Catalyst vulnerabilities

2 CVEs affecting Catalyst products, 0 known to be exploited (CISA KEV), with EPSS scores. Most affected: Mahara, User Key Authentication Plugin.