StackRadar

CVE-2026-15308

High

Advisory

Published 9 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
870
of 17,787 indexed, latest versions
Container images
901
deployed by those charts
Fix available
17 of 18
affected packages

Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations

Carried by container images the latest versions of 870 of 17,787 indexed charts deploy, on 901 images.

Affected packageAffected versionsFixed inImages
python-3.14apk3.14.2-r2, 3.14.4-r2, 3.14.6-r03.14.6-r46
pythonbitnami3.11.11-0, 3.12.8-0, 3.13.5-13.10.213
python-3.13apk3.13.7-r0, 3.13.10-r0, 3.13.12-r23.13.14-r33
python-3.12apk3.12.0-r1, 3.12.9-r13.12.14-r22
python3.11deb3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+6 more3.11.0~rc1-1~22.04.1+esm2181
python3rpm3.6.8-15.1.el8, 3.6.8-23.el8, 3.6.8-24.el8_2, 3.6.8-24.el8_2.2+28 more0:3.6.8-77.el8_10, 0:3.6.8-77.el8_10.rocky.0, 3.12.14-1137
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 more3.8.10-0ubuntu1~20.04.18+esm7100
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3+11 more3.12.3-1ubuntu0.1786
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+16 more3.10.12-1~22.04.1880
python3apk3.11.12-r1, 3.12.8-r1, 3.12.9-r0, 3.12.10-r0+7 more3.12.14-r0, 3.14.7-r075
python3.13deb3.13.5-2, 3.13.5-2+deb13u2, 3.13.5-2+deb13u4, 3.13.5-2+deb13u5no fix listed75
python3.9rpm3.9.16-1.el9, 3.9.16-1.el9_2.1, 3.9.16-1.el9_2.2, 3.9.18-1.el9_3.1+15 more0:3.9.25-7.el9_8.255
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 more3.6.9-1~18.04ubuntu1.13+esm1044
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+9 more2.7.6-8ubuntu0.6+esm30, 2.7.12-1ubuntu0~16.04.18+esm22, 2.7.17-1~18.04ubuntu1.13+esm15, 2.7.18-13ubuntu1.5+esm943
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.93.5.2-2ubuntu0~16.04.13+esm2525
python3.14deb3.14.4-1, 3.14.4-1ubuntu0.13.14.4-1ubuntu0.28
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.73.4.3-1ubuntu1~14.04.7+esm217
python3.12rpm3.12.5-2.el9_5.20:3.12.13-3.el9_8.11
OSV records
ALPINE-CVE-2026-15308BIT-python-2026-15308CGA-2v5h-4pjx-m2vpCGA-7fq5-cfqp-92mfCGA-8wxj-3m53-wmwrDEBIAN-CVE-2026-15308RHSA-2026:39320RHSA-2026:39771RHSA-2026:39798RLSA-2026:39320RLSA-2026:39798UBUNTU-CVE-2026-15308AZL-92271
Also known as
BIT-libpython-2026-15308, BIT-python-min-2026-15308, CGA-qq9v-hh37-fr79, CGA-vh53-c7h5-695j, CGA-xm2p-hf9g-qw3m, PSF-2026-33, RHSA-2026:50064, RHSA-2026:50065, RHSA-2026:50816, USN-8744-1

Charts affected

870 by stars
ChartLatestAffected imagesRadar Score
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
python3.13@3.13.5-2
no fix listed

Open the chart page →

13,422
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
fiware/mintaka:0.7.092a3c5cf43c0
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

11,482
orion-ldeclipse-aeriosVerified publisher1.0.01 of 2See more

orion-ld eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
fiware/orion-ld:1.10.03c490a746f65
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10

Open the chart page →

9,805
marblerun-coordinatoredgelesssysVerified publisher0.5.01 of 1See more

marblerun-coordinator edgelesssys 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
python3.6@3.6.9-1~18.04ubuntu1.4
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

10,995
node-redegebackVerified publisher2.0.131 of 1See more

node-red egeback 2.0.13

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
nodered/node-red:5.0.410f40d0a83e7
python3@3.14.5-r0
3.14.7-r0

Open the chart page →

975
uptime-kumaegebackVerified publisher2.0.121 of 1See more

uptime-kuma egeback 2.0.12

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

30,167
egeria-baseegeria-charts4.3.01 of 5See more

egeria-base egeria-charts 4.3.0

1 of the 5 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.37.052f376e64b9b
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10

Open the chart page →

4,046
egeria-ctsegeria-charts4.3.01 of 3See more

egeria-cts egeria-charts 4.3.0

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.37.052f376e64b9b
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10

