StackRadar

CVE-2026-1703

Low

Advisory

Published 2 Feb 2026In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.0
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,241
of 17,787 indexed, latest versions
Container images
1,190
deployed by those charts
Fix available
1 of 2
affected packages

pip Path Traversal vulnerability

Carried by container images the latest versions of 1,241 of 17,787 indexed charts deploy, on 1,190 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+63 more26.01,183
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+25 moreno fix listed141
OSV records
DEBIAN-CVE-2026-1703GHSA-6vgw-5pg2-w6jpUBUNTU-CVE-2026-1703
Also known as
PYSEC-2026-1796

Charts affected

1,241 by stars
ChartLatestAffected imagesRadar Score
flaresolverrkubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

flaresolverr kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
pip@25.2
26.0

Open the chart page →

33,591
ghostkubernetes-homelab-helm-chartsVerified publisher0.1.21 of 2See more

ghost kubernetes-homelab-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:8b3b90af2a655
pip@25.3
26.0

Open the chart page →

2,757
pve-exporterkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 1See more

pve-exporter kubernetes-homelab-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
prompve/prometheus-pve-exporter:3.8.2e3d501a82df5
pip@25.0.1
26.0

Open the chart page →

994
pypiserverkubernetes-replicator0.0.11 of 1See more

pypiserver kubernetes-replicator 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
pypiserver/pypiserver:v1.4.2c9250d3c418d
pip@20.2.3
26.0

Open the chart page →

1,614
whatsappkubernetes-whatsappVerified publisher0.1.81 of 4See more

whatsapp kubernetes-whatsapp 0.1.8

1 of the 4 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/python:3.8-alpine3d93b1f77efc
pip@23.0.1
26.0

Open the chart page →

1,573
gitlabkubesphereVerified publisher4.2.33 of 17See more

gitlab kubesphere 4.2.3

3 of the 17 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
mirrorgitlabcontainers/gitlab-sidekiq-ce:v13.2.294d1431683fa
pip@20.1.1
26.0
mirrorgitlabcontainers/gitlab-task-runner-ce:v13.2.29efd73993c34
pip@20.1.1
26.0
mirrorgitlabcontainers/gitlab-webservice-ce:v13.2.230393f990f5c
pip@20.1.1
26.0

Open the chart page →

38,135
deepflowkubesphere-stable6.2.6061 of 8See more

deepflow kubesphere-stable 6.2.606

1 of the 8 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
deepflowce/deepflow-app:v6.2.6.5a1888d35e787
pip@22.0.4
26.0

Open the chart page →

18,394
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
pip@20.0.2
python-pip@20.0.2-5ubuntu1.5
26.0
no fix listed

Open the chart page →

14,368
online-boutiquekubesphere-testVerified publisher0.1.02 of 11See more

online-boutique kubesphere-test 0.1.0

2 of the 11 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/loadgenerator:v0.2.3360130ab5850
pip@21.0.1
26.0
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
pip@21.0.1
26.0

Open the chart page →

26,019
sample-bookinfokubesphere-testVerified publisher1.0.01 of 4See more

sample-bookinfo kubesphere-test 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
kubesphere/examples-bookinfo-productpage-v1:1.13.0378f49ec9c44
pip@19.1.1
26.0

Open the chart page →

9,384
kubestellar-consolekubestellar-consoleVerified publisher0.3.411 of 2See more

kubestellar-console kubestellar-console 0.3.41

1 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
alpine/k8s:1.32.47e1e7d5b7a96
pip@25.1
26.0

Open the chart page →

4,440
kubevoipkubevoipOfficialVerified publisher0.6.81 of 1See more

kubevoip kubevoip 0.6.8

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
pip@25.0.1
26.0

Open the chart page →

1,087
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.0

Open the chart page →

8,634
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.42 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

2 of the 9 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
pip@24.0
26.0
ghcr.io/kubiyabot/sdk-py:v1.20.0f108f49570cc
pip@23.1.2
26.0

Open the chart page →

20,299
kusionkusionstackVerified publisher0.14.12 of 3See more

kusion kusionstack 0.14.1

2 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.5
26.0
no fix listed
library/mysql:8.07dcddc01f13b
pip@25.3
26.0

Open the chart page →

6,879
kvkkvkservice0.1.01 of 4See more

kvk kvkservice 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
conduction/kvk-varnish:dev8722700f1768
pip@9.0.1
26.0

Open the chart page →

8,534
kyso-nbdimekyso1.0.01 of 1See more

kyso-nbdime kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
kyso/kyso-nbdime:latest4aa9d38ee81d
pip@22.3.1
26.0

