A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/
There are CESA aka. CentOS Security Advisory but this is not entirely clear how they differ from RHSA (RedHat) See for instance https://lists.centos.org/pipermail/centos-announce/2019-September/023448.html and https://access.redhat.com/errata/RHSA-2019:2729 These may be published only as a mailing list post?