StackRadar

CVE-2025-48924

Medium

Advisory

Published 11 Jul 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.023
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
631
of 17,781 indexed, latest versions
Container images
684
deployed by those charts
Fix available
2 of 3
affected packages

Apache Commons Lang is vulnerable to Uncontrolled Recursion when processing long inputs

Carried by container images the latest versions of 631 of 17,781 indexed charts deploy, on 684 images.

Affected packageAffected versionsFixed inImages
commons-lang3maven3.0, 3.1, 3.2, 3.2.1+17 more3.18.0599
commons-langmaven2.1, 2.2, 2.4, 2.5+1 moreno fix listed307
libcommons-lang3-javadeb3.8-23.8-2ubuntu0.1~esm11
OSV records
GHSA-j288-q9x7-2f5vUBUNTU-CVE-2025-48924
Also known as
USN-8364-1

Charts affected

631 by stars
ChartLatestAffected imagesRadar Score
routrroutr0.0.101 of 2See more

routr routr 0.0.10

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
fonoster/routr:1.0.0-rc52ca65af17cbc
commons-lang@2.6
commons-lang3@3.10
no fix listed
3.18.0

Open the chart page →

4,983
seldon-coreseldon0.2.72 of 3See more

seldon-core seldon 0.2.7

2 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
seldonio/apife:0.2.7ba81b17f00eb
commons-lang@2.6
commons-lang3@3.5
no fix listed
3.18.0
seldonio/cluster-manager:0.2.729e362bb1ba2
commons-lang@2.4
commons-lang3@3.5
no fix listed
3.18.0

Open the chart page →

13,798
sentinel-dashboardsentinel-dashboardVerified publisher0.1.01 of 1See more

sentinel-dashboard sentinel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
royalwang/sentinel-dashboard:1.8.4df99e2499f91
commons-lang@2.6
no fix listed

Open the chart page →

4,287
sentry-k8ssentry-k8sVerified publisher1.4.11 of 11See more

sentry-k8s sentry-k8s 1.4.1

1 of the 11 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
commons-lang3@3.8.1
3.18.0

Open the chart page →

16,449
signserver-cesignserverOfficialVerified publisher2.3.51 of 1See more

signserver-ce signserver 2.3.5

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
keyfactor/signserver-ce:7.3.2798fbbe00283
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

2,406
nexus-iq-server-hasonatypeVerified publisher207.1.01 of 2See more

nexus-iq-server-ha sonatype 207.1.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
sonatype/nexus-iq-server:1.207.1a70014ed10b1
commons-lang@2.6
no fix listed

Open the chart page →

38
stardogstardog3.1.01 of 3See more

stardog stardog 3.1.0

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
stardog/stardog:latest2714e5c4b3c1
commons-lang@2.4
no fix listed

Open the chart page →

293
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

13,486
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
commons-lang@2.6
commons-lang3@3.10
no fix listed
3.18.0

Open the chart page →

24,930
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
commons-lang3@3.17.0
3.18.0

Open the chart page →

2,826
graylogt3n1.0.01 of 3See more

graylog t3n 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
graylog2/server:2.4.3-38ff28c66e6c1
commons-lang@2.6
commons-lang3@3.1
no fix listed
3.18.0

Open the chart page →

8,063
snowplowt3n0.0.11 of 1See more

snowplow t3n 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
snowplow/scala-stream-collector-pubsub:2.2.041d318841516
commons-lang3@3.5
3.18.0

Open the chart page →

2,269
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

9,102
tocktock0.6.32 of 9See more

tock tock 0.6.3

2 of the 9 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
tock/build_worker:25.10.7080cb6b08d5b
commons-lang3@3.3.1
3.18.0
tock/nlp_api:25.10.7c04ffe67b977
commons-lang3@3.3.1
3.18.0

Open the chart page →

12,907
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
commons-lang@2.6
commons-lang3@3.1
no fix listed
3.18.0

Open the chart page →

15,970
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
commons-lang@2.6
no fix listed

Open the chart page →

41,427
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

7,835
workflows-aggregatorworkflows-aggregatorVerified publisher0.16.91 of 1See more

workflows-aggregator workflows-aggregator 0.16.9

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
commons-lang3@3.16.0
3.18.0

