CVEs affecting projects tracked on Release Alert, from NVD & OSV.
FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.