Open the chart page →

4,033
egeria-ptsegeria-charts4.3.01 of 3See more

egeria-pts egeria-charts 4.3.0

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.37.052f376e64b9b
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10

Open the chart page →

4,033
odpi-egeria-labegeria-charts4.3.01 of 4See more

odpi-egeria-lab egeria-charts 4.3.0

1 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.37.052f376e64b9b
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10

Open the chart page →

4,033
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

25,239
eolicplantseolicplantsVerified publisher0.1.01 of 7See more

eolicplants eolicplants 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
python3.12@3.12.3-1ubuntu0.9
3.12.3-1ubuntu0.17

Open the chart page →

27,349
eoloPlanteolo-plannerVerified publisher0.1.02 of 7See more

eoloPlant eolo-planner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3.11-managementc3f70098e01d
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18
mastercloudapps/server:v2.23f3d24dfe2686
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10

Open the chart page →

27,667
eoloplannereoloplannerVerified publisher0.1.02 of 7See more

eoloplanner eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18

Open the chart page →

32,336
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.02 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3.11-managementc3f70098e01d
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18
mastercloudapps/server:v2.23f3d24dfe2686
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10

Open the chart page →

27,667
eoloplanner-mcaeoloplanner-mcaVerified publisher0.1.01 of 7See more

eoloplanner-mca eoloplanner-mca 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
python3.12@3.12.3-1ubuntu0.9
3.12.3-1ubuntu0.17

Open the chart page →

27,314
eoloplannereoloplanner-molynx-gat0.1.02 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18

Open the chart page →

28,539
eolo-plannereolo-planner-repo0.1.01 of 7See more

eolo-planner eolo-planner-repo 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18

Open the chart page →

27,188
eoloplanteoloplant1.0.02 of 7See more

eoloplant eoloplant 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3.11-managementc3f70098e01d
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18
mastercloudapps/server:v2.23f3d24dfe2686
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10

Open the chart page →

27,667
eoloplantseoloplants-urjcVerified publisher0.1.02 of 7See more

eoloplants eoloplants-urjc 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18

Open the chart page →

27,812
servereoloserverVerified publisher0.1.02 of 7See more

server eoloserver 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
library/rabbitmq:3.9-management8a279e9396a8
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.18

Open the chart page →

32,336
flywayeosc-lot-1Verified publisher0.7.01 of 3See more

flyway eosc-lot-1 0.7.0

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
flyway/flyway:9.1545b5d7cdc75a
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

9,383
rabbitmqeosc-lot-1Verified publisher0.3.01 of 2See more

rabbitmq eosc-lot-1 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:3.13-managemente582c0bc7766
python3.12@3.12.3-1ubuntu0.9
3.12.3-1ubuntu0.17

Open the chart page →

2,505
assertoorethereum-helm-chartsVerified publisher1.2.01 of 1See more

assertoor ethereum-helm-charts 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ethpandaops/assertoor:latest1efa2fba6711
python3.13@3.13.5-2+deb13u2
no fix listed

Open the chart page →

2,903
beeport-uiethersphereVerified publisher0.76.21 of 3See more

beeport-ui ethersphere 0.76.2

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
python3.11@3.11.2-6+deb12u8
no fix listed

Open the chart page →

7,406
multichain-uiethersphereVerified publisher0.73.11 of 3See more

multichain-ui ethersphere 0.73.1

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
python3.11@3.11.2-6+deb12u8
no fix listed

Open the chart page →

7,406
static-siteethersphereVerified publisher0.73.11 of 2See more

static-site ethersphere 0.73.1

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/node:latestf5d1cc40abc1
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

6,894
supportpalevilgn0me0.1.61 of 1See more

supportpal evilgn0me 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
python3.8@3.8.5-1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

20,987
perliteextrim-helm-chartsVerified publisher0.1.01 of 1See more

perlite extrim-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
extrim/perlite:1.5.99cb7eb5598b6
python3@3.12.9-r0
3.12.14-r0

Open the chart page →

1,439
faasnetfaasnet0.0.41 of 5See more

faasnet faasnet 0.0.4

1 of the 5 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17

Open the chart page →

7,665
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
python3.5@3.5.2-2ubuntu0~16.04.9
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

14,688
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
python3.11@3.11.2-6+deb12u3
no fix listed

Open the chart page →

10,119
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

6,935
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm7
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

64,192
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
python3@3.6.8-41.el8
0:3.6.8-77.el8_10

Open the chart page →

8,528
consent-facadefiware0.1.11 of 1See more

consent-facade fiware 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/seamware/consent-facade:0.0.14be844c750c7e
python3@3.6.8-67.el8_10
0:3.6.8-77.el8_10

