StackRadar

CVE-2026-15308

High

Advisory

Published 9 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.006
49th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
870
of 17,787 indexed, latest versions
Container images
901
deployed by those charts
Fix available
17 of 18
affected packages

Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations

Carried by container images the latest versions of 870 of 17,787 indexed charts deploy, on 901 images.

Affected packageAffected versionsFixed inImages
python-3.14apk3.14.2-r2, 3.14.4-r2, 3.14.6-r03.14.6-r46
pythonbitnami3.11.11-0, 3.12.8-0, 3.13.5-13.10.213
python-3.13apk3.13.7-r0, 3.13.10-r0, 3.13.12-r23.13.14-r33
python-3.12apk3.12.0-r1, 3.12.9-r13.12.14-r22
python3.11deb3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+6 more3.11.0~rc1-1~22.04.1+esm2181
python3rpm3.6.8-15.1.el8, 3.6.8-23.el8, 3.6.8-24.el8_2, 3.6.8-24.el8_2.2+28 more0:3.6.8-77.el8_10, 0:3.6.8-77.el8_10.rocky.0, 3.12.14-1137
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 more3.8.10-0ubuntu1~20.04.18+esm7100
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3+11 more3.12.3-1ubuntu0.1786
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+16 more3.10.12-1~22.04.1880
python3apk3.11.12-r1, 3.12.8-r1, 3.12.9-r0, 3.12.10-r0+7 more3.12.14-r0, 3.14.7-r075
python3.13deb3.13.5-2, 3.13.5-2+deb13u2, 3.13.5-2+deb13u4, 3.13.5-2+deb13u5no fix listed75
python3.9rpm3.9.16-1.el9, 3.9.16-1.el9_2.1, 3.9.16-1.el9_2.2, 3.9.18-1.el9_3.1+15 more0:3.9.25-7.el9_8.255
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 more3.6.9-1~18.04ubuntu1.13+esm1044
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+9 more2.7.6-8ubuntu0.6+esm30, 2.7.12-1ubuntu0~16.04.18+esm22, 2.7.17-1~18.04ubuntu1.13+esm15, 2.7.18-13ubuntu1.5+esm943
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.93.5.2-2ubuntu0~16.04.13+esm2525
python3.14deb3.14.4-1, 3.14.4-1ubuntu0.13.14.4-1ubuntu0.28
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.73.4.3-1ubuntu1~14.04.7+esm217
python3.12rpm3.12.5-2.el9_5.20:3.12.13-3.el9_8.11
OSV records
ALPINE-CVE-2026-15308BIT-python-2026-15308CGA-2v5h-4pjx-m2vpCGA-7fq5-cfqp-92mfCGA-8wxj-3m53-wmwrDEBIAN-CVE-2026-15308RHSA-2026:39320RHSA-2026:39771RHSA-2026:39798RLSA-2026:39320RLSA-2026:39798UBUNTU-CVE-2026-15308AZL-92271
Also known as
BIT-libpython-2026-15308, BIT-python-min-2026-15308, CGA-qq9v-hh37-fr79, CGA-vh53-c7h5-695j, CGA-xm2p-hf9g-qw3m, PSF-2026-33, RHSA-2026:50064, RHSA-2026:50065, RHSA-2026:50816, USN-8744-1

Charts affected

870 by stars
ChartLatestAffected imagesRadar Score
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
python3.13@3.13.5-2+deb13u2
no fix listed

Open the chart page →

7,075
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

31,949
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
gpappsoft/privacyidea-docker:3.12.2af7841adad26
python-3.13@3.13.10-r0
3.13.14-r3

Open the chart page →

5,483
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

8,203
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17

Open the chart page →

24,038
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
python3.12@3.12.3-1ubuntu0.5
3.12.3-1ubuntu0.17

Open the chart page →

2,809
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.18

Open the chart page →

7,466
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

4,252
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
python3.10@3.10.12-1~22.04.9
3.10.12-1~22.04.18

Open the chart page →

7,487
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
python3.9@3.9.16-1.el9_2.2
0:3.9.25-7.el9_8.2

Open the chart page →

9,885
mac-ouirm3lVerified publisher1.25.01 of 1See more

mac-oui rm3l 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
rm3l/mac-oui:1.8.03a5e1f95c132
python3@3.6.8-56.el8_9.3
0:3.6.8-77.el8_10

