StackRadar

CVE-2025-66418

High

Advisory

Published 5 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
801
of 17,787 indexed, latest versions
Container images
845
deployed by those charts
Fix available
4 of 4
affected packages

urllib3 allows an unbounded number of links in the decompression chain

Carried by container images the latest versions of 801 of 17,787 indexed charts deploy, on 845 images.

Affected packageAffected versionsFixed inImages
urllib3pypi1.24, 1.24.1, 1.24.2, 1.24.3+42 more2.6.0818
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
python-urllib3deb1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2, 1.25.8-2ubuntu0.3, 1.25.8-2ubuntu0.4+6 more1.25.8-2ubuntu0.4+esm2, 1.26.5-1~exp1ubuntu0.4, 1.26.12-1+deb12u2, 2.0.7-1ubuntu0.346
python-pipdeb22.0.2+dfsg-1, 22.0.2+dfsg-1ubuntu0.2, 22.0.2+dfsg-1ubuntu0.3, 22.0.2+dfsg-1ubuntu0.4+7 more22.0.2+dfsg-1ubuntu0.7+esm1, 24.0+dfsg-1ubuntu1.3+esm144
OSV records
CGA-7c7g-v8c7-cp3hCGA-9p8r-r9mh-6fj5DEBIAN-CVE-2025-66418GHSA-gm62-xv2j-4w53UBUNTU-CVE-2025-66418
Also known as
CGA-8232-8863-qprx, CGA-f9vm-whvp-q74g, PYSEC-2026-1998, USN-7927-1, USN-8344-1

Charts affected

801 by stars
ChartLatestAffected imagesRadar Score
bae-activation-servicefiware0.1.21 of 1See more

bae-activation-service fiware 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
fiware/bae-activation-service:v0.0.33e3ec88d59ed
urllib3@1.26.2
2.6.0

Open the chart page →

3,186
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
urllib3@1.25.8
python-urllib3@1.25.8-2ubuntu0.4
2.6.0
1.25.8-2ubuntu0.4+esm2

Open the chart page →

64,192
orionfiware1.6.111 of 2See more

orion fiware 1.6.11

1 of the 2 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
urllib3@1.24.2
2.6.0

Open the chart page →

10,638
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
urllib3@2.5.0
2.6.0

Open the chart page →

5,340
flask-contactsflask-contacts-generic1.0.11 of 3See more

flask-contacts flask-contacts-generic 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
urllib3@2.2.3
2.6.0

Open the chart page →

5,624
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
louislam/uptime-kuma:13d632903e6af
urllib3@1.24.1
2.6.0

Open the chart page →

3,474
forms-catalogueforms-catalogue0.1.01 of 2See more

forms-catalogue forms-catalogue 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
urllib3@1.26.7
2.6.0

Open the chart page →

2,188
powerdnsfsdrw080.1.31 of 4See more

powerdns fsdrw08 0.1.3

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:latest9898a7cf37d2
urllib3@1.25.11
2.6.0

Open the chart page →

1,958
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
urllib3@2.3.0
2.6.0

Open the chart page →

2,437
tandoorgabe565Verified publisher0.9.91 of 2See more

tandoor gabe565 0.9.9

1 of the 2 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
urllib3@1.26.20
2.6.0

Open the chart page →

2,182
spectergaloymoney0.3.11 of 1See more

specter galoymoney 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
lncm/specter-desktop:v1.10.536eaa06f99f4
urllib3@1.26.5
2.6.0

Open the chart page →

1,691
spectergaloymoney20.3.11 of 1See more

specter galoymoney2 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
lncm/specter-desktop:v1.10.536eaa06f99f4
urllib3@1.26.5
2.6.0

Open the chart page →

1,691
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
urllib3@1.25.8
python-urllib3@1.25.8-2ubuntu0.1
2.6.0
1.25.8-2ubuntu0.4+esm2

Open the chart page →

18,217
amcrest2mqttgeek-cookbookVerified publisher2.4.21 of 1See more

amcrest2mqtt geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
dchesterton/amcrest2mqtt:1.0.9cc70f2238aa9
urllib3@1.26.6
2.6.0

Open the chart page →

1,924
babybuddygeek-cookbookVerified publisher1.2.21 of 1See more

babybuddy geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
linuxserver/babybuddy:1.10.2f7d7c7704249
urllib3@1.26.5
2.6.0

Open the chart page →

1,489
beetsgeek-cookbookVerified publisher1.4.21 of 1See more

beets geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
linuxserver/beets:1.5.0e36d16f7341c
urllib3@1.26.7
2.6.0

Open the chart page →

1,151
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
urllib3@1.25.11
2.6.0

Open the chart page →

16,178
changedetection-iogeek-cookbookVerified publisher1.5.21 of 1See more

changedetection-io geek-cookbook 1.5.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
urllib3@1.26.7
2.6.0

