StackRadar

CVE-2026-15806

Medium

Advisory

Published 18 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.0
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
677
of 17,781 indexed, latest versions
Container images
653
deployed by those charts
Fix available
4 of 15
affected packages

`HTTPPasswordMgr` can send saved HTTPS credentials via HTTP because of incorrect scheme matching

Carried by container images the latest versions of 677 of 17,781 indexed charts deploy, on 653 images.

Affected packageAffected versionsFixed inImages
python3.11deb3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+6 moreno fix listed181
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 moreno fix listed100
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3, 3.12.3-1ubuntu0.4+11 moreno fix listed89
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+16 moreno fix listed80
python3.13deb3.13.5-2, 3.13.5-2+deb13u2, 3.13.5-2+deb13u4, 3.13.5-2+e303.13.5-2+e3374
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+12 moreno fix listed54
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 moreno fix listed44
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.9no fix listed25
python-3.13apk3.13.7-r0, 3.13.10-r0, 3.13.12-r2, 3.13.15-r1+2 more3.13.15-r510
python3.14deb3.14.4-1, 3.14.4-1ubuntu0.1, 3.14.4-1ubuntu0.2no fix listed9
python-3.14apk3.14.2-r2, 3.14.4-r2, 3.14.6-r0, 3.14.7-r1+1 more3.14.7-r58
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.7no fix listed7
python-3.12apk3.12.0-r1, 3.12.9-r1, 3.12.14-r23.12.14-r54
pythonbitnami3.11.11-0, 3.12.8-0, 3.13.5-1no fix listed3
python3rpm3.12.9-13.azl3no fix listed1
OSV records
BIT-python-2026-15806CGA-9pq2-qprm-mfcgCGA-hrrj-4837-fgpwCGA-mj45-mv3j-4p86DEBIAN-CVE-2026-15806UBUNTU-CVE-2026-15806AZL-96867ECHO-d825-d451-60e0
Also known as
BIT-libpython-2026-15806, BIT-python-min-2026-15806, CGA-mvjp-8w87-f499, CGA-rp5f-mfp4-rg9f, CGA-xcvc-j4jc-2pw3, PSF-2026-36

Charts affected

677 by stars
ChartLatestAffected imagesRadar Score
browserlessalekcVerified publisher1.2.71 of 1See more

browserless alekc 1.2.7

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
python3.12@3.12.3-1ubuntu0.17
no fix listed

Open the chart page →

2,078
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
python3.11@3.11.2-6+deb12u4
no fix listed

Open the chart page →

6,324
anchore-admission-controlleranchore-charts0.8.41 of 2See more

anchore-admission-controller anchore-charts 0.8.4

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
python3.11@3.11.2-6
no fix listed

Open the chart page →

7,852
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

5,817
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

7,239
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

3,991
games-on-whalesangelnu2.0.02 of 7See more

games-on-whales angelnu 2.0.0

2 of the 7 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
python3.10@3.10.12-1~22.04.11
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
python3.8@3.8.10-0ubuntu1~20.04
no fix listed

Open the chart page →

42,126
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
python3.13@3.13.5-2
no fix listed

Open the chart page →

5,558
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
python3.10@3.10.12-1~22.04.3
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
python3.10@3.10.6-1~22.04.2ubuntu1.1
no fix listed

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
python3.10@3.10.12-1~22.04.3
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
python3.10@3.10.6-1~22.04.2ubuntu1.1
no fix listed

Open the chart page →

16,975
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
python3.13@3.13.5-2
no fix listed

Open the chart page →

37,268
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
python@3.12.8-0
no fix listed

Open the chart page →

40,238
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
python3.8@3.8.10-0ubuntu1~20.04.6
no fix listed

Open the chart page →

23,353
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
python3.6@3.6.9-1~18.04ubuntu1.1
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
python3.8@3.8.10-0ubuntu1~20.04.8
no fix listed
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
python3.8@3.8.10-0ubuntu1~20.04.8
no fix listed

Open the chart page →

22,568
assemblylineassemblylineVerified publisher7.4.171 of 12See more

assemblyline assemblyline 7.4.17

1 of the 12 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
cccs/assemblyline-rust:4.7.4.stable17468326853ec5
python3.11@3.11.2-6+deb12u8
no fix listed

