StackRadar

CVE-2025-8869

Medium

Advisory

Published 24 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,079
of 17,781 indexed, latest versions
Container images
1,131
deployed by those charts
Fix available
2 of 3
affected packages

pip's fallback tar extraction doesn't check symbolic links point to extraction directory

Carried by container images the latest versions of 1,079 of 17,781 indexed charts deploy, on 1,131 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+62 more25.31,129
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+14 moreno fix listed97
py3-pipapk25.0.1-r0, 25.2-r025.2-r22
OSV records
CGA-2c2v-qg5x-gf3vCGA-2h56-9hwm-vvwrDEBIAN-CVE-2025-8869GHSA-4xh5-x5gv-qwphUBUNTU-CVE-2025-8869
Also known as
CGA-2j52-82cx-jqm7, CGA-2vvp-4788-p685, CGA-38mx-66cv-5xhm, CGA-96x5-ppvf-355h, CGA-c923-5fqp-9gx9, CGA-c9f4-7rjc-ch6m, CGA-fvxf-h26j-p86m, CGA-h22m-qp2v-7fj8, CGA-m95p-j3wh-8jw6, CGA-w6hh-8hcg-xmhc, PYSEC-2026-1795

Charts affected

1,079 by stars
ChartLatestAffected imagesRadar Score
pgadminarunalakmalVerified publisher0.1.01 of 1See more

pgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

2,418
swdpgadminarunalakmalVerified publisher0.1.01 of 1See more

swdpgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

2,418
itera-lmaarzu1.34.601 of 6See more

itera-lma arzu 1.34.60

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
pip@22.1.2
25.3

Open the chart page →

8,608
keystonearzu0.2.292 of 4See more

keystone arzu 0.2.29

2 of the 4 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
pip@21.2.3
25.3
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
pip@21.2.3
25.3

Open the chart page →

22,568
authorizationassist-iot-authorisation0.1.01 of 2See more

authorization assist-iot-authorisation 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/authorization_db:latestc3adbab6a3e7
pip@20.2.4
25.3

Open the chart page →

5,537
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
pip@20.2.4
25.3
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
pip@20.2.4
25.3

Open the chart page →

14,728
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_local_operations_inference:latest0518b63a2e69
pip@23.2.1
25.3

Open the chart page →

3,786
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_repository:latest0fce3ea719a5
pip@20.1.1
25.3

Open the chart page →

4,367
trainingcollectorassist-iot-fl-training-collector1.1.01 of 1See more

trainingcollector assist-iot-fl-training-collector 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_training_collector:latest792715dd3084
pip@23.2.1
25.3

Open the chart page →

1,719
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
pip@9.0.3
25.3

Open the chart page →

13,352
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
pip@23.3.1
25.3

Open the chart page →

18,277
resource-provisioningassist-iot-resource-provisioning1.0.04 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

4 of the 7 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
pip@23.0.1
25.3
assistiot/resource-provisioning_im:1.0.0a942dc14030a
pip@23.0.1
25.3
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
pip@20.3.4
25.3
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3

Open the chart page →

8,032
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
pip@23.0.1
25.3
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
pip@23.0.1
25.3
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3

Open the chart page →

45,363
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
pip@23.0.1
25.3

Open the chart page →

1,166
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
pip@23.0.1
python-pip@20.0.2-5ubuntu1.8
25.3
no fix listed

Open the chart page →

13,913
phonebook-chartasumankamberoglu0.1.53 of 3See more

phonebook-chart asumankamberoglu 0.1.5

3 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3
paulkellerman/resultserver-app:1.0381eeccb0618
pip@22.3
25.3
paulkellerman/webserver-app:latest5a37b74f61b9
pip@22.3
25.3

Open the chart page →

3,176
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
pip@23.3.2
25.3

Open the chart page →

9,412
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
pip@21.2.4
25.3

Open the chart page →

5,507
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
pip@22.2.2
25.3

Open the chart page →

5,074
aws-ecr-credentialaws-ecr-credentialVerified publisher1.5.21 of 1See more

aws-ecr-credential aws-ecr-credential 1.5.2

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
architectminds/aws-kubectl:1.19735e59a1085
pip@19.2.1
25.3

Open the chart page →

1,437
ecr-exporteraws-exportersVerified publisher0.2.41 of 1See more

ecr-exporter aws-exporters 0.2.4

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
pip@20.3.4
25.3

Open the chart page →

1,622
inspector-exporteraws-exportersVerified publisher0.0.21 of 1See more

inspector-exporter aws-exporters 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
pip@20.3.4
25.3

