StackRadar

CVE-2025-48924

Medium

Advisory

Published 11 Jul 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.023
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
634
of 17,787 indexed, latest versions
Container images
686
deployed by those charts
Fix available
2 of 3
affected packages

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs

Carried by container images the latest versions of 634 of 17,787 indexed charts deploy, on 686 images.

Affected packageAffected versionsFixed inImages
commons-lang3maven3.0, 3.1, 3.2, 3.2.1+17 more3.18.0600
commons-langmaven2.1, 2.2, 2.4, 2.5+1 moreno fix listed310
libcommons-lang3-javadeb3.8-23.8-2ubuntu0.1~esm11
OSV records
GHSA-j288-q9x7-2f5vUBUNTU-CVE-2025-48924
Also known as
USN-8364-1

Charts affected

634 by stars
ChartLatestAffected imagesRadar Score
penpotkubitodevVerified publisher1.2.11 of 5See more

penpot kubitodev 1.2.1

1 of the 5 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
penpotapp/exporter:2.2.15c835ffd87ab
commons-lang3@3.5
3.18.0

Open the chart page →

17,002
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
commons-lang3@3.13.0
3.18.0

Open the chart page →

3,143
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
commons-lang3@3.13.0
3.18.0

Open the chart page →

3,373
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
commons-lang3@3.14.0
3.18.0

Open the chart page →

7,842
imageboxkyso1.0.01 of 1See more

imagebox kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
kyso/imagebox:latest68091eace89c
commons-lang@2.4
no fix listed

Open the chart page →

3,833
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ladeit/ladeit:latest962b665ffe82
commons-lang@2.4
commons-lang3@3.3.2
no fix listed
3.18.0

Open the chart page →

26,371
wiremocklebenitzaVerified publisher0.3.11 of 1See more

wiremock lebenitza 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
rodolpheche/wiremock:2.27.22328a9fce2bf
commons-lang3@3.8.1
3.18.0

Open the chart page →

2,427
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
commons-lang@2.6
no fix listed

Open the chart page →

4,434
komgalinkding0.2.31 of 1See more

komga linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gotson/komga:1.22.0ba892ab3e082
commons-lang3@3.17.0
3.18.0

Open the chart page →

3,131
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
commons-lang3@3.12.0
3.18.0

Open the chart page →

6,674
kafka-connect-wrapperlsmhun0.1.01 of 1See more

kafka-connect-wrapper lsmhun 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
commons-lang3@3.8.1
3.18.0

Open the chart page →

2,391
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.4.06df71eb04639
commons-lang@2.4
commons-lang3@3.4
no fix listed
3.18.0

Open the chart page →

7,931
elastictranscoderluiscajl0.46.01 of 4See more

elastictranscoder luiscajl 0.46.0

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
commons-lang3@3.12.0
3.18.0

Open the chart page →

58,225
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
commons-lang3@3.11
3.18.0

Open the chart page →

24,488
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
hugohg34/planner:0.0.2171f61e8d7e2
commons-lang3@3.12.0
3.18.0

Open the chart page →

29,712
metabase-k8smetabase-k8s1.0.01 of 1See more

metabase-k8s metabase-k8s 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
metabase/metabase:v0.53.4.17807bc5cad17
commons-lang@2.6
commons-lang3@3.17.0
no fix listed
3.18.0

Open the chart page →

2,589
activemqmicroboxlabs3.8.01 of 1See more

activemq microboxlabs 3.8.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
alfresco/alfresco-activemq:5.18.7-jre17-rockylinux85472f88d9b0b
commons-lang3@3.14.0
3.18.0

Open the chart page →

1,501
elasticmicroboxlabs0.3.01 of 1See more

elastic microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/elasticsearch:8.17.32cc40b15dff8
commons-lang3@3.9
3.18.0

Open the chart page →

4,295
miot-modulithmicroboxlabs0.6.01 of 1See more

miot-modulith microboxlabs 0.6.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-srv:latest5796553b41ae
commons-lang@2.6
no fix listed

Open the chart page →

1,433
modulariotmicroboxlabs0.9.01 of 4See more

modulariot microboxlabs 0.9.0

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-srv:latest4ec11d229028
commons-lang@2.6
no fix listed

Open the chart page →

2,277
resource-processormicroservices-learningVerified publisher1.2.01 of 1See more

resource-processor microservices-learning 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

3,684
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

5,141
song-servicemicroservices-learningVerified publisher1.2.01 of 2See more

song-service microservices-learning 1.2.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.song-service:latest2bcdac368b07
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

4,612
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
commons-lang3@3.12.0
3.18.0

Open the chart page →

12,862
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
commons-lang3@3.12.0
3.18.0