Open the chart page →

12,898
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
no fix listed
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
python2.7@2.7.12-1ubuntu0~16.04.4
python3.5@3.5.2-2ubuntu0~16.04.5
no fix listed
no fix listed

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
no fix listed
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
python2.7@2.7.12-1ubuntu0~16.04.4
python3.5@3.5.2-2ubuntu0~16.04.5
no fix listed
no fix listed

Open the chart page →

77,706
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
python3.10@3.10.12-1~22.04.3
no fix listed

Open the chart page →

18,277
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
python3.11@3.11.2-6
no fix listed
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
python3.11@3.11.2-6
no fix listed
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
python3.11@3.11.2-6
no fix listed

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
python3.8@3.8.10-0ubuntu1~20.04.7
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
python3.10@3.10.6-1~22.04.2ubuntu1
no fix listed
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
python3.11@3.11.2-6+deb12u3
no fix listed

Open the chart page →

32,501
bamboo-agentatlassian-data-centerVerified publisher2.0.151 of 1See more

bamboo-agent atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
atlassian/bamboo-agent-base:12.1.1151c2d7274eef
python3.12@3.12.3-1ubuntu0.16
no fix listed

Open the chart page →

1,581
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

1,170
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
python3.10@3.10.12-1~22.04.6
no fix listed

Open the chart page →

7,190
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
python3.12@3.12.3-1ubuntu0.8
no fix listed

Open the chart page →

5,059
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
python3.8@3.8.10-0ubuntu1~20.04.6
no fix listed

Open the chart page →

7,956
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
python2.7@2.7.17-1~18.04ubuntu1.6
python3.6@3.6.9-1~18.04ubuntu1.4
no fix listed
no fix listed

Open the chart page →

22,891
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

10,145
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
python3.11@3.11.2-6+deb12u6
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

26,996
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

6,220
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
python3.10@3.10.12-1~22.04.3
no fix listed
library/cassandra:3.11.65aa8400b4b3b
python2.7@2.7.17-1~18.04ubuntu1.1
no fix listed

Open the chart page →

19,229
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
python3.11@3.11.2-6+deb12u8
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
python3.12@3.12.3-1ubuntu0.5
no fix listed

Open the chart page →

14,352
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
python3.6@3.6.9-1~18.04ubuntu1.6
no fix listed

Open the chart page →

6,143
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

10,776
apachecamptocamp-apache0.4.01 of 2See more

apache camptocamp-apache 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
camptocamp/mapserver:latestbf2e8e118c9b
python3.12@3.12.3-1ubuntu0.16
no fix listed

Open the chart page →

1,431
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
python2.7@2.7.18-1~20.04.1
no fix listed

Open the chart page →

9,473
opencvecfi20170.1.21 of 7See more

opencve cfi2017 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
python3.11@3.11.2-6+deb12u4
no fix listed

Open the chart page →

15,371
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
python3.13@3.13.5-2
no fix listed

Open the chart page →

4,396
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
python3.13@3.13.5-2
no fix listed

Open the chart page →

7,405
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.31 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.31b53b0b3488e
python3.13@3.13.5-2+deb13u4
no fix listed

Open the chart page →

2,346
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
python2.7@2.7.17-1~18.04ubuntu1.11
python3.6@3.6.9-1~18.04ubuntu1.12
no fix listed
no fix listed

Open the chart page →

12,779
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
python3.4@3.4.3-1ubuntu1~14.04.7
no fix listed

Open the chart page →

30,140
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
python3.8@3.8.5-1~20.04
no fix listed

Open the chart page →

12,483
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

6,998
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
python3.10@3.10.12-1~22.04.7
no fix listed

Open the chart page →

4,810
kamaji-etcdclastixVerified publisher0.17.01 of 4See more

kamaji-etcd clastix 0.17.0

1 of the 4 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
python3.11@3.11.2-6
no fix listed

Open the chart page →

11,995
kube-acp-stackcloudentity2.28.01 of 7See more

kube-acp-stack cloudentity 2.28.0

1 of the 7 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
python3.10@3.10.12-1~22.04.9
no fix listed

Open the chart page →

20,900
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
python3.6@3.6.7-1~18.04
no fix listed

Open the chart page →

29,901
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
no fix listed
no fix listed

Open the chart page →

36,094
ethereumcloudnativeapp1.0.01 of 3See more

ethereum cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-15806.

