure | |
| Sandbox Escape | |
| Cross-site Scripting (XSS) | |
| Open Redirect | |
| Open Redirect | |
| Cross-site Request Forgery (CSRF) | |
| Sandbox Bypass | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Open Redirect | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Access Restriction Bypass | |
| Access Restriction Bypass | |
| Access Restriction Bypass | |
| HTTP Response Splitting | |
| Unauthorized User Creation | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Access Restriction Bypass | |
| Denial of Service (DoS) | |
| Access Restriction Bypass | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Email Spoofing | |
| Access Restriction Bypass | |
| Information Exposure | |
| Open Redirect | |
| Information Exposure | |
| Arbitrary Portrait Modification | |
| Access Restriction Bypass | |
| Arbitrary Web Redirect | |
| Denial of Service (DoS) | |
| Arbitrary Code Execution | |
| Arbitrary Code Execution | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Execution | |
| Information Exposure | |
| Denial of Service (DoS) | |
| Cross-site Scripting (XSS) | |
| Arbitrary Code Execution | |
| Information Exposure | |
| Denial of Service (DoS) | |
| Denial of Service (DoS) | |
| Cross-site Request Forgery (CSRF) | |
| Arbitrary BLOB Read | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Denial of Service (DoS) | |
| Information Exposure | |
| Information Exposure | |
| Denial of Service (DoS) | |
| Arbitrary Sub-object Access | |
| Privilege Escalation | |
| Cross-site Scripting (XSS) | |
| Arbitrary Property Modification | |
| Arbitrary File Creation | |
| Cross-site Scripting (XSS) | |