Open the chart page →

11,254
pulsarv2milvus-helm2.7.81 of 4See more

pulsarv2 milvus-helm 2.7.8

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
commons-lang@2.6
commons-lang3@3.7
no fix listed
3.18.0

Open the chart page →

15,855
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
mintproject/model-catalog-endpoint:29256555a6fbaefae4729d5cd259564708a4ab04ffbb13f20465
commons-lang3@3.4
3.18.0

Open the chart page →

42,983
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opensearchproject/opensearch:1.1.0967d7f57f72f
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

10,639
standard-application-stackmintel11.4.11 of 12See more

standard-application-stack mintel 11.4.1

1 of the 12 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opensearchproject/opensearch:1.1.0967d7f57f72f
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

10,515
mitre-siphonmitre-siphon0.2.91 of 4See more

mitre-siphon mitre-siphon 0.2.9

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

3,083
account-lookup-servicemojaloop13.0.01 of 4See more

account-lookup-service mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
commons-lang3@3.8.1
3.18.0

Open the chart page →

11,734
account-lookup-service-adminmojaloop13.0.01 of 4See more

account-lookup-service-admin mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
commons-lang3@3.8.1
3.18.0

Open the chart page →

11,734
admin-api-svcmojaloop12.0.01 of 4See more

admin-api-svc mojaloop 12.0.0

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
commons-lang3@3.8.1
3.18.0

Open the chart page →

12,147
backendmojaloop0.1.01 of 6See more

backend mojaloop 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
commons-lang3@3.8.1
3.18.0

Open the chart page →

16,111
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
commons-lang3@3.8.1
3.18.0

Open the chart page →

11,518
mojaloopmojaloop14.0.01 of 6See more

mojaloop mojaloop 14.0.0

1 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
commons-lang3@3.8.1
3.18.0

Open the chart page →

19,265
user-manager-neo4jmoreillonVerified publisher0.9.71 of 6See more

user-manager-neo4j moreillon 0.9.7

1 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/neo4j:5.20.052d3dec8d455
commons-lang3@3.14.0
3.18.0

Open the chart page →

30,195
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

15,731
crowdmoxVerified publisher2.4.31 of 3See more

crowd mox 2.4.3

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
atlassian/crowd:5.2.2ebf761c7d437
commons-lang@2.6
commons-lang3@3.8
no fix listed
3.18.0

Open the chart page →

5,713
myappmyapp-helm-charts0.4.01 of 1See more

myapp myapp-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
adityaprasadpathak/myapp:3.07e3b9777362c
commons-lang3@3.14.0
3.18.0

Open the chart page →

2,141
my-app-namemy-app-name0.0.21 of 1See more

my-app-name my-app-name 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
viniciusfcf/gitops-quarkus-app-jvm:latestbba8ee1b5cd5
commons-lang3@3.9
3.18.0

Open the chart page →

9,149
Practica_4_helmmy-heml-appVerified publisher0.1.01 of 7See more

Practica_4_helm my-heml-app 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
adagber/planner:v1.0e5c1ed097752
commons-lang3@3.12.0
3.18.0

Open the chart page →

27,812
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
commons-lang@2.6
commons-lang3@3.17.0
no fix listed
3.18.0

Open the chart page →

1,783
datawolfncsaVerified publisher1.1.01 of 3See more

datawolf ncsa 1.1.0

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ncsa/datawolf:4.7.0af6649d59150
commons-lang3@3.12.0
3.18.0

Open the chart page →

4,989
incorencsaVerified publisher1.38.01 of 29See more

incore ncsa 1.38.0

1 of the 29 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
commons-lang3@3.14.0
3.18.0

Open the chart page →

15,408
polyglotncsaVerified publisher0.1.114 of 18See more

polyglot ncsa 0.1.1

14 of the 18 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
commons-lang@2.5
commons-lang3@3.4
no fix listed
3.18.0
ncsapolyglot/converters-avconv:latestc44b22eb58bb
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-ebook-convert:latest438d82cdbdb5
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-ffmpeg:latest48c852c1204b
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-flac:latest072cf5bc6f99
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-gdal:latestf746049515c1
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-ghostscript:latestf350da56dd55
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-htmldoc:latest317dd9e56922
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-imagemagick:latestd244ea8c32ac
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-openjpeg:latest2ba4af461d51
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-txt2html:latest30ee96508c0b
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-unoconv:latest1d9cebe3022b
commons-lang3@3.4
3.18.0
ncsapolyglot/converters-zip:latestf889fe30e2c7
commons-lang3@3.4
3.18.0
ncsapolyglot/polyglot:2.4.097a8c01c076e
commons-lang3@3.4
3.18.0

Open the chart page →

55,715
neo4jneo4j-helm-old4.3.2-11 of 1See more

neo4j neo4j-helm-old 4.3.2-1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/neo4j:4.3.2-enterprise56a9453c4064
commons-lang3@3.9
3.18.0

