22 |
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
1 |
78 |
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') |
4 |
79 |
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
7 |
89 |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
13 |
352 |
Cross-Site Request Forgery (CSRF) |
1 |
676 |
Use of Potentially Dangerous Function |
1 |
798 |
Use of Hard-coded Credentials |
9 |
829 |
Inclusion of Functionality from Untrusted Control Sphere |
2 |
862 |
Missing Authorization |
12 |