Open the chart page →

1,950
comcastgeek-cookbookVerified publisher6.4.21 of 1See more

comcast geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
billimek/comcastusage-for-influxdb:latest801bba1228ac
urllib3@1.24
2.6.0

Open the chart page →

3,245
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
urllib3@1.26.12
2.6.0

Open the chart page →

9,103
ihatemoneygeek-cookbookVerified publisher1.1.21 of 1See more

ihatemoney geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ihatemoney/ihatemoney:5.2.0457fda1feb32
urllib3@1.26.9
2.6.0

Open the chart page →

1,526
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
urllib3@1.26.12
python-urllib3@1.26.12-1+deb12u1
2.6.0
1.26.12-1+deb12u2

Open the chart page →

12,993
mylargeek-cookbookVerified publisher4.4.21 of 1See more

mylar geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/mylar3:version-v0.5.3b96f0e97ab3f
urllib3@1.26.2
2.6.0

Open the chart page →

1,423
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
urllib3@1.26.11
2.6.0

Open the chart page →

12,124
openemrgeek-cookbookVerified publisher5.2.01 of 1See more

openemr geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
openemr/openemr:6.1.089eaa6d9a4e3
urllib3@1.26.7
2.6.0

Open the chart page →

8,392
powerdns-admingeek-cookbookVerified publisher1.2.21 of 1See more

powerdns-admin geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
urllib3@1.25.11
2.6.0

Open the chart page →

2,643
radicalegeek-cookbookVerified publisher1.2.21 of 1See more

radicale geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
tomsquest/docker-radicale:3.1.1.04759cc353a1d
urllib3@1.26.5
2.6.0

Open the chart page →

2,116
rtorrent-rutorrentgeek-cookbookVerified publisher1.1.21 of 1See more

rtorrent-rutorrent geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
urllib3@1.26.13
2.6.0

Open the chart page →

4,232
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
urllib3@1.25.8
python-urllib3@1.25.8-2ubuntu0.1
2.6.0
1.25.8-2ubuntu0.4+esm2

Open the chart page →

24,355
searxgeek-cookbookVerified publisher5.6.21 of 4See more

searx geek-cookbook 5.6.2

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
searx/searx:1.0.0-211-968b28993dbb3a6d9419
urllib3@1.25.9
2.6.0

Open the chart page →

7,470
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
urllib3@2.5.0
2.6.0

Open the chart page →

8,955
whooglegeek-cookbookVerified publisher3.4.21 of 1See more

whoogle geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
benbusby/whoogle-search:0.5.4f77f7e6e4ad2
urllib3@1.26.5
2.6.0

Open the chart page →

2,061
volume-autoscalergke-volume-autoscaler3.0.21 of 1See more

volume-autoscaler gke-volume-autoscaler 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
shadowrhyder/gke-volume-autoscaler:3.0.24aae9270356a
urllib3@2.5.0
2.6.0

Open the chart page →

900
ldap-backupgluuVerified publisher1.6.111 of 1See more

ldap-backup gluu 1.6.11

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
gluufederation/opendj:4.3.0_011a1128b28b95
urllib3@1.26.5
2.6.0

Open the chart page →

3,064
gmaas-github-apigmaas-github-api2.0.11 of 1See more

gmaas-github-api gmaas-github-api 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
gmaas2/github-api:latest148fc2d9afe9
urllib3@1.26.13
2.6.0

Open the chart page →

1,205
docker-registry-gcgmelilloVerified publisher0.1.91 of 1See more

docker-registry-gc gmelillo 0.1.9

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
gmelillo/registry:0.1.8c599d608a2f7
urllib3@1.26.18
2.6.0

Open the chart page →

981
gnp-stackgnp-stack0.0.51 of 14See more

gnp-stack gnp-stack 0.0.5

1 of the 14 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.30.10835d79d8fbae
urllib3@2.5.0
2.6.0

Open the chart page →

7,662
platformgoofy-chart0.1.01 of 1See more

platform goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
devopsgoofy/k8s-platform:latestad865312099f
urllib3@2.2.3
2.6.0

Open the chart page →

2,677
opentelemetry-demogpg-dev0.33.81 of 27See more

opentelemetry-demo gpg-dev 0.33.8

1 of the 27 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
urllib3@2.0.7
2.6.0

Open the chart page →

47,117
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
python-pip@24.0+dfsg-1ubuntu1
24.0+dfsg-1ubuntu1.3+esm1

Open the chart page →

7,935
siembolgresearch0.1.61 of 4See more

siembol gresearch 0.1.6

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
alpine/k8s:1.18.16a41efe02a041
urllib3@1.26.6
2.6.0

