CVEs affecting projects tracked on Release Alert, from NVD & OSV.
Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0.