StackRadar

CVE-2025-66471

High

Advisory

Published 5 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.007
51st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
839
of 17,787 indexed, latest versions
Container images
889
deployed by those charts
Fix available
4 of 4
affected packages

urllib3 streaming API improperly handles highly compressed data

Carried by container images the latest versions of 839 of 17,787 indexed charts deploy, on 889 images.

Affected packageAffected versionsFixed inImages
urllib3pypi1.7.1, 1.10.2, 1.13.1, 1.19.1+49 more2.6.0847
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+22 more22.0.2+dfsg-1ubuntu0.7+esm3, 24.0+dfsg-1ubuntu1.3+esm3106
python-urllib3deb1.7.1-1build1, 1.7.1-1ubuntu4, 1.13.1-2ubuntu0.16.04.1, 1.13.1-2ubuntu0.16.04.2+17 more1.25.8-2ubuntu0.4+esm2, 1.26.5-1~exp1ubuntu0.4, 2.0.7-1ubuntu0.369
OSV records
CGA-6rv2-pgqx-6frwCGA-9xrh-87x9-46fcDEBIAN-CVE-2025-66471GHSA-2xpw-w6gg-jr37UBUNTU-CVE-2025-66471
Also known as
CGA-v664-8xrh-754v, CGA-vfcj-jpxf-gprq, PYSEC-2026-1994, USN-7927-1, USN-7927-2, USN-7927-3, USN-8344-1, USN-8344-2, USN-8344-3

Charts affected

839 by stars
ChartLatestAffected imagesRadar Score
mozalert-controllermozilla0.4.01 of 1See more

mozalert-controller mozilla 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
afrank/mozalert-controller:latestd463c37b08d7
urllib3@1.25.10
2.6.0

Open the chart page →

2,969
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
urllib3@2.2.1
2.6.0

Open the chart page →

4,560
paperless-ngxmt1905027.6.141 of 4See more

paperless-ngx mt190502 7.6.14

1 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
urllib3@2.5.0
2.6.0

Open the chart page →

11,950
mysql2s3bkmysql2s3bk0.1.01 of 1See more

mysql2s3bk mysql2s3bk 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
pyaephyohein/mysql2s3bk:alphafdee05f2d441
urllib3@1.26.15
2.6.0

Open the chart page →

1,208
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
urllib3@1.22
2.6.0

Open the chart page →

4,911
mlflowncsaVerified publisher1.2.11 of 4See more

mlflow ncsa 1.2.1

1 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
evk02/mlflow:2.2.1ef6ff257ef35
urllib3@1.26.15
2.6.0

Open the chart page →

5,456
pecanncsaVerified publisher0.6.21 of 15See more

pecan ncsa 0.6.2

1 of the 15 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
pecan/monitor:1.7.273b2074f3fec
urllib3@1.24.3
2.6.0

Open the chart page →

14,154
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
urllib3@1.26.1
2.6.0

Open the chart page →

55,726
smilencsaVerified publisher1.1.016 of 23See more

smile ncsa 1.1.0

16 of the 23 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
urllib3@1.26.16
python-pip@20.0.2-5ubuntu1.9
2.6.0
no fix listed
socialmediamacroscope/classification_predict:0.1.24fb86885d64d
urllib3@1.26.15
2.6.0
socialmediamacroscope/classification_split:0.1.24bfda60829fe
urllib3@1.26.15
2.6.0
socialmediamacroscope/classification_train:0.1.207477060bba8
urllib3@1.26.15
2.6.0
socialmediamacroscope/clowder_create_collection:0.1.0c969f7677983
urllib3@1.26.15
2.6.0
socialmediamacroscope/clowder_create_dataset:0.1.09b4211832429
urllib3@1.26.15
2.6.0
socialmediamacroscope/clowder_create_space:0.1.0999f2ff2c128
urllib3@1.26.15
2.6.0
socialmediamacroscope/clowder_list:0.1.051cb17626519
urllib3@2.0.2
2.6.0
socialmediamacroscope/clowder_upload_file:0.1.274e35f64db68
urllib3@1.26.16
2.6.0
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
urllib3@1.24.3
python-pip@9.0.1-2.3~ubuntu1.18.04.8
2.6.0
no fix listed
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
urllib3@1.26.18
2.6.0
socialmediamacroscope/image_crawler:0.1.2f508216be63c
urllib3@1.24.3
python-pip@9.0.1-2.3~ubuntu1.18.04.8
2.6.0
no fix listed
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
urllib3@1.26.16
2.6.0
socialmediamacroscope/preprocessing:0.1.3ca863306314b
urllib3@1.26.16
2.6.0
socialmediamacroscope/screen_name_prompt:0.1.2724f3f5702e0
urllib3@1.26.15
2.6.0
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
urllib3@1.26.16
2.6.0