Open the chart page →

1,290
accountaccount-serviceVerified publisher0.4.21 of 1See more

account account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vitalii1992/account-service:latest0e694d94551d
commons-lang@2.6
no fix listed

Open the chart page →

2,168
analyticsaccount-serviceVerified publisher0.4.21 of 1See more

analytics account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vitalii1992/analytics-service:latest8e798836ecea
commons-lang@2.6
no fix listed

Open the chart page →

2,326
gatewayaccount-serviceVerified publisher0.4.21 of 1See more

gateway account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vitalii1992/api-gateway-service:latestaabe6ac39356
commons-lang@2.6
no fix listed

Open the chart page →

2,853
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

7,713
orderaccount-serviceVerified publisher0.4.21 of 1See more

order account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vitalii1992/order-service:latest07c4a8833ce4
commons-lang@2.6
no fix listed

Open the chart page →

2,221
quotes-provideraccount-serviceVerified publisher0.4.21 of 1See more

quotes-provider account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0

Open the chart page →

2,205
migrationadeptia-automate-migration5.2.91 of 1See more

migration adeptia-automate-migration 5.2.9

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
adeptiainc/adeptia-connect-migration:5.2.98607f4f29732
commons-lang@2.6
no fix listed

Open the chart page →

395
jenkinsaditisingh-jenkins1.0.01 of 1See more

jenkins aditisingh-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
commons-lang@2.6
no fix listed

Open the chart page →

2,476
gotenbergadnoctemVerified publisher0.5.01 of 1See more

gotenberg adnoctem 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.37.0f29984bd1e22
commons-lang3@3.12.0
3.18.0

Open the chart page →

5,582
airbyte-api-serverairbyteVerified publisher0.293.41 of 1See more

airbyte-api-server airbyte 0.293.4

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
airbyte/airbyte-api-server:0.63.8e1c5e7cfec8a
commons-lang3@3.14.0
3.18.0

Open the chart page →

854
airbyte-cronairbyteVerified publisher0.40.371 of 1See more

airbyte-cron airbyte 0.40.37

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
airbyte/cron:0.40.17caf4f551c546
commons-lang@2.6
commons-lang3@3.11
no fix listed
3.18.0

Open the chart page →

1,413
connector-rollout-workerairbyteVerified publisher1.9.21 of 1See more

connector-rollout-worker airbyte 1.9.2

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
airbyte/connector-rollout-worker:2.0.2-alpha-c905e75d42813fcc191
commons-lang3@3.14.0
3.18.0

Open the chart page →

829
airbyteairbyte-v2Verified publisher2.2.04 of 10See more

airbyte airbyte-v2 2.2.0

4 of the 10 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
airbyte/bootloader:2.2.0f71cf4e185d5
commons-lang3@3.14.0
3.18.0
airbyte/cron:2.2.0d97b67a1346d
commons-lang3@3.14.0
3.18.0
airbyte/worker:2.2.08060b88b29c8
commons-lang3@3.14.0
3.18.0
airbyte/workload-launcher:2.2.0119be7bfb719
commons-lang3@3.14.0
3.18.0

Open the chart page →

12,473
airbyte-data-planeairbyte-v2Verified publisher2.2.01 of 1See more

airbyte-data-plane airbyte-v2 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
airbyte/workload-launcher:2.2.0119be7bfb719
commons-lang3@3.14.0
3.18.0

Open the chart page →

790
airports-kafkaairports-kafka0.1.01 of 2See more

airports-kafka airports-kafka 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
commons-lang3@3.8.1
3.18.0

Open the chart page →

4,547
airsonic-advancedairsonic-advancedVerified publisher0.3.11 of 1See more

airsonic-advanced airsonic-advanced 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
linuxserver/airsonic-advanced:11.1.4d286a7f55a59
commons-lang@2.6
commons-lang3@3.16.0
no fix listed
3.18.0

Open the chart page →

1,748
aktoakto0.2.04 of 7See more

akto akto 0.2.0

4 of the 7 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
commons-lang3@3.8.1
3.18.0
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
commons-lang3@3.8.1
3.18.0
public.ecr.aws/aktosecurity/akto-api-security-runtime:latestfacdfba6d4e4
commons-lang3@3.12.0
3.18.0
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
commons-lang3@3.12.0
3.18.0

Open the chart page →

13,613
akto-ai-guardrails-v2akto0.3.01 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

