CVEs affecting projects tracked on Release Alert, from NVD & OSV.
OpenRapid RapidCMS 1.3.1 is vulnerable to Cross Site Scripting (XSS) in /system/update-run.php.