Open the chart page →

109,294
uptime-kumancsaVerified publisher1.7.21 of 1See more

uptime-kuma ncsa 1.7.2

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
urllib3@1.26.12
python-urllib3@1.26.12-1+deb12u3
2.6.0
no fix listed

Open the chart page →

30,028
neuralbank-stackneuralbank-stack0.1.01 of 4See more

neuralbank-stack neuralbank-stack 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
urllib3@1.26.5
2.6.0

Open the chart page →

5,191
neurofaceneurofaceVerified publisher1.4.22 of 3See more

neuroface neuroface 1.4.2

2 of the 3 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
urllib3@1.26.5
2.6.0
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
urllib3@1.26.5
2.6.0

Open the chart page →

7,310
nfl-walletnfl-walletVerified publisher0.1.31 of 4See more

nfl-wallet nfl-wallet 0.1.3

1 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
urllib3@1.24.2
2.6.0

Open the chart page →

13,041
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
urllib3@1.26.12
python-pip@20.0.2-5ubuntu1.6
2.6.0
no fix listed

Open the chart page →

22,658
zookeeper-helm-chartnotesprojectchart0.1.01 of 1See more

zookeeper-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
urllib3@1.7.1
python-urllib3@1.7.1-1build1
2.6.0
no fix listed

Open the chart page →

41,427
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
python-pip@9.0.1-2.3~ubuntu1.18.04.1
no fix listed

Open the chart page →

27,633
object-clonerobject-clonerVerified publisher2.0.01 of 1See more

object-cloner object-cloner 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
ghcr.io/ideamixes/object-cloner:2.0.031030fd2f192
urllib3@2.0.4
2.6.0

Open the chart page →

1,588
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
urllib3@1.26.20
2.6.0

Open the chart page →

1,162
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
urllib3@2.5.0
2.6.0

Open the chart page →

17,070
my-bloody-jenkinsodavid0.1.2181 of 1See more

my-bloody-jenkins odavid 0.1.218

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
urllib3@2.2.3
2.6.0

Open the chart page →

5,826
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
python-pip@22.0.2+dfsg-1ubuntu0.3
22.0.2+dfsg-1ubuntu0.7+esm3

Open the chart page →

9,005
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
urllib3@1.25.9
2.6.0

Open the chart page →

18,023
comacopencord1.0.04 of 9See more

comac opencord 1.0.0

4 of the 9 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
2.6.0
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed
omecproject/onos-progran:1.0.05715e5648aa0
urllib3@1.13.1
python-urllib3@1.13.1-2ubuntu0.16.04.1
2.6.0
no fix listed
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
2.6.0
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed

Open the chart page →

26,211
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
urllib3@1.25.3
2.6.0

Open the chart page →

4,612
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
omecproject/mme-exporter:paging-latestbcc5f19fd676
python-pip@9.0.1-2.3~ubuntu1.18.04.1
no fix listed

Open the chart page →

40,715
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
urllib3@1.13.1
python-urllib3@1.13.1-2ubuntu0.16.04.1
2.6.0
no fix listed

Open the chart page →

38,865
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
urllib3@1.13.1
python-pip@8.1.1-2ubuntu0.4
python-urllib3@1.13.1-2ubuntu0.16.04.2
2.6.0
no fix listed
no fix listed
voltha/voltha-netconf:1.6.037f80524c207
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed
voltha/voltha-ofagent:1.6.09ee8c1f4428c
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed
voltha/voltha-voltha:1.6.0ff596b62de59
urllib3@1.22
python-pip@8.1.1-2ubuntu0.4
2.6.0
no fix listed

