StackRadar

CVE-2024-21538

High

Advisory

Published 8 Nov 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
537
of 17,781 indexed, latest versions
Container images
551
deployed by those charts
Fix available
1 of 1
affected package

Regular Expression Denial of Service (ReDoS) in cross-spawn

Carried by container images the latest versions of 537 of 17,781 indexed charts deploy, on 551 images.

Affected packageAffected versionsFixed inImages
cross-spawnnpm3.0.1, 4.0.2, 5.1.0, 6.0.5+3 more6.0.6, 7.0.5551
OSV records
GHSA-3xgq-45jj-v275

Charts affected

537 by stars
ChartLatestAffected imagesRadar Score
wekan-oldgabisonfire0.1.21 of 1See more

wekan-old gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
wekanteam/wekan:v4.2268a51f0327df
cross-spawn@5.1.0
6.0.6

Open the chart page →

5,941
anonaddygeek-cookbookVerified publisher6.0.01 of 1See more

anonaddy geek-cookbook 6.0.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
anonaddy/anonaddy:0.12.3957a95565166
cross-spawn@7.0.3
7.0.5

Open the chart page →

4,788
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
cross-spawn@5.1.0
6.0.6

Open the chart page →

10,994
littlelink-servergeek-cookbookVerified publisher1.4.21 of 1See more

littlelink-server geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/techno-tim/littlelink-server:lateste84ea9d93b60
cross-spawn@7.0.3
7.0.5

Open the chart page →

819
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
cross-spawn@7.0.3
7.0.5

Open the chart page →

12,958
nightscoutgeek-cookbookVerified publisher1.2.21 of 1See more

nightscout geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
cross-spawn@7.0.3
7.0.5

Open the chart page →

4,043
node-redgeek-cookbookVerified publisher10.3.21 of 1See more

node-red geek-cookbook 10.3.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
nodered/node-red:2.2.2e131dcadfe92
cross-spawn@5.1.0
6.0.6

Open the chart page →

2,102
theloungegeek-cookbookVerified publisher3.4.21 of 1See more

thelounge geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
thelounge/thelounge:4.2.0-alpine639978459c3a
cross-spawn@5.1.0
6.0.6

Open the chart page →

2,689
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
library/kibana:7.17.150172f1c538e7
cross-spawn@7.0.3
7.0.5

Open the chart page →

34,754
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
cross-spawn@7.0.3
7.0.5

Open the chart page →

9,019
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
cross-spawn@7.0.3
7.0.5

Open the chart page →

2,973
glassflow-etlglassflowVerified publisher0.5.211 of 16See more

glassflow-etl glassflow 0.5.21

1 of the 16 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/glassflow/glassflow-etl-fe:v3.2.05eaad43bd6c5
cross-spawn@7.0.3
7.0.5

Open the chart page →

12,056
Governify-Bluejaygovernify0.1.05 of 12See more

Governify-Bluejay governify 0.1.0

5 of the 12 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
cross-spawn@5.1.0
6.0.6
governify/director:v1.4.0608c6940bb98
cross-spawn@5.1.0
6.0.6
governify/registry:v3.4.0d3f37f4f8168
cross-spawn@6.0.5
6.0.6
governify/render:v2.2.0daeca1ce28e6
cross-spawn@6.0.5
6.0.6
governify/reporter:v2.2.038595913458f
cross-spawn@6.0.5
6.0.6

Open the chart page →

22,512
Governify-Falcongovernify0.1.06 of 10See more

Governify-Falcon governify 0.1.0

6 of the 10 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
cross-spawn@5.1.0
6.0.6
governify/collector-dynamic:v1.3.06d3d1a5b46a9
cross-spawn@7.0.3
7.0.5
governify/director:v1.4.0608c6940bb98
cross-spawn@5.1.0
6.0.6
governify/registry:v3.4.0d3f37f4f8168
cross-spawn@6.0.5
6.0.6
governify/render:v2.2.0daeca1ce28e6
cross-spawn@6.0.5
6.0.6
governify/reporter:v2.2.038595913458f
cross-spawn@6.0.5
6.0.6

