CVEs affecting projects tracked on Release Alert, from NVD & OSV.
Improper Authentication in GitHub repository snipe/snipe-it prior to 6.0.10.