Open the chart page →

93,855
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
urllib3@2.3.0
2.6.0

Open the chart page →

10,978
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
urllib3@2.2.1
2.6.0

Open the chart page →

11,796
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
urllib3@1.24.2
2.6.0

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
urllib3@1.24.2
2.6.0

Open the chart page →

7,519
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
urllib3@2.5.0
2.6.0
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
urllib3@2.2.1
2.6.0

Open the chart page →

18,922
exporteropenshift1.0.473 of 3See more

exporter openshift 1.0.47

3 of the 3 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
urllib3@1.24.2
2.6.0
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
urllib3@1.26.5
2.6.0
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
urllib3@1.26.5
2.6.0

Open the chart page →

13,000
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
urllib3@1.24.2
2.6.0

Open the chart page →

4,749
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
urllib3@1.26.5
2.6.0

Open the chart page →

4,127
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
urllib3@1.24.2
2.6.0

Open the chart page →

5,863
orion-ldopenshift1.0.31 of 2See more

orion-ld openshift 1.0.3

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
urllib3@1.24.2
2.6.0

Open the chart page →

14,727
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
urllib3@1.26.5
2.6.0

Open the chart page →

8,599
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
urllib3@1.24.2
2.6.0

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
urllib3@1.24.2
2.6.0

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
urllib3@1.24.2
2.6.0

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
urllib3@1.24.2
2.6.0

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
urllib3@1.24.2
2.6.0

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
urllib3@1.24.2
2.6.0

Open the chart page →

13,100
openwhiskopenwhisk1.0.02 of 10See more

openwhisk openwhisk 1.0.0

2 of the 10 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
apache/couchdb:2.39f895c8ae371
urllib3@1.19.1
2.6.0
openwhisk/ow-utils:1.0.0c80dba0de3aa
urllib3@1.25.11
python-pip@9.0.1-2.3~ubuntu1.18.04.4
2.6.0
no fix listed

Open the chart page →

36,215
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.07 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

7 of the 40 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
yetiplatform/yeti:2.9.09bcbe2650a14
urllib3@2.4.0
2.6.0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.3
2.6.0
24.0+dfsg-1ubuntu1.3+esm3
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.3
2.6.0
24.0+dfsg-1ubuntu1.3+esm3
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.3
2.6.0
24.0+dfsg-1ubuntu1.3+esm3
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.6.0
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.3
2.6.0
24.0+dfsg-1ubuntu1.3+esm3
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.3
2.6.0
24.0+dfsg-1ubuntu1.3+esm3

Open the chart page →

71,208
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
urllib3@2.4.0
2.6.0

Open the chart page →

6,583
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2025-66471.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
urllib3@1.26.18
2.6.0

