Server-Side Request Forgery (SSRF)
Unsecure Design
Authentication Bypass
Unsafe File Upload
Cleartext Transmission of Sensitive Data
Unprotected Transport of Credentials
Mail Server Misconfiguration
Information Exposure Through an Error Message
Missing Secure or HTTPOnly Cookie Flag
Cross-site Scripting (XSS) - Stored