StackRadar

CVE-2025-13465

High

Advisory

Published 21 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
470
of 17,781 indexed, latest versions
Container images
489
deployed by those charts
Fix available
4 of 4
affected packages

lodash vulnerable to Prototype Pollution via array path bypass in `_.unset` and `_.omit`

Carried by container images the latest versions of 470 of 17,781 indexed charts deploy, on 489 images.

Affected packageAffected versionsFixed inImages
node-lodashdeb4.17.15+dfsg-2, 4.17.21+dfsg+~cs8.31.198.20210220-94.17.15+dfsg-2ubuntu0.1~esm1, 4.17.21+dfsg+~cs8.31.198.20210220-9ubuntu0.24.04.1~esm13
lodashnpm0.9.2, 1.0.2, 1.3.1, 2.4.1+13 more4.17.23, 4.18.0485
lodash-esnpm4.17.4, 4.17.15, 4.17.20, 4.17.21+2 more4.17.23, 4.18.0112
lodash.unsetnpm4.5.2, 4.17.15, 4.17.214.18.05
OSV records
UBUNTU-CVE-2025-13465GHSA-f23m-r3pf-42rhGHSA-xxjr-mmjv-4gpg
Also known as
CVE-2026-2950, USN-8411-1

Charts affected

470 by stars
ChartLatestAffected imagesRadar Score
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
lodash@4.17.23
4.18.0

Open the chart page →

33,242
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
lodash@4.17.23
4.18.0

Open the chart page →

4,232
lgtv2mqttleprechaun-charts0.1.11 of 1See more

lgtv2mqtt leprechaun-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/lgtv2mqtt:latestac2e11c41ffb
lodash@4.17.21
4.17.23

Open the chart page →

1,062
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-ui-react:latestba6853e35c60
lodash@4.17.21
4.17.23

Open the chart page →

5,905
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
lodash@4.17.23
4.18.0

Open the chart page →

33,242
redisinsightlogic3579Verified publisher3.4.01 of 1See more

redisinsight logic3579 3.4.0

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
redis/redisinsight:3.485562d67a912
lodash@4.17.21
4.17.23

Open the chart page →

1,490
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
node-lodash@4.17.15+dfsg-2
lodash@4.17.15
lodash.unset@4.17.15
4.17.15+dfsg-2ubuntu0.1~esm1
4.17.23
4.18.0

Open the chart page →

17,779
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
lodash@4.17.15
lodash-es@4.17.15
4.17.23
4.17.23

Open the chart page →

7,929
squareonelsst-sqre0.4.11 of 1See more

squareone lsst-sqre 0.4.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
lsstsqre/squareone:0.4.09ded78e7fe03
lodash@4.17.21
4.17.23

Open the chart page →

2,247
frontendluiscajl0.1.71 of 1See more

frontend luiscajl 0.1.7

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
lavandadelpatio/frontend:latest501c3f31e0bc
lodash@4.17.15
4.17.23

Open the chart page →

3,651
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
lodash@4.17.21
4.17.23

Open the chart page →

4,647
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
lodash@4.17.21
4.17.23

Open the chart page →

9,774
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
lodash@4.17.21
4.17.23

Open the chart page →

7,315
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
lodash@4.17.21
4.17.23

Open the chart page →

5,287
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
lodash@4.17.23
4.18.0

Open the chart page →

8,303
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
lodash@4.17.21
4.17.23

Open the chart page →

5,940
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
hugohg34/server:0.0.2503e5d8960ff
lodash@4.17.21
4.17.23

Open the chart page →

29,588
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23

Open the chart page →

9,668
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
lodash@4.17.21
4.17.23

Open the chart page →

68,284
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
lodash@4.17.21
4.17.23

Open the chart page →

7,027
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
lodash@4.17.21
4.17.23

Open the chart page →

43,341
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23

Open the chart page →

10,603
standard-application-stackmintel11.4.01 of 12See more

standard-application-stack mintel 11.4.0

1 of the 12 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23

Open the chart page →

10,603
iotmmontesVerified publisher0.3.23 of 7See more

iot mmontes 0.3.2

3 of the 7 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
lodash@4.17.21
4.17.23
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
lodash@4.17.21
4.17.23
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
lodash@4.17.21
4.17.23

Open the chart page →

10,608
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
lodash@4.17.21
4.17.23
mojaloop/event-sidecar:v11.0.189b8ab71b74b
lodash@4.17.21
4.17.23

Open the chart page →

11,695
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
lodash@4.17.21
4.17.23
mojaloop/event-sidecar:v11.0.189b8ab71b74b
lodash@4.17.21
4.17.23

Open the chart page →

11,695
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
lodash@4.17.21
4.17.23
mojaloop/event-sidecar:v11.0.189b8ab71b74b
lodash@4.17.21
4.17.23

Open the chart page →

12,108
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
lodash@4.17.21
4.17.23

Open the chart page →

2,457
finance-portalmojaloop5.1.46 of 11See more

finance-portal mojaloop 5.1.4

6 of the 11 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
lodash@3.10.1
4.18.0
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
lodash@4.17.21
4.17.23
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
lodash@4.17.21
4.17.23
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
lodash@4.17.21
4.17.23
mojaloop/role-assignment-service:v2.1.0def4bf273721
lodash@4.17.21
4.17.23

Open the chart page →

14,809
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
lodash@4.17.21
4.17.23
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
lodash@4.17.21
4.17.23