Open the chart page →

5,137

Container images carrying it

889 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
amundsendev/amundsen-frontend:2.1.169e7915e61c1
urllib3@1.24.3
2.6.0
1
amundsendev/amundsen-metadata:2.5.44d98eb21f5f9
urllib3@1.25.10
2.6.0
1
amundsendev/amundsen-search:2.4.099dda9502c3e
urllib3@1.22
2.6.0
1
anchore/anchore-engine:v0.10.0bde9eedf639d
urllib3@1.25.9
2.6.0
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
urllib3@1.25.8
2.6.0
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
urllib3@2.0.7
2.6.0
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
python-pip@22.0.2+dfsg-1ubuntu0.3
22.0.2+dfsg-1ubuntu0.7+esm3
1
andreymileshin/kube-info:v0.1.0f7b300bc9e66
urllib3@2.3.0
2.6.0
1
andreymileshin/zerossl-issuer:v1.0.0e0825acc9e48
urllib3@2.4.0
2.6.0
1
andrianrf/backoffice:latest047a7837651e
urllib3@1.24.2
2.6.0
1
apache/airflow:2.8.4-python3.964e58748b6b9
urllib3@1.26.18
2.6.0
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
urllib3@1.26.20
2.6.0
1
apache/airflow:2.8.1e5560ad0b86e
urllib3@1.26.18
2.6.0
1
apache/couchdb:2.39f895c8ae371
urllib3@1.19.1
2.6.0
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
python-pip@22.0.2+dfsg-1ubuntu0.3
22.0.2+dfsg-1ubuntu0.7+esm3
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
urllib3@1.26.9
python-pip@20.0.2-5ubuntu1.6
2.6.0
no fix listed
1
apachepulsar/pulsar:2.6.14db6ff0b4045
urllib3@1.25.10
2.6.0
1
apachepulsar/pulsar:3.0.79c9947de139d
python-pip@22.0.2+dfsg-1ubuntu0.4
22.0.2+dfsg-1ubuntu0.7+esm3
1
apachepulsar/pulsar:2.9.0d056c89b7131
urllib3@1.26.7
2.6.0
1
apachepulsar/pulsar:2.8.2d538416d5afe
urllib3@1.26.7
2.6.0
1
apache/ranger:2.7.076c176e8a0e4
urllib3@2.5.0
python-pip@22.0.2+dfsg-1ubuntu0.6
2.6.0
22.0.2+dfsg-1ubuntu0.7+esm3
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
urllib3@1.26.6
2.6.0
1
apache/superset:4.0.1ab9467fd712c
urllib3@1.26.18
2.6.0
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
urllib3@2.4.0
2.6.0
1
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
urllib3@1.26.5
2.6.0
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
urllib3@1.24.2
2.6.0
1
apsl/thumbor:6.7.051e2de5c2c70
urllib3@1.25.7
2.6.0
1
aquasec/kube-hunter:1950bf607ce9308
urllib3@1.24.1
2.6.0
1
aristidetm/basic-notebook:3.6.5469dbc951224
urllib3@2.2.2
2.6.0
1
aristidetm/k8s-hub:3.3.7ccb516cb8474
urllib3@2.2.1
2.6.0
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
urllib3@2.2.2
2.6.0
1
arunvelsriram/utils:latest655ad18fd8d6
urllib3@2.0.7
python-pip@24.0+dfsg-1ubuntu1.2
python-urllib3@2.0.7-1ubuntu0.2
2.6.0
24.0+dfsg-1ubuntu1.3+esm3
2.0.7-1ubuntu0.3
1
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
urllib3@1.26.5
2.6.0
1
assistiot/fl_local_operations_inference:latest0518b63a2e69
urllib3@1.26.16
2.6.0
1
assistiot/fl_repository:latest0fce3ea719a5
urllib3@1.26.12
2.6.0
1
assistiot/fl_training_collector:latest792715dd3084
urllib3@1.26.7
2.6.0
1
assistiot/open_api_backend:1.1.230812ba93555
urllib3@2.1.0
python-pip@22.0.2+dfsg-1ubuntu0.4
2.6.0
22.0.2+dfsg-1ubuntu0.7+esm3
1
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
urllib3@1.26.18
2.6.0
1
assistiot/resource-provisioning_im:1.0.0a942dc14030a
urllib3@1.26.18
2.6.0
1
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
urllib3@1.26.16
2.6.0
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
urllib3@2.2.1
2.6.0
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
urllib3@2.2.1
2.6.0
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
urllib3@1.26.18
2.6.0
1
assistiot/traffic-classification_api:2.0.0e32b87786142
urllib3@1.26.18
2.6.0
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
urllib3@1.25.8
python-pip@20.0.2-5ubuntu1.8
python-urllib3@1.25.8-2ubuntu0.2
2.6.0
no fix listed
1.25.8-2ubuntu0.4+esm2
1
balihb/pod-pvc-mapping:0.2.4ee48e79f5d76
urllib3@1.26.8
2.6.0
1
baserow/backend:1.31.1e0b3c8130b91
urllib3@1.26.18
2.6.0
1
baserow/baserow:1.30.1df0c42eb67e8
urllib3@1.26.18
2.6.0
1
bbvalabs/sensitive-data:1.0.13ea299ae63c0
urllib3@1.26.4
2.6.0
1
benbusby/whoogle-search:0.5.4f77f7e6e4ad2
urllib3@1.26.5
2.6.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.