StackRadar

CVE-2026-102277

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.003
21st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,091
of 17,957 indexed, latest versions
Container images
1,126
deployed by those charts
Fix available
1 of 2
affected packages

brace-expansion: Quadratic-time expansion of the `{a},b}` rewrite causes CPU denial of service

Carried by container images the latest versions of 1,091 of 17,957 indexed charts deploy, on 1,126 images.

Affected packageAffected versionsFixed inImages
brace-expansionnpm1.1.1, 1.1.2, 1.1.4, 1.1.6+23 more1.1.21, 2.1.7, 5.0.121,126
node-brace-expansiondeb1.1.8-1, 1.1.11-1, 2.0.1+~1.1.0-1no fix listed6
OSV records
GHSA-q2hr-2g5m-vwhrUBUNTU-CVE-2026-102277
Trending
Rank 18 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

1,091 by stars
ChartLatestAffected imagesRadar Score
galoy-paygaloymoney0.11.481 of 2See more

galoy-pay galoymoney 0.11.48

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
brace-expansion@2.0.1
2.1.7

Open the chart page →

2,595
rtlgaloymoney0.4.31 of 2See more

rtl galoymoney 0.4.3

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
brace-expansion@2.0.1
2.1.7

Open the chart page →

2,149
galoy-paygaloymoney20.11.481 of 2See more

galoy-pay galoymoney2 0.11.48

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
brace-expansion@2.0.1
2.1.7

Open the chart page →

2,595
rtlgaloymoney20.4.31 of 2See more

rtl galoymoney2 0.4.3

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.13.3e2195188a451
brace-expansion@2.0.1
2.1.7

Open the chart page →

2,149
game2048game20481.0.01 of 1See more

game2048 game2048 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
letsbootch/argocd-game2048-app:1.0.0288abd32b2b7
brace-expansion@2.0.1
2.1.7

Open the chart page →

994
garge-appgargeVerified publisher0.1.531 of 1See more

garge-app garge 0.1.53

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
sondresjo/garge-app:v1.22.0c4b8f096df6b
brace-expansion@5.0.9
5.0.12

Open the chart page →

788
cryptpadgeek-cookbookVerified publisher0.4.21 of 1See more

cryptpad geek-cookbook 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
promasu/cryptpad:v4.14.1-nginx51d1142b9f95
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,016
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
brace-expansion@1.1.11
1.1.21

Open the chart page →

91,304
flaresolverrgeek-cookbookVerified publisher5.4.21 of 1See more

flaresolverr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v1.2.896f8c08c0c1b
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,949
floodgeek-cookbookVerified publisher6.4.21 of 1See more

flood geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
jesec/flood:4.6.060bd59cfb4eb
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,080
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
brace-expansion@1.1.11
1.1.21

Open the chart page →

11,333
littlelink-servergeek-cookbookVerified publisher1.4.21 of 1See more

littlelink-server geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/techno-tim/littlelink-server:lateste84ea9d93b60
brace-expansion@2.0.1
2.1.7

Open the chart page →

872
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
brace-expansion@2.0.1
2.1.7

Open the chart page →

14,062
nightscoutgeek-cookbookVerified publisher1.2.21 of 1See more

nightscout geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
brace-expansion@1.1.11
1.1.21

Open the chart page →

4,160
node-redgeek-cookbookVerified publisher10.3.21 of 1See more

node-red geek-cookbook 10.3.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
nodered/node-red:2.2.2e131dcadfe92
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,181
openemrgeek-cookbookVerified publisher5.2.01 of 1See more

openemr geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
openemr/openemr:6.1.089eaa6d9a4e3
brace-expansion@1.1.11
1.1.21

Open the chart page →

8,503
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
brace-expansion@1.1.11
1.1.21

Open the chart page →

16,268
rtorrent-floodgeek-cookbookVerified publisher9.4.21 of 1See more

rtorrent-flood geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
jesec/rtorrent-flood:latestf0c894ec459e
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,080
shinobigeek-cookbookVerified publisher1.2.21 of 1See more

shinobi geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
shinobisystems/shinobi:dev3ca746937856
brace-expansion@1.1.11
1.1.21

