StackRadar

CVE-2026-13149

High

Advisory

Published 30 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
913
of 17,787 indexed, latest versions
Container images
955
deployed by those charts
Fix available
1 of 2
affected packages

brace-expansion: DoS via exponential-time expansion of consecutive non-expanding {} groups

Carried by container images the latest versions of 913 of 17,787 indexed charts deploy, on 955 images.

Affected packageAffected versionsFixed inImages
node-brace-expansiondeb1.1.8-1, 1.1.11-1, 2.0.1+~1.1.0-1, 2.0.1+~1.1.0-2no fix listed6
brace-expansionnpm1.1.1, 1.1.2, 1.1.4, 1.1.6+17 more1.1.16, 2.1.2, 5.0.7955
OSV records
DEBIAN-CVE-2026-13149UBUNTU-CVE-2026-13149GHSA-3jxr-9vmj-r5cp

Charts affected

913 by stars
ChartLatestAffected imagesRadar Score
lametric-nightscout-proxyaolde0.1.01 of 1See more

lametric-nightscout-proxy aolde 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/aolde/lametric-nightscout-proxy:latest7d1951b6baf5
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,186
apimap-developerapimapOfficialVerified publisher1.4.11 of 1See more

apimap-developer apimap 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
apimap/developer:v1.3.1406d3858e20c
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,353
apimap-portalapimapOfficialVerified publisher2.4.01 of 1See more

apimap-portal apimap 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
apimap/portal:v2.4.0041a4790c65c
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,396
d.vazquezm.2021_helmapphelmVerified publisher1.0.02 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

2 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
davidvmar/urjc-davidvmar-external-service:1.0.02a68e9ac7f09
brace-expansion@1.1.11
1.1.16
davidvmar/urjc-davidvmar-server:1.0.05663f5b24615
brace-expansion@1.1.11
1.1.16

Open the chart page →

19,745
app-movies-seriesapp-movies-seriesVerified publisher0.1.01 of 2See more

app-movies-series app-movies-series 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
felipecs8/app-movies-series:v14e51693fcdf5
brace-expansion@1.1.11
1.1.16

Open the chart page →

3,166
mongo-uiappscodeVerified publisher2026.3.301 of 1See more

mongo-ui appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/kubedb/mongo-gui:latestee0354b7a57a
brace-expansion@2.0.1
2.1.2

Open the chart page →

912
platform-uiappscodeVerified publisher2026.9.111 of 1See more

platform-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/appscode/platform-ui:2.4.0668ee2682eaf
brace-expansion@2.0.2
2.1.2

Open the chart page →

690
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,783
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
brace-expansion@2.0.1
2.1.2

Open the chart page →

23,353
agenthttpmqttassist-iot-composite-services1.0.01 of 1See more

agenthttpmqtt assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-http-mqtt:latest16d21bc5e42e
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,158
agentmqtthttpassist-iot-composite-services1.0.01 of 1See more

agentmqtthttp assist-iot-composite-services 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/composite-services-manager_agent-mqtt-http:latest27d58b8911cd
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,158
dltkvassist-iot-data-integrity-verification0.2.03 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
brace-expansion@1.1.11
1.1.16
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
brace-expansion@1.1.8
1.1.16
hyperledger/fabric-couchdb:0.4.15f6c724592abf
brace-expansion@1.1.8
1.1.16

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.03 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.1.0c8a170683be7
brace-expansion@2.0.1
2.1.2
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
brace-expansion@1.1.8
1.1.16
hyperledger/fabric-couchdb:0.4.15f6c724592abf
brace-expansion@1.1.8
1.1.16

Open the chart page →

77,706
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:api-latest7473d77448e1
brace-expansion@1.1.11
1.1.16

Open the chart page →

9,369
monitoring-notifyingassist-iot-monitoring-notifying0.1.01 of 1See more

monitoring-notifying assist-iot-monitoring-notifying 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/monitoring_notifying:2.0.068324d0fa5bb
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,677
multilink-clientassist-iot-multi-link-client-app1.0.01 of 2See more

multilink-client assist-iot-multi-link-client-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/multi-link_client:latestcf048365d042
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,446
multilink-serverassist-iot-multi-link-server-app1.0.01 of 2See more

multilink-server assist-iot-multi-link-server-app 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/multi-link_server:latestf38c76a4c960
brace-expansion@1.1.11
1.1.16

