The certificateless signature scheme can suffer from public key replacement attack so that any one can forge a validsignature on any message.
Wrapping attacks aim at injecting a faked element into the message structure so that a validsignature covers the unmodified element while the faked one is processed by the application logic.