StackRadar

CVE-2026-13149

High

Advisory

Published 30 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
923
of 17,787 indexed, latest versions
Container images
966
deployed by those charts
Fix available
1 of 2
affected packages

brace-expansion: DoS via exponential-time expansion of consecutive non-expanding {} groups

Carried by container images the latest versions of 923 of 17,787 indexed charts deploy, on 966 images.

Affected packageAffected versionsFixed inImages
node-brace-expansiondeb1.1.8-1, 1.1.11-1, 2.0.1+~1.1.0-1, 2.0.1+~1.1.0-2no fix listed7
brace-expansionnpm1.1.1, 1.1.2, 1.1.4, 1.1.6+17 more1.1.16, 2.1.2, 5.0.7966
OSV records
DEBIAN-CVE-2026-13149UBUNTU-CVE-2026-13149GHSA-3jxr-9vmj-r5cp

Charts affected

923 by stars
ChartLatestAffected imagesRadar Score
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:7.0.34ebd8b4ef340
brace-expansion@1.1.11
1.1.16

Open the chart page →

12,862
mini-blogmini-blog-helm0.1.01 of 3See more

mini-blog mini-blog-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
brace-expansion@2.0.1
2.1.2

Open the chart page →

12,637
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
brace-expansion@1.1.11
1.1.16
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
brace-expansion@2.0.1
2.1.2

Open the chart page →

42,983
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
brace-expansion@1.1.11
1.1.16

Open the chart page →

10,639
standard-application-stackmintel11.4.11 of 12See more

standard-application-stack mintel 11.4.1

1 of the 12 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
brace-expansion@1.1.11
1.1.16

Open the chart page →

10,515
iotmmontesVerified publisher0.3.24 of 7See more

iot mmontes 0.3.2

4 of the 7 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
brace-expansion@1.1.11
1.1.16
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
brace-expansion@1.1.11
1.1.16
ghcr.io/mmontes11/iot-thing:v3.11.0542e91e8499c
brace-expansion@1.1.11
1.1.16
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
brace-expansion@1.1.11
1.1.16

Open the chart page →

10,608
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.16
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.16

Open the chart page →

11,734
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.16
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.16

Open the chart page →

11,734
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
brace-expansion@1.1.11
1.1.16
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.16

Open the chart page →

12,147
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
brace-expansion@1.1.12
1.1.16

Open the chart page →

2,458
finance-portalmojaloop5.1.46 of 11See more

finance-portal mojaloop 5.1.4

6 of the 11 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
brace-expansion@1.1.11
1.1.16
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
brace-expansion@2.0.1
2.1.2
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
brace-expansion@2.0.2
2.1.2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
brace-expansion@1.1.12
1.1.16
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
brace-expansion@2.0.1
2.1.2
mojaloop/role-assignment-service:v2.1.0def4bf273721
brace-expansion@1.1.11
1.1.16

Open the chart page →

14,811
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.16
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
brace-expansion@1.1.11
1.1.16

Open the chart page →

11,518
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.16
mojaloop/central-ledger:v13.14.01abc8a7aa71c
brace-expansion@1.1.11
1.1.16
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.16
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
brace-expansion@1.1.11
1.1.16

Open the chart page →

19,265
reporting-aggregator-svcmojaloop1.0.71 of 1See more

reporting-aggregator-svc mojaloop 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
brace-expansion@2.0.1
2.1.2

Open the chart page →

800
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
brace-expansion@2.0.2
2.1.2

Open the chart page →

2,632
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
brace-expansion@1.1.12
1.1.16

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
brace-expansion@2.0.1
2.1.2

Open the chart page →

2,318
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,949
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,316
security-role-perm-operator-svcmojaloop3.0.01 of 1See more

security-role-perm-operator-svc mojaloop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
brace-expansion@1.1.12
1.1.16

Open the chart page →

2,458
mongo-compassmongo-compass-web-helm1.1.01 of 1See more

mongo-compass mongo-compass-web-helm 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.054f2112602ee
brace-expansion@5.0.6
5.0.7

Open the chart page →

2,306
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.01 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
library/mongo-express:latest1b23d7976f02
brace-expansion@2.0.1
2.1.2

Open the chart page →

5,217
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
brace-expansion@1.1.11
1.1.16

Open the chart page →

6,438
monocularmonocular1.4.152 of 5See more

monocular monocular 1.4.15

2 of the 5 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
brace-expansion@1.1.7
1.1.16
quay.io/helmpack/monocular-ui:v1.10.086b71e90319f
brace-expansion@1.1.8
1.1.16

