StackRadar

CVE-2021-23337

High

Advisory

Published 15 Feb 2021In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.213
97th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
474
of 17,781 indexed, latest versions
Container images
493
deployed by those charts
Fix available
4 of 4
affected packages

lodash vulnerable to Code Injection via `_.template` imports key names

Carried by container images the latest versions of 474 of 17,781 indexed charts deploy, on 493 images.

Affected packageAffected versionsFixed inImages
lodashnpm0.9.2, 1.0.2, 1.3.1, 2.4.1+13 more4.17.21, 4.18.0485
lodash-esnpm4.17.4, 4.17.15, 4.17.20, 4.17.21+2 more4.17.21, 4.18.0112
lodash.templatenpm2.4.1, 3.6.2, 4.5.0, 4.17.15+1 more4.18.045
node-lodashdeb4.17.15+dfsg-24.17.15+dfsg-2ubuntu0.1~esm12
OSV records
GHSA-35jh-r3h4-6jhmGHSA-r5fr-rjxr-66jcUBUNTU-CVE-2021-23337
Also known as
CVE-2026-4800, USN-8411-1

Charts affected

474 by stars
ChartLatestAffected imagesRadar Score
geth-swapethersphereVerified publisher0.6.31 of 2See more

geth-swap ethersphere 0.6.3

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ethersphere/bee-localchain:latest0558799ca992
lodash@4.17.21
4.18.0

Open the chart page →

4,756
onboarding-faucetethersphereVerified publisher0.2.01 of 1See more

onboarding-faucet ethersphere 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ethersphere/onboarding-faucet:0.3.0513154aab230
lodash@4.17.21
4.18.0

Open the chart page →

3,320
evobotevobotVerified publisher0.1.11 of 1See more

evobot evobot 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
lodash@4.17.21
4.18.0

Open the chart page →

2,987
mandefactlyVerified publisher0.5.161 of 3See more

mande factly 0.5.16

1 of the 3 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
factly/mande-web:0.34.1742355964b0e
lodash@4.17.21
4.18.0

Open the chart page →

4,777
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-user-service:1.049e164a9a439
lodash@4.17.21
4.18.0

Open the chart page →

7,691
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
lodash@4.17.21
lodash@3.10.1
4.18.0
4.17.21

Open the chart page →

64,489
iotagent-jsonfiware0.1.21 of 1See more

iotagent-json fiware 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
fiware/iotagent-json:3.1.0879b21a0d36d
lodash@4.17.21
4.18.0

Open the chart page →

937
iotagent-ulfiware0.1.21 of 1See more

iotagent-ul fiware 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
fiware/iotagent-ul:1.14.0fe11f55a926d
lodash@4.17.20
4.17.21

Open the chart page →

3,337
keyrockfiware0.8.71 of 1See more

keyrock fiware 0.8.7

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
fiware/idm:8.3.3a1b6ed4ae84f
lodash@4.17.21
lodash@4.17.4
4.18.0
4.17.21

Open the chart page →

3,159
canary-checkerflanksourceVerified publisher1.2.01 of 2See more

canary-checker flanksource 1.2.0

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
flanksource/canary-checker-ui:v1.4.281764c84e550db
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0

Open the chart page →

4,650
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
louislam/uptime-kuma:13d632903e6af
lodash@4.17.21
4.18.0

Open the chart page →

3,474
flamegabe565Verified publisher0.6.01 of 1See more

flame gabe565 0.6.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
pawelmalak/flame:multiarch2.3.19f88b17692a0
lodash@4.17.21
4.18.0

Open the chart page →

2,172
wekan-oldgabisonfire0.1.21 of 1See more

wekan-old gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
wekanteam/wekan:v4.2268a51f0327df
lodash@4.17.19
lodash.template@3.6.2
4.17.21
no fix listed

Open the chart page →

5,941
rtlgaloymoney0.4.31 of 2See more

rtl galoymoney 0.4.3

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
lodash@4.17.21
4.18.0

Open the chart page →

2,090
rtlgaloymoney20.4.31 of 2See more

rtl galoymoney2 0.4.3

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
lodash@4.17.21
4.18.0

Open the chart page →

2,090
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
lodash@4.17.21
4.18.0

Open the chart page →

12,222
flaresolverrgeek-cookbookVerified publisher5.4.21 of 1See more

flaresolverr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v1.2.896f8c08c0c1b
lodash@4.17.21
4.18.0

