StackRadar

CVE-2025-48924

Medium

Advisory

Published 11 Jul 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.023
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
627
of 17,787 indexed, latest versions
Container images
678
deployed by those charts
Fix available
2 of 3
affected packages

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs

Carried by container images the latest versions of 627 of 17,787 indexed charts deploy, on 678 images.

Affected packageAffected versionsFixed inImages
commons-lang3maven3.0, 3.1, 3.2, 3.2.1+17 more3.18.0594
commons-langmaven2.1, 2.2, 2.4, 2.5+1 moreno fix listed306
libcommons-lang3-javadeb3.8-23.8-2ubuntu0.1~esm11
OSV records
GHSA-j288-q9x7-2f5vUBUNTU-CVE-2025-48924
Also known as
USN-8364-1

Charts affected

627 by stars
ChartLatestAffected imagesRadar Score
my-bloody-jenkinsodavid0.1.2181 of 1See more

my-bloody-jenkins odavid 0.1.218

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
commons-lang@2.6
commons-lang3@3.14.0
no fix listed
3.18.0

Open the chart page →

5,826
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
commons-lang3@3.5
3.18.0

Open the chart page →

2,587
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

8,540
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

9,005
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
commons-lang@2.6
commons-lang3@3.13.0
no fix listed
3.18.0
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
commons-lang3@3.12.0
3.18.0
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
commons-lang3@3.12.0
3.18.0

Open the chart page →

18,667
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
commons-lang@2.6
commons-lang3@3.8.1
no fix listed
3.18.0

Open the chart page →

6,037
onyx-stackonyx0.3.11 of 12See more

onyx-stack onyx 0.3.1

1 of the 12 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vespaengine/vespa:8.526.1569b160f58211
commons-lang3@3.16.0
3.18.0

Open the chart page →

6,338
raspberrymaticopenccuVerified publisher3.83.61 of 1See more

raspberrymatic openccu 3.83.6

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
commons-lang@2.6
no fix listed

Open the chart page →

2,421
mockserveropen-charts1.1.01 of 1See more

mockserver open-charts 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
mockserver/mockserver:5.15.00f9ef78c9489
commons-lang3@3.12.0
3.18.0

Open the chart page →

1,257
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
commons-lang3@3.5
3.18.0

Open the chart page →

63,223
comacopencord1.0.01 of 9See more

comac opencord 1.0.0

1 of the 9 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
omecproject/onos-progran:1.0.05715e5648aa0
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0

Open the chart page →

88,546
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
woojoong/wowza:latestec230db19652
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0

Open the chart page →

42,614
omec-control-planeopencord0.1.312 of 8See more

omec-control-plane opencord 0.1.31

2 of the 8 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/cassandra:2.1.20cb079c0d7a57
commons-lang3@3.1
3.18.0
omecproject/c3po-hssdb:master-latest28a90cc26716
commons-lang3@3.1
3.18.0

Open the chart page →

40,715
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
commons-lang@2.6
commons-lang3@3.9
no fix listed
3.18.0

Open the chart page →

12,927
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0

Open the chart page →

38,865
voltha-infraopencord2.14.02 of 10See more

voltha-infra opencord 2.14.0

2 of the 10 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
atomix/atomix:3.1.127738ff4f5c63
commons-lang3@3.7
3.18.0
voltha/voltha-onos:5.1.8e038acb950d3
commons-lang@2.6
commons-lang3@3.8.1
no fix listed
3.18.0

Open the chart page →

41,044
sentinelopennms-helm-chartsVerified publisher0.4.01 of 2See more

sentinel opennms-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opennms/sentinel:36.0.288869082a14f
commons-lang@2.6
commons-lang3@3.16.0
no fix listed
3.18.0

Open the chart page →

2,024
bpjstk-serviceopenshift1.0.03 of 6See more

bpjstk-service openshift 1.0.0

3 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
commons-lang3@3.12.0
3.18.0
andrianrf/iso-client:latestba560086ce15
commons-lang3@3.12.0
3.18.0
andrianrf/iso-server:latest7da47f525c7d
commons-lang3@3.12.0
3.18.0

Open the chart page →

34,671
fineractopenshift0.1.11 of 4See more

fineract openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
commons-lang3@3.17.0
3.18.0

Open the chart page →

7,792
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,100
openwhiskopenwhisk1.0.02 of 10See more

openwhisk openwhisk 1.0.0

2 of the 10 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/zookeeper:3.43882d9493d38
commons-lang@2.6
no fix listed
openwhisk/invoker:1.0.0f5831ec85525
commons-lang3@3.8.1
3.18.0

Open the chart page →

36,215
operatonoperatonVerified publisher1.0.51 of 1See more

operaton operaton 1.0.5

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
operaton/operaton:1.0.0-beta-4b35867ffe4d8
commons-lang3@3.17.0
3.18.0

Open the chart page →

2,003
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
commons-lang3@3.8.1
3.18.0

Open the chart page →

26,339
trinoopstty0.2.141See more

trino opstty 0.2.14

1 container image this version deploys carries CVE-2025-48924.