Open the chart page →

1,975
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

5,508
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

7,767
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg16d7db8f1085a3
python3.10@3.10.12-1~22.04.17
3.10.12-1~22.04.18

Open the chart page →

13,028
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
python3.6@3.6.9-1~18.04ubuntu1.4
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.102 of 9See more

kyoo rubxkube 0.1.10

2 of the 9 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
python3.11@3.11.2-6+deb12u4
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
python3.11@3.11.2-6+deb12u4
no fix listed

Open the chart page →

30,310
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

38,115
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
python3@3.12.11-r0
3.12.14-r0

Open the chart page →

5,214
sentry-k8ssentry-k8sVerified publisher1.4.12 of 11See more

sentry-k8s sentry-k8s 1.4.1

2 of the 11 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
python3@3.6.8-69.el8_10
0:3.6.8-77.el8_10
ghcr.io/getsentry/snuba:26.7.210f8d164109b
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

16,194
vuiseriohub1.0.61 of 3See more

vui seriohub 1.0.6

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

11,545
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

6,864
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

46,028
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
python3.13@3.13.5-2
no fix listed

Open the chart page →

7,157
splunk-operatorstakaterVerified publisher0.0.61 of 2See more

splunk-operator stakater 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
splunk/splunk-operator:2.0.0c4e0d3146226
python3@3.6.8-45.el8
0:3.6.8-77.el8_10

Open the chart page →

11,459
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
python3.8@3.8.5-1~20.04.3
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

24,984
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
python3.12@3.12.3-1ubuntu0.13
3.12.3-1ubuntu0.17

Open the chart page →

2,874
strimzi-drain-cleanerstrimzi1.6.11 of 1See more

strimzi-drain-cleaner strimzi 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
python3.9@3.9.25-7.el9_8
0:3.9.25-7.el9_8.2

Open the chart page →

520
strimzi-drain-cleanerstrimzi-drain-cleaner1.6.11 of 1See more

strimzi-drain-cleaner strimzi-drain-cleaner 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
python3.9@3.9.25-7.el9_8
0:3.9.25-7.el9_8.2

Open the chart page →

520
supabasesupabse0.8.03 of 11See more

supabase supabse 0.8.0

3 of the 11 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
supabase/realtime:v2.102.3aa1c92c0cf32
python3.11@3.11.2-6+deb12u7
no fix listed
supabase/storage-api:v1.60.4c8eb9858eafe
python3@3.12.13-r0
3.12.14-r0
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
python3.11@3.11.2-6+deb12u8
no fix listed

Open the chart page →

18,213
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

12,137
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

4,022
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
python3.12@3.12.3-1ubuntu0.10
3.12.3-1ubuntu0.17

Open the chart page →

4,058
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

26,843
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
opennode/waldur-mastermind:8.1.24c82b15d9042
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

4,870
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
python2.7@2.7.6-8
python3.4@3.4.0-2ubuntu1
2.7.6-8ubuntu0.6+esm30
3.4.3-1ubuntu1~14.04.7+esm21

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
python3.8@3.8.10-0ubuntu1~20.04.18
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

7,883
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
python3.13@3.13.5-2+deb13u2
no fix listed

Open the chart page →

8,139
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
python3@3.12.12-r0
3.12.14-r0

Open the chart page →

1,698
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
python3.10@3.10.6-1~22.04.2ubuntu1
3.10.12-1~22.04.18

Open the chart page →

9,832
qleverzazukoVerified publisher0.7.01 of 2See more

qlever zazuko 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17

Open the chart page →

2,947
zcash-stackzcashVerified publisher0.4.51 of 2See more

zcash-stack zcash 0.4.5

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
electriccoinco/lightwalletd:v0.5.42ae3a551e111
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

2,866
plausible-analyticszekker6Verified publisher1.4.01 of 2See more

plausible-analytics zekker6 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
python3@3.12.13-r0
3.12.14-r0

Open the chart page →

1,170
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
python3.6@3.6.9-1~18.04ubuntu1
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

12,022
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
python3@3.6.8-41.el8
0:3.6.8-77.el8_10

Open the chart page →

7,713
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
python3.8@3.8.5-1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

25,507
gotenbergadnoctemVerified publisher0.5.01 of 1See more

gotenberg adnoctem 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.37.0f29984bd1e22
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