Open the chart page →

24,319
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
cross-spawn@7.0.3
7.0.5
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
cross-spawn@7.0.3
7.0.5
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
cross-spawn@7.0.3
7.0.5

Open the chart page →

49,025
hive-appgraphql-hive1.0.01 of 1See more

hive-app graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
cross-spawn@7.0.3
7.0.5

Open the chart page →

2,682
hive-appgraphql-hive-subcharts1.0.01 of 1See more

hive-app graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
cross-spawn@7.0.3
7.0.5

Open the chart page →

2,682
littlelink-serverh2mVerified publisher1.0.11 of 1See more

littlelink-server h2m 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/techno-tim/littlelink-server:lateste84ea9d93b60
cross-spawn@7.0.3
7.0.5

Open the chart page →

819
h2ph2pVerified publisher1.0.11 of 1See more

h2p h2p 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
dacinfomotion/h2p:latest68fa393b472c
cross-spawn@7.0.3
7.0.5

Open the chart page →

1,713
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
cross-spawn@7.0.3
7.0.5

Open the chart page →

2,950
gitter-irc-bridgehalkeye0.1.11 of 1See more

gitter-irc-bridge halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
halkeye/gitter-slack-bridge:v2.0.153eb2b3cd4cb
cross-spawn@5.1.0
6.0.6

Open the chart page →

3,642
hubothalkeye0.0.11 of 1See more

hubot halkeye 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
halkeye/hubot:latest9764d2202130
cross-spawn@5.1.0
6.0.6

Open the chart page →

2,116
irslackdhalkeye0.1.01 of 1See more

irslackd halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
halkeye/irslackd:latest7638bfba70b0
cross-spawn@6.0.5
6.0.6

Open the chart page →

2,064
matrix-appservice-gitterhalkeye0.1.01 of 1See more

matrix-appservice-gitter halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
cross-spawn@6.0.5
6.0.6

Open the chart page →

3,003
heliconehelicone0.1.421 of 14See more

helicone helicone 0.1.42

1 of the 14 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
cross-spawn@7.0.3
7.0.5

Open the chart page →

24,995
zigbee2mqtthelm-chart-roeiVerified publisher1.19.01 of 1See more

zigbee2mqtt helm-chart-roei 1.19.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
cross-spawn@5.1.0
6.0.6

Open the chart page →

2,173
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
cross-spawn@6.0.5
6.0.6

Open the chart page →

24,161
streamsheetshelm-chartsVerified publisher0.2.35 of 8See more

streamsheets helm-charts 0.2.3

5 of the 8 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
cross-spawn@5.1.0
6.0.6
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
cross-spawn@6.0.5
6.0.6
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
cross-spawn@5.1.0
6.0.6
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
cross-spawn@6.0.5
6.0.6
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
cross-spawn@6.0.5
6.0.6

Open the chart page →

89,959
nodeapphelmcharts0.1.41 of 1See more

nodeapp helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
kaushaln1/helm_node_app:lateste9f2d5dfdba0
cross-spawn@7.0.3
7.0.5

Open the chart page →

948
backstagehelm-charts-nr0.1.151 of 2See more

backstage helm-charts-nr 0.1.15

1 of the 2 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
cross-spawn@7.0.3
7.0.5

Open the chart page →

8,213
hoppscotchhelm-charts-nr0.3.11 of 1See more

hoppscotch helm-charts-nr 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
cross-spawn@6.0.5
6.0.6

Open the chart page →

3,451
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
cross-spawn@7.0.3
7.0.5

Open the chart page →

18,813
croniclehelmforgeVerified publisher1.1.101 of 1See more

cronicle helmforge 1.1.10

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
soulteary/cronicle:0.9.80ac2512fa6e39
cross-spawn@7.0.3
7.0.5

Open the chart page →

1,271
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
cross-spawn@7.0.3
7.0.5

Open the chart page →

25,017
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
cross-spawn@5.1.0
6.0.6

Open the chart page →

4,253
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
cross-spawn@7.0.3
7.0.5