Open the chart page →

1,870
floodgeek-cookbookVerified publisher6.4.21 of 1See more

flood geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
jesec/flood:4.6.060bd59cfb4eb
lodash@4.17.21
4.18.0

Open the chart page →

2,000
grocygeek-cookbookVerified publisher8.5.21 of 1See more

grocy geek-cookbook 8.5.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
linuxserver/grocy:version-v3.1.3291296e66c2a
lodash@4.17.21
4.18.0

Open the chart page →

1,043
nightscoutgeek-cookbookVerified publisher1.2.21 of 1See more

nightscout geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21

Open the chart page →

4,043
openemrgeek-cookbookVerified publisher5.2.01 of 1See more

openemr geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
openemr/openemr:6.1.089eaa6d9a4e3
lodash@4.17.21
4.18.0

Open the chart page →

8,392
rtorrent-floodgeek-cookbookVerified publisher9.4.21 of 1See more

rtorrent-flood geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
jesec/rtorrent-flood:latestf0c894ec459e
lodash@4.17.21
4.18.0

Open the chart page →

2,000
shinobigeek-cookbookVerified publisher1.2.21 of 1See more

shinobi geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
shinobisystems/shinobi:dev3ca746937856
lodash@4.17.21
4.18.0

Open the chart page →

4,591
theloungegeek-cookbookVerified publisher3.4.21 of 1See more

thelounge geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
thelounge/thelounge:4.2.0-alpine639978459c3a
lodash@4.17.20
4.17.21

Open the chart page →

2,689
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
library/kibana:7.17.150172f1c538e7
lodash@4.17.21
4.18.0

Open the chart page →

34,754
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
lodash@4.17.21
lodash-es@4.17.21
lodash.template@4.5.0
4.18.0
4.18.0
no fix listed

Open the chart page →

9,019
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
lodash@4.17.21
4.18.0

Open the chart page →

2,973
contentbridgeglenndehaanVerified publisher1.1.01 of 1See more

contentbridge glenndehaan 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
glenndehaan/contentbridge:latest99b9e4f73848
lodash@4.17.21
4.18.0

Open the chart page →

1,000
Governify-Bluejaygovernify0.1.05 of 12See more

Governify-Bluejay governify 0.1.0

5 of the 12 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21
governify/director:v1.4.0608c6940bb98
lodash@4.17.21
4.18.0
governify/registry:v3.4.0d3f37f4f8168
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21
governify/render:v2.2.0daeca1ce28e6
lodash@4.17.21
4.18.0
governify/reporter:v2.2.038595913458f
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21

Open the chart page →

22,512
Governify-Falcongovernify0.1.06 of 10See more

Governify-Falcon governify 0.1.0

6 of the 10 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21
governify/collector-dynamic:v1.3.06d3d1a5b46a9
lodash@4.17.21
4.18.0
governify/director:v1.4.0608c6940bb98
lodash@4.17.21
4.18.0
governify/registry:v3.4.0d3f37f4f8168
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21
governify/render:v2.2.0daeca1ce28e6
lodash@4.17.21
4.18.0
governify/reporter:v2.2.038595913458f
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21

Open the chart page →

24,319
opentelemetry-demogpg-dev0.33.82 of 27See more

opentelemetry-demo gpg-dev 0.33.8

2 of the 27 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
lodash@4.17.21
4.18.0
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
lodash@4.17.21
4.18.0

Open the chart page →

49,025
hive-appgraphql-hive1.0.01 of 1See more

hive-app graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0

Open the chart page →

2,682
hive-appgraphql-hive-subcharts1.0.01 of 1See more

hive-app graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0

Open the chart page →

2,682
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
lodash@4.17.21
4.18.0

Open the chart page →

2,950
hubothalkeye0.0.11 of 1See more

hubot halkeye 0.0.1

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
halkeye/hubot:latest9764d2202130
lodash@4.17.19
4.17.21

Open the chart page →

2,116
irslackdhalkeye0.1.01 of 1See more

irslackd halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
halkeye/irslackd:latest7638bfba70b0
lodash@4.17.15
4.17.21

Open the chart page →

2,064
matrix-appservice-gitterhalkeye0.1.01 of 1See more

matrix-appservice-gitter halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
lodash@4.17.15
lodash@3.10.1
4.18.0
4.17.21

