org.http4s vulnerabilities

2 CVEs affecting org.http4s products, 0 known to be exploited (CISA KEV), with EPSS scores. Most affected: Blaze-HTTP 2.13, Blaze-HTTP 3, HTTP4S-Blaze-Server 2.13, HTTP4S-Ember-Core 2.12, HTTP4S-Ember-Core 2.13.