StackRadar

CVE-2026-102277

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.003
21st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,091
of 17,957 indexed, latest versions
Container images
1,126
deployed by those charts
Fix available
1 of 2
affected packages

brace-expansion: Quadratic-time expansion of the `{a},b}` rewrite causes CPU denial of service

Carried by container images the latest versions of 1,091 of 17,957 indexed charts deploy, on 1,126 images.

Affected packageAffected versionsFixed inImages
brace-expansionnpm1.1.1, 1.1.2, 1.1.4, 1.1.6+23 more1.1.21, 2.1.7, 5.0.121,126
node-brace-expansiondeb1.1.8-1, 1.1.11-1, 2.0.1+~1.1.0-1no fix listed6
OSV records
GHSA-q2hr-2g5m-vwhrUBUNTU-CVE-2026-102277
Trending
Rank 18 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

1,091 by stars
ChartLatestAffected imagesRadar Score
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-external-service:1.0.02a68e9ac7f09
brace-expansion@1.1.11
1.1.21
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
brace-expansion@1.1.11
1.1.21

Open the chart page →

20,547
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
felipecs8/app-movies-series:v14e51693fcdf5
brace-expansion@1.1.11
1.1.21

Open the chart page →

3,217
mongo-uiappscodeVerified publisher2026.3.301 of 1See more

mongo-ui appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kubedb/mongo-gui:latestee0354b7a57a
brace-expansion@2.0.1
2.1.7

Open the chart page →

970
platform-uiappscodeVerified publisher2026.9.111 of 1See more

platform-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/appscode/platform-ui:2.5.0c27cafe398c2
brace-expansion@2.0.2
2.1.7

Open the chart page →

660
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,870
argonix-apiargonix0.5.51 of 4See more

argonix-api argonix 0.5.5

1 of the 4 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/argonix-io/argonix-api-frontend:0.5.531be6a905000
brace-expansion@2.0.1
2.1.7

Open the chart page →

5,360
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
brace-expansion@2.0.1
2.1.7

Open the chart page →

23,865
assemblylineassemblylineVerified publisher7.4.211 of 12See more

assemblyline assemblyline 7.4.21

1 of the 12 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
cccs/assemblyline-ui-frontend:4.7.4.stable21c00e72d90666
brace-expansion@2.0.2
2.1.7

Open the chart page →

13,081
agenthttpmqttassist-iot-composite-services1.0.01 of 1See more

agenthttpmqtt assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-http-mqtt:latest16d21bc5e42e
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,214
agentmqtthttpassist-iot-composite-services1.0.01 of 1See more

agentmqtthttp assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-mqtt-http:latest27d58b8911cd
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,214
dltkvassist-iot-data-integrity-verification0.2.03 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
brace-expansion@1.1.11
1.1.21
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
brace-expansion@1.1.8
1.1.21
hyperledger/fabric-couchdb:0.4.15f6c724592abf
brace-expansion@1.1.8
1.1.21

Open the chart page →

200,508
dltflassist-iot-dlt-based-fl0.2.03 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.1.0c8a170683be7
brace-expansion@2.0.1
2.1.7
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
brace-expansion@1.1.8
1.1.21
hyperledger/fabric-couchdb:0.4.15f6c724592abf
brace-expansion@1.1.8
1.1.21

Open the chart page →

200,508
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:api-latest7473d77448e1
brace-expansion@1.1.11
1.1.21

Open the chart page →

9,696
monitoring-notifyingassist-iot-monitoring-notifying0.1.01 of 1See more

monitoring-notifying assist-iot-monitoring-notifying 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/monitoring_notifying:2.0.068324d0fa5bb
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,735
multilink-clientassist-iot-multi-link-client-app1.0.01 of 2See more

multilink-client assist-iot-multi-link-client-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/multi-link_client:latestcf048365d042
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,504
multilink-serverassist-iot-multi-link-server-app1.0.01 of 2See more

multilink-server assist-iot-multi-link-server-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/multi-link_server:latestf38c76a4c960
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,014
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
brace-expansion@1.1.11
1.1.21
pantsel/konga:latestc8172b75607d
brace-expansion@1.1.8
1.1.21

Open the chart page →

93,324
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
brace-expansion@1.1.11
1.1.21
assistiot/smart-orchestrator_enabler:latest89f37e88c871
brace-expansion@1.1.11
1.1.21
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
brace-expansion@1.1.11
1.1.21

Open the chart page →

47,425
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
brace-expansion@2.0.1
2.1.7

Open the chart page →

34,130
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
brace-expansion@2.0.1
2.1.7

