CVEs affecting projects tracked on Release Alert, from NVD & OSV.
OpenRapid RapidCMS 1.3.1 is vulnerable to Cross Site Scripting (XSS) in /user/user-move.php.