Open the chart page →

1,622
aws-secrets-synchronizeraws-secrets-synchronizer0.2.11 of 1See more

aws-secrets-synchronizer aws-secrets-synchronizer 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
pip@23.2.1
25.3

Open the chart page →

956
axosyslog-collectoraxosyslogVerified publisher0.8.11 of 1See more

axosyslog-collector axosyslog 0.8.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
pip@23.3.1
25.3

Open the chart page →

1,516
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
pip@22.0.4
25.3

Open the chart page →

4,568
azure-app-exporterazure-app-exporterVerified publisher0.4.21 of 2See more

azure-app-exporter azure-app-exporter 0.4.2

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
pip@21.2.4
25.3

Open the chart page →

1,790
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
pip@20.2.4
25.3

Open the chart page →

5,521
aks-helloworldazure-sample0.1.11 of 1See more

aks-helloworld azure-sample 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/aks-helloworld:v1fb47732ef36b
pip@9.0.1
25.3

Open the chart page →

4,269
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
25.3

Open the chart page →

5,224
azure-vote-osbaazure-sample0.1.01 of 1See more

azure-vote-osba azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
25.3

Open the chart page →

4,269
osba-container-instances-demoazure-sample0.1.01 of 1See more

osba-container-instances-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-container-instances-demo:latest6527b05d5d03
pip@9.0.1
25.3

Open the chart page →

3,212
osba-cosmos-mongodb-demoazure-sample0.1.01 of 1See more

osba-cosmos-mongodb-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-cosmos-mongodb-demo:latestf4940e84ed05
pip@9.0.1
25.3

Open the chart page →

2,904
osba-mysql-demoazure-sample0.1.01 of 1See more

osba-mysql-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-mysql-demo:latest5859d68a6c9f
pip@9.0.2
25.3

Open the chart page →

2,895
osba-storage-demoazure-sample0.1.01 of 1See more

osba-storage-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-storage-demo:latest29d229ab446e
pip@9.0.1
25.3

Open the chart page →

3,425
osba-text-analytics-demoazure-sample0.1.01 of 1See more

osba-text-analytics-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-text-analytics-demo:latest969af3cb8466
pip@10.0.1
25.3

Open the chart page →

3,089
twitter-sentimentazure-sample0.1.03 of 3See more

twitter-sentiment azure-sample 0.1.0

3 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/chart-tweet:latest64fd8dab075f
pip@9.0.1
25.3
neilpeterson/get-tweet:v28b645ac1a23e
pip@10.0.1
25.3
neilpeterson/process-tweet:latest39ce9f92e899
pip@10.0.1
25.3

Open the chart page →

11,833
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
pip@24.0
25.3

Open the chart page →

2,738
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
conduction/balance-registration-varnish:dev07c44005da9d
pip@9.0.1
25.3

Open the chart page →

8,408
pvc-exporterbalihb-pvc-exporterVerified publisher0.2.42 of 2See more

pvc-exporter balihb-pvc-exporter 0.2.4

2 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
balihb/block-pvc-scanner:0.2.45b95e1cf1158
pip@21.2.4
25.3
balihb/pod-pvc-mapping:0.2.4ee48e79f5d76
pip@21.2.4
25.3

Open the chart page →

2,765
bookinfobasictechno0.1.01 of 6See more

bookinfo basictechno 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
pip@20.1.1
25.3

Open the chart page →

20,671
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
pip@25.0.1
25.3

Open the chart page →

4,028
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
pip@25.1.1
python-pip@25.1.1+dfsg-1
25.3
no fix listed

Open the chart page →

1,170
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
behnambm/docker-sample:v1bd3ad88afff9
pip@23.0.1
25.3

Open the chart page →

2,727
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed

Open the chart page →

7,956
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
pip@21.1.2
python-pip@9.0.1-2.3~ubuntu1.18.04.5
25.3
no fix listed

Open the chart page →

22,891
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed

Open the chart page →

10,145
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.15.00a5eb4795952
pip@19.1.1
25.3

Open the chart page →

18,980
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-rwd:log74ded2d92f07
pip@23.0.1
25.3

Open the chart page →

26,996
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.26.2e271016441af
pip@24.0
25.3

