StackRadar

CVE-2024-37891

Medium

Advisory

Published 17 Jun 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
600
of 17,787 indexed, latest versions
Container images
643
deployed by those charts
Fix available
4 of 4
affected packages

urllib3's Proxy-Authorization request header isn't stripped during cross-origin redirects

Carried by container images the latest versions of 600 of 17,787 indexed charts deploy, on 643 images.

Affected packageAffected versionsFixed inImages
python-urllib3deb1.7.1-1build1, 1.7.1-1ubuntu4, 1.13.1-2ubuntu0.16.04.1, 1.13.1-2ubuntu0.16.04.2+8 more1.13.1-2ubuntu0.16.04.4+esm2, 1.22-1ubuntu0.18.04.2+esm2, 1.25.8-2ubuntu0.4, 1.26.5-1~exp1ubuntu0.2+1 more46
urllib3pypi1.7.1, 1.10.2, 1.13.1, 1.19.1+42 more1.26.19, 2.2.2623
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+15 more8.1.1-2ubuntu0.6+esm10, 9.0.1-2.3~ubuntu1.18.04.8+esm6, 20.0.2-5ubuntu1.11, 22.0.2+dfsg-1ubuntu0.569
python-urllib3rpm1.24.2-4.el8, 1.24.2-5.el8, 1.24.2-5.el8_6.1, 1.24.2-5.el8_9.2+3 more0:1.24.2-5.el8_6.3, 0:1.24.2-8.el8_10, 0:1.26.5-5.el9_4.134
OSV records
DEBIAN-CVE-2024-37891GHSA-34jh-p97f-mpxfRHSA-2024:5041RHSA-2024:5309RHSA-2024:6162UBUNTU-CVE-2024-37891
Also known as
PYSEC-2026-1995, RHSA-2024:5526, RHSA-2024:6240, USN-7084-1, USN-7084-2

Charts affected

600 by stars
ChartLatestAffected imagesRadar Score
zookeeper-helm-chartnotesprojectchart0.1.01 of 1See more

zookeeper-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
python-urllib3@1.7.1-1build1
urllib3@1.7.1
no fix listed
1.26.19

Open the chart page →

41,427
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
python-pip@9.0.1-2.3~ubuntu1.18.04.1
9.0.1-2.3~ubuntu1.18.04.8+esm6

Open the chart page →

27,633
object-clonerobject-clonerVerified publisher2.0.01 of 1See more

object-cloner object-cloner 2.0.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/ideamixes/object-cloner:2.0.031030fd2f192
urllib3@2.0.4
2.2.2

Open the chart page →

1,588
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
python-pip@22.0.2+dfsg-1ubuntu0.3
22.0.2+dfsg-1ubuntu0.5

Open the chart page →

9,005
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
python-urllib3@1.24.2-5.el8
urllib3@1.25.9
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

18,023
comacopencord1.0.04 of 9See more

comac opencord 1.0.0

4 of the 9 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
1.26.19
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19
omecproject/onos-progran:1.0.05715e5648aa0
python-urllib3@1.13.1-2ubuntu0.16.04.1
urllib3@1.13.1
1.13.1-2ubuntu0.16.04.4+esm2
1.26.19
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
1.26.19
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19

Open the chart page →

26,211
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
urllib3@1.25.3
1.26.19

Open the chart page →

4,612
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
omecproject/mme-exporter:paging-latestbcc5f19fd676
python-pip@9.0.1-2.3~ubuntu1.18.04.1
9.0.1-2.3~ubuntu1.18.04.8+esm6

Open the chart page →

40,715
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
python-urllib3@1.13.1-2ubuntu0.16.04.1
urllib3@1.13.1
1.13.1-2ubuntu0.16.04.4+esm2
1.26.19

Open the chart page →

38,865
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
python-pip@8.1.1-2ubuntu0.4
python-urllib3@1.13.1-2ubuntu0.16.04.2
urllib3@1.13.1
8.1.1-2ubuntu0.6+esm10
1.13.1-2ubuntu0.16.04.4+esm2
1.26.19
voltha/voltha-netconf:1.6.037f80524c207
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19
voltha/voltha-ofagent:1.6.09ee8c1f4428c
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19
voltha/voltha-voltha:1.6.0ff596b62de59
python-pip@8.1.1-2ubuntu0.4
urllib3@1.22
8.1.1-2ubuntu0.6+esm10
1.26.19

Open the chart page →

93,855
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
python-urllib3@1.24.2-5.el8_9.2
urllib3@2.2.1
0:1.24.2-8.el8_10
2.2.2

Open the chart page →

11,796
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
urllib3@1.24.2
1.26.19

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
urllib3@1.24.2
1.26.19

Open the chart page →

7,519
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
urllib3@1.26.5
1.26.19
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
python-urllib3@1.26.5-5.el9
urllib3@2.2.1
0:1.26.5-5.el9_4.1
2.2.2

Open the chart page →

18,922
exporteropenshift1.0.473 of 3See more

exporter openshift 1.0.47

3 of the 3 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
urllib3@1.24.2
1.26.19
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
urllib3@1.26.5
1.26.19
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
urllib3@1.26.5
1.26.19

