PicoC Version 3.2.2 was discovered to contain a heap buffer overflow in the StringStrcat function in cstdlib/string.c when called from ExpressionParseFunctionCall.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-44318.json"