Open the chart page →

9,835
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
brace-expansion@1.1.11
1.1.21

Open the chart page →

5,654
nas-appsawesomeVerified publisher2.0.02 of 8See more

nas-apps awesome 2.0.0

2 of the 8 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
brace-expansion@1.1.11
1.1.21
wettyoss/wetty:latest4f7c56d5b961
brace-expansion@2.0.2
2.1.7

Open the chart page →

6,873
awesomeblessingappawesomeblessingapp1.1.01 of 1See more

awesomeblessingapp awesomeblessingapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
bnwokoye/nodejswebapp:latest74de7dc7ebfb
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,318
bookinfobasictechno0.1.01 of 6See more

bookinfo basictechno 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.17.0b6a6b88d3578
brace-expansion@1.1.11
1.1.21

Open the chart page →

21,655
audiobookshelfbdclark-helm-chartsVerified publisher0.1.41 of 1See more

audiobookshelf bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,899
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
fosrl/pangolin:latest00cfb631097a
brace-expansion@5.0.6
5.0.12

Open the chart page →

2,084
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
brace-expansion@2.0.1
2.1.7

Open the chart page →

2,329
immichbear0.1.11 of 2See more

immich bear 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
brace-expansion@5.0.7
5.0.12

Open the chart page →

7,555
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
brace-expansion@1.1.11
1.1.21

Open the chart page →

5,995
myhelmappbelihelmapp1.1.01 of 1See more

myhelmapp belihelmapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
belirta/beli-docker:v1.0.0f65ad0e23b4d
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,238
http-debugbicarus-labs0.1.01 of 1See more

http-debug bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
bicarus/http-https-echo:2785dd6a7e805e
brace-expansion@1.1.11
1.1.21

Open the chart page →

918
mx-apibicarus-labs0.1.01 of 4See more

mx-api bicarus-labs 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
brace-expansion@1.1.11
1.1.21

Open the chart page →

4,777
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
brace-expansion@1.1.11
1.1.21

Open the chart page →

90,946
bluerange-mosquittobluerangeOfficialVerified publisher1.1.01 of 1See more

bluerange-mosquitto bluerange 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
bluerange/bluerange-mosquitto:2690a4e5b92cc6
brace-expansion@1.1.18
1.1.21

Open the chart page →

215
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
brace-expansion@1.1.11
1.1.21

Open the chart page →

19,892
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
brace-expansion@1.1.11
1.1.21
sysnet4admin/colosseum-prm:log5802bfcd7fed
brace-expansion@2.0.1
2.1.7

Open the chart page →

29,409
overseerrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

overseerr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
linuxserver/overseerr:1.35.06108ed066d4a
brace-expansion@2.0.1
2.1.7

Open the chart page →

3,257
registry-uibryanalves0.2.01 of 1See more

registry-ui bryanalves 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
konradkleine/docker-registry-frontend:v2181aad54ee64
brace-expansion@1.1.8
1.1.21

Open the chart page →

4,159
rtorrent-floodbryanalves0.5.01 of 1See more

rtorrent-flood bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
jesec/flood:4.7.03d1d0bec117a
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,557
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
library/node:lts64af3819f927
brace-expansion@5.0.7
5.0.12
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
brace-expansion@2.0.1
2.1.7

Open the chart page →

79,935
openmctbryopsida0.1.11 of 1See more

openmct bryopsida 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/openmct:main38b6a50a62b2
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,307
syslog-portalbryopsida0.3.11 of 1See more

syslog-portal bryopsida 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,422
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latest68b19aee1c64
brace-expansion@2.0.1
2.1.7

Open the chart page →

14,875
cross-seedcfi20176.13.61 of 1See more

cross-seed cfi2017 6.13.6

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,461
qbittorrentcfi20176.13.31 of 1See more

qbittorrent cfi2017 6.13.3

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,461
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
obolnetwork/charon-dkg-sidecar:maine263be0a7440
brace-expansion@1.1.11
1.1.21

Open the chart page →

8,135
ghostchart-ghost0.1.61 of 2See more

ghost chart-ghost 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
library/ghost:6.65.0-alpine3.23fea3264f902e
brace-expansion@5.0.9
5.0.12

Open the chart page →

1,283
audiobookshelfcharts-derwitt-devVerified publisher1.1.21 of 1See more

audiobookshelf charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.37.06432d1dc5895
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,403
ddb-proxycharts-derwitt-devVerified publisher1.3.01 of 1See more

ddb-proxy charts-derwitt-dev 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/mrprimate/ddb-proxy:0.0.258dc2d7fb460f
brace-expansion@1.1.11
1.1.21