Container imageDigestPackageFixed in
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
python2.7@2.7.12-1ubuntu0~16.04.2
no fix listed

Open the chart page →

27,417

Container images carrying it

653 by charts deploying them

A fixed version is listed for 4 of the 15 affected packages.

Container imageDigestPackageFixed inUsed by
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
python3.8@3.8.10-0ubuntu1~20.04.9
no fix listed
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
python3.10@3.10.4-3
no fix listed
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
python3.10@3.10.6-1~22.04.2ubuntu1
no fix listed
2
uffizzi/controller:latest0344805f267b
python3.11@3.11.2-6
no fix listed
2
vdiogov/glpi-conteiner:latest6945f84f0058
python3.11@3.11.2-6+deb12u2
no fix listed
2
wurstmeister/zookeeper:latest7a7fd44a7210
python2.7@2.7.6-8
python3.4@3.4.0-2ubuntu1
no fix listed
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
python3.12@3.12.3-1ubuntu0.17
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
python3.12@3.12.3-1ubuntu0.5
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
python2.7@2.7.18-13ubuntu1.1
python3.10@3.10.6-1~22.04
no fix listed
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
python3.8@3.8.10-0ubuntu1~20.04
no fix listed
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
python3.11@3.11.2-6+deb12u2
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
python2.7@2.7.17-1~18.04ubuntu1.2
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
python3.11@3.11.2-6+deb12u6
no fix listed
2
ghcr.io/xeor/karb:1.0.6:main647a3c938d31
python-3.14@3.14.6-r0
3.14.7-r5
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
python3.8@3.8.10-0ubuntu1~20.04.8
no fix listed
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
python3.11@3.11.2-6+deb12u7
no fix listed
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
python3.6@3.6.9-1~18.04ubuntu1
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
python3.13@3.13.5-2+deb13u2
no fix listed
1
aboogie/login_test_backend:new9c41a4483ac8
python3.11@3.11.2-6+deb12u2
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
python3.8@3.8.5-1~20.04
no fix listed
1
agentarea/agentarea-mcp-runner:latestd3c209a5d531
python3.11@3.11.2-6+deb12u8
no fix listed
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
python3.8@3.8.5-1~20.04.3
no fix listed
1
akeyless/base:latest759e4289fae8
python3.12@3.12.3-1ubuntu0.13
no fix listed
1
akeyless/gateway:5.3.13d2e7dce5eb9
python3.12@3.12.3-1ubuntu0.16
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
python3.11@3.11.2-6+deb12u4
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
python3.6@3.6.9-1~18.04ubuntu1.7
no fix listed
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
python3.12@3.12.3-1ubuntu0.15
no fix listed
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
python3.10@3.10.12-1~22.04.2
no fix listed
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
python3.10@3.10.12-1~22.04.11
no fix listed
1
antiantiops/vscode-browser-docker:1.137.0eeff80a99d92
python3.12@3.12.3-1ubuntu0.16
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
python3.12@3.12.3-1ubuntu0.15
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
python3.11@3.11.2-6+deb12u6
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
python3.11@3.11.2-6
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
python3.11@3.11.2-6+deb12u3
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
python3.11@3.11.2-6
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
python3.10@3.10.12-1~22.04.15
no fix listed
1
apache/hertzbeat:1.8.075d48a62748f
python3.12@3.12.3-1ubuntu0.11
no fix listed
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
python3.12@3.12.3-1ubuntu0.11
no fix listed
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
python3.10@3.10.12-1~22.04.2
no fix listed
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
python3.10@3.10.12-1~22.04.6
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
python3.8@3.8.10-0ubuntu1~20.04.1
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
python3.10@3.10.12-1~22.04.10
no fix listed
1
apache/tika:latest-full80072bb73dd3
python3.14@3.14.4-1ubuntu0.1
no fix listed
1
archivebox/archivebox:0.7.41a5a37331091
python3.11@3.11.2-6+deb12u7
no fix listed
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
python3.11@3.11.2-6
no fix listed
1
arunvelsriram/utils:latest655ad18fd8d6
python3.12@3.12.3-1ubuntu0.7
no fix listed
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
python2.7@2.7.18-1~20.04.3
no fix listed
1
assistiot/open_api_backend:1.1.230812ba93555
python3.10@3.10.12-1~22.04.3
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.