| 1. |
Cross-Site Request Forgery ** |
|
With Significant Security Impact |
| 2. |
Cross-Site Scripting ** |
|
Self-XSS is out of scope |
| 3. |
Open Redirects ** |
|
With Significant Security Impact |
| 4. |
Cross Origin Resource Sharing ** |
|
With Significant Security Impact |
| 5. |
SQL injections |
|
|
| 6. |
Server Side Request Forgery |
|
|
| 7. |
Privilege Escalation |
|
|
| 8. |
Local File Inclusion |
|
|
| 9. |
Remote File Inclusion |
|
|
| 10. |
Leakage of Sensitive Data |
|
|
| 11. |
Authentication Bypass |
|
|
| 12. |
Directory Traversal |
|
|
| 13. |
Payment Manipulation |
|
|
| 14. |
Remote Code Execution |
|
|
| 15. |
Prompt Injection |
|
With Significant Security Impact |