Open the chart page →

3,003
theloungehalkeye4.3.11 of 1See more

thelounge halkeye 4.3.1

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
thelounge/thelounge:4.3.0-alpine0037aa258261
lodash@4.17.21
4.18.0

Open the chart page →

1,938
home-assistant-matter-hubhelm-chart-roeiVerified publisher3.0.21 of 1See more

home-assistant-matter-hub helm-chart-roei 3.0.2

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
luligu/matterbridge:3.0.28f97884bebc2
lodash@4.17.21
4.18.0

Open the chart page →

3,806
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
lodash@4.17.21
4.18.0

Open the chart page →

24,161
streamsheetshelm-chartsVerified publisher0.2.34 of 8See more

streamsheets helm-charts 0.2.3

4 of the 8 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
lodash@4.17.15
lodash-es@4.17.15
4.17.21
4.17.21
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
lodash@4.17.15
lodash-es@4.17.15
4.17.21
4.17.21
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
lodash@4.17.13
lodash-es@4.17.15
4.17.21
4.17.21
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
lodash@4.17.15
lodash-es@4.17.15
4.17.21
4.17.21

Open the chart page →

89,959
backstagehelm-charts-nr0.1.151 of 2See more

backstage helm-charts-nr 0.1.15

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
lodash@4.17.15
lodash-es@4.17.15
lodash.template@4.5.0
4.17.21
4.17.21
no fix listed

Open the chart page →

8,213
hoppscotchhelm-charts-nr0.3.11 of 1See more

hoppscotch helm-charts-nr 0.3.1

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
lodash@4.17.21
4.18.0

Open the chart page →

3,451
crucixhelm-crucix0.2.01 of 1See more

crucix helm-crucix 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/calesthio/crucix:latest67c5244b6acf
lodash@4.17.23
4.18.0

Open the chart page →

778
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
lodash@4.17.21
4.18.0

Open the chart page →

7,633
automatischhelmforgeVerified publisher1.3.71 of 4See more

automatisch helmforge 1.3.7

1 of the 4 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
automatischio/automatisch:0.15.03bace7a12d5f
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0

Open the chart page →

5,769
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
lodash@4.17.21
4.18.0

Open the chart page →

18,813
croniclehelmforgeVerified publisher1.1.101 of 1See more

cronicle helmforge 1.1.10

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
soulteary/cronicle:0.9.80ac2512fa6e39
lodash@4.17.21
4.18.0

Open the chart page →

1,271
ryothelmforgeVerified publisher1.0.01 of 2See more

ryot helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
lodash@4.17.23
4.18.0

Open the chart page →

6,012
uptime-kumahelmforgeVerified publisher1.5.121 of 1See more

uptime-kuma helmforge 1.5.12

1 of the 1 container images this version deploys carry CVE-2021-23337.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.33e24e96c89ef
lodash@4.17.23
4.18.0

