StackRadar

CVE-2026-0672

Medium

Advisory

Published 20 Jan 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.0
base score, highest
EPSS
0.004
36th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
489
of 17,781 indexed, latest versions
Container images
465
deployed by those charts
Fix available
13 of 13
affected packages

Header injection in http.cookies.Morsel

Carried by container images the latest versions of 489 of 17,781 indexed charts deploy, on 465 images.

Affected packageAffected versionsFixed inImages
python3.11deb3.11.0~rc1-1~22.04, 3.11.2-6, 3.11.2-6+deb12u2, 3.11.2-6+deb12u3+3 more3.11.0~rc1-1~22.04.1~esm8, 3.11.2-6+deb12u7144
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 more3.8.10-0ubuntu1~20.04.18+esm5100
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+13 more3.10.12-1~22.04.1463
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 more3.6.9-1~18.04ubuntu1.13+esm844
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+9 more2.7.6-8ubuntu0.6+esm29, 2.7.12-1ubuntu0~16.04.18+esm19, 2.7.17-1~18.04ubuntu1.13+esm14, 2.7.18-13ubuntu1.5+esm843
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3, 3.12.3-1ubuntu0.4+5 more3.12.3-1ubuntu0.1134
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.93.5.2-2ubuntu0~16.04.13+esm2125
python3.13deb3.13.5-2, 3.13.5-2+e30, 3.13.7-1ubuntu0.13.13.5-2+deb13u1, 3.13.5-2+e36, 3.13.7-1ubuntu0.323
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.73.4.3-1ubuntu1~14.04.7+esm197
python-3.14apk3.14.2-r23.14.3-r14
pythonbitnami3.11.11-0, 3.12.8-0, 3.13.5-13.10.203
python-3.12apk3.12.0-r1, 3.12.9-r13.12.12-r52
python-3.13apk3.13.7-r0, 3.13.10-r03.13.12-r12
OSV records
BIT-python-2026-0672CGA-2hf2-rc2c-xw6qCGA-6fw2-r724-96qvCGA-8hp9-5qj7-x26rDEBIAN-CVE-2026-0672UBUNTU-CVE-2026-0672ECHO-7075-ddfd-72a9
Also known as
BIT-libpython-2026-0672, BIT-python-min-2026-0672, CGA-38cc-g4pg-4r49, CGA-995q-cfgv-6rjf, CGA-qq84-mwmm-6679, PSF-2026-5, USN-8018-1, USN-8018-3, USN-8509-1

Charts affected

489 by stars
ChartLatestAffected imagesRadar Score
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
python3.6@3.6.6-1~18.04
3.6.9-1~18.04ubuntu1.13+esm8

Open the chart page →

26,944
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

11,861
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

17,929
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7

Open the chart page →

4,259
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
python3.5@3.5.2-2ubuntu0~16.04.5
3.5.2-2ubuntu0~16.04.13+esm21
istio/pilot:1.2.9c09319753454
python3.5@3.5.2-2ubuntu0~16.04.5
3.5.2-2ubuntu0~16.04.13+esm21
istio/proxyv2:1.2.90c78be035e98
python3.5@3.5.2-2ubuntu0~16.04.5
3.5.2-2ubuntu0~16.04.13+esm21

Open the chart page →

36,102
glpiglpi-chart0.1.11 of 3See more

glpi glpi-chart 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
python3.11@3.11.2-6+deb12u2
3.11.2-6+deb12u7

Open the chart page →

12,170
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14
library/cassandra:3.11.65aa8400b4b3b
python2.7@2.7.17-1~18.04ubuntu1.1
2.7.17-1~18.04ubuntu1.13+esm14

Open the chart page →

19,229
temporalgroundcover1.12.3571 of 2See more

temporal groundcover 1.12.357

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
python3.13@3.13.5-2+e30
3.13.5-2+e36

Open the chart page →

2,013
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
python3.10@3.10.12-1~22.04.7
3.10.12-1~22.04.14