Open the chart page →

3,614
http-folderhttp-folder2.0.01 of 1See more

http-folder http-folder 2.0.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
aureliengasser/http-folder:1.1.111c4318c2571
cross-spawn@5.1.0
6.0.6

Open the chart page →

1,847
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
cross-spawn@7.0.3
7.0.5

Open the chart page →

3,407
crypto-watchdoghuseyinnurbaki0.1.01 of 1See more

crypto-watchdog huseyinnurbaki 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
hhaluk/crypto-watchdog:0.4.0a6555953d941
cross-spawn@5.1.0
6.0.6

Open the chart page →

2,656
ibm-app-navigatoribm-charts1.0.12 of 5See more

ibm-app-navigator ibm-charts 1.0.1

2 of the 5 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibmcom/app-nav-init:1.0.1240ff499eb5b
cross-spawn@5.1.0
6.0.6
ibmcom/app-nav-ui:1.0.1e2a86997b36b
cross-spawn@5.1.0
6.0.6

Open the chart page →

32,915
ibm-business-automation-insights-devibm-charts3.2.02 of 6See more

ibm-business-automation-insights-dev ibm-charts 3.2.0

2 of the 6 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibmcom/bai-admin-dev:19.0.202d882f2836e
cross-spawn@5.1.0
6.0.6
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
cross-spawn@5.1.0
6.0.6

Open the chart page →

39,349
ibm-kerify-devibm-charts1.0.01 of 1See more

ibm-kerify-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
cross-spawn@5.1.0
6.0.6

Open the chart page →

8,221
ibm-microclimateibm-charts0.1.03 of 8See more

ibm-microclimate ibm-charts 0.1.0

3 of the 8 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
cross-spawn@5.1.0
6.0.6
ibmcom/microclimate-portal:latested5505e5c7ec
cross-spawn@5.1.0
6.0.6
ibmcom/microclimate-theia:lateste17bdccc5030
cross-spawn@5.1.0
6.0.6

Open the chart page →

57,669
ibm-voice-gateway-devibm-charts3.1.01 of 2See more

ibm-voice-gateway-dev ibm-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
cross-spawn@5.1.0
6.0.6

Open the chart page →

4,505
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
cross-spawn@7.0.3
7.0.5

Open the chart page →

3,154
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
cross-spawn@7.0.3
7.0.5

Open the chart page →

11,812
erpnextimprowisedVerified publisher3.3.01 of 3See more

erpnext improwised 3.3.0

1 of the 3 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
improwised/erpnext-worker:v13.4.197280b55cbd4
cross-spawn@5.1.0
6.0.6

Open the chart page →

6,501
indexer-chartindexer-application0.1.01 of 1See more

indexer-chart indexer-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ibarreche/cloud-indexer-ci:latestb7a08274e69f
cross-spawn@5.1.0
6.0.6

Open the chart page →

3,289
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
infisical/infisical:latest02082bf13163
cross-spawn@7.0.3
7.0.5

Open the chart page →

3,014
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-21538.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
cross-spawn@7.0.3
7.0.5

