CVEs affecting projects tracked on Release Alert, from NVD & OSV.
In Moodle, a remote code execution risk was identified in the Shibboleth authentication plugin.