Open the chart page →

9,096
heliconehelicone0.1.422 of 14See more

helicone helicone 0.1.42

2 of the 14 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
python3.8@3.8.10-0ubuntu1~20.04.13
3.8.10-0ubuntu1~20.04.18+esm5
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
python3.11@3.11.2-6
3.11.2-6+deb12u7

Open the chart page →

24,995
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
python3.6@3.6.9-1~18.04ubuntu1.9
3.6.9-1~18.04ubuntu1.13+esm8

Open the chart page →

10,627
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7

Open the chart page →

6,008
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
iofog/router:2.0.17260cf861479
python2.7@2.7.17-1~18.04ubuntu1.1
2.7.17-1~18.04ubuntu1.13+esm14

Open the chart page →

24,161
twampyhelm-charts-darox0.0.21 of 1See more

twampy helm-charts-darox 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
dariomader/twampy:v0.0.2d2f4a8c5e690
python-3.12@3.12.0-r1
3.12.12-r5

Open the chart page →

2,057
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
python3.13@3.13.5-2
3.13.5-2+deb13u1

Open the chart page →

10,849
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
python3.8@3.8.10-0ubuntu1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

18,813
middlewarehelmforgeVerified publisher1.2.61 of 4See more

middleware helmforge 1.2.6

1 of the 4 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
middlewareeng/middleware:0.3.1747d880812f1
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7

Open the chart page →

9,653
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
python3.11@3.11.2-6
3.11.2-6+deb12u7

Open the chart page →

12,607
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7

Open the chart page →

25,017
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
python3.10@3.10.12-1~22.04.10
3.10.12-1~22.04.14

Open the chart page →

6,015
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14

Open the chart page →

14,290
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

8,685
eoloplanthttpd-eoloplant0.1.01 of 7See more

eoloplant httpd-eoloplant 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14

Open the chart page →

32,205
hydrahydraVerified publisher0.9.51 of 2See more

hydra hydra 0.9.5

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7

Open the chart page →

9,011
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7

Open the chart page →

7,733
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7

Open the chart page →

5,959
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
python2.7@2.7.12-1ubuntu0~16.04.2
2.7.12-1ubuntu0~16.04.18+esm19

Open the chart page →

57,669
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
python2.7@2.7.15~rc1-1ubuntu0.1
2.7.17-1~18.04ubuntu1.13+esm14

Open the chart page →

12,611
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm19
3.5.2-2ubuntu0~16.04.13+esm21

Open the chart page →

25,160
ibm-ws-dyn-agent-devibm-charts1.0.01 of 1See more

ibm-ws-dyn-agent-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
python3.5@3.5.2-2ubuntu0~16.04.4
3.5.2-2ubuntu0~16.04.13+esm21

Open the chart page →

19,295
eoloserverihuertas2021-vmartinp2021-helm0.1.01 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14

Open the chart page →

27,721
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
python3.12@3.12.3-1ubuntu0.7
3.12.3-1ubuntu0.11

Open the chart page →

8,967
ikigaiikigai-chartVerified publisher0.0.91 of 58See more

ikigai ikigai-chart 0.0.9

1 of the 58 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:1.2.0e4770285aaf7
python3.8@3.8.10-0ubuntu1~20.04.1
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

37,671
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7

Open the chart page →

11,812
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
python3.6@3.6.9-1~18.04ubuntu1.9
3.6.9-1~18.04ubuntu1.13+esm8

Open the chart page →

16,212
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14

Open the chart page →

10,494
gmaintelVerified publisher0.1.01 of 1See more

gma intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

7,650
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

18,066
map5gintelVerified publisher1.0.01 of 1See more

map5g intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

7,650
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm5

Open the chart page →

11,069
intelowlintelowl-helm6.6.1-01-06-20261 of 5See more

intelowl intelowl-helm 6.6.1-01-06-2026

1 of the 5 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
intelowlproject/intelowl:v6.6.10b22e547ea6b
python3.11@3.11.2-6
3.11.2-6+deb12u7