Open the chart page →

4,944

Container images carrying it

551 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
felipecs8/conversor-temperatura:v1f945423be36d
cross-spawn@7.0.3
7.0.5
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
cross-spawn@7.0.3
7.0.5
1
fiware/idm:8.3.3a1b6ed4ae84f
cross-spawn@5.1.0
6.0.6
1
fiware/iotagent-ul:1.14.0fe11f55a926d
cross-spawn@5.1.0
6.0.6
1
flagsmith/flagsmith-frontend:v2.6.0df02a29e8b0c
cross-spawn@6.0.5
6.0.6
1
folioci/mod-graphql:latestf0655a6a08fd
cross-spawn@7.0.3
7.0.5
1
fonoster/routr-pgdata-migrations:2.13.6c7b1dba81eb3
cross-spawn@7.0.3
7.0.5
1
galaxy/galaxy-init:v18.010267bad550e6
cross-spawn@5.1.0
6.0.6
1
getferdi/ferdi-server:1.3.26e620b85afaa
cross-spawn@5.1.0
6.0.6
1
gethue/hue:4.11.011b649636e68
cross-spawn@5.1.0
6.0.6
1
gethue/hue:4.10.05702b2c37ff9
cross-spawn@5.1.0
6.0.6
1
governify/collector-dynamic:v1.3.06d3d1a5b46a9
cross-spawn@7.0.3
7.0.5
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
cross-spawn@5.1.0
6.0.6
1
gristlabs/grist:0.7.96e71b1914a7e
cross-spawn@5.1.0
6.0.6
1
halkeye/gitter-slack-bridge:v2.0.153eb2b3cd4cb
cross-spawn@5.1.0
6.0.6
1
halkeye/hubot:latest9764d2202130
cross-spawn@5.1.0
6.0.6
1
halkeye/irslackd:latest7638bfba70b0
cross-spawn@6.0.5
6.0.6
1
hamid2021/nodejs-dockercli:latest429d99890c3c
cross-spawn@7.0.3
7.0.5
1
hansehe/graphql-gateway:1.0.458e09540afbc
cross-spawn@7.0.3
7.0.5
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
cross-spawn@5.1.0
6.0.6
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
cross-spawn@5.1.0
6.0.6
1
hecrom/myweatherprocessingreactclient:1.3.115454b54d5b28
cross-spawn@7.0.3
7.0.5
1
helga09/shoes_ukr:v1.1.17999bc8b77c0
cross-spawn@7.0.3
7.0.5
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
cross-spawn@7.0.3
7.0.5
1
henrywhitaker3/speedtest-tracker:latest47159a940229
cross-spawn@7.0.3
7.0.5
1
heywood8/redisinsight:2.28.00bc9ab313d37
cross-spawn@6.0.5
6.0.6
1
hhaluk/crypto-watchdog:0.4.0a6555953d941
cross-spawn@5.1.0
6.0.6
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
cross-spawn@7.0.3
7.0.5
1
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
cross-spawn@7.0.3
7.0.5
1
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
cross-spawn@7.0.3
7.0.5
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
cross-spawn@5.1.0
6.0.6
1
i4trust/pdc-portal:2.0.03e77858e1219
cross-spawn@5.1.0
6.0.6
1
ianw/quickchart:v1.7.1dc49dd460c37
cross-spawn@5.1.0
6.0.6
1
ibarreche/cloud-front-ci:latestc8970ac1c8dc
cross-spawn@6.0.5
6.0.6
1
ibarreche/cloud-indexer-ci:latestb7a08274e69f
cross-spawn@5.1.0
6.0.6
1
ibmcom/app-nav-init:1.0.1240ff499eb5b
cross-spawn@5.1.0
6.0.6
1
ibmcom/app-nav-ui:1.0.1e2a86997b36b
cross-spawn@5.1.0
6.0.6
1
ibmcom/bai-admin-dev:19.0.202d882f2836e
cross-spawn@5.1.0
6.0.6
1
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
cross-spawn@5.1.0
6.0.6
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
cross-spawn@5.1.0
6.0.6
1
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
cross-spawn@5.1.0
6.0.6
1
ibmcom/microclimate-portal:latested5505e5c7ec
cross-spawn@5.1.0
6.0.6
1
ibmcom/microclimate-theia:lateste17bdccc5030
cross-spawn@5.1.0
6.0.6
1
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
cross-spawn@5.1.0
6.0.6
1
improwised/erpnext-worker:v13.4.197280b55cbd4
cross-spawn@5.1.0
6.0.6
1
instill/console:0.68.54cd70e2df5c6
cross-spawn@7.0.3
7.0.5
1
instructure/kinesalite:latest34400d82f28f
cross-spawn@7.0.3
7.0.5
1
intelloop/atlas-cmms-frontend:v1.5.12409c2a00ab6
cross-spawn@7.0.3
7.0.5
1
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
cross-spawn@6.0.5
6.0.6
1
istio/examples-bookinfo-ratings-v1:1.17.0b6a6b88d3578
cross-spawn@5.1.0
6.0.6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.