Open the chart page →

4,964
theloungegeek-cookbookVerified publisher3.4.21 of 1See more

thelounge geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
thelounge/thelounge:4.2.0-alpine639978459c3a
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,743
genieacsgenieacsVerified publisher0.5.21 of 2See more

genieacs genieacs 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.6ffbf8bd1340d
brace-expansion@5.0.6
5.0.12

Open the chart page →

3,740
geomapfishgeomapfish0.8.01 of 3See more

geomapfish geomapfish 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
camptocamp/geomapfishapp-geoportal:latestae874f70cc16
brace-expansion@2.0.1
node-brace-expansion@2.0.1+~1.1.0-1
2.1.7
no fix listed

Open the chart page →

6,992
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
library/kibana:7.17.150172f1c538e7
brace-expansion@2.0.1
2.1.7

Open the chart page →

35,858
artifacthub-scanner-testgeorge-test-helm-charts1.0.41 of 1See more

artifacthub-scanner-test george-test-helm-charts 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
library/node:16.13.0-alpine60ef0bed1dc2
brace-expansion@1.1.11
1.1.21

Open the chart page →

965
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
brace-expansion@2.0.1
2.1.7

Open the chart page →

9,268
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
brace-expansion@2.0.1
2.1.7

Open the chart page →

3,229
redis-uigin0.0.11 of 1See more

redis-ui gin 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
patrikx3/p3x-redis-ui:latestf19eb45b0694
brace-expansion@5.0.7
5.0.12

Open the chart page →

1,298
glassflow-etlglassflowVerified publisher0.5.211 of 16See more

glassflow-etl glassflow 0.5.21

1 of the 16 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/glassflow/glassflow-etl-fe:v3.2.05eaad43bd6c5
brace-expansion@2.0.1
2.1.7

Open the chart page →

12,534
api-mapperglenndehaanVerified publisher1.2.01 of 1See more

api-mapper glenndehaan 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
glenndehaan/api-mapper:latest6ff6310683bf
brace-expansion@1.1.11
1.1.21

Open the chart page →

1,209
contentbridgeglenndehaanVerified publisher1.1.01 of 1See more

contentbridge glenndehaan 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
glenndehaan/contentbridge:latest99b9e4f73848
brace-expansion@2.0.1
2.1.7

Open the chart page →

1,070
kube-hookglenndehaanVerified publisher1.0.31 of 1See more

kube-hook glenndehaan 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
glenndehaan/kube-hook:latest0a7116f48bfe
brace-expansion@2.0.1
2.1.7

Open the chart page →

984
Governify-Bluejaygovernify0.1.05 of 12See more

Governify-Bluejay governify 0.1.0

5 of the 12 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
brace-expansion@1.1.11
1.1.21
governify/director:v1.4.0608c6940bb98
brace-expansion@1.1.11
1.1.21
governify/registry:v3.4.0d3f37f4f8168
brace-expansion@1.1.11
1.1.21
governify/render:v2.2.0daeca1ce28e6
brace-expansion@1.1.11
1.1.21
governify/reporter:v2.2.038595913458f
brace-expansion@1.1.11
1.1.21

Open the chart page →

22,464
Governify-Falcongovernify0.1.06 of 10See more

Governify-Falcon governify 0.1.0

6 of the 10 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
brace-expansion@1.1.11
1.1.21
governify/collector-dynamic:v1.3.06d3d1a5b46a9
brace-expansion@1.1.11
1.1.21
governify/director:v1.4.0608c6940bb98
brace-expansion@1.1.11
1.1.21
governify/registry:v3.4.0d3f37f4f8168
brace-expansion@1.1.11
1.1.21
governify/render:v2.2.0daeca1ce28e6
brace-expansion@1.1.11
1.1.21
governify/reporter:v2.2.038595913458f
brace-expansion@1.1.11
1.1.21

Open the chart page →

24,643
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
brace-expansion@2.0.1
2.1.7
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
brace-expansion@2.0.1
2.1.7
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
brace-expansion@2.0.1
2.1.7