Open the chart page →

14,312
guacamoleguacamole1.0.01 of 4See more

guacamole guacamole 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:18899d3ed526b6
urllib3@1.26.20
2.6.0

Open the chart page →

250
resurrectbothalkeye0.1.51 of 1See more

resurrectbot halkeye 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
halkeye/slack-resurrect:v0.1.477b05e95fdb5
urllib3@1.25.3
2.6.0

Open the chart page →

3,809
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
python-pip@22.0.2+dfsg-1ubuntu0.5
22.0.2+dfsg-1ubuntu0.7+esm1

Open the chart page →

9,151
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
urllib3@2.3.0
2.6.0

Open the chart page →

6,014
home-assistanthelm-chart-roeiVerified publisher2025.3.01 of 1See more

home-assistant helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
urllib3@1.26.20
2.6.0

Open the chart page →

4,646
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
urllib3@1.24.2
2.6.0

Open the chart page →

24,174
streamsheetshelm-chartsVerified publisher0.2.35 of 8See more

streamsheets helm-charts 0.2.3

5 of the 8 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
urllib3@1.24.2
2.6.0
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
urllib3@1.24.2
2.6.0
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
urllib3@1.24.2
2.6.0
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
urllib3@1.24.2
2.6.0
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
urllib3@1.24.2
2.6.0

Open the chart page →

89,949
kube-downscalerhelm-charts-nr0.7.61 of 1See more

kube-downscaler helm-charts-nr 0.7.6

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
urllib3@2.0.3
2.6.0

Open the chart page →

3,700
locusthelm-charts-nr0.32.41 of 1See more

locust helm-charts-nr 0.32.4

1 of the 1 container images this version deploys carry CVE-2025-66418.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
urllib3@2.2.3
2.6.0

Open the chart page →

2,660

Container images carrying it

845 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
urllib3@2.0.3
2.6.0
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
urllib3@2.3.0
2.6.0
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
urllib3@1.26.2
2.6.0
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
urllib3@1.26.12
2.6.0
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
urllib3@1.26.12
2.6.0
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
urllib3@2.3.0
2.6.0
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
urllib3@2.3.0
2.6.0
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
urllib3@2.5.0
2.6.0
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
urllib3@2.5.0
2.6.0
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
urllib3@2.5.0
2.6.0
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
urllib3@2.5.0
2.6.0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
urllib3@1.26.20
2.6.0
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
urllib3@2.2.1
2.6.0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
urllib3@1.26.20
2.6.0
1
ghcr.io/wasi-master/13ft:0.3.4563ce7794a71
urllib3@2.2.3
2.6.0
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
urllib3@2.5.0
2.6.0
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
urllib3@2.5.0
2.6.0
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
urllib3@1.26.12
python-urllib3@1.26.12-1
2.6.0
1.26.12-1+deb12u2
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
urllib3@2.0.7
2.6.0
1
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
python-pip@24.0+dfsg-1ubuntu1.3
24.0+dfsg-1ubuntu1.3+esm1
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
urllib3@2.3.0
2.6.0
1
mcr.microsoft.com/oss/v2/kubernetes-csi/azurefile-csi:v1.35.76e43ba0bd009
urllib3@2.0.7
2.6.0
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
urllib3@2.5.0
2.6.0
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
urllib3@2.3.0
2.6.0
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
urllib3@2.3.0
2.6.0
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
urllib3@2.2.3
2.6.0
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
urllib3@1.24.2
2.6.0
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
urllib3@1.26.5
2.6.0
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
urllib3@1.26.5
2.6.0
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
urllib3@1.25.8
python-urllib3@1.25.8-2ubuntu0.1
2.6.0
1.25.8-2ubuntu0.4+esm2
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
urllib3@1.26.5
2.6.0
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
urllib3@2.5.0
2.6.0
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
urllib3@1.26.18
2.6.0
1
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
urllib3@1.26.19
2.6.0
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
urllib3@1.24.2
2.6.0
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
urllib3@1.26.9
2.6.0
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
urllib3@1.24.2
2.6.0
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
urllib3@2.3.0
2.6.0
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
urllib3@1.24.2
2.6.0
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
urllib3@1.24.2
2.6.0
1
quay.io/everythingascode/apishift:v0.3.08fbbcd23b902
urllib3@1.26.5
2.6.0
1
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
urllib3@1.26.6
2.6.0
1
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
urllib3@1.24.2
2.6.0
1
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
urllib3@1.24.2
2.6.0
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
urllib3@1.24.2
2.6.0
1
quay.io/freeipa/freeipa-server:fedora-39-4.11.1d422ee50c2c3
urllib3@1.26.18
2.6.0
1
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
urllib3@2.4.0
2.6.0
1
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
urllib3@2.2.3
2.6.0
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
urllib3@1.26.2
2.6.0
1
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
urllib3@2.1.0
2.6.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.