Open the chart page →

973
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
brace-expansion@1.1.11
1.1.16
pantsel/konga:latestc8172b75607d
brace-expansion@1.1.8
1.1.16

Open the chart page →

18,277
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
brace-expansion@1.1.11
1.1.16
assistiot/smart-orchestrator_enabler:latest89f37e88c871
brace-expansion@1.1.11
1.1.16
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
brace-expansion@1.1.11
1.1.16

Open the chart page →

45,363
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
brace-expansion@2.0.1
2.1.2

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
brace-expansion@2.0.1
2.1.2

Open the chart page →

9,412
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
brace-expansion@1.1.11
1.1.16

Open the chart page →

5,507
nas-appsawesomeVerified publisher2.0.02 of 8See more

nas-apps awesome 2.0.0

2 of the 8 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
brace-expansion@1.1.11
1.1.16
wettyoss/wetty:latest7423b3d40ba2
brace-expansion@2.0.1
2.1.2

Open the chart page →

7,152
awesomeblessingappawesomeblessingapp1.1.01 of 1See more

awesomeblessingapp awesomeblessingapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
bnwokoye/nodejswebapp:latest74de7dc7ebfb
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,267
bookinfobasictechno0.1.01 of 6See more

bookinfo basictechno 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.17.0b6a6b88d3578
brace-expansion@1.1.11
1.1.16

Open the chart page →

20,671
audiobookshelfbdclark-helm-chartsVerified publisher0.1.41 of 1See more

audiobookshelf bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,722
pangolinbdcode0.14.11 of 1See more

pangolin bdcode 0.14.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
fosrl/pangolin:latest83a55f933b4d
brace-expansion@5.0.6
5.0.7

Open the chart page →

1,901
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
brace-expansion@2.0.1
2.1.2

Open the chart page →

2,136
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
brace-expansion@1.1.11
1.1.16

Open the chart page →

5,806
myhelmappbelihelmapp1.1.01 of 1See more

myhelmapp belihelmapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
belirta/beli-docker:v1.0.0f65ad0e23b4d
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,187
http-debugbicarus-labs0.1.01 of 1See more

http-debug bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
bicarus/http-https-echo:2785dd6a7e805e
brace-expansion@1.1.11
1.1.16

Open the chart page →

867
mx-apibicarus-labs0.1.01 of 4See more

mx-api bicarus-labs 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
brace-expansion@1.1.11
1.1.16

Open the chart page →

4,455
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
brace-expansion@1.1.11
1.1.16

Open the chart page →

22,891
bluerange-mosquittobluerangeOfficialVerified publisher1.0.41 of 1See more

bluerange-mosquitto bluerange 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
bluerange/bluerange-mosquitto:25f1bfbba84832
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,168
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
brace-expansion@1.1.11
1.1.16

Open the chart page →

18,980
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
brace-expansion@1.1.11
1.1.16
sysnet4admin/colosseum-prm:log5802bfcd7fed
brace-expansion@2.0.1
2.1.2

Open the chart page →

26,996
overseerrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

overseerr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
linuxserver/overseerr:1.35.06108ed066d4a
brace-expansion@2.0.1
2.1.2

Open the chart page →

3,071
registry-uibryanalves0.2.01 of 1See more

registry-ui bryanalves 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
konradkleine/docker-registry-frontend:v2181aad54ee64
brace-expansion@1.1.8
1.1.16

Open the chart page →

4,069
rtorrent-floodbryanalves0.5.01 of 1See more

rtorrent-flood bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
jesec/flood:4.7.03d1d0bec117a
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,477
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
brace-expansion@2.0.1
2.1.2

Open the chart page →

14,352
openmctbryopsida0.1.11 of 1See more

openmct bryopsida 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/openmct:main38b6a50a62b2
brace-expansion@1.1.11
1.1.16

Open the chart page →

951
syslog-portalbryopsida0.3.11 of 1See more

syslog-portal bryopsida 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,306
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
brace-expansion@1.1.11
1.1.16

Open the chart page →

14,130
cross-seedcfi20176.13.61 of 1See more

cross-seed cfi2017 6.13.6

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,338
qbittorrentcfi20176.13.31 of 1See more

qbittorrent cfi2017 6.13.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,338
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
obolnetwork/charon-dkg-sidecar:maine263be0a7440
brace-expansion@1.1.11
1.1.16

