| CVE-2019-15617 | |
| Insufficiently Protected Credentials | |
| Privilege Escalation | |
| Improper Authentication | |
| Denial of Service (DoS) | |
| Server-side Request Forgery (SSRF) | |
| Cross-site Scripting (XSS) | |
| Information Exposure | |
| Incorrect Authorization | [,15.0.13)[16.0.0,16.0.6)[17.0.0,17.0.1) |
| Server-side Request Forgery (SSRF) | [,15.0.14)[16.0.0,16.0.7)[17.0.0,17.0.2) |
| Security Features | |
| Insertion of Sensitive Information into Log File | [11.0.0,11.0.5)[12.0.0,12.0.3) |
| Denial of Service (DoS) | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Cross-site Scripting (XSS) | [,9.0.58)[10.0.0,10.0.5)[11.0.0,11.0.3) |
| Improper Authentication | |
| Out-of-bounds Write | |
| Insecure Permissions | |
| Denial of Service (DoS) | |
| Session Fixation | [13.0.0,13.0.11)[14.0.0,14.0.7)[15.0.0,15.0.3) |
| Improper Access Control | [,12.0.11)[13.0.0,13.0.6) |
| Insufficiently Protected Credentials | |
| Denial of Service (DoS) | [,18.0.11)[19.0.0,19.0.5)[20.0.0,20.0.2) |
| Insertion of Sensitive Information into Log File | [,20.0.12)[21.0.0,21.0.4)[22.0.0,22.1.0) |
| Information Exposure | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Cross-site Scripting (XSS) | |
| Denial of Service (DoS) | |
| CVE-2021-32741 | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Arbitrary Code Injection | |
| Brute Force | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Improper Verification of Cryptographic Signature | |
| Cross-site Scripting (XSS) | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| CVE-2021-32655 | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Memory Leak | |
| Session Fixation | |
| Insufficiently Protected Credentials | |
| Information Exposure | |
| Information Exposure | [,14.0.13)[15.0.0,15.0.9)[16.0.0,16.0.2) |
| Authorization Bypass | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Remote Code Execution (RCE) | |
| Session Fixation | |
| Cross-site Scripting (XSS) | |
| Information Exposure | [,13.0.9)[14.0.0,14.0.5)[14.0.6,15.0.0) |
| Insufficiently Protected Credentials | |
| Cryptographic Weakness | |
| Remote Code Execution (RCE) | |
| Cross-site Scripting (XSS) | |
| Improper Input Validation | |
| Improper Authentication | |
| Brute Force | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Information Exposure | |
| Improper Certificate Validation | |
| Information Exposure | |
| Missing Encryption of Sensitive Data | |
| Cross-site Scripting (XSS) | [,18.0.11)[19.0.0,19.0.5)[20.0.0,20.0.2) |
| Improper Authentication | |
| Information Exposure | [,20.0.12)[21.0.0,21.0.4)[22.0.0,22.1.0) |
| Cross-site Scripting (XSS) | |
| Improper Authorization | |
| Cross-site Scripting (XSS) | |
| Access Restriction Bypass | |
| Key Management Errors | |
| Brute Force | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Access Restriction Bypass | |
| Insecure Permissions | |
| Information Exposure | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Information Exposure | |
| Cross-site Scripting (XSS) | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Improper Input Validation | [,14.0.11)[15.0.0,15.0.8) |
| Unauthorized File Access | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| CVE-2019-15611 | |
| CVE-2021-32680 | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Cross-site Scripting (XSS) | [,9.0.58)[10.0.0,10.0.5)[11.0.0,11.0.3) |
| Unsafe Dependency Resolution | [,20.0.12)[21.0.0,21.0.4)[22.0.0,22.1.0) |
| Improper Input Validation | [,12.0.13)[13.0.0,13.0.8)[14.0.0,14.0.4)[14.0.5,15.0.0) |
| Privilege Escalation | |
| Improper Access Control | |
| SQL Injection | |
| Improper Preservation of Permissions | [,14.0.13)[15.0.0,15.0.9)[16.0.0,16.0.2) |
| Missing Encryption of Sensitive Data | |
| Directory Traversal | |
| Information Exposure | |
| Authorization Bypass | |
| Uninitialized Memory Exposure | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Improper Access Control | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Improper Authentication | |
| Improper Preservation of Permissions | [,12.0.13)[13.0.0,13.0.8)[14.0.0,14.0.4) |
| Untrusted Search Path | |
| CVE-2019-5452 | |
| Brute Force | [,19.0.11)[20.0.0,20.0.10)[21.0.0,21.0.2) |
| Arbitrary Code Injection | |
| Cross-site Scripting (XSS) | |
| Improper Authentication | |
| SQL Injection | |
| Insecure Default | [,19.0.13)[20.0.0,20.0.11)[21.0.0,21.0.3) |
| Improper Certificate Validation | |
| Improper Authentication | |
| Access Restriction Bypass | [16.0.0,16.0.9)[17.0.0,17.0.4)[18.0.0,18.0.1) |
| Insecure Permissions | |
| Information Exposure | [10.0.0,10.0.4)[11.0.0,11.0.2) |
| Improper Certificate Validation | |
| Missing Authentication | [,20.0.12)[21.0.0,21.0.4)[22.0.0,22.1.0) |
| Improper Input Validation | |
| Improper Access Control | |
| Improper Access Control | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Authentication | |
| Improper Access Control | |
| Cross-site Scripting (XSS) | |
| Cross-site Scripting (XSS) | |
| Improper Access Control | |
| Improper Access Control | |