In this case the details are not yet released.
Maybe an internal change in policy and/or management? Maybe WD have discovered an issue themselves? Maybe someone has disclosed a problem that so stupidly serious that it can’t be ignored as once released a parrot would be able to upload files remotely and do what they like with a compromised NAS?
The previous version of firmware was only released for manual download and that had significant updates within it.
I still find it mind boggling how one of the past vulnerabilities was some code or program that is generally used in D-Link equipment managed to make its way into a WD NAS and worst still, that program has a hard coded back-door into it! That has since been patched.
It will be interesting to know that write-up is given to the two CVEs that have been addressed.