Open the chart page →

7,405
ghostchart-ghost0.1.51 of 2See more

ghost chart-ghost 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
library/ghost:6.22.0-alpine3.23ac533a6988ee
brace-expansion@2.0.1
2.1.2

Open the chart page →

4,083
audiobookshelfcharts-derwitt-devVerified publisher1.1.01 of 1See more

audiobookshelf charts-derwitt-dev 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,722
ddb-proxycharts-derwitt-devVerified publisher1.3.01 of 1See more

ddb-proxy charts-derwitt-dev 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/mrprimate/ddb-proxy:0.0.258dc2d7fb460f
brace-expansion@1.1.11
1.1.16

Open the chart page →

812
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
node-brace-expansion@1.1.8-1
brace-expansion@1.1.1
no fix listed
1.1.16

Open the chart page →

12,779

Container images carrying it

955 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
speckle/speckle-preview-service:2.26.3092384dba45d
brace-expansion@1.1.11
1.1.16
1
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
brace-expansion@1.1.11
1.1.16
1
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
brace-expansion@1.1.11
1.1.16
1
speckle/speckle-preview-service:2.17.14-branch.testing.72707.921a5f884fc39bca0c8
brace-expansion@1.1.11
1.1.16
1
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.17.14-branch.testing.72707.921a5f849d10dcdfb91
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.19.2-branch.hotfix-2.19.1.124125-665e7e14b6a0750d5aa
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb52f8eabf5cea
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.25.10-branch.testing6.645-b125c1e75cdf256067b
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.26.379f14a2bf931
brace-expansion@1.1.11
1.1.16
1
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.21.3-branch.testing5.219631-2153bef8fd157733393
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.21.3-branch.testing5.219631-2153bef06ecc7a66a40
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb107c63336ab5
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e14828aee2277c
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.20.2-branch.testing4.134160-9fad4b270f5167d1d4d
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.18.12-branch.testing3.88744-f55b341771f872cfa63
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.18.11-branch.testing2.88634-335d469902b98ad5327
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.17.14-branch.testing.72707.921a5f899913052b72e
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.26.3c58eb372c488
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.20.6-branch.testing1.154030-9b09114cf1d99bad89a
brace-expansion@2.0.1
2.1.2
1
speckle/speckle-webhook-service:2.25.10-branch.testing6.645-b125c1edd9db6cbe9bb
brace-expansion@2.0.1
2.1.2
1
sqlpad/sqlpad:6.7d3d2f430dffd
brace-expansion@1.1.11
1.1.16
1
srini78/nodejswebappeks:latest5d1cbdc6833a
brace-expansion@1.1.11
1.1.16
1
stakater/workshop-exercise:0.0.26076926b7159d3
brace-expansion@1.1.11
1.1.16
1
stanfordoval/almond-server:latest1a63cdccedaf
brace-expansion@1.1.11
1.1.16
1
stremio/server:latest3dc145603def
brace-expansion@1.1.11
1.1.16
1
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
brace-expansion@1.1.11
1.1.16
1
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
brace-expansion@1.1.11
1.1.16
1
subsquid/substrate-explorer:firesquid0889a857f192
brace-expansion@2.0.1
2.1.2
1
subsquid/substrate-ingest:firesquidfa549779e9b1
brace-expansion@2.0.1
2.1.2
1
supabase/postgres-meta:v0.96.6a84cc713585e
brace-expansion@2.0.1
2.1.2
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
brace-expansion@1.1.11
1.1.16
1
supabase/storage-api:v1.60.4c8eb9858eafe
brace-expansion@5.0.5
5.0.7
1
supabase/storage-api:latestf6c42a04163d
brace-expansion@5.0.4
5.0.7
1
supabase/storage-api:v1.12.0f983fb50bd95
brace-expansion@2.0.1
2.1.2
1
supabase/studio:20241021-9f9b08326d8070c55e9
brace-expansion@2.0.1
2.1.2
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
brace-expansion@2.0.2
2.1.2
1
supabase/studio:latest94a2a9d2906e
brace-expansion@2.0.2
2.1.2
1
svenwal/jsonplaceholder:latestba2f285af432
brace-expansion@1.1.11
1.1.16
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
node-brace-expansion@1.1.11-1
brace-expansion@1.1.11
no fix listed
1.1.16
1
sysnet4admin/colosseum-cms:loge74b43c7f492
brace-expansion@1.1.11
1.1.16
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
brace-expansion@2.0.1
2.1.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.