Open the chart page →

852
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
openthread/otbr:latest35c6e6520080
brace-expansion@1.1.1
node-brace-expansion@1.1.8-1
1.1.21
no fix listed

Open the chart page →

70,156

Container images carrying it

1,126 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-server:2.25.10-branch.testing6.645-b125c1e75cdf256067b
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-server:2.26.379f14a2bf931
brace-expansion@1.1.11
1.1.21
1
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-server:2.21.3-branch.testing5.219631-2153bef8fd157733393
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.21.3-branch.testing5.219631-2153bef06ecc7a66a40
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb107c63336ab5
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e14828aee2277c
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.20.2-branch.testing4.134160-9fad4b270f5167d1d4d
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.18.12-branch.testing3.88744-f55b341771f872cfa63
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.18.11-branch.testing2.88634-335d469902b98ad5327
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.17.14-branch.testing.72707.921a5f899913052b72e
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.26.3c58eb372c488
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.20.6-branch.testing1.154030-9b09114cf1d99bad89a
brace-expansion@2.0.1
2.1.7
1
speckle/speckle-webhook-service:2.25.10-branch.testing6.645-b125c1edd9db6cbe9bb
brace-expansion@2.0.1
2.1.7
1
sqlpad/sqlpad:6.7d3d2f430dffd
brace-expansion@1.1.11
1.1.21
1
srini78/nodejswebappeks:latest5d1cbdc6833a
brace-expansion@1.1.11
1.1.21
1
stakater/workshop-exercise:0.0.26076926b7159d3
brace-expansion@1.1.11
1.1.21
1
stanfordoval/almond-server:latest1a63cdccedaf
brace-expansion@1.1.11
1.1.21
1
stremio/server:latesta50ec2fae52c
brace-expansion@1.1.11
1.1.21
1
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
brace-expansion@1.1.11
1.1.21
1
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
brace-expansion@1.1.11
1.1.21
1
subsquid/substrate-explorer:firesquid0889a857f192
brace-expansion@2.0.1
2.1.7
1
subsquid/substrate-ingest:firesquidfa549779e9b1
brace-expansion@2.0.1
2.1.7
1
supabase/postgres-meta:v0.96.6a84cc713585e
brace-expansion@2.0.1
2.1.7
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
brace-expansion@1.1.11
1.1.21
1
supabase/storage-api:latest5fea789899d4
brace-expansion@2.1.2
2.1.7
1
supabase/storage-api:v1.60.4c8eb9858eafe
brace-expansion@5.0.5
5.0.12
1
supabase/storage-api:v1.12.0f983fb50bd95
brace-expansion@2.0.1
2.1.7
1
supabase/studio:20241021-9f9b08326d8070c55e9
brace-expansion@2.0.1
2.1.7
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
brace-expansion@2.0.2
2.1.7
1
supabase/studio:latestfdb56cfa1705
brace-expansion@2.0.2
2.1.7
1
supporttools/uptime-kuma:v2.6f8a49ed65809
brace-expansion@2.0.1
2.1.7
1
svenwal/jsonplaceholder:latestba2f285af432
brace-expansion@1.1.11
1.1.21
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
brace-expansion@1.1.11
node-brace-expansion@1.1.11-1
1.1.21
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
brace-expansion@1.1.11
1.1.21
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
brace-expansion@2.0.1
2.1.7
1
taigaio/taiga-events:6.4.00bf2d24a57d9
brace-expansion@1.1.11
1.1.21
1
tawfiq58/express-server:latestc707555f6853
brace-expansion@1.1.11
1.1.21
1
tensorzero/ui:2026.6.0f2563d54724e
brace-expansion@2.0.2
2.1.7
1
tenureai/tenure:v1.0.285f5b222df9a5
brace-expansion@2.1.1
2.1.7
1
testhubio/testhub-frontend:on-preme86c2db53be8
brace-expansion@1.1.11
1.1.21
1
th0th/node-red:4.0.3-debiand06fa39f7406
brace-expansion@2.0.1
2.1.7
1
thecloudspark/app-result:1.09a5302cb8312
brace-expansion@1.1.11
1.1.21
1
thecodingmachine/workadventure-back:helm-chart53a30c962ce9
brace-expansion@2.0.1
2.1.7
1
thecodingmachine/workadventure-back:v1.17.764001369dad5
brace-expansion@1.1.11
1.1.21
1
thecodingmachine/workadventure-map-storage:helm-chart519c31c6e7ec
brace-expansion@1.1.11
1.1.21
1
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
brace-expansion@2.0.1
2.1.7
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.