Open the chart page →

13,000
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
urllib3@1.24.2
1.26.19

Open the chart page →

4,749
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
urllib3@1.26.5
1.26.19

Open the chart page →

4,127
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
urllib3@1.24.2
1.26.19

Open the chart page →

5,863
orion-ldopenshift1.0.31 of 2See more

orion-ld openshift 1.0.3

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
python-urllib3@1.24.2-5.el8
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

14,727
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
python-urllib3@1.26.5-3.el9
urllib3@1.26.5
0:1.26.5-5.el9_4.1
1.26.19

Open the chart page →

8,599
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

13,100
openwhiskopenwhisk1.0.02 of 10See more

openwhisk openwhisk 1.0.0

2 of the 10 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
apache/couchdb:2.39f895c8ae371
urllib3@1.19.1
1.26.19
openwhisk/ow-utils:1.0.0c80dba0de3aa
python-pip@9.0.1-2.3~ubuntu1.18.04.4
urllib3@1.25.11
9.0.1-2.3~ubuntu1.18.04.8+esm6
1.26.19

Open the chart page →

36,215
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.06 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

6 of the 40 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
urllib3@2.0.7
2.2.2
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
urllib3@2.0.7
2.2.2
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
urllib3@2.0.7
2.2.2
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.2.2
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
urllib3@2.0.7
2.2.2
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
urllib3@2.0.7
2.2.2

Open the chart page →

71,208
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
urllib3@1.26.18
1.26.19

Open the chart page →

5,137
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
urllib3@2.2.1
2.2.2

Open the chart page →

5,411
plausiblepascaliskeVerified publisher2.0.01 of 1See more

plausible pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
urllib3@1.26.18
1.26.19

Open the chart page →

960
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-urllib3@1.24.2-5.el8
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
python-urllib3@1.24.2-5.el8
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

15,466
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
urllib3@1.26.14
1.26.19

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
urllib3@1.26.12
1.26.19

Open the chart page →

4,642
npre-essentialsphntom0.1.601 of 22See more

npre-essentials phntom 0.1.60

1 of the 22 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
urllib3@1.26.12
1.26.19

Open the chart page →

26,840
postgresql-backupphntom0.1.91 of 1See more

postgresql-backup phntom 0.1.9

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
phntom/postgresql-backup-s3:1.0.2249b6488f618b
urllib3@1.26.13
1.26.19

Open the chart page →

2,556
stocks-nasdaq-crawlerphntom0.0.361 of 1See more

stocks-nasdaq-crawler phntom 0.0.36

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
urllib3@1.25.10
1.26.19

Open the chart page →

1,845
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
python-pip@20.0.2-5ubuntu1.6
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.26.12
20.0.2-5ubuntu1.11
1.25.8-2ubuntu0.4
1.26.19

Open the chart page →

22,084
plausibleplausible0.1.21 of 2See more

plausible plausible 0.1.2

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
urllib3@1.26.18
1.26.19

Open the chart page →

1,338
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
urllib3@1.25.8
1.26.19

Open the chart page →

11,151
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
python-urllib3@1.24.2-5.el8
urllib3@1.24.2
0:1.24.2-8.el8_10
1.26.19

Open the chart page →

12,754
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
urllib3@2.2.1
2.2.2

Open the chart page →

12,912
postgres-controllerpostgres-controller1.3.61 of 1See more

postgres-controller postgres-controller 1.3.6

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
evgkrsk/postgres-controller:0.6.237f0e1f435c3
urllib3@1.26.14
1.26.19

Open the chart page →

1,782
seashellpuckpuck1.2.01 of 1See more

seashell puckpuck 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
ghcr.io/puckpuck/seashell:1.2ef5e31333821
urllib3@2.0.6
2.2.2

Open the chart page →

4,215
pod-pvc-mappingpvc-exporter0.1.31 of 1See more

pod-pvc-mapping pvc-exporter 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
dockerid31415926/pod-pvc-mapping:v0.1.3354309669f16
urllib3@1.26.7
1.26.19

Open the chart page →

1,762
kubecostradar-baseVerified publisher1.0.01 of 7See more

kubecost radar-base 1.0.0

1 of the 7 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
urllib3@1.26.5
1.26.19

Open the chart page →

9,355
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2024-37891.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
urllib3@2.2.0
2.2.2