Open the chart page →

7,048
monopolymonopolypackage0.1.01 of 1See more

monopoly monopolypackage 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
gonzague/monopoly:latest70465995deea
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,130
api-proxymoreillonVerified publisher0.1.41 of 1See more

api-proxy moreillon 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/api-proxy:2373c1953739ef6956b5
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,712
camera-viewermoreillonVerified publisher0.2.11 of 4See more

camera-viewer moreillon 0.2.1

1 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/camera-proxy:latestce60056b50c2
brace-expansion@2.0.1
2.1.2

Open the chart page →

11,694
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/face-recognition-fastapi-front:latestc1072f4ab6aa
brace-expansion@1.1.11
1.1.16

Open the chart page →

8,556
group-managermoreillonVerified publisher0.4.41 of 3See more

group-manager moreillon 0.4.4

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/group-manager:v4.9.0d5a0ec8394c0
brace-expansion@1.1.11
1.1.16

Open the chart page →

9,886
mqtt-loggermoreillonVerified publisher0.3.11 of 5See more

mqtt-logger moreillon 0.3.1

1 of the 5 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/mqtt-logger:9ffbf7180a8a7daf56f6
brace-expansion@1.1.11
1.1.16

Open the chart page →

10,998
user-manager-mongodbmoreillonVerified publisher0.6.21 of 4See more

user-manager-mongodb moreillon 0.6.2

1 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
brace-expansion@2.0.1
2.1.2

Open the chart page →

23,263
user-manager-neo4jmoreillonVerified publisher0.9.72 of 6See more

user-manager-neo4j moreillon 0.9.7

2 of the 6 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moreillon/group-manager:v4.9.0d5a0ec8394c0
brace-expansion@1.1.11
1.1.16
moreillon/user-manager:v5.0.2e1c9bfab5c16
brace-expansion@1.1.11
1.1.16

Open the chart page →

30,195
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
brace-expansion@1.1.11
1.1.16

Open the chart page →

6,684
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
brace-expansion@2.0.1
2.1.2

Open the chart page →

4,560
ghostmt1905028.25.11 of 3See more

ghost mt190502 8.25.1

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
brace-expansion@2.0.1
2.1.2

Open the chart page →

4,908
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
brace-expansion@2.0.1
2.1.2

Open the chart page →

6,646
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/umami-software/umami:3.0.328f263fe06f7
brace-expansion@1.1.12
1.1.16

Open the chart page →

4,030
cloudcmdmy0nVerified publisher0.0.31 of 1See more

cloudcmd my0n 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
coderaiser/cloudcmd:16.6.1b34a9775c7ce
brace-expansion@1.1.11
1.1.16

Open the chart page →

3,128
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
brace-expansion@1.1.11
1.1.16

Open the chart page →

12,861
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
brace-expansion@1.1.11
1.1.16

Open the chart page →

12,861
myawesomeappmyawesomapp-mitchxxx0.1.11 of 1See more

myawesomeapp myawesomapp-mitchxxx 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mitchxxx/amazon:214e72480ec63a
brace-expansion@2.0.1
2.1.2

Open the chart page →

2,116
myawesomeappmyawesomeapp1.1.01 of 1See more

myawesomeapp myawesomeapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ooghenekaro/nodejswebapp:latestea5b71588a76
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,267
myawesomeapp14myawesomeapp140.1.11 of 1See more

myawesomeapp14 myawesomeapp14 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ccjacobs14/amazon:59a9b14a6f09e
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,116
myawesomeappmyawesomeapp20.1.01 of 1See more

myawesomeapp myawesomeapp2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
mpopoola1/nodejsapp:latest061fc532de7d
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,118
myawesomeapp-feb24myawesomeapp-feb240.1.11 of 1See more

myawesomeapp-feb24 myawesomeapp-feb24 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
josepht05/nodejs-feb24:latest36cb0c618c94
brace-expansion@2.0.1
2.1.2

Open the chart page →

1,070
myawesomeapp-janmyawesomeapp-jan0.1.11 of 1See more

myawesomeapp-jan myawesomeapp-jan 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ooghenekaro/amazon:latest03394ba1d6d8
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,144
myawesomeapp-marmyawesomeapp-mar0.1.11 of 1See more

myawesomeapp-mar myawesomeapp-mar 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
winfred008/amazon:910a68de5b398
brace-expansion@1.1.11
1.1.16

Open the chart page →

2,116
myawesomeappoctmyawesomeappoct0.1.11 of 1See more

myawesomeappoct myawesomeappoct 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
ooghenekaro/nodejswebappoct:lateste010f5fecbc7
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,164
myawesomeappoctmyawesomeappoct20230.1.11 of 1See more

myawesomeappoct myawesomeappoct2023 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
hamid2021/nodejs-dockercli:latest429d99890c3c
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,118
mydannyappmydannyapp1.1.01 of 1See more

mydannyapp mydannyapp 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-13149.