Open the chart page →

2,765
large-systems-djangolarge-systems-djangoVerified publisher1.0.01 of 1See more

large-systems-django large-systems-django 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ha33ona/python:test6affdfc644d0
pip@21.2.4
26.0

Open the chart page →

3,891
pageslatif-pages1.0.01 of 3See more

pages latif-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.0

Open the chart page →

20,233
pageslavanya-pages1.0.01 of 3See more

pages lavanya-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.0

Open the chart page →

20,233
homebridgelbenicio-communityVerified publisher0.1.151 of 1See more

homebridge lbenicio-community 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.0
no fix listed

Open the chart page →

2,203
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
pip@20.2.2
26.0

Open the chart page →

4,434
legendlegend0.1.21 of 1See more

legend legend 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/grofers/legend:0.1d6e901ad0ebd
pip@20.2.4
26.0

Open the chart page →

4,067
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
pip@23.2.1
26.0

Open the chart page →

3,448
delugelib42Verified publisher1.3.01 of 1See more

deluge lib42 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lib42/deluge:20c4d1d326f95
pip@22.3.1
26.0

Open the chart page →

898
librenmslibrenms10.1.11 of 5See more

librenms librenms 10.1.1

1 of the 5 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
pip@25.3
26.0

Open the chart page →

3,139
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
pip@24.3.1
26.0
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
pip@24.3.1
26.0

Open the chart page →

5,130
delugelinkding0.2.31 of 1See more

deluge linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
linuxserver/deluge:libtorrentv1-2.2.0-ls40052eac68ccc0
pip@25.1.1
26.0

Open the chart page →

1,432
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
pip@25.1.1
26.0

Open the chart page →

37,518
calendar-apiliturgical0.1.51 of 1See more

calendar-api liturgical 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
pip@25.0.1
26.0

Open the chart page →

1,557
liturgical-apiliturgical0.2.111 of 1See more

liturgical-api liturgical 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-api:1.0.12637bdcebdd8d
pip@25.0.1
26.0

Open the chart page →

1,004
liturgical-appliturgical0.9.01 of 1See more

liturgical-app liturgical 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
pip@25.0.1
26.0

Open the chart page →

953
pagesliviu884422-pages1.0.01 of 3See more

pages liviu884422-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.0

Open the chart page →

20,233
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
pip@25.0.1
26.0

Open the chart page →

12,034
lnbitslnbits0.2.11 of 1See more

lnbits lnbits 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
pip@23.0.1
26.0

Open the chart page →

1,949
local-businesslocal-business0.1.01 of 1See more

local-business local-business 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
alakaganaguathoork/local-business:latest7eb27b0f4a5a
pip@25.0.1
26.0

Open the chart page →

947
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-weather-flask:latest96bce8b8b5a7
pip@23.0.1
26.0

Open the chart page →

5,905
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
pip@24.0
26.0

Open the chart page →

7,516
nightingalelogic3579Verified publisher0.3.12 of 6See more

nightingale logic3579 0.3.1

2 of the 6 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
flashcatcloud/nightingale:8.5.1421acb36181b
pip@25.3
26.0
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.0

Open the chart page →

9,021
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
logiqai/toolbox:2.0.155a574ec5b64
pip@18.1
26.0

Open the chart page →

23,255
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
pip@25.2
26.0

Open the chart page →

5,032
alert-stream-schema-registrylsst-sqre2.1.01 of 1See more

alert-stream-schema-registry lsst-sqre 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstdm/lsst_alert_packet:tickets-DM-3274374c97a490940
pip@21.2.4
26.0

Open the chart page →

2,293
alert-stream-simulatorlsst-sqre1.6.21 of 1See more

alert-stream-simulator lsst-sqre 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstdm/alert-stream-simulator:v1.2.1973df082d006
pip@21.2.4
26.0

Open the chart page →

2,089
exposureloglsst-sqre0.2.11 of 1See more

exposurelog lsst-sqre 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/exposurelog:0.8.079b00fb67a65
pip@22.0.3
26.0

Open the chart page →

2,078
kafka-aggregatorlsst-sqre0.1.21 of 1See more

kafka-aggregator lsst-sqre 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/kafkaaggregator:masterbe1b21060854
pip@21.0.1
26.0

Open the chart page →

3,052
narrativeloglsst-sqre0.1.01 of 1See more

narrativelog lsst-sqre 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/narrativelog:0.1.0ce01de04ce21
pip@22.0.3
26.0

Open the chart page →

1,638
nubladolsst-sqre0.9.233 of 5See more

nublado lsst-sqre 0.9.23

3 of the 5 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/prepuller:latest19c2dfc4e4ff
pip@21.0.1
26.0
lsstsqre/sciplat-hub:latest5e0ade6bed1c
pip@21.0.1
26.0
lsstsqre/wfdispatcher:lateste9feb99f524d
pip@21.0.1
26.0

Open the chart page →

5,787
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.0
no fix listed

Open the chart page →

17,836
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/kafkaconnect:0.9.34143c7cd705e
pip@21.3.1
26.0
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
pip@21.2.4
26.0

Open the chart page →

9,332
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2026-1703.