Open the chart page →

2,639
ma1sdnetsocVerified publisher0.2.11 of 1See more

ma1sd netsoc 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ma1uta/ma1sd:2.5.0ee2a56d8b8ca
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

3,582
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
commons-lang3@3.12.0
3.18.0

Open the chart page →

5,887

Container images carrying it

686 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
vlebediantsev/file-system-ms-final:latest10393a89b4a8
commons-lang3@3.12.0
3.18.0
1
vlebediantsev/logic-ms:latestdf8bf38c535b
commons-lang3@3.12.0
3.18.0
1
vlebediantsev/registration-ms-final:latest427af418b75e
commons-lang3@3.12.0
3.18.0
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
commons-lang3@3.12.0
3.18.0
1
voltha/voltha-onos:5.1.8e038acb950d3
commons-lang@2.6
commons-lang3@3.8.1
no fix listed
3.18.0
1
vrijbrp/balie:developbc85c89530b9
commons-lang3@3.12.0
3.18.0
1
vrijbrp/balie-ws:developc6603cb829ea
commons-lang3@3.12.0
3.18.0
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
commons-lang3@3.12.0
3.18.0
1
vromero/activemq-artemis:2.16.0408d6a46b153
commons-lang3@3.0
3.18.0
1
wavefronthq/proxy:9.2d1064d28f6eb
commons-lang@2.6
commons-lang3@3.1
no fix listed
3.18.0
1
wazuh/wazuh-indexer:4.11.1a7a2076b167e
commons-lang@2.6
commons-lang3@3.14.0
no fix listed
3.18.0
1
wistefan/mvf:lateste0887302b2d8
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
woojoong/wowza:latestec230db19652
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0
1
xeotek/kadeck:6.3.439a3b37a17c5
commons-lang3@3.14.0
3.18.0
1
xeotek/kadeck:4.2.94c6b04d9ce55
commons-lang3@3.12.0
3.18.0
1
xetusoss/archiva:v2.2.588f25242b9ee
commons-lang@2.6
commons-lang3@3.1
no fix listed
3.18.0
1
zahoriaut/zahori-process:0.1.13351f8a220ed7
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
zahoriaut/zahori-server:0.1.17b2de13916f3e
commons-lang3@3.12.0
3.18.0
1
zammad/zammad-docker-compose:zammad-elasticsearch-4.1.0-318274d75a51fc
commons-lang3@3.9
3.18.0
1
zbalogh/reservation-api-server:1.0.97c247e399a1f
commons-lang3@3.12.0
3.18.0
1
zenko/zenko-cosbench:0.0.6386a1f48ec0e
commons-lang@2.5
no fix listed
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
commons-lang@2.6
commons-lang3@3.9
no fix listed
3.18.0
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
commons-lang3@3.16.0
3.18.0
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
commons-lang3@3.12.0
3.18.0
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
commons-lang3@3.13.0
3.18.0
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
commons-lang3@3.14.0
3.18.0
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
commons-lang3@3.9
3.18.0
1
ghcr.io/devops-ia/kafka-cruise-control:jdk17-cc2.5.146-iam2.3.8e310642de2e2
commons-lang3@3.12.0
3.18.0
1
ghcr.io/eshepelyuk/dckr/cmak-3.0.0.6:1.2.090a34412c6b5
commons-lang3@3.6
3.18.0
1
ghcr.io/fleeksoft/hbase/hbase-base:2.4.13.2c144bdd688d7
commons-lang@2.6
commons-lang3@3.9
no fix listed
3.18.0
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
ghcr.io/gla-rad/enav-api-gateway:latest8f4345c77dda
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-aton-admin-service:latestcf85570b1324
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-aton-service:latest3be878690629
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-aton-service-client:latestf1629ac5f9ec
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-ckeeper:latest415323ef112b
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-msg-broker:latest6fe372e4e481
commons-lang@2.6
no fix listed
1
ghcr.io/gla-rad/enav-vdes-controller:latestc4c52955814f
commons-lang@2.6
no fix listed
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
commons-lang3@3.17.0
3.18.0
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
commons-lang3@3.17.0
3.18.0
1
ghcr.io/it-at-m/zammad-ldap-sync:dev10de22c8cbce
commons-lang3@3.17.0
3.18.0
1
ghcr.io/itobey/fddb-exporter:2.4.1a824933e0f87
commons-lang3@3.12.0
3.18.0
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0
1
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
commons-lang@2.6
no fix listed
1
ghcr.io/jfwenisch/ipfix-generator:latesta1b05567dbf6
commons-lang3@3.17.0
3.18.0
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
commons-lang3@3.17.0
3.18.0
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
commons-lang@2.6
commons-lang3@3.7
no fix listed
3.18.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.