Container imageDigestPackageFixed in
trinodb/trino:4815b5e0a97f599
commons-lang@2.6
no fix listed

Open the chart page →

dfdeweyosdfir-infrastructureVerified publisher1.0.01 of 3See more

dfdewey osdfir-infrastructure 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opensearchproject/opensearch:2.12.0645d3d9390ad
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

1,190
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.01 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

1 of the 40 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opensearchproject/opensearch:3.1.0474ea3fdf25d
commons-lang@2.6
commons-lang3@3.13.0
no fix listed
3.18.0

Open the chart page →

71,208
timesketchosdfir-infrastructureVerified publisher1.0.81 of 6See more

timesketch osdfir-infrastructure 1.0.8

1 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
opensearchproject/opensearch:2.14.0466a49f379bb
commons-lang@2.6
commons-lang3@3.14.0
no fix listed
3.18.0

Open the chart page →

1,753
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
commons-lang3@3.12.0
3.18.0

Open the chart page →

27,537
keycloakpascaliskeVerified publisher0.2.01 of 1See more

keycloak pascaliske 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:26.0.74388e2379b7e
commons-lang3@3.14.0
3.18.0

Open the chart page →

2,097
apache-knox-helmpfisterer-knox0.1.111 of 1See more

apache-knox-helm pfisterer-knox 0.1.11

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
farberg/apache-knox-docker:1.6.14b4a22487394
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

6,237
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
commons-lang3@3.12.0
3.18.0

Open the chart page →

7,576
jmxproxypndaproject0.1.01 of 1See more

jmxproxy pndaproject 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gradiant/jmxproxy:3.4.045eceb1bc55c
commons-lang3@3.6
3.18.0

Open the chart page →

4,177
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
pcarrascoponce/planner:v1.0981fc482442c
commons-lang3@3.12.0
3.18.0

Open the chart page →

27,558
flink-kubernetes-operatorpresto-loadbalancer1.10.01 of 1See more

flink-kubernetes-operator presto-loadbalancer 1.10.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
commons-lang3@3.16.0
3.18.0

Open the chart page →

3,277
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
commons-lang@2.6
commons-lang3@3.2
no fix listed
3.18.0

Open the chart page →

9,606
trinopresto-loadbalancer0.2.101 of 2See more

trino presto-loadbalancer 0.2.10

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
trinodb/trino:4796af989b0846d
commons-lang@2.6
no fix listed

Open the chart page →

2,264
punchline-javapunchplatform8.1.11 of 1See more

punchline-java punchplatform 8.1.1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/punchplatform/punchline-java:8.1.1d46ce7b96482
commons-lang3@3.12.0
3.18.0

Open the chart page →

1,995
jenkinsquench-jenkinsVerified publisher0.0.81 of 1See more

jenkins quench-jenkins 0.0.8

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/quenchworks/images/jenkinsdigest-pinnede92dba4e78c5
commons-lang@2.6
no fix listed

Open the chart page →

79
rada-platformrada-platform0.1.02 of 7See more

rada-platform rada-platform 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
trinodb/trino:45038c6f24ab1a4
commons-lang@2.6
commons-lang3@3.14.0
no fix listed
3.18.0
ghcr.io/projectnessie/nessie:0.92.19efe3c74d55f
commons-lang3@3.14.0
3.18.0

Open the chart page →

21,211
mockserverradar-baseVerified publisher5.15.01 of 1See more

mockserver radar-base 5.15.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
mockserver/mockserver:mockserver-5.15.00f9ef78c9489
commons-lang3@3.12.0
3.18.0

Open the chart page →

1,257
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

5,269
radar-integrationradar-baseVerified publisher0.9.01 of 1See more

radar-integration radar-base 0.9.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
commons-lang3@3.6
3.18.0

Open the chart page →

2,855
radar-mockserverradar-baseVerified publisher0.1.31 of 1See more

radar-mockserver radar-base 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
mockserver/mockserver:mockserver-5.15.00f9ef78c9489
commons-lang3@3.12.0
3.18.0

Open the chart page →

1,257
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
commons-lang3@3.14.0
3.18.0

Open the chart page →

3,018
iparedhat-cop1.3.91 of 1See more

ipa redhat-cop 1.3.9

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
quay.io/freeipa/freeipa-server:fedora-39-4.11.1d422ee50c2c3
commons-lang3@3.12.0
3.18.0

