StackRadar

CVE-2025-8869

Medium

Advisory

Published 24 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,085
of 17,787 indexed, latest versions
Container images
1,138
deployed by those charts
Fix available
2 of 3
affected packages

pip's fallback tar extraction doesn't check symbolic links point to extraction directory

Carried by container images the latest versions of 1,085 of 17,787 indexed charts deploy, on 1,138 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+62 more25.31,136
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+14 moreno fix listed97
py3-pipapk25.0.1-r0, 25.2-r025.2-r22
OSV records
CGA-2c2v-qg5x-gf3vCGA-2h56-9hwm-vvwrDEBIAN-CVE-2025-8869GHSA-4xh5-x5gv-qwphUBUNTU-CVE-2025-8869
Also known as
CGA-2j52-82cx-jqm7, CGA-2vvp-4788-p685, CGA-38mx-66cv-5xhm, CGA-96x5-ppvf-355h, CGA-c923-5fqp-9gx9, CGA-c9f4-7rjc-ch6m, CGA-fvxf-h26j-p86m, CGA-h22m-qp2v-7fj8, CGA-m95p-j3wh-8jw6, CGA-w6hh-8hcg-xmhc, PYSEC-2026-1795

Charts affected

1,085 by stars
ChartLatestAffected imagesRadar Score
pgadminarunalakmalVerified publisher0.1.01 of 1See more

pgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

2,418
swdpgadminarunalakmalVerified publisher0.1.01 of 1See more

swdpgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

2,418
itera-lmaarzu1.34.601 of 6See more

itera-lma arzu 1.34.60

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
pip@22.1.2
25.3

Open the chart page →

8,608
keystonearzu0.2.292 of 4See more

keystone arzu 0.2.29

2 of the 4 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
pip@21.2.3
25.3
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
pip@21.2.3
25.3

Open the chart page →

22,677
authorizationassist-iot-authorisation0.1.01 of 2See more

authorization assist-iot-authorisation 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/authorization_db:latestc3adbab6a3e7
pip@20.2.4
25.3

Open the chart page →

5,536
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
pip@20.2.4
25.3
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
pip@20.2.4
25.3

Open the chart page →

14,725
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_local_operations_inference:latest0518b63a2e69
pip@23.2.1
25.3

Open the chart page →

3,786
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_repository:latest0fce3ea719a5
pip@20.1.1
25.3

Open the chart page →

4,367
trainingcollectorassist-iot-fl-training-collector1.1.01 of 1See more

trainingcollector assist-iot-fl-training-collector 1.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/fl_training_collector:latest792715dd3084
pip@23.2.1
25.3

Open the chart page →

1,719
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
pip@9.0.3
25.3

Open the chart page →

12,799
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
25.3

Open the chart page →

10,101
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
pip@23.3.1
25.3

Open the chart page →

18,331
resource-provisioningassist-iot-resource-provisioning1.0.04 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

4 of the 7 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
pip@23.0.1
25.3
assistiot/resource-provisioning_im:1.0.0a942dc14030a
pip@23.0.1
25.3
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
pip@20.3.4
25.3
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3

Open the chart page →

8,042
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
pip@23.0.1
25.3
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
pip@23.0.1
25.3
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3

Open the chart page →

42,460
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
pip@23.0.1
25.3

Open the chart page →

1,165
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
pip@23.0.1
python-pip@20.0.2-5ubuntu1.8
25.3
no fix listed

Open the chart page →

13,986
phonebook-chartasumankamberoglu0.1.53 of 3See more

phonebook-chart asumankamberoglu 0.1.5

3 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
pip@23.0.1
25.3
paulkellerman/resultserver-app:1.0381eeccb0618
pip@22.3
25.3
paulkellerman/webserver-app:latest5a37b74f61b9
pip@22.3
25.3

Open the chart page →

3,176
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
pip@23.3.2
25.3

Open the chart page →

8,555
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
pip@21.2.4
25.3

Open the chart page →

5,507
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
pip@22.2.2
25.3

Open the chart page →

5,074
aws-ecr-credentialaws-ecr-credentialVerified publisher1.5.21 of 1See more

aws-ecr-credential aws-ecr-credential 1.5.2

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
architectminds/aws-kubectl:1.19735e59a1085
pip@19.2.1
25.3

Open the chart page →

1,437
ecr-exporteraws-exportersVerified publisher0.2.41 of 1See more

ecr-exporter aws-exporters 0.2.4

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
pip@20.3.4
25.3

Open the chart page →

1,622
inspector-exporteraws-exportersVerified publisher0.0.21 of 1See more

inspector-exporter aws-exporters 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
pip@20.3.4
25.3

Open the chart page →

1,622
aws-secrets-synchronizeraws-secrets-synchronizer0.2.11 of 1See more

aws-secrets-synchronizer aws-secrets-synchronizer 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
pip@23.2.1
25.3

Open the chart page →

955
axosyslog-collectoraxosyslogVerified publisher0.8.11 of 1See more

axosyslog-collector axosyslog 0.8.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
pip@23.3.1
25.3

Open the chart page →

1,515
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
pip@22.0.4
25.3

Open the chart page →

4,568
azure-app-exporterazure-app-exporterVerified publisher0.4.21 of 2See more

azure-app-exporter azure-app-exporter 0.4.2

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
pip@21.2.4
25.3

Open the chart page →

1,790
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
pip@20.2.4
25.3

Open the chart page →

5,521
aks-helloworldazure-sample0.1.11 of 1See more

aks-helloworld azure-sample 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/aks-helloworld:v1fb47732ef36b
pip@9.0.1
25.3

