These are all security issues fixed in the libvlc5-3.0.16-1.5 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "libvlccore9": "3.0.16-1.5", "vlc-jack": "3.0.16-1.5", "vlc-codec-gstreamer": "3.0.16-1.5", "vlc": "3.0.16-1.5", "vlc-devel": "3.0.16-1.5", "vlc-vdpau": "3.0.16-1.5", "vlc-qt": "3.0.16-1.5", "vlc-lang": "3.0.16-1.5", "vlc-noX": "3.0.16-1.5", "vlc-opencv": "3.0.16-1.5", "libvlc5": "3.0.16-1.5" } ] }