Open the chart page →

11,479
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
lodash@4.17.21
4.17.23
mojaloop/central-ledger:v13.14.01abc8a7aa71c
lodash@4.17.21
4.17.23
mojaloop/event-sidecar:v11.0.189b8ab71b74b
lodash@4.17.21
4.17.23
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
lodash@4.17.21
4.17.23

Open the chart page →

19,226
reporting-aggregator-svcmojaloop1.0.71 of 1See more

reporting-aggregator-svc mojaloop 1.0.7

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
lodash@4.17.21
4.17.23

Open the chart page →

800
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
lodash@4.17.21
4.17.23

Open the chart page →

2,631
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
lodash@4.17.21
4.17.23

Open the chart page →

2,318
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
lodash@3.10.1
4.18.0

Open the chart page →

1,948
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
lodash@4.17.21
4.17.23

Open the chart page →

2,316
security-role-perm-operator-svcmojaloop3.0.01 of 1See more

security-role-perm-operator-svc mojaloop 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
lodash@4.17.21
4.17.23

Open the chart page →

2,457
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.01 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
library/mongo-express:latest1b23d7976f02
lodash@4.17.21
lodash-es@4.17.21
4.17.23
4.17.23

Open the chart page →

5,179
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
lodash@4.17.20
4.17.23

Open the chart page →

6,438
monocularmonocular1.4.152 of 5See more

monocular monocular 1.4.15

2 of the 5 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
lodash@4.17.4
4.17.23
quay.io/helmpack/monocular-ui:v1.10.086b71e90319f
lodash@3.10.1
4.18.0

Open the chart page →

7,048
user-manager-neo4jmoreillonVerified publisher0.9.71 of 6See more

user-manager-neo4j moreillon 0.9.7

1 of the 6 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
moreillon/user-manager:v5.0.2e1c9bfab5c16
lodash@4.17.21
4.17.23

Open the chart page →

30,363
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
lodash@4.17.19
4.17.23

Open the chart page →

6,684
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
lodash@4.17.21
4.17.23

Open the chart page →

4,560
ghostmt1905028.25.11 of 3See more

ghost mt190502 8.25.1

1 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
lodash@4.17.21
lodash@4.17.23
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23

Open the chart page →

4,960
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
lodash@4.17.21
4.17.23

Open the chart page →

6,608
cloudcmdmy0nVerified publisher0.0.31 of 1See more

cloudcmd my0n 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
coderaiser/cloudcmd:16.6.1b34a9775c7ce
lodash@4.17.21
4.17.23

Open the chart page →

3,128
myawesomeappmyawesomapp-mitchxxx0.1.11 of 1See more

myawesomeapp myawesomapp-mitchxxx 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
mitchxxx/amazon:214e72480ec63a
lodash@4.17.21
4.17.23

Open the chart page →

2,116
myawesomeapp14myawesomeapp140.1.11 of 1See more

myawesomeapp14 myawesomeapp14 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ccjacobs14/amazon:59a9b14a6f09e
lodash@4.17.21
4.17.23

Open the chart page →

2,116
myawesomeapp-janmyawesomeapp-jan0.1.11 of 1See more

myawesomeapp-jan myawesomeapp-jan 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-13465.

Container imageDigestPackageFixed in
ooghenekaro/amazon:latest03394ba1d6d8
lodash@4.17.21
4.17.23

Open the chart page →

2,144

Container images carrying it

489 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/aolde/lametric-nightscout-proxy:latest7d1951b6baf5
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/ashvinbambhaniya/nexus-tasks-frontend:2.0.0fcbab3a24880
lodash@4.17.23
4.18.0
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
lodash-es@4.17.23
4.18.0
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/calesthio/crucix:latest67c5244b6acf
lodash@4.17.23
4.18.0
1
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
lodash@4.17.15
lodash@4.17.15
lodash-es@4.17.15
lodash-es@4.17.15
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
lodash@4.17.15
lodash@4.17.15
lodash-es@4.17.15
lodash-es@4.17.15
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
lodash@4.17.13
lodash@4.17.13
lodash-es@4.17.15
lodash-es@4.17.15
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
lodash@4.17.15
lodash@4.17.15
lodash-es@4.17.15
lodash-es@4.17.15
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/data-fair/data-fair:3cc9498b64b5b
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/data-fair/metrics:0a8d40779eeae
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/data-fair/notify:3c739b74dabb0
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/data-fair/processings:15a9216989707
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
lodash@4.17.19
lodash@4.17.19
4.17.23
4.18.0
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/flaresolverr/flaresolverr:v1.2.896f8c08c0c1b
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
lodash@4.17.21
lodash@4.17.23
4.17.23
4.18.0
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
lodash@4.17.23
4.18.0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/leoquote/mergeable:latest451706815103
lodash@4.17.20
lodash@4.17.20
4.17.23
4.18.0
1
ghcr.io/leprechaun/lgtv2mqtt:latestac2e11c41ffb
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
lodash@4.17.23
4.18.0
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
lodash@4.17.20
lodash@4.17.20
4.17.23
4.18.0
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/manzil-infinity180/backend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b496c90cf82fdd
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
lodash@4.17.21
lodash@4.17.21
lodash-es@4.17.21
lodash-es@4.17.21
4.17.23
4.18.0
4.17.23
4.18.0
1
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
lodash@4.17.21
lodash@4.17.21
4.17.23
4.18.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.