StackRadar

CVE-2026-14257

High

Advisory

Published 23 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
958
of 17,790 indexed, latest versions
Container images
998
deployed by those charts
Fix available
2 of 3
affected packages

brace-expansion: DoS via unbounded expansion length causing an out-of-memory process crash

Carried by container images the latest versions of 958 of 17,790 indexed charts deploy, on 998 images.

Affected packageAffected versionsFixed inImages
brace-expansionnpm1.1.1, 1.1.2, 1.1.4, 1.1.6+19 more1.1.17, 2.1.3, 5.0.8998
node-brace-expansiondeb1.1.8-1, 1.1.11-1, 2.0.1+~1.1.0-1, 2.0.1+~1.1.0-2no fix listed7
npmapk11.17.0-r012.0.1-r21
OSV records
CGA-6hf9-6j4p-2q3vDEBIAN-CVE-2026-14257GHSA-mh99-v99m-4gvgUBUNTU-CVE-2026-14257
Also known as
CGA-mwqw-7q2r-9q5w

Charts affected

958 by stars
ChartLatestAffected imagesRadar Score
devspace-cloudloftVerified publisher0.3.31 of 8See more

devspace-cloud loft 0.3.3

1 of the 8 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
devspacecloud/ui:0.3.3deef55ff29a7
brace-expansion@1.1.11
1.1.17

Open the chart page →

9,888
redisinsightlogic3579Verified publisher3.4.01 of 1See more

redisinsight logic3579 3.4.0

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
redis/redisinsight:3.485562d67a912
brace-expansion@2.0.2
2.1.3

Open the chart page →

1,491
logtidelogtideVerified publisher2.1.142 of 4See more

logtide logtide 2.1.14

2 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/logtide-dev/logtide-backend:1.0.265463e02f887
brace-expansion@2.1.1
2.1.3
ghcr.io/logtide-dev/logtide-frontend:1.0.22a7da1451f86
brace-expansion@2.1.1
2.1.3

Open the chart page →

2,775
nubladolsst-sqre0.9.231 of 5See more

nublado lsst-sqre 0.9.23

1 of the 5 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
lsstsqre/sciplat-hub:latest5e0ade6bed1c
brace-expansion@1.1.6
1.1.17

Open the chart page →

5,790
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
brace-expansion@1.1.11
node-brace-expansion@1.1.11-1
1.1.17
no fix listed

Open the chart page →

17,858
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
brace-expansion@1.1.8
1.1.17

Open the chart page →

7,931
squareonelsst-sqre0.4.11 of 1See more

squareone lsst-sqre 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
lsstsqre/squareone:0.4.09ded78e7fe03
brace-expansion@1.1.11
1.1.17

Open the chart page →

2,247
frontendluiscajl0.1.71 of 1See more

frontend luiscajl 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
lavandadelpatio/frontend:latest501c3f31e0bc
brace-expansion@1.1.11
1.1.17

Open the chart page →

3,651
lynxpromptlynxpromptVerified publisher0.1.21 of 3See more

lynxprompt lynxprompt 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
drumsergio/lynxprompt:2.0.75c6afb6679301
brace-expansion@5.0.6
5.0.8

Open the chart page →

1,854
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
brace-expansion@2.0.1
2.1.3

Open the chart page →

4,669
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
brace-expansion@2.0.1
2.1.3

Open the chart page →

9,805
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/absmach/magistrala/ui-smq:latestea7e7f0e293e
brace-expansion@2.0.1
2.1.3

Open the chart page →

24,537
docker-mailservermailserverVerified publisher0.2.651 of 9See more

docker-mailserver mailserver 0.2.65

1 of the 9 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
brace-expansion@2.0.2
2.1.3

Open the chart page →

10,921
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
brace-expansion@1.1.11
1.1.17

Open the chart page →

7,334
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
brace-expansion@1.1.11
1.1.17

Open the chart page →

5,288
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
brace-expansion@1.1.12
1.1.17

Open the chart page →

8,409
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
brace-expansion@1.1.11
1.1.17

Open the chart page →

5,941
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
hugohg34/server:0.0.2503e5d8960ff
brace-expansion@1.1.11
1.1.17

Open the chart page →

29,746
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
brace-expansion@1.1.11
1.1.17

Open the chart page →

9,765
homarrmedia-servarrVerified publisher0.55.11 of 1See more

homarr media-servarr 0.55.1

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/homarr-labs/homarr:v1.77.11f5b892aeef4
brace-expansion@5.0.6
5.0.8

Open the chart page →

435
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
brace-expansion@1.1.11
1.1.17

Open the chart page →

68,417
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
brace-expansion@1.1.11
1.1.17

Open the chart page →

7,027
littlelink-servermhamzahkhanVerified publisher1.0.01 of 1See more

littlelink-server mhamzahkhan 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/techno-tim/littlelink-server:latest735a1fcd078b
brace-expansion@2.0.1
2.1.3

Open the chart page →

887
miot-appmicroboxlabs0.3.31 of 1See more

miot-app microboxlabs 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
brace-expansion@2.0.2
2.1.3