Open the chart page →

951

Container images carrying it

678 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
folioci/edge-dematic:latest48c9b1d180d4
commons-lang3@3.12.0
3.18.0
1
folioci/edge-inn-reach:latestc64e4d9dd3fc
commons-lang3@3.12.0
3.18.0
1
folioci/edge-ncip:lateste760dbb81d1a
commons-lang3@3.17.0
3.18.0
1
folioci/edge-patron:latest682b852e056d
commons-lang3@3.17.0
3.18.0
1
folioci/edge-rtac:latest15ef73b1abd0
commons-lang3@3.12.0
3.18.0
1
folioci/mod-agreements:latest29c3f233a498
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-audit:latest88f40730ed45
commons-lang@2.6
no fix listed
1
folioci/mod-authtoken:latest995a25a33133
commons-lang3@3.16.0
3.18.0
1
folioci/mod-calendar:latest22f65982efd7
commons-lang3@3.12.0
3.18.0
1
folioci/mod-circulation:latest3eecd2ac2d8a
commons-lang@2.6
no fix listed
1
folioci/mod-circulation-storage:latest6bdddcafbc0f
commons-lang@2.6
no fix listed
1
folioci/mod-codex-ekb:latest235a3fa4adc9
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0
1
folioci/mod-codex-inventory:latest6d53ed758fd1
commons-lang3@3.3.2
3.18.0
1
folioci/mod-codex-mux:latestd4138abfd30d
commons-lang3@3.7
3.18.0
1
folioci/mod-copycat:latest1513fad2b799
commons-lang3@3.12.0
3.18.0
1
folioci/mod-courses:latest68ca414f5596
commons-lang3@3.17.0
3.18.0
1
folioci/mod-data-export:latest0cc86bf09755
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-export-spring:latestf1d7caf4544b
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-export-worker:latest1ad1811c9b37
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-import-converter-storage:latest3028f333778f
commons-lang3@3.9
3.18.0
1
folioci/mod-ebsconet:latest3ae8cb99daa3
commons-lang3@3.12.0
3.18.0
1
folioci/mod-feesfines:latestfe3a7049f2fb
commons-lang3@3.17.0
3.18.0
1
folioci/mod-finance:latest14450bc15430
commons-lang@2.6
no fix listed
1
folioci/mod-inn-reach:latestcc8584e43382
commons-lang3@3.12.0
3.18.0
1
folioci/mod-invoice:latest45b7b13e81e1
commons-lang@2.6
no fix listed
1
folioci/mod-invoice-storage:latest0bc720abcb78
commons-lang@2.6
no fix listed
1
folioci/mod-licenses:latestcfd6109bf477
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-login:latest88de493f86db
commons-lang3@3.17.0
3.18.0
1
folioci/mod-login-saml:latest5f3358ccaa0f
commons-lang3@3.17.0
3.18.0
1
folioci/mod-marccat:latest1b57d690d568
commons-lang@2.6
commons-lang3@3.7
no fix listed
3.18.0
1
folioci/mod-ncip:latest8ed83674352b
commons-lang@2.5
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-notes:latest998ac4782e0d
commons-lang3@3.12.0
3.18.0
1
folioci/mod-oa:latestae3b069d4ba5
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-oai-pmh:latest5cd5ef063f2a
commons-lang@2.6
no fix listed
1
folioci/mod-orders:latestfc4528220fb8
commons-lang@2.6
no fix listed
1
folioci/mod-orders-storage:latestceeaacc3bf16
commons-lang@2.6
no fix listed
1
folioci/mod-password-validator:latestb31d75f2bf7b
commons-lang3@3.12.0
3.18.0
1
folioci/mod-patron-blocks:latestde7318069a67
commons-lang@2.6
no fix listed
1
folioci/mod-pubsub:latest0a4fa4ad5d72
commons-lang@2.6
commons-lang3@3.17.0
no fix listed
3.18.0
1
folioci/mod-remote-storage:latest4f12177123dc
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-serials-management:latest571fa1ffe8c9
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-service-interaction:latestf53c327a48e8
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-tags:latest6e8beeb70272
commons-lang3@3.12.0
3.18.0
1
fonoster/routr:1.0.0-rc52ca65af17cbc
commons-lang@2.6
commons-lang3@3.10
no fix listed
3.18.0
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
commons-lang3@3.12.0
3.18.0
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
commons-lang3@3.12.0
3.18.0
1
freeipa/freeipa-server:fedora-37-4.10.1c87d77342bf5
commons-lang3@3.12.0
3.18.0
1
fthomas/scala-steward:latest367afe974b7a
commons-lang3@3.14.0
3.18.0
1
gchq/accumulo:2.0.1c460bb587d6d
commons-lang@2.6
commons-lang3@3.9
no fix listed
3.18.0
1
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
commons-lang3@3.12.0
3.18.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.