CVEs affecting projects tracked on Release Alert, from NVD & OSV.
In Flagsmith before 2.134.1, the get_document endpoint is not correctly protected by permissions.