Open the chart page →

510
miot-dashboard-servermicroboxlabs0.1.11 of 1See more

miot-dashboard-server microboxlabs 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-dashboard-server:latest19b910920ab1
brace-expansion@5.0.7
5.0.8

Open the chart page →

238
miot-docsmicroboxlabs0.1.11 of 1See more

miot-docs microboxlabs 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-docs:lateste09d92c61f43
brace-expansion@2.0.2
2.1.3

Open the chart page →

379
miot-stackmicroboxlabs0.2.21 of 2See more

miot-stack microboxlabs 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
brace-expansion@2.0.2
2.1.3

Open the chart page →

510
modulariotmicroboxlabs0.9.02 of 4See more

modulariot microboxlabs 0.9.0

2 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
brace-expansion@2.0.2
2.1.3
ghcr.io/microboxlabs/miot-docs:latest0307d2fd9f5c
brace-expansion@2.0.2
2.1.3

Open the chart page →

2,291
middleware-odigosmiddleware-labsVerified publisher0.2.412 of 6See more

middleware-odigos middleware-labs 0.2.41

2 of the 6 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
brace-expansion@1.1.11
1.1.17
ghcr.io/middleware-labs/odigos-ui:middleware-test-0.0.787120a4561a9
brace-expansion@1.1.11
1.1.17

Open the chart page →

8,378
middleware-visionmiddleware-labsVerified publisher0.2.652 of 6See more

middleware-vision middleware-labs 0.2.65

2 of the 6 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
brace-expansion@1.1.11
1.1.17
ghcr.io/middleware-labs/vision-ui:middleware-test-0.0.853772b7b42c7
brace-expansion@2.0.1
2.1.3

Open the chart page →

8,370
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:7.0.34ebd8b4ef340
brace-expansion@1.1.11
1.1.17

Open the chart page →

12,858
mini-blogmini-blog-helm0.1.01 of 3See more

mini-blog mini-blog-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
brace-expansion@2.0.1
2.1.3

Open the chart page →

13,107
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
brace-expansion@1.1.11
1.1.17
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
brace-expansion@2.0.1
2.1.3

Open the chart page →

43,532
aws-api-gateway-operatormintel0.1.22 of 11See more

aws-api-gateway-operator mintel 0.1.2

2 of the 11 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
brace-expansion@5.0.7
5.0.8
opensearchproject/opensearch-dashboards:1.0.039695180364b
brace-expansion@1.1.11
1.1.17

Open the chart page →

10,683
standard-application-stackmintel11.4.11 of 12See more

standard-application-stack mintel 11.4.1

1 of the 12 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
brace-expansion@1.1.11
1.1.17

Open the chart page →

10,613
iotmmontesVerified publisher0.3.24 of 7See more

iot mmontes 0.3.2

4 of the 7 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
brace-expansion@1.1.11
1.1.17
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
brace-expansion@1.1.11
1.1.17
ghcr.io/mmontes11/iot-thing:v3.11.0542e91e8499c
brace-expansion@1.1.11
1.1.17
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
brace-expansion@1.1.11
1.1.17

Open the chart page →

10,608
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.17
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.17

Open the chart page →

11,762
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.17
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.17

Open the chart page →

11,762
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
brace-expansion@1.1.11
1.1.17
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.17

Open the chart page →

12,175
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
brace-expansion@1.1.12
1.1.17

Open the chart page →

2,458
finance-portalmojaloop5.1.46 of 11See more

finance-portal mojaloop 5.1.4

6 of the 11 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
brace-expansion@1.1.11
1.1.17
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
brace-expansion@2.0.1
2.1.3
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
brace-expansion@2.0.2
2.1.3
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
brace-expansion@1.1.12
1.1.17
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
brace-expansion@2.0.1
2.1.3
mojaloop/role-assignment-service:v2.1.0def4bf273721
brace-expansion@1.1.11
1.1.17

Open the chart page →

14,813
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.17
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
brace-expansion@1.1.11
1.1.17

Open the chart page →

11,546
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
brace-expansion@1.1.11
1.1.17
mojaloop/central-ledger:v13.14.01abc8a7aa71c
brace-expansion@1.1.11
1.1.17
mojaloop/event-sidecar:v11.0.189b8ab71b74b
brace-expansion@1.1.11
1.1.17
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
brace-expansion@1.1.11
1.1.17

Open the chart page →

19,293
reporting-aggregator-svcmojaloop1.0.71 of 1See more

reporting-aggregator-svc mojaloop 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
brace-expansion@2.0.1
2.1.3

Open the chart page →

801
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
brace-expansion@2.0.2
2.1.3

Open the chart page →

2,632
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
brace-expansion@1.1.12
1.1.17

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
brace-expansion@2.0.1
2.1.3

Open the chart page →

2,319
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
brace-expansion@1.1.11
1.1.17

Open the chart page →

1,949
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
brace-expansion@1.1.11
1.1.17

