StackRadar

CVE-2024-38819

High

Advisory

Published 19 Dec 2024In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.549
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
293
of 17,781 indexed, latest versions
Container images
234
deployed by those charts
Fix available
2 of 2
affected packages

Spring Framework Path Traversal vulnerability

Carried by container images the latest versions of 293 of 17,781 indexed charts deploy, on 234 images.

Affected packageAffected versionsFixed inImages
spring-webmvcmaven2.5.6.SEC03, 3.2.18.RELEASE, 4.3.1.RELEASE, 4.3.2.RELEASE+72 more6.1.14209
spring-webfluxmaven5.2.2.RELEASE, 5.2.7.RELEASE, 5.2.8.RELEASE, 5.3.1+20 more6.1.1459
OSV records
GHSA-g5vr-rgqm-vf78

Charts affected

293 by stars
ChartLatestAffected imagesRadar Score
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
spring-webmvc@5.1.6.RELEASE
no fix listed

Open the chart page →

11,553
apache-iotdbapache-iotdb-single-nodeVerified publisher0.1.01 of 1See more

apache-iotdb apache-iotdb-single-node 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
apache/iotdb:0.11.28647309f95d1
spring-webmvc@4.3.18.RELEASE
no fix listed

Open the chart page →

5,277
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
spring-webflux@5.3.23
no fix listed

Open the chart page →

2,231
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
spring-webmvc@6.1.1
6.1.14

Open the chart page →

6,187
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
fimperato/sparkvid-api:1.0.5-RELEASE604012b77841
spring-webmvc@5.2.9.RELEASE
no fix listed

Open the chart page →

8,866
automatedconfigurationassist-iot-automated-configuration1.0.01 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

1 of the 5 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
provectuslabs/kafka-ui:latest8f2ff02d64b0
spring-webflux@6.0.11
no fix listed

Open the chart page →

14,728
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
spring-webmvc@5.3.20
no fix listed

Open the chart page →

4,145
url-shortenerbeastob1.0.21 of 3See more

url-shortener beastob 1.0.2

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
beastob/url-shortener:1.0.299a49885ab33
spring-webmvc@5.3.10
no fix listed

Open the chart page →

3,607
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
spring-webmvc@5.3.18
no fix listed

Open the chart page →

13,459
pagesbrian-pages1.0.01 of 3See more

pages brian-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagesbrixton-mayuribhavsar23-pages1.0.01 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagesbrixton-pages1.0.01 of 3See more

pages brixton-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

11,869
pagescamden-pages1.0.01 of 3See more

pages camden-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
geoservercamptocamp20.0.36 of 12See more

geoserver camptocamp2 0.0.3

6 of the 12 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
spring-webflux@5.2.8.RELEASE
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
spring-webflux@5.2.8.RELEASE
spring-webmvc@5.2.8.RELEASE
no fix listed
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
spring-webflux@5.2.8.RELEASE
spring-webmvc@5.2.8.RELEASE
no fix listed
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
spring-webflux@5.2.8.RELEASE
spring-webmvc@5.2.8.RELEASE
no fix listed
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
spring-webflux@5.2.8.RELEASE
spring-webmvc@5.2.8.RELEASE
no fix listed
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
spring-webflux@5.2.8.RELEASE
spring-webmvc@5.2.8.RELEASE
no fix listed
no fix listed

Open the chart page →

88,335
pagescarina-pages1.0.01 of 3See more

pages carina-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagescarmel-pages-dell1.0.01 of 3See more

pages carmel-pages-dell 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
Chart-Oracle-Host-Appchart-oracle-host-appVerified publisher0.1.21 of 1See more

Chart-Oracle-Host-App chart-oracle-host-app 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
stanislovesid/oracle-host-app:14fe1ed26e194
spring-webmvc@5.3.12
no fix listed

Open the chart page →

2,434
event-store-servicechoerodon0.8.01 of 2See more

event-store-service choerodon 0.8.0

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
choerodon/event-store-service:0.8.03c94c97f6f69
spring-webmvc@4.3.8.RELEASE
no fix listed

Open the chart page →

9,808
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
spring-webmvc@4.3.22.RELEASE
no fix listed

Open the chart page →

9,144
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
spring-webmvc@4.3.18.RELEASE
no fix listed

Open the chart page →

23,665
robot-shopcloud-native-toolkit1.1.11 of 12See more

robot-shop cloud-native-toolkit 1.1.1

1 of the 12 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
robotshop/rs-shipping:latest89753ab48919
spring-webmvc@5.2.8.RELEASE
no fix listed

Open the chart page →

29,555
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
audig/clamapi:2.1.62c3fe34ee430
spring-webmvc@5.2.8.RELEASE
no fix listed

Open the chart page →

4,671
ganttcnieg2.1.01 of 1See more

gantt cnieg 2.1.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
cnieg/gantt:1.1.2d4b478d76f2a
spring-webmvc@5.3.23
no fix listed

Open the chart page →

2,390
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
spring-webmvc@5.0.6.RELEASE
no fix listed

Open the chart page →

16,860
consumer-helmconsumer-app-helm-chart0.1.01 of 1See more

consumer-helm consumer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
j4ckhunter/consumer:1.00bb7a429e3e75
spring-webmvc@5.3.22
no fix listed

Open the chart page →

2,564
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-webmvc@5.3.34
no fix listed