Open the chart page →

2,474
contract-managementfiware3.5.361 of 1See more

contract-management fiware 3.5.36

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/contract-management:3.3.122bcfcf874451
python3@3.6.8-67.el8_10
0:3.6.8-77.el8_10

Open the chart page →

2,411
credentials-config-servicefiware2.6.41 of 1See more

credentials-config-service fiware 2.6.4

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
python3@3.6.8-67.el8_10
0:3.6.8-77.el8_10

Open the chart page →

2,292
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
python3@3.6.8-48.el8_7.1
0:3.6.8-77.el8_10

Open the chart page →

4,536
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

11,834
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

7,019
orionfiware1.6.111 of 2See more

orion fiware 1.6.11

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10

Open the chart page →

10,638
tm-forum-apifiware0.17.1519 of 19See more

tm-forum-api fiware 0.17.15

19 of the 19 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.06b25aac03414
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
python3@3.6.8-70.el8_10
0:3.6.8-77.el8_10

Open the chart page →

35,112
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
python3.9@3.9.21-2.el9_6.1
0:3.9.25-7.el9_8.2

Open the chart page →

1,718
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

7,087
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.17

Open the chart page →

5,340
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

8,831
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
python3@3.12.13-r0
3.12.14-r0

Open the chart page →

2,420
fr24feederfnzv0.1.21 of 1See more

fr24feeder fnzv 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

2,246
maxscalefour-allportalVerified publisher4.1.161 of 3See more

maxscale four-allportal 4.1.16

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
mariadb/maxscale:23.02.256c5e0908148
python3@3.6.8-51.el8.rocky.0
0:3.6.8-77.el8_10.rocky.0

Open the chart page →

6,610

Container images carrying it

901 by charts deploying them

A fixed version is listed for 17 of the 18 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
python3.6@3.6.9-1~18.04ubuntu1.12
3.6.9-1~18.04ubuntu1.13+esm10
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
python3.12@3.12.3-1ubuntu0.3
3.12.3-1ubuntu0.17
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
python3.12@3.12.3-1ubuntu0.3
3.12.3-1ubuntu0.17
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
python3.8@3.8.10-0ubuntu1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
python3.8@3.8.10-0ubuntu1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
python3.8@3.8.10-0ubuntu1~20.04
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
python3.10@3.10.4-3ubuntu0.1
3.10.12-1~22.04.18
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
python3.8@3.8.5-1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
python3.8@3.8.5-1~20.04.3
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
python3.8@3.8.10-0ubuntu1~20.04.1
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
python3@3.12.11-r0
3.12.14-r0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
python3@3.12.11-r0
3.12.14-r0
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
python3.6@3.6.9-1~18.04ubuntu1.9
3.6.9-1~18.04ubuntu1.13+esm10
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/kubelauncher/cassandrab66aba320083
python3.14@3.14.4-1ubuntu0.1
3.14.4-1ubuntu0.2
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
python3.13@3.13.5-2
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
python3.8@3.8.10-0ubuntu1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7
1
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
python3@3.12.12-r0
3.12.14-r0
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
python3.11@3.11.2-6+deb12u3
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
ghcr.io/linuxserver/duplicati:latesta792931146b4
python3.12@3.12.3-1ubuntu0.16
3.12.3-1ubuntu0.17
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
python3@3.12.10-r0
3.12.14-r0
1
ghcr.io/linuxserver/syslog-ng:4.10.247fae7f540f9
python3@3.12.13-r0
3.12.14-r0
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
python3.9@3.9.21-2.el9
0:3.9.25-7.el9_8.2
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
python3.13@3.13.5-2
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
python3.12@3.12.3-1ubuntu0.5
3.12.3-1ubuntu0.17
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
python3.11@3.11.2-6+deb12u6
no fix listed
1
ghcr.io/microboxlabs/miot-calendar:latest-jvm7157cdc0bf5b
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
ghcr.io/microboxlabs/miot-srv:latest4ec11d229028
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
ghcr.io/microboxlabs/miot-srv:latest5796553b41ae
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
python3.12@3.12.3-1ubuntu0.3
3.12.3-1ubuntu0.17
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
python3.11@3.11.2-6+deb12u6
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
python3.11@3.11.2-6+deb12u7
no fix listed
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
python3.13@3.13.5-2+deb13u4
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
python3.11@3.11.2-6+deb12u6
no fix listed
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
python3.13@3.13.5-2+deb13u2
no fix listed
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
python3.11@3.11.2-6+deb12u2
no fix listed
1
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
python3.11@3.11.2-6+deb12u7
no fix listed
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
python3.11@3.11.2-6+deb12u7
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
python3.11@3.11.2-6+deb12u5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.