5,491
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

29,687
graphserviceaerospike-helmVerified publisher3.3.01 of 1See more

graphservice aerospike-helm 3.3.0

1 of the 1 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
aerospike/aerospike-graph-service:3.3.0f35739b97a46
python3@3.14.5-r0
3.14.7-r0

Open the chart page →

453
akeyless-gatewayakeyless-services-helmVerified publisher3.5.31 of 2See more

akeyless-gateway akeyless-services-helm 3.5.3

1 of the 2 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
akeyless/gateway:5.3.13d2e7dce5eb9
python3.12@3.12.3-1ubuntu0.16
3.12.3-1ubuntu0.17

Open the chart page →

1,569
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-15308.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10

Open the chart page →

13,689

Container images carrying it

901 by charts deploying them

A fixed version is listed for 17 of the 18 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
python3.9@3.9.18-3.el9_4.5
0:3.9.25-7.el9_8.2
1
quay.io/galexrt/dellhw_exporter:v2.0.0b3a5806d73b5
python3.9@3.9.25-3.el9_7.1
0:3.9.25-7.el9_8.2
1
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
python3@3.6.8-23.el8
0:3.6.8-77.el8_10
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
python3@3.6.8-37.el8
0:3.6.8-77.el8_10
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
python3@3.6.8-48.el8_7
0:3.6.8-77.el8_10
1
quay.io/maximilianopizarro/neuralbank-backend:latesta53899fcfc01
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
python3.9@3.9.23-2.el9
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
python3.9@3.9.25-7.el9_8
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
python3.9@3.9.25-7.el9_8
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
python3.9@3.9.25-2.el9_7
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
python3.9@3.9.25-2.el9_7
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
python3@3.6.8-74.el8_10
0:3.6.8-77.el8_10
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
python3.9@3.9.21-1.el9_5
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
python3.9@3.9.21-1.el9_5
0:3.9.25-7.el9_8.2
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
python3@3.6.8-41.el8
0:3.6.8-77.el8_10
1
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
python3.9@3.9.25-3.el9_7
0:3.9.25-7.el9_8.2
1
quay.io/openshift/origin-cli:4.66722d5041b47
python3@3.6.8-24.el8_2
0:3.6.8-77.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
python3@3.6.8-24.el8_2.2
0:3.6.8-77.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
python3@3.6.8-47.el8_6.4
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
python3.12@3.12.3-1ubuntu0.9
3.12.3-1ubuntu0.17
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
python3@3.6.8-71.el8_10
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
python3@3.6.8-71.el8_10
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
python3@3.6.8-71.el8_10
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
python3@3.6.8-38.el8_4
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
python3@3.6.8-71.el8_10
0:3.6.8-77.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
python3@3.6.8-71.el8_10
0:3.6.8-77.el8_10
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
python-3.14@3.14.2-r2
3.14.6-r4
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
python-3.14@3.14.2-r2
3.14.6-r4
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
python-3.14@3.14.2-r2
3.14.6-r4
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
python-3.14@3.14.2-r2
3.14.6-r4
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
python3.9@3.9.18-3.el9
0:3.9.25-7.el9_8.2
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
python3.9@3.9.16-1.el9_2.1
0:3.9.25-7.el9_8.2
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
python3@3.6.8-37.el8
0:3.6.8-77.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
python3@3.6.8-67.el8_10
0:3.6.8-77.el8_10
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
python3.9@3.9.19-8.el9_5.1
0:3.9.25-7.el9_8.2
1
quay.io/strimzi/operator:0.45.158c727cd2e68
python3.9@3.9.21-2.el9_6.2
0:3.9.25-7.el9_8.2
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
python3@3.6.8-51.el8_8.1
0:3.6.8-77.el8_10
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
python3@3.6.8-48.el8_7.1
0:3.6.8-77.el8_10
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
python3.11@3.11.2-6
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
python3.12@3.12.3-1ubuntu0.15
3.12.3-1ubuntu0.17
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
python3.11@3.11.2-6+deb12u7
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
python3@3.6.8-37.el8
0:3.6.8-77.el8_10
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
python3.8@3.8.5-1~20.04.2
3.8.10-0ubuntu1~20.04.18+esm7
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
python3.9@3.9.25-3.el9_7.2
0:3.9.25-7.el9_8.2
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
python3@3.12.13-r0
3.12.14-r0
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
python3.11@3.11.2-6+deb12u7
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.