Open the chart page →

8,323

Container images carrying it

1,131 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
pip@23.0.1
25.3
1
jmferrer/azure-devops-agent:latest030f68ec6998
pip@9.0.3
25.3
1
john19968010/fastapi-template:latest31a90f6bd69c
pip@22.3.1
25.3
1
josh5/unmanic:0.2.64d49c4816260
pip@22.0.2
25.3
1
juicedata/juicefs-csi-driver:v0.20.043978fc60798
pip@23.0.1
25.3
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
pip@23.0.1
25.3
1
julb/alertmanager-gchat-integration:1.0.5837c4038a0dd
pip@21.0.1
25.3
1
julb/http-reqtrace:1.1.00806409af397
pip@20.2.4
25.3
1
julb/kubernetes-configmap-sync:1.1.0d7d8836366ad
pip@20.2.4
25.3
1
jupyterhub/jupyterhub:5.4.63974ba945e65
pip@24.0
25.3
1
jupyterhub/k8s-hub:3.0.1-0.dev.git.6287.hbfb05cd65a0ceed1300a
pip@23.1.2
25.3
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pip@20.3.3
python-pip@20.0.2-5ubuntu1.1
25.3
no fix listed
1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
pip@21.3.1
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed
1
jupyterhub/k8s-singleuser-sample:3.0.1-0.dev.git.6287.hbfb05cd68e4778efec8e
pip@23.1.2
25.3
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
pip@20.2.4
25.3
1
jvstein/bitcoin-prometheus-exporter:v0.5.07cc385d038b1
pip@20.0.2
25.3
1
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
pip@20.2.3
25.3
1
kelvinsp/mlflow:1.26.1cd33e6db2a59
pip@21.1.3
25.3
1
kennethreitz/httpbin:latest599fe5e50731
pip@9.0.1
python-pip@9.0.1-2.3~ubuntu1
25.3
no fix listed
1
kfirfer/elasticsearch-cacher:0.0.1cf81d0959256
pip@24.3.1
25.3
1
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
pip@23.2.1
25.3
1
kfirfer/kibana-index-pattern-updater:1.0.12e88cfcec5c93
pip@20.3.3
25.3
1
kfirfer/percona-xtradb-healthcheck:0.0.1ef7b909a8e6b
pip@20.2.4
25.3
1
kfirfer/scripts:0.0.2481e5c4e5d70e
pip@22.3.1
25.3
1
kfirfer/slackgpt:0.0.15461331bd838e
pip@23.2.1
25.3
1
kfserving/models-web-app:v0.6.1f322d6ffdfa3
pip@21.2.4
25.3
1
kinseii/wazuh-agent:4.14.17160eb143728
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed
1
kiwigrid/k8s-sidecar:1.1.03e86186656d3
pip@20.2.3
25.3
1
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
pip@20.2.4
25.3
1
kiwigrid/k8s-sidecar:0.0.186eb52513d59e
pip@19.1.1
25.3
1
kiwigrid/k8s-sidecar:1.12.089739be9ff38
pip@21.0.1
25.3
1
kiwigrid/k8s-sidecar:0.0.16899ccd0b1f54
pip@19.0.3
25.3
1
kiwigrid/k8s-sidecar:0.1.20af151f677a63
pip@19.2.1
25.3
1
kiwigrid/k8s-sidecar:1.27.6db85bd553253
pip@24.2
25.3
1
kiwigrid/k8s-sidecar:1.26.2e271016441af
pip@24.0
25.3
1
knspar/phronetis:0.1.4609499d2dc91a
pip@24.0
25.3
1
knspar/phronetis-operator:0.1.60c4f0543ee58
pip@24.0
25.3
1
kobotoolbox/kobocat:2.022.24ab15679454415
pip@22.2.1
25.3
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
pip@22.2.1
25.3
1
kocolosk/couchdb-statefulset-assembler:1.2.06effb982154e
pip@9.0.1
25.3
1
kodekloud/webapp-color:latest99c3821ea49b
pip@18.1
25.3
1
kong/httpbin:latesta6ac46531193
pip@22.0.2
25.3
1
kpetrem/mqtt-exporter:latestdca3255f3531
pip@23.0.1
25.3
1
kporwit/vinyl_lib_app:v0.1.1217de0302218
pip@22.1.2
25.3
1
kserve/models-web-app:v0.8.063ea05e73842
pip@22.0.4
25.3
1
kserve/models-web-app:v0.13.073486345a602
pip@24.0
25.3
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
pip@19.0.3
25.3
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
pip@23.0.1
25.3
1
kubeflownotebookswg/jupyter-web-app:v1.6.1d762690e21c1
pip@22.0.4
25.3
1
kubeflownotebookswg/tensorboards-web-app:v1.6.10876fef1973b
pip@22.0.4
25.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.