Reflective XSS
Information leak/disclosure
Application/Business Logic
Stored XSS
Open Redirect
Auth issues
SQL Injection
Deserialization