Open the chart page →

52,401
hive-appgraphql-hive1.0.01 of 1See more

hive-app graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,825
hive-emailsgraphql-hive1.0.01 of 1See more

hive-emails graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/emails:59b64c36c866b3555c135c70de76a884e63f86197d2d6d7c099a
brace-expansion@2.0.1
2.1.7

Open the chart page →

655
hive-schemagraphql-hive1.0.01 of 1See more

hive-schema graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/schema:59b64c36c866b3555c135c70de76a884e63f8619931d1f6e5ad4
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-servergraphql-hive1.0.01 of 1See more

hive-server graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/server:59b64c36c866b3555c135c70de76a884e63f86196d3899d281cc
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-storagegraphql-hive1.0.01 of 3See more

hive-storage graphql-hive 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/storage:59b64c36c866b3555c135c70de76a884e63f86199808dac13353
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-tokensgraphql-hive1.0.01 of 1See more

hive-tokens graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/tokens:59b64c36c866b3555c135c70de76a884e63f86190f3416d940b4
brace-expansion@2.0.1
2.1.7

Open the chart page →

655
hive-usagegraphql-hive1.0.01 of 1See more

hive-usage graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/usage:59b64c36c866b3555c135c70de76a884e63f861953619ee7614e
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-usage-ingestorgraphql-hive1.0.01 of 1See more

hive-usage-ingestor graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/usage-ingestor:59b64c36c866b3555c135c70de76a884e63f861947b87c071af4
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-webhooksgraphql-hive1.0.01 of 1See more

hive-webhooks graphql-hive 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/webhooks:59b64c36c866b3555c135c70de76a884e63f861918a5c5b5b671
brace-expansion@2.0.1
2.1.7

Open the chart page →

655
hive-appgraphql-hive-subcharts1.0.01 of 1See more

hive-app graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
brace-expansion@1.1.11
1.1.21

Open the chart page →

2,825
hive-emailsgraphql-hive-subcharts1.0.01 of 1See more

hive-emails graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/emails:59b64c36c866b3555c135c70de76a884e63f86197d2d6d7c099a
brace-expansion@2.0.1
2.1.7

Open the chart page →

655
hive-schemagraphql-hive-subcharts1.0.01 of 1See more

hive-schema graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/schema:59b64c36c866b3555c135c70de76a884e63f8619931d1f6e5ad4
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-servergraphql-hive-subcharts1.0.01 of 1See more

hive-server graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/server:59b64c36c866b3555c135c70de76a884e63f86196d3899d281cc
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-storagegraphql-hive-subcharts1.0.01 of 3See more

hive-storage graphql-hive-subcharts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/storage:59b64c36c866b3555c135c70de76a884e63f86199808dac13353
brace-expansion@1.1.11
1.1.21

Open the chart page →

655
hive-tokensgraphql-hive-subcharts1.0.01 of 1See more

hive-tokens graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/tokens:59b64c36c866b3555c135c70de76a884e63f86190f3416d940b4
brace-expansion@2.0.1
2.1.7

Open the chart page →

655
hive-usagegraphql-hive-subcharts1.0.01 of 1See more

hive-usage graphql-hive-subcharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-102277.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/usage:59b64c36c866b3555c135c70de76a884e63f861953619ee7614e
brace-expansion@1.1.11
1.1.21