Open the chart page →

4,270
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
25.3

Open the chart page →

5,238
azure-vote-osbaazure-sample0.1.01 of 1See more

azure-vote-osba azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
25.3

Open the chart page →

4,270
osba-container-instances-demoazure-sample0.1.01 of 1See more

osba-container-instances-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-container-instances-demo:latest6527b05d5d03
pip@9.0.1
25.3

Open the chart page →

3,212
osba-cosmos-mongodb-demoazure-sample0.1.01 of 1See more

osba-cosmos-mongodb-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-cosmos-mongodb-demo:latestf4940e84ed05
pip@9.0.1
25.3

Open the chart page →

2,904
osba-mysql-demoazure-sample0.1.01 of 1See more

osba-mysql-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-mysql-demo:latest5859d68a6c9f
pip@9.0.2
25.3

Open the chart page →

2,895
osba-storage-demoazure-sample0.1.01 of 1See more

osba-storage-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-storage-demo:latest29d229ab446e
pip@9.0.1
25.3

Open the chart page →

3,425
osba-text-analytics-demoazure-sample0.1.01 of 1See more

osba-text-analytics-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/osba-text-analytics-demo:latest969af3cb8466
pip@10.0.1
25.3

Open the chart page →

3,089
twitter-sentimentazure-sample0.1.03 of 3See more

twitter-sentiment azure-sample 0.1.0

3 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
neilpeterson/chart-tweet:latest64fd8dab075f
pip@9.0.1
25.3
neilpeterson/get-tweet:v28b645ac1a23e
pip@10.0.1
25.3
neilpeterson/process-tweet:latest39ce9f92e899
pip@10.0.1
25.3

Open the chart page →

11,833
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
pip@24.0
25.3

Open the chart page →

2,750
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
conduction/balance-registration-varnish:dev07c44005da9d
pip@9.0.1
25.3

Open the chart page →

8,408
pvc-exporterbalihb-pvc-exporterVerified publisher0.2.42 of 2See more

pvc-exporter balihb-pvc-exporter 0.2.4

2 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
balihb/block-pvc-scanner:0.2.45b95e1cf1158
pip@21.2.4
25.3
balihb/pod-pvc-mapping:0.2.4ee48e79f5d76
pip@21.2.4
25.3

Open the chart page →

2,765
bookinfobasictechno0.1.01 of 6See more

bookinfo basictechno 0.1.0

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
pip@20.1.1
25.3

Open the chart page →

20,785
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
pip@25.0.1
25.3

Open the chart page →

4,042
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
pip@25.1.1
python-pip@25.1.1+dfsg-1
25.3
no fix listed

Open the chart page →

1,176
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
behnambm/docker-sample:v1bd3ad88afff9
pip@23.0.1
25.3

Open the chart page →

2,738
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed

Open the chart page →

8,004
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
pip@21.1.2
python-pip@9.0.1-2.3~ubuntu1.18.04.5
25.3
no fix listed

Open the chart page →

22,916
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed

Open the chart page →

10,171
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.15.00a5eb4795952
pip@19.1.1
25.3

Open the chart page →

18,998
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-rwd:log74ded2d92f07
pip@23.0.1
25.3

Open the chart page →

26,266
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2025-8869.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.26.2e271016441af
pip@24.0
25.3

Open the chart page →

7,627

Container images carrying it

1,138 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
pip@23.1.2
25.3
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
pip@24.0
25.3
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
pip@25.0.1
25.3
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
pip@24.0
25.3
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
pip@25.0.1
25.3
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
pip@24.3.1
25.3
1
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
pip@24.0
25.3
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
pip@23.0.1
25.3
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
pip@24.0
25.3
1
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
pip@25.0.1
25.3
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
pip@25.0.1
25.3
1
ghcr.io/openrelik/openrelik-server:latestce1132261523
pip@25.0.1
25.3
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
pip@24.0
25.3
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
pip@24.0
25.3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
pip@24.2
25.3
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
pip@24.2
25.3
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
pip@25.0.1
25.3
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
pip@25.0.1
25.3
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
pip@24.2
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
pip@25.0.1
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
pip@25.0.1
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
pip@25.0.1
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
pip@20.3.4
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
pip@23.2.1
25.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
pip@25.0.1
25.3
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
pip@25.0.1
25.3
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
pip@20.3.4
25.3
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
pip@23.2.1
25.3
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
pip@24.0
25.3
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
pip@23.2.1
25.3
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
pip@22.0.4
25.3
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
pip@22.0.4
25.3
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
pip@23.0.1
25.3
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
pip@23.0.1
python-pip@23.0.1+dfsg-1
25.3
no fix listed
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
pip@24.2
25.3
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
pip@25.2
25.3
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
pip@20.3.4
25.3
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
25.3
no fix listed
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
pip@24.3.1
25.3
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
pip@24.0
25.3
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
pip@25.2
25.3
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
pip@25.2
25.3
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
pip@25.2
25.3
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
pip@25.2
25.3
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
pip@25.2
25.3
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
pip@24.3.1
25.3
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
pip@24.0
25.3
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
pip@25.0.1
25.3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.