Open the chart page →

17,852
opencloudjacobcolvinVerified publisher0.2.31 of 13See more

opencloud jacobcolvin 0.2.3

1 of the 13 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
python3.12@3.12.3-1
3.12.3-1ubuntu0.11

Open the chart page →

45,239
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7

Open the chart page →

10,780
dayz-dedicated-server-razorbladex401jespernohrVerified publisher1.0.31 of 1See more

dayz-dedicated-server-razorbladex401 jespernohr 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
razorbladex401/dayz:latest6a4d79248e7d
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.14

Open the chart page →

5,208
discord-experiencebotjfwenischVerified publisher0.7.41 of 1See more

discord-experiencebot jfwenisch 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
python3.6@3.6.9-1~18.04ubuntu1.12
3.6.9-1~18.04ubuntu1.13+esm8

Open the chart page →

7,826
steamcmd-managerjfwenischVerified publisher0.4.51 of 1See more

steamcmd-manager jfwenisch 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
python3.12@3.12.3-1ubuntu0.3
3.12.3-1ubuntu0.11

Open the chart page →

6,586
webtoolsjfwenischVerified publisher0.1.41 of 1See more

webtools jfwenisch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
python3.12@3.12.3-1ubuntu0.3
3.12.3-1ubuntu0.11

Open the chart page →

6,568
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
python3.11@3.11.2-6+deb12u3
3.11.2-6+deb12u7

Open the chart page →

22,589
shinsei-managerjtektVerified publisher0.2.04 of 8See more

shinsei-manager jtekt 0.2.0

4 of the 8 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
moreillon/group-manager:latest3caa8f710ee0
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
moreillon/user-manager:v5.0.2e1c9bfab5c16
python3.11@3.11.2-6
3.11.2-6+deb12u7
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
python3.11@3.11.2-6
3.11.2-6+deb12u7

Open the chart page →

63,461
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-0672.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
python3.11@3.11.2-6
3.11.2-6+deb12u7

Open the chart page →

16,600

Container images carrying it

465 by charts deploying them

A fixed version is listed for 13 of the 13 affected packages.

