CVEs affecting projects tracked on Release Alert, from NVD & OSV.
Ruoyi 4.8.2 is vulnerable to Cross Site Scripting (XSS) at the interface /system/notice/add.