Open the chart page →

2,316
security-role-perm-operator-svcmojaloop3.0.01 of 1See more

security-role-perm-operator-svc mojaloop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-14257.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
brace-expansion@1.1.12
1.1.17

Open the chart page →

2,458

Container images carrying it

998 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
brace-expansion@2.0.1
2.1.3
1
ghcr.io/kikplate/kikplate-web:main34bbb61e8e42
brace-expansion@2.0.2
2.1.3
1
ghcr.io/kubedb/mongo-gui:latestee0354b7a57a
brace-expansion@2.0.1
2.1.3
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
brace-expansion@2.0.1
2.1.3
1
ghcr.io/kubiyabot/workflow-engine:v1.46.2560a16a56d4e
brace-expansion@2.0.1
2.1.3
1
ghcr.io/leoquote/mergeable:latest451706815103
brace-expansion@1.1.11
1.1.17
1
ghcr.io/leprechaun/lgtv2mqtt:latestac2e11c41ffb
brace-expansion@2.0.1
2.1.3
1
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
brace-expansion@5.0.3
5.0.8
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
brace-expansion@2.0.2
2.1.3
1
ghcr.io/linuxserver/pairdrop:version-v1.11.23279d2d986c0
brace-expansion@2.0.2
2.1.3
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
brace-expansion@1.1.11
1.1.17
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
brace-expansion@1.1.11
1.1.17
1
ghcr.io/lockdep/stackradar-scanner:0.3.0dd8a35d50c2d
brace-expansion@2.0.2
2.1.3
1
ghcr.io/logtide-dev/logtide-backend:1.0.265463e02f887
brace-expansion@2.1.1
2.1.3
1
ghcr.io/logtide-dev/logtide-frontend:1.0.22a7da1451f86
brace-expansion@2.1.1
2.1.3
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
brace-expansion@2.0.1
2.1.3
1
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
brace-expansion@2.0.1
2.1.3
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
brace-expansion@2.0.1
2.1.3
1
ghcr.io/manzil-infinity180/backend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b496c90cf82fdd
brace-expansion@1.1.12
1.1.17
1
ghcr.io/manzil-infinity180/frontend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b44e6394b715d9
brace-expansion@1.1.11
1.1.17
1
ghcr.io/marcuwynu23/express-typescript-sample:latest9ef671b78ea8
brace-expansion@2.0.2
2.1.3
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
brace-expansion@1.1.11
1.1.17
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
brace-expansion@2.0.1
2.1.3
1
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
brace-expansion@5.0.6
5.0.8
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
brace-expansion@1.1.11
1.1.17
1
ghcr.io/michaelhaigh/pacman:latestb0931b1f085d
brace-expansion@2.0.2
2.1.3
1
ghcr.io/microboxlabs/miot-dashboard-server:latest19b910920ab1
brace-expansion@5.0.7
5.0.8
1
ghcr.io/microboxlabs/miot-docs:latest0307d2fd9f5c
brace-expansion@2.0.2
2.1.3
1
ghcr.io/microboxlabs/miot-docs:lateste09d92c61f43
brace-expansion@2.0.2
2.1.3
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
brace-expansion@1.1.11
1.1.17
1
ghcr.io/middleware-labs/odigos-ui:middleware-test-0.0.787120a4561a9
brace-expansion@1.1.11
1.1.17
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
brace-expansion@1.1.11
1.1.17
1
ghcr.io/middleware-labs/vision-ui:middleware-test-0.0.853772b7b42c7
brace-expansion@2.0.1
2.1.3
1
ghcr.io/mkutlak/alluredeck-api:0.41.0fa429df90c68
brace-expansion@5.0.7
5.0.8
1
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
brace-expansion@1.1.11
1.1.17
1
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
brace-expansion@1.1.11
1.1.17
1
ghcr.io/mmontes11/iot-thing:v3.11.0542e91e8499c
brace-expansion@1.1.11
1.1.17
1
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
brace-expansion@1.1.11
1.1.17
1
ghcr.io/mrprimate/ddb-proxy:0.0.258dc2d7fb460f
brace-expansion@1.1.11
1.1.17
1
ghcr.io/multica-ai/multica-web:v0.4.440951c6617471
brace-expansion@2.0.2
2.1.3
1
ghcr.io/ondrejsika/counter-frontend:latestc4166d2eb8eb
brace-expansion@2.0.2
2.1.3
1
ghcr.io/openccu/openccu:3.89.9.20260914eaeefd355dca
brace-expansion@2.0.2
2.1.3
1
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
brace-expansion@5.0.6
5.0.8
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
brace-expansion@5.0.6
5.0.8
1
ghcr.io/openlit/openlit:1.24.02434560e8f0e
brace-expansion@2.0.1
2.1.3
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
brace-expansion@2.0.1
2.1.3
1
ghcr.io/open-telemetry/demo:3.0.0-frontend9505e349e140
brace-expansion@2.1.1
2.1.3
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
brace-expansion@2.0.1
2.1.3
1
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
brace-expansion@2.0.1
2.1.3
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
brace-expansion@2.0.1
2.1.3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.