Container imageDigestPackageFixed inUsed by
cloudve/janis-terminal:latestaf56e77ca587
python3.6@3.6.9-1~18.04ubuntu1
3.6.9-1~18.04ubuntu1.13+esm8
1
cloudve/ttyd:latestd79c1c5881c0
python3.6@3.6.9-1~18.04ubuntu1
3.6.9-1~18.04ubuntu1.13+esm8
1
countly/countly-server:25.05.4e3c238248f99
python3.8@3.8.10-0ubuntu1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm5
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
dariomader/twampy:v0.0.2d2f4a8c5e690
python-3.12@3.12.0-r1
3.12.12-r5
1
daskdev/dask-notebook:1.1.0052630f5ca04
python3.6@3.6.7-1~18.04
3.6.9-1~18.04ubuntu1.13+esm8
1
datamate/seafile-professional:11.0.202dd66b722464
python3.10@3.10.12-1~22.04.11
3.10.12-1~22.04.14
1
deconzcommunity/deconz:2.29.2062de2362641
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7
1
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
python3.13@3.13.5-2
3.13.5-2+deb13u1
1
dongjiang1989/lxcfs:v6.0.34bf9ae391948
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm5
1
dragonflyoss/client:v0.1.82edf3e921f4e0
python3.11@3.11.2-6
3.11.2-6+deb12u7
1
drumsergio/genieacs:1.2.16.028244054e1bf
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
dserio83/velero-api:0.3.16b3d9115fee2
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
python3.13@3.13.5-2
3.13.5-2+deb13u1
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
python3.6@3.6.9-1~18.04ubuntu1.4
3.6.9-1~18.04ubuntu1.13+esm8
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
python3.6@3.6.9-1~18.04ubuntu1.4
3.6.9-1~18.04ubuntu1.13+esm8
1
esphome/esphome:2024.3.09ab8cc88b28c
python3.11@3.11.2-6
3.11.2-6+deb12u7
1
esphome/esphome:2024.12.2b2c6322700ac
python3.11@3.11.2-6+deb12u4
3.11.2-6+deb12u7
1
esphome/esphome:2025.3.0def8b6e4f517
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
python2.7@2.7.12-1ubuntu0~16.04.2
2.7.12-1ubuntu0~16.04.18+esm19
1
felipecs8/app-db-connection-test:v129e06c9c6385
python3.11@3.11.2-6+deb12u4
3.11.2-6+deb12u7
1
firefart/requesttracker:5.0.40d6249906d8c
python3.11@3.11.2-6
3.11.2-6+deb12u7
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm5
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
flanksource/batch-runner:v1.0.44689687a7cf95
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.11
1
fluent/fluent-bit:4.0-debuge76397ef3983
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
flyway/flyway:9.1545b5d7cdc75a
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm5
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
python3.6@3.6.9-1~18.04ubuntu1.9
3.6.9-1~18.04ubuntu1.13+esm8
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
python3.6@3.6.9-1~18.04ubuntu1.8
3.6.9-1~18.04ubuntu1.13+esm8
1
freeradius/freeradius-server:3.2.8af6fd34a5b78
python2.7@2.7.18-13ubuntu1.5
python3.10@3.10.12-1~22.04.10
2.7.18-13ubuntu1.5+esm8
3.10.12-1~22.04.14
1
galaxy/cloudman-server:lateste5c265fe9fcd
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm5
1
galaxy/galaxy-init:v18.010267bad550e6
python2.7@2.7.6-8ubuntu0.4
python3.4@3.4.3-1ubuntu1~14.04.6
2.7.6-8ubuntu0.6+esm29
3.4.3-1ubuntu1~14.04.7+esm19
1
galaxy/galaxy-stable:v18.018e577a626dfd
python2.7@2.7.6-8ubuntu0.4
python3.4@3.4.3-1ubuntu1~14.04.6
2.7.6-8ubuntu0.6+esm29
3.4.3-1ubuntu1~14.04.7+esm19
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u7
1
geopython/pycsw:3.0.0-beta284662ea6b78b
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u7
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
python3.6@3.6.9-1~18.04ubuntu1.1
3.6.9-1~18.04ubuntu1.13+esm8
1
gethue/hue:4.11.011b649636e68
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm5
1
gethue/hue:4.10.05702b2c37ff9
python2.7@2.7.17-1~18.04ubuntu1.6
python3.6@3.6.9-1~18.04ubuntu1.4
2.7.17-1~18.04ubuntu1.13+esm14
3.6.9-1~18.04ubuntu1.13+esm8
1
gethue/hue:latest7d5c1b9f8a79
python3.10@3.10.12-1~22.04.10
python3.11@3.11.0~rc1-1~22.04
3.10.12-1~22.04.14
3.11.0~rc1-1~22.04.1~esm8
1
gotenberg/gotenberg:8.30206a6c708fc6
python3.13@3.13.5-2
3.13.5-2+deb13u1
1
gpappsoft/privacyidea-docker:3.12.2af7841adad26
python-3.13@3.13.10-r0
3.13.12-r1
1
hasura/graphql-engine:v2.34.0-ce0111b0204136
python3.10@3.10.6-1~22.04.2ubuntu1.1
3.10.12-1~22.04.14
1
hasura/graphql-engine:v2.48.10f6c1c4b957d2
python3.10@3.10.12-1~22.04.11
3.10.12-1~22.04.14
1
haugene/transmission-openvpn:4.0059216cfae4b
python3.8@3.8.10-0ubuntu1~20.04
3.8.10-0ubuntu1~20.04.18+esm5
1
haveagitgat/tdarr:2.00.181256348872ce
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm5
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
python3.8@3.8.5-1~20.04
3.8.10-0ubuntu1~20.04.18+esm5
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm5
1
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
python3.8@3.8.10-0ubuntu1~20.04.13
3.8.10-0ubuntu1~20.04.18+esm5
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
python3.11@3.11.2-6
3.11.2-6+deb12u7
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm19
3.5.2-2ubuntu0~16.04.13+esm21
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.