tinyexr commit 0.9.5 was discovered to contain an array index error in the tinyexr::SaveEXR component, which can lead to a denial of service (DOS).
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-18428.json"