Container imageDigestPackageFixed in
lsstsqre/squash-api:0.5.34879415ec6ac
pip@20.3.2
26.0

Open the chart page →

6,623

Container images carrying it

1,190 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
pip@23.0.1
26.0
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
pip@23.0.1
26.0
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
pip@23.0.1
26.0
1
clsen2024/daejeon_2-3:latest1156cd87c8fb
pip@23.0.1
26.0
1
clsen2024/gwangju_2-3:service-b-10ba9eff852c5
pip@23.0.1
26.0
1
clsen2024/gwangju_2-3:service-a-151b1d45961cd
pip@23.0.1
26.0
1
clsen2024/gwangju_2-3:service-c-1efb1586c8299
pip@23.0.1
26.0
1
cockroachdb/cockroach-operator:v2.1.0983312754620
pip@9.0.3
26.0
1
codaprotocol/buildkite-exporter:0.2.137c68e67a401
pip@21.0
26.0
1
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
pip@20.0.2
26.0
1
codecov/self-hosted-api:24.4.10475cb1c3136
pip@22.0.4
26.0
1
codecov/self-hosted-worker:24.4.1837f546b479b
pip@23.0.1
26.0
1
codekoala/pypi:1.2.14a999b2cfff2
pip@9.0.1
26.0
1
coderenvs/coder-service:1.44.61deffc4670e6
pip@9.0.3
26.0
1
coderenvs/timescale:1.44.676fd37fe6830
pip@9.0.3
26.0
1
conduction/balance-registration-varnish:dev07c44005da9d
pip@9.0.1
26.0
1
conduction/cgrc-varnish:deve154d5781c8a
pip@9.0.1
26.0
1
conduction/checkin-component-varnish:devef3a3fb0ad47
pip@9.0.1
26.0
1
conduction/conduction-ui-varnish:dev5f5add2c12e0
pip@9.0.1
26.0
1
conduction/contactmoment-component-varnish:deve3546b97faea
pip@9.0.1
26.0
1
conduction/docparser-varnish:dev45f20c4cd2fa
pip@9.0.1
26.0
1
conduction/kvk-varnish:dev8722700f1768
pip@9.0.1
26.0
1
conduction/pan-varnish:devc3e5737ae68f
pip@9.0.1
26.0
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
pip@9.0.3
26.0
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
pip@9.0.3
26.0
1
confluentinc/cp-kafka:5.4.01bbda887bc53
pip@8.1.2
26.0
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
pip@21.3.1
26.0
1
confluentinc/cp-kafka:7.6.683dbca3efd2a
pip@20.2.4
26.0
1
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
pip@9.0.3
26.0
1
confluentinc/cp-kafka:7.4.4c0224a1adf7a
pip@9.0.3
26.0
1
confluentinc/cp-kafka:5.0.1c87b1c07fb53
pip@8.1.2
26.0
1
confluentinc/cp-kafka:7.5.1dc9b972db002
pip@20.2.4
26.0
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
pip@9.0.3
26.0
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
pip@9.0.3
26.0
1
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
pip@20.2.4
26.0
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
pip@9.0.3
26.0
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
pip@9.0.3
26.0
1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
pip@20.2.4
26.0
1
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
pip@20.2.4
26.0
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
pip@9.0.3
26.0
1
countly/api:25.05.4f4cc7447c4f5
pip@21.1.1
26.0
1
countly/frontend:25.05.42acbc11499b6
pip@21.1.1
26.0
1
cr0hn/ja-shortener:v0.1.414482d0bc4a1
pip@24.0
26.0
1
craigwillis/c2metadata-bd:latestae317d7e4724
pip@20.1.1
26.0
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
pip@22.3.1
26.0
1
cspconsole/report-collector:1.0.15839750248193b
pip@24.0
26.0
1
dagster/dagster-celery-k8s:1.13.22e29a64392e12
pip@23.0.1
26.0
1
dagster/dagster-cloud-agent:1.13.229674f3b94a3b
pip@25.0.1
26.0
1
dalibo/explain.dalibo.com:2.20.12a0b749c2f7f
pip@25.3
26.0
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
pip@25.2
26.0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.