1 of the 6 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
commons-lang3@3.8.1
3.18.0

Open the chart page →

9,321
akto-hybrid-redactakto1.44.42 of 5See more

akto-hybrid-redact akto 1.44.4

2 of the 5 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:1.74.1_localf2e2d816ef82
commons-lang3@3.13.0
3.18.0
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.1_local75f00caa6f3f
commons-lang3@3.12.0
3.18.0

Open the chart page →

4,777
akto-mini-runtimeakto0.7.221 of 3See more

akto-mini-runtime akto 0.7.22

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest8be3ed26f746
commons-lang3@3.13.0
3.18.0

Open the chart page →

2,741
akto-mini-runtime-shaakto0.7.231 of 3See more

akto-mini-runtime-sha akto 0.7.23

1 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtimedigest-pinned4d3a8042c761
commons-lang3@3.13.0
3.18.0

Open the chart page →

3,217
akto-mini-testingakto1.45.71 of 5See more

akto-mini-testing akto 1.45.7

1 of the 5 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
commons-lang3@3.12.0
3.18.0

Open the chart page →

6,486
akto-mini-testing-kafkaakto1.42.13 of 5See more

akto-mini-testing-kafka akto 1.42.1

3 of the 5 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
commons-lang3@3.12.0
3.18.0
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
commons-lang3@3.12.0
3.18.0
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:improve-testing-performance8e9d15ed71c7
commons-lang3@3.12.0
3.18.0

Open the chart page →

6,397
akto-mrs-runtime-combinedakto0.0.21 of 2See more

akto-mrs-runtime-combined akto 0.0.2

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:1.54.4_localb2b97137aef5
commons-lang3@3.13.0
3.18.0

Open the chart page →

1,826
akto-protectionakto0.1.03 of 4See more

akto-protection akto 0.1.0

3 of the 4 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
aktosecurity/akto-api-protection:localbcd7382c9c1b
commons-lang3@3.12.0
3.18.0
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
commons-lang3@3.8.1
3.18.0
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
commons-lang3@3.8.1
3.18.0

Open the chart page →

11,285
akto-regional-setupakto1.3.11 of 9See more

akto-regional-setup akto 1.3.1

1 of the 9 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
commons-lang3@3.13.0
3.18.0

Open the chart page →

7,603
akto-runtimeakto0.1.81 of 2See more

akto-runtime akto 0.1.8

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest5d55a742a2bc
commons-lang3@3.13.0
3.18.0

Open the chart page →

1,411
akto-source-code-analyserakto0.1.52 of 3See more

akto-source-code-analyser akto 0.1.5

2 of the 3 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
aktosecurity/source-code-analyser:a-1703-merge274042ed7a53
commons-lang3@3.12.0
3.18.0
hotavneesh/eclipse-jdtls:latesta4579b163414
commons-lang3@3.14.0
3.18.0

Open the chart page →

4,880
akto-testing-db-layerakto1.42.161 of 2See more

akto-testing-db-layer akto 1.42.16

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.59.3_local8cdcb7e83f9f
commons-lang3@3.12.0
3.18.0

Open the chart page →

5,489
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
commons-lang3@3.8.1
3.18.0

Open the chart page →

3,442
zunivers-ninjaalexpressoVerified publisher1.31.21 of 2See more

zunivers-ninja alexpresso 1.31.2

1 of the 2 container images this version deploys carry CVE-2025-48924.

Container imageDigestPackageFixed in
library/neo4j:5.18.18f01f7bb053e
commons-lang3@3.14.0
3.18.0