Container imageDigestPackageFixed in
danny1dockerhub/nodejswebapp:lateste434683fcc89
brace-expansion@1.1.11
1.1.16

Open the chart page →

1,267

Container images carrying it

966 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/beluga-cloud/actual/actualserver:23.12.1c8a0d5ec5a12
brace-expansion@1.1.11
1.1.16
1
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
brace-expansion@2.0.2
2.1.2
1
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
brace-expansion@1.1.12
1.1.16
1
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
brace-expansion@2.0.1
2.1.2
1
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
brace-expansion@2.0.2
2.1.2
1
ghcr.io/bluesky-social/pds:0.4d95725b24dbe
brace-expansion@5.0.6
5.0.7
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
brace-expansion@2.0.1
2.1.2
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
brace-expansion@5.0.4
5.0.7
1
ghcr.io/bryopsida/openmct:main38b6a50a62b2
brace-expansion@1.1.11
1.1.16
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
brace-expansion@2.0.1
2.1.2
1
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
brace-expansion@2.0.1
2.1.2
1
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
brace-expansion@2.0.1
2.1.2
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
brace-expansion@2.0.1
2.1.2
1
ghcr.io/calesthio/crucix:latest67c5244b6acf
brace-expansion@2.0.2
2.1.2
1
ghcr.io/cameri/nostream:main8726533b9e69
brace-expansion@2.0.2
2.1.2
1
ghcr.io/caninehq/canine:latesta058034ca006
brace-expansion@1.1.11
1.1.16
1
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
brace-expansion@1.1.11
1.1.16
1
ghcr.io/colanode/server:latest7006cac874fd
brace-expansion@1.1.13
1.1.16
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
brace-expansion@2.0.1
2.1.2
1
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
brace-expansion@2.0.1
2.1.2
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
brace-expansion@1.1.11
1.1.16
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
brace-expansion@1.1.11
1.1.16
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
brace-expansion@1.1.11
1.1.16
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
brace-expansion@1.1.11
1.1.16
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
brace-expansion@1.1.11
1.1.16
1
ghcr.io/curium-rocks/k8s-jacoco-operator:maina558ceae6cdb
brace-expansion@2.0.2
2.1.2
1
ghcr.io/curium-rocks/k8s-mutating-webhook:mainaaab005242ae
brace-expansion@2.0.1
2.1.2
1
ghcr.io/curium-rocks/k8s-validating-webhook:main8344061b2f22
brace-expansion@2.0.1
2.1.2
1
ghcr.io/curium-rocks/kube-admission-controller-starter:maine9716966f30b
brace-expansion@2.0.1
2.1.2
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
brace-expansion@2.0.1
2.1.2
1
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
brace-expansion@2.0.1
2.1.2
1
ghcr.io/data-fair/data-fair:3cc9498b64b5b
brace-expansion@2.0.1
2.1.2
1
ghcr.io/data-fair/metrics:0a8d40779eeae
brace-expansion@1.1.11
1.1.16
1
ghcr.io/data-fair/notify:3c739b74dabb0
brace-expansion@1.1.11
1.1.16
1
ghcr.io/data-fair/portals:18b621866ceb2
brace-expansion@1.1.11
1.1.16
1
ghcr.io/data-fair/processings:15a9216989707
brace-expansion@1.1.11
1.1.16
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
brace-expansion@1.1.11
1.1.16
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
brace-expansion@1.1.11
1.1.16
1
ghcr.io/duyet/clickhouse-monitoring:latest84edfe8a67a8
brace-expansion@5.0.6
5.0.7
1
ghcr.io/elk-zone/elk:v1.0.1236faedcb68a
brace-expansion@5.0.6
5.0.7
1
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
brace-expansion@1.1.11
1.1.16
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
brace-expansion@1.1.11
1.1.16
1
ghcr.io/firecrawl/firecrawl:2.11.33470453d7102cc
brace-expansion@2.0.2
2.1.2
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
brace-expansion@2.0.1
2.1.2
1
ghcr.io/flaresolverr/flaresolverr:v1.2.896f8c08c0c1b
brace-expansion@1.1.11
1.1.16
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
brace-expansion@2.0.1
2.1.2
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
brace-expansion@2.0.2
2.1.2
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
brace-expansion@2.0.2
2.1.2
1
ghcr.io/fpsacha/zomboid-panel:v1.0.6605e16dd56cfb
brace-expansion@2.1.1
2.1.2
1
ghcr.io/gethomepage/homepage:v1.13.1d8d784e50901
brace-expansion@2.0.2
2.1.2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.