Open the chart page →

30,099

Container images carrying it

493 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
mitchxxx/amazon:214e72480ec63a
lodash@4.17.21
4.18.0
1
moonrailgun/tianji:1.11.2b528c8f8fcc4
lodash@4.17.21
4.18.0
1
moreillon/food-manager:lateste8fd856e593d
lodash@4.17.21
4.18.0
1
mozilla/sentencecollector:2.0.91da6ff5c4895
lodash@4.17.19
lodash.template@4.5.0
lodash@4.17.19
lodash.template@4.5.0
4.18.0
4.18.0
4.17.21
no fix listed
1
muluder/prograncontrollermcord:0.1.843b597a93da7
lodash@3.10.1
4.17.21
1
n8nio/n8n:1.86.08b39ed5a2de9
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
n8nio/n8n:0.212.0a9195bc499a3
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
n8nio/n8n:1.33.1dd171d45102a
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
netrisai/controller-web-service-backend:4.6.0-0086e865080e86c
lodash@4.17.21
4.18.0
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
lodash@4.17.21
lodash@4.17.20
4.18.0
4.17.21
1
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
lodash@4.17.21
4.18.0
1
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
lodash@4.17.21
4.18.0
1
nocodb/nocodb:0.258.06779a4ddedf2
lodash@4.17.21
4.18.0
1
nocodb/nocodb:0.301.5d9516f0bf546
lodash@4.17.23
4.18.0
1
obolnetwork/charon-dkg-sidecar:maine263be0a7440
lodash@4.17.21
4.18.0
1
ohmyform/ohmyform:1.0.3afe53f4acdb1
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
omecproject/onos-progran:1.0.05715e5648aa0
lodash@3.10.1
4.17.21
1
ondrejsika/parking:latestb1fd497416c8
lodash@4.17.15
lodash.template@4.5.0
lodash@4.17.15
lodash.template@4.5.0
4.18.0
4.18.0
4.17.21
no fix listed
1
ooghenekaro/amazon:latest03394ba1d6d8
lodash@4.17.21
4.18.0
1
opea/codegen-ui:1.02bee4eb66f3e
lodash@4.17.21
4.18.0
1
openbas/caldera-server:5.1.0a277796d9724
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
openemr/openemr:6.1.089eaa6d9a4e3
lodash@4.17.21
4.18.0
1
openhab/openhab-cloud:a8138a329dd2bac8c4b
lodash@4.17.21
4.18.0
1
opensearchproject/opensearch-dashboards:2.18.00ecd8444add2
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
opensearchproject/opensearch-dashboards:2.10.0485a0019e5d6
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
opensearchproject/opensearch-dashboards:2.15.0b7c26c60bfaf
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
openwhisk/alarmprovider:2.2.0b695a6ceb406
lodash@4.17.20
lodash@3.10.1
4.18.0
4.17.21
1
oryd/kratos-selfservice-ui-node:v26.2.046a7bac1ad0c
lodash@4.17.23
lodash-es@4.17.23
4.18.0
4.18.0
1
oryd/kratos-selfservice-ui-node:v0.13.0-20d454c21c11bc
lodash@4.17.21
4.18.0
1
otwld/velero-ui:0.10.2d1954b759e47
lodash@4.17.21
4.18.0
1
outlinewiki/outline:0.82.0494dfb9249a6
lodash@4.17.21
lodash-es@4.17.21
4.18.0
4.18.0
1
pachyderm/grpc-proxy:0.4.92b27f41d4d02
lodash@4.17.15
lodash@4.17.15
4.18.0
4.17.21
1
parithoshj/testnet-faucet:9859e0dcdca426fea6d
lodash@4.17.11
lodash@4.17.11
lodash.template@2.4.1
4.18.0
4.17.21
no fix listed
1
patrickhulce/lhci-server:0.8.174b4b6a3954d
lodash@4.17.21
4.18.0
1
pawelmalak/flame:2.1.193e7b0abb603
lodash@4.17.21
4.18.0
1
pawelmalak/flame:multiarch2.3.19f88b17692a0
lodash@4.17.21
4.18.0
1
penpotapp/exporter:2.2.15c835ffd87ab
lodash@4.17.21
4.18.0
1
phntom/codimd:2.4.31b9aafbb62e6
lodash@4.17.21
lodash-es@4.17.21
lodash.template@4.5.0
lodash.template@4.5.0
4.18.0
4.18.0
4.18.0
no fix listed
1
phpdockerio/readability-js-server:1.8.0ea8354b42600
lodash@4.17.21
4.18.0
1
polonel/trudesk:1.2.60cf6513f6fe3
lodash@4.17.11
lodash@4.17.11
4.18.0
4.17.21
1
pysga1996/python-redis-web:latestfdeec30ad482
lodash@4.17.20
lodash@4.17.20
4.18.0
4.17.21
1
qxip/qryn:3.2.3977acc9c7a9fd
lodash@4.17.21
4.18.0
1
redis/redisinsight:2.68019fcf774631
lodash@4.17.21
4.18.0
1
redis/redisinsight:3.2.055542a762210
lodash@4.17.21
4.18.0
1
redis/redisinsight:2.46699d341bd329
lodash@4.17.21
4.18.0
1
redis/redisinsight:3.485562d67a912
lodash@4.17.21
4.18.0
1
requarks/wiki:canary-2.5.2438b5865a7386c
lodash@4.17.21
4.18.0
1
roadiehq/community-backstage-image:latestef355bf5b639
lodash@4.17.21
lodash-es@4.17.15
lodash@4.17.15
lodash-es@4.17.15
4.18.0
4.18.0
4.17.21
4.17.21
1
safeglobal/safe-client-gateway-nest:v1.51.012ccfd93fcaf
lodash@4.17.21
4.18.0
1
samajh/alprfrontend:latest05ef4fddbb75
lodash@4.17.21
lodash.template@4.5.0
lodash.template@4.5.0
4.18.0
4.18.0
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.