Mahara 15.04 before 15.04.8 and 15.10 before 15.10.4 and 16.04 before 16.04.2 are vulnerable to a user - in some circumstances causing another user's artefacts to be included in a Leap2a export of their own pages.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-1000133.json"