Open the chart page →

655

Container images carrying it

1,126 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
governify/reporter:v2.2.038595913458f
brace-expansion@1.1.11
1.1.21
2
gradiant/open5gs-webui:2.7.5fbd10c017541
brace-expansion@1.1.11
1.1.21
2
homebridge/homebridge:latest77c685a40911
brace-expansion@5.0.9
5.0.12
2
hookiesolutions/webhookie:latest0629694246ba
brace-expansion@1.1.11
1.1.21
2
hoppscotch/hoppscotch:2024.8.2f1da831950b7
brace-expansion@2.0.1
2.1.7
2
htmlprogrammer2001/simple-db-app:1.0a7e0a233a9bc
brace-expansion@1.1.11
1.1.21
2
ilum/ui:6.7.3998937726679
brace-expansion@2.0.2
2.1.7
2
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
brace-expansion@1.1.11
1.1.21
2
istio/examples-bookinfo-ratings-v1:1.14.0eb0f1a725ca8
brace-expansion@1.1.11
1.1.21
2
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
brace-expansion@1.1.11
1.1.21
2
krtk6160/galoy-nostrcc82a694f818
brace-expansion@2.0.1
2.1.7
2
kubesphere/examples-bookinfo-ratings-v1:1.13.0f1b5bf878196
brace-expansion@1.1.11
1.1.21
2
kutt/kutt:latest:v3.2.6fa3d24a89b04
brace-expansion@2.0.2
2.1.7
2
l7mp/kurento-one2one-call-server:latestfd2b2d06fff6
brace-expansion@1.1.11
1.1.21
2
langflowai/langflow:latest79c02794adeb
brace-expansion@5.0.9
5.0.12
2
langgenius/dify-sandbox:0.2.009b7e8705673
brace-expansion@2.0.1
2.1.7
2
library/arangodb:3.11.81e75d74954a4
brace-expansion@2.0.1
2.1.7
2
library/ghost:6.65.090592b712b6b
brace-expansion@5.0.9
5.0.12
2
library/mongo-express:1.0.2:latest1b23d7976f02
brace-expansion@2.0.1
2.1.7
2
library/node:24.21.0-alpine3.239ec4a2e28987
brace-expansion@5.0.7
5.0.12
2
linuxserver/cloud9:latest:version-1.29.245c5fe102ff3
brace-expansion@1.1.4
1.1.21
2
louislam/uptime-kuma:2.5.4917318f9d7be
brace-expansion@1.1.18
1.1.21
2
louislam/uptime-kuma:1.23.1396510915e6be
brace-expansion@1.1.11
1.1.21
2
louislam/uptime-kuma:2.3.29aeb4e51d038
brace-expansion@2.0.2
2.1.7
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
brace-expansion@2.1.2
2.1.7
2
louislam/uptime-kuma:2.5.5c74379ac4509
brace-expansion@1.1.18
1.1.21
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
brace-expansion@1.1.11
1.1.21
2
mesosphere/kommander:6.100.13917e82333a9
brace-expansion@1.1.11
1.1.21
2
migmartri/prerender:latest486aacfd5aa9
brace-expansion@1.1.7
1.1.21
2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
brace-expansion@1.1.11
1.1.21
2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
brace-expansion@1.1.11
1.1.21
2
mojaloop/reporting:v12.1.0d480a62103d6
brace-expansion@1.1.11
1.1.21
2
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
brace-expansion@2.0.1
2.1.7
2
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
brace-expansion@2.0.2
2.1.7
2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
brace-expansion@1.1.12
1.1.21
2
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
brace-expansion@2.0.1
2.1.7
2
mojaloop/role-assignment-service:v2.1.0def4bf273721
brace-expansion@1.1.11
1.1.21
2
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
brace-expansion@1.1.12
1.1.21
2
moreillon/api-proxy:a3e8b41e9e578c9653b6
brace-expansion@2.0.1
2.1.7
2
moreillon/group-manager:v4.9.0d5a0ec8394c0
brace-expansion@1.1.11
1.1.21
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
brace-expansion@1.1.11
1.1.21
2
n8nio/n8n:2.36.714c4285bc303
brace-expansion@2.1.4
2.1.7
2
nodered/node-red:5.0.7:latesta649dd711d55
brace-expansion@5.0.7
5.0.12
2
nousresearch/hermes-agent:v2026.9.24fca358f12efd
brace-expansion@5.0.6
5.0.12
2
opensearchproject/opensearch-dashboards:1.0.039695180364b
brace-expansion@1.1.11
1.1.21
2
outlinewiki/outline:0.69.1d060dcd8f9aa
brace-expansion@1.1.11
1.1.21
2
patrikx3/p3x-redis-ui:latestf19eb45b0694
brace-expansion@5.0.7
5.0.12
2
rajnandan1/kener:3.2.1930407afca731
brace-expansion@1.1.11
1.1.21
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
brace-expansion@1.1.11
1.1.21
2
requarks/wiki:2:latest68f0d1848261
brace-expansion@5.0.4
5.0.12
2

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.