CVEs affecting projects tracked on Release Alert, from NVD & OSV.
HackMD CodiMD <2.5.2 is vulnerable to Denial of Service.