Open the chart page →

1,165

Container images carrying it

684 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
folioci/edge-connexion:latestb4863d135524
commons-lang3@3.17.0
3.18.0
1
folioci/edge-dematic:latest48c9b1d180d4
commons-lang3@3.12.0
3.18.0
1
folioci/edge-inn-reach:latestc64e4d9dd3fc
commons-lang3@3.12.0
3.18.0
1
folioci/edge-ncip:lateste760dbb81d1a
commons-lang3@3.17.0
3.18.0
1
folioci/edge-patron:latest682b852e056d
commons-lang3@3.17.0
3.18.0
1
folioci/edge-rtac:latest15ef73b1abd0
commons-lang3@3.12.0
3.18.0
1
folioci/mod-agreements:latest29c3f233a498
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-audit:latest88f40730ed45
commons-lang@2.6
no fix listed
1
folioci/mod-authtoken:latest995a25a33133
commons-lang3@3.16.0
3.18.0
1
folioci/mod-calendar:latest22f65982efd7
commons-lang3@3.12.0
3.18.0
1
folioci/mod-circulation:latest3eecd2ac2d8a
commons-lang@2.6
no fix listed
1
folioci/mod-circulation-storage:latest6bdddcafbc0f
commons-lang@2.6
no fix listed
1
folioci/mod-codex-ekb:latest235a3fa4adc9
commons-lang@2.6
commons-lang3@3.4
no fix listed
3.18.0
1
folioci/mod-codex-inventory:latest6d53ed758fd1
commons-lang3@3.3.2
3.18.0
1
folioci/mod-codex-mux:latestd4138abfd30d
commons-lang3@3.7
3.18.0
1
folioci/mod-copycat:latest1513fad2b799
commons-lang3@3.12.0
3.18.0
1
folioci/mod-courses:latest68ca414f5596
commons-lang3@3.17.0
3.18.0
1
folioci/mod-data-export:latest0cc86bf09755
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-export-spring:latestf1d7caf4544b
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-export-worker:latest1ad1811c9b37
commons-lang3@3.12.0
3.18.0
1
folioci/mod-data-import-converter-storage:latest3028f333778f
commons-lang3@3.9
3.18.0
1
folioci/mod-ebsconet:latest3ae8cb99daa3
commons-lang3@3.12.0
3.18.0
1
folioci/mod-feesfines:latestfe3a7049f2fb
commons-lang3@3.17.0
3.18.0
1
folioci/mod-finance:latest14450bc15430
commons-lang@2.6
no fix listed
1
folioci/mod-inn-reach:latestcc8584e43382
commons-lang3@3.12.0
3.18.0
1
folioci/mod-invoice:latest45b7b13e81e1
commons-lang@2.6
no fix listed
1
folioci/mod-invoice-storage:latest0bc720abcb78
commons-lang@2.6
no fix listed
1
folioci/mod-licenses:latestcfd6109bf477
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-login:latest88de493f86db
commons-lang3@3.17.0
3.18.0
1
folioci/mod-login-saml:latest5f3358ccaa0f
commons-lang3@3.17.0
3.18.0
1
folioci/mod-marccat:latest1b57d690d568
commons-lang@2.6
commons-lang3@3.7
no fix listed
3.18.0
1
folioci/mod-ncip:latest8ed83674352b
commons-lang@2.5
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-notes:latest998ac4782e0d
commons-lang3@3.12.0
3.18.0
1
folioci/mod-oa:latestae3b069d4ba5
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-oai-pmh:latest5cd5ef063f2a
commons-lang@2.6
no fix listed
1
folioci/mod-orders:latestfc4528220fb8
commons-lang@2.6
no fix listed
1
folioci/mod-orders-storage:latestceeaacc3bf16
commons-lang@2.6
no fix listed
1
folioci/mod-password-validator:latestb31d75f2bf7b
commons-lang3@3.12.0
3.18.0
1
folioci/mod-patron-blocks:latestde7318069a67
commons-lang@2.6
no fix listed
1
folioci/mod-pubsub:latest0a4fa4ad5d72
commons-lang@2.6
commons-lang3@3.17.0
no fix listed
3.18.0
1
folioci/mod-remote-storage:latest4f12177123dc
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-serials-management:latest571fa1ffe8c9
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-service-interaction:latestf53c327a48e8
commons-lang@2.6
commons-lang3@3.12.0
no fix listed
3.18.0
1
folioci/mod-tags:latest6e8beeb70272
commons-lang3@3.12.0
3.18.0
1
fonoster/routr:1.0.0-rc52ca65af17cbc
commons-lang@2.6
commons-lang3@3.10
no fix listed
3.18.0
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
commons-lang3@3.12.0
3.18.0
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
commons-lang3@3.12.0
3.18.0
1
freeipa/freeipa-server:fedora-37-4.10.1c87d77342bf5
commons-lang3@3.12.0
3.18.0
1
fthomas/scala-steward:latest367afe974b7a
commons-lang3@3.14.0
3.18.0
1
gchq/accumulo:2.0.1c460bb587d6d
commons-lang@2.6
commons-lang3@3.9
no fix listed
3.18.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.