Open the chart page →

5,398
pagesdalston-pages1.0.01 of 3See more

pages dalston-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagesdaman-dell-kuber1.0.01 of 3See more

pages daman-dell-kuber 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagesdavid-pages1.0.01 of 3See more

pages david-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
pagesdebasish-pages1.0.01 of 3See more

pages debasish-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.01 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
oscarsotosanchez/toposervice:v1.0d4d020e9f272
spring-webflux@5.3.1
no fix listed

Open the chart page →

27,550
pagesdipak1.0.01 of 3See more

pages dipak 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.01 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
oscarsotosanchez/toposervice:v1.0d4d020e9f272
spring-webflux@5.3.1
no fix listed

Open the chart page →

24,656
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
spring-webmvc@4.3.24.RELEASE
no fix listed

Open the chart page →

19,802
entrypoint-balancereclipse-aeriosVerified publisher1.3.01 of 1See more

entrypoint-balancer eclipse-aerios 1.3.0

1 of the 1 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
eclipseaerios/entrypoint-balancer:1.3.043cd999a008d
spring-webmvc@6.1.5
6.1.14

Open the chart page →

2,512
management-portaleclipse-aeriosVerified publisher1.1.01 of 2See more

management-portal eclipse-aerios 1.1.0

1 of the 2 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
eclipseaerios/management-portal-backend:1.2.215fba526a4f8
spring-webmvc@6.1.4
6.1.14

Open the chart page →

3,888
pagesedgwarepages1.0.01 of 3See more

pages edgwarepages 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

20,190
eolicplantseolicplantsVerified publisher0.1.01 of 7See more

eolicplants eolicplants 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
oscarsotosanchez/toposervice:v1.0d4d020e9f272
spring-webflux@5.3.1
no fix listed

Open the chart page →

27,291
eoloPlanteolo-plannerVerified publisher0.1.01 of 7See more

eoloPlant eolo-planner 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

27,537
eoloplannereoloplannerVerified publisher0.1.01 of 7See more

eoloplanner eoloplanner 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

32,205
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.01 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

27,537
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.01 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
oscarsotosanchez/toposervice:v1.0d4d020e9f272
spring-webflux@5.3.1
no fix listed

Open the chart page →

27,256
eoloplannereoloplanner-molynx-gat0.1.01 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

28,482
eolo-plannereolo-planner-repo0.1.01 of 7See more

eolo-planner eolo-planner-repo 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

27,096
eoloplanteoloplant1.0.01 of 7See more

eoloplant eoloplant 1.0.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.239fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

27,537
eoloplantseoloplants-urjcVerified publisher0.1.01 of 7See more

eoloplants eoloplants-urjc 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

27,721
servereoloserverVerified publisher0.1.01 of 7See more

server eoloserver 0.1.0

1 of the 7 container images this version deploys carry CVE-2024-38819.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
spring-webflux@6.0.2
no fix listed

Open the chart page →

32,205

Container images carrying it

234 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
spring-webmvc@5.3.9
no fix listed
1
vitalii1992/account-service:latest0e694d94551d
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/analytics-service:latest8e798836ecea
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-webflux@6.0.9
spring-webmvc@6.0.9
no fix listed
no fix listed
1
vitalii1992/order-service:latest07c4a8833ce4
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
spring-webmvc@6.0.9
no fix listed
1
vlebediantsev/config-server-another:lateste7f20450d2ae
spring-webmvc@5.3.22
no fix listed
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/logic-ms:latestdf8bf38c535b
spring-webflux@5.3.21
spring-webmvc@5.3.21
no fix listed
no fix listed
1
vlebediantsev/registration-ms-final:latest427af418b75e
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
spring-webmvc@5.3.21
no fix listed
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
spring-webflux@5.3.27
spring-webmvc@5.3.27
no fix listed
no fix listed
1
xuxueli/xxl-job-admin:2.4.0640093c35fd6
spring-webmvc@5.3.25
no fix listed
1
zahoriaut/zahori-process:0.1.13351f8a220ed7
spring-webmvc@6.0.10
no fix listed
1
zahoriaut/zahori-server:0.1.17b2de13916f3e
spring-webflux@5.3.25
spring-webmvc@5.3.25
no fix listed
no fix listed
1
zbalogh/reservation-api-server:1.0.97c247e399a1f
spring-webflux@5.3.23
no fix listed
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
spring-webmvc@5.2.3.RELEASE
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
spring-webmvc@6.1.2
6.1.14
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
spring-webflux@6.0.9
spring-webmvc@6.0.9
no fix listed
no fix listed
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
spring-webmvc@5.2.7.RELEASE
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
spring-webmvc@5.2.6.RELEASE
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
spring-webmvc@5.3.23
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
spring-webflux@6.1.1
6.1.14
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
spring-webmvc@5.3.31
no fix listed
1
ghcr.io/stacksimplify/kube-usermgmt-webapp:1.0.0-mysqldb41b45003c6b6
spring-webmvc@5.1.8.RELEASE
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
spring-webflux@5.3.24
spring-webmvc@5.3.24
no fix listed
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
spring-webflux@5.3.24
no fix listed
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
spring-webmvc@6.1.1
6.1.14
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
spring-webflux@6.0.11
spring-webmvc@6.0.14
no fix listed
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
spring-webmvc@6.1.3
6.1.14
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
spring-webmvc@6.1.3
6.1.14
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
spring-webmvc@6.1.3
6.1.14
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
spring-webmvc@5.3.31
no fix listed
1
quay.io/srcmaxim/gradle-example-app:1.1.37c3fc28746ef
spring-webmvc@5.3.7
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.