Open the chart page →

5,269

Container images carrying it

643 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ihatemoney/ihatemoney:5.2.0457fda1feb32
urllib3@1.26.9
1.26.19
1
improwised/erpnext-worker:v13.4.197280b55cbd4
urllib3@1.26.5
1.26.19
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
python-pip@20.0.2-5ubuntu1.6
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
20.0.2-5ubuntu1.11
1.25.8-2ubuntu0.4
1.26.19
1
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
urllib3@1.26.5
1.26.19
1
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
urllib3@1.26.5
1.26.19
1
istio/examples-helloworld-v1:latest328b237e4fb1
urllib3@2.2.1
2.2.2
1
istio/examples-helloworld-v2:latest0a7f02b2c7c9
urllib3@2.2.1
2.2.2
1
jaedb/iris:latest048cfbf58d57
urllib3@1.26.12
1.26.19
1
jertel/elastalert2:2.2.34dcc0ef93efc
urllib3@1.26.7
1.26.19
1
jmferrer/azure-devops-agent:latest030f68ec6998
urllib3@1.25.3
1.26.19
1
jordan/icinga2:latestf75025fe8ea8
urllib3@1.26.12
1.26.19
1
josh5/unmanic:0.2.64d49c4816260
python-pip@22.0.2+dfsg-1ubuntu0.4
urllib3@2.2.1
22.0.2+dfsg-1ubuntu0.5
2.2.2
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
urllib3@1.26.12
1.26.19
1
julb/alertmanager-gchat-integration:1.0.5837c4038a0dd
urllib3@1.26.4
1.26.19
1
julb/kubernetes-configmap-sync:1.1.0d7d8836366ad
urllib3@1.26.2
1.26.19
1
jupyterhub/k8s-hub:3.0.1-0.dev.git.6287.hbfb05cd65a0ceed1300a
urllib3@2.0.4
2.2.2
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
python-pip@20.0.2-5ubuntu1.1
urllib3@1.26.2
20.0.2-5ubuntu1.11
1.26.19
1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
python-pip@20.0.2-5ubuntu1.6
urllib3@1.26.5
20.0.2-5ubuntu1.11
1.26.19
1
jupyterhub/k8s-singleuser-sample:3.0.1-0.dev.git.6287.hbfb05cd68e4778efec8e
urllib3@2.0.4
2.2.2
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
urllib3@1.25.11
1.26.19
1
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
urllib3@1.25.10
1.26.19
1
kelvinsp/mlflow:1.26.1cd33e6db2a59
urllib3@1.26.9
1.26.19
1
kennethreitz/httpbin:latest599fe5e50731
python-pip@9.0.1-2.3~ubuntu1
9.0.1-2.3~ubuntu1.18.04.8+esm6
1
kfirfer/kibana-index-pattern-updater:1.0.12e88cfcec5c93
urllib3@1.26.2
1.26.19
1
kfirfer/scripts:0.0.2481e5c4e5d70e
urllib3@1.26.7
1.26.19
1
kfirfer/slackgpt:0.0.15461331bd838e
urllib3@2.0.7
2.2.2
1
kfserving/models-web-app:v0.6.1f322d6ffdfa3
urllib3@1.26.6
1.26.19
1
kinseii/wazuh-agent:4.14.17160eb143728
urllib3@2.2.0
2.2.2
1
kiwigrid/k8s-sidecar:1.1.03e86186656d3
urllib3@1.25.10
1.26.19
1
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
urllib3@1.26.0
1.26.19
1
kiwigrid/k8s-sidecar:0.0.186eb52513d59e
urllib3@1.25.3
1.26.19
1
kiwigrid/k8s-sidecar:1.12.089739be9ff38
urllib3@1.25.11
1.26.19
1
kiwigrid/k8s-sidecar:0.0.16899ccd0b1f54
urllib3@1.24.1
1.26.19
1
kiwigrid/k8s-sidecar:0.1.20af151f677a63
urllib3@1.25.3
1.26.19
1
kiwigrid/k8s-sidecar:1.26.2e271016441af
urllib3@2.2.1
2.2.2
1
kobotoolbox/kobocat:2.022.24ab15679454415
urllib3@1.26.9
1.26.19
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
urllib3@1.26.9
1.26.19
1
kocolosk/couchdb-statefulset-assembler:1.2.06effb982154e
urllib3@1.22
1.26.19
1
kserve/models-web-app:v0.8.063ea05e73842
urllib3@1.26.9
1.26.19
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
urllib3@1.24.1
1.26.19
1
kubeflownotebookswg/jupyter-web-app:v1.6.1d762690e21c1
urllib3@1.26.12
1.26.19
1
kubeflownotebookswg/tensorboards-web-app:v1.6.10876fef1973b
urllib3@1.26.12
1.26.19
1
kubeflownotebookswg/volumes-web-app:v1.6.17299fa94db15
urllib3@1.26.12
1.26.19
1
kubesphere/examples-bookinfo-productpage-v1:1.13.0378f49ec9c44
urllib3@1.24.2
1.26.19
1
kubesphere/rbd-provisioner:v2.1.1-k8s1.11b8ad79759bcd
urllib3@1.10.2
1.26.19
1
kubitodev/traefik-ip-whitelist-sync:1.0.2aa24869319bf
urllib3@1.26.10
1.26.19
1
kusionstack/karpor:v0.6.4b707d3bf0abd
urllib3@1.26.18
1.26.19
1
kyso/kyso-nbdime:latest4aa9d38ee81d
urllib3@1.26.13
1.26.19
1
langgenius/dify-api:0.6.11fca918260dd6
urllib3@2.2.1
2.2.2
1
library/couchdb:2.3.0ee75c9a737e7
urllib3@1.19.1
1.26.19
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.