StackRadar

CVE-2026-21441

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
836
of 17,787 indexed, latest versions
Container images
893
deployed by those charts
Fix available
5 of 5
affected packages

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

Carried by container images the latest versions of 836 of 17,787 indexed charts deploy, on 893 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
urllib3pypi1.22, 1.23, 1.24, 1.24.1+47 more2.6.3864
python-pipdeb9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1, 9.0.1-2.3~ubuntu1.18.04.2, 9.0.1-2.3~ubuntu1.18.04.4+14 more9.0.1-2.3~ubuntu1.18.04.8+esm860
python-urllib3deb1.22-1ubuntu0.18.04.1, 1.22-1ubuntu0.18.04.2, 1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2+8 more1.25.8-2ubuntu0.4+esm3, 1.26.5-1~exp1+deb11u3, 1.26.5-1~exp1ubuntu0.5, 1.26.12-1+deb12u3+1 more52
py3-urllib3apk1.26.18-r1, 1.26.20-r01.26.18-r2, 1.26.20-r14
OSV records
ALPINE-CVE-2026-21441CGA-295m-5rcj-2qm6CGA-7cp6-w84v-cpfxDEBIAN-CVE-2026-21441GHSA-38jv-5279-wg99UBUNTU-CVE-2026-21441DLA-4446-1
Also known as
CGA-hqjr-j69p-ch46, CGA-rh7x-c7j6-9qqm, DSA-6102-2, PYSEC-2026-1996, USN-7955-1, USN-7955-2, USN-8010-1

Charts affected

836 by stars
ChartLatestAffected imagesRadar Score
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
urllib3@2.0.4
2.6.3

Open the chart page →

3,448
neuvectorlifen-chartsVerified publisher1.5.21 of 3See more

neuvector lifen-charts 1.5.2

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
neuvector/manager:3.2.1f1b7d666eae0
urllib3@1.25.3
2.6.3

Open the chart page →

2,747
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
urllib3@2.3.0
2.6.3
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
urllib3@2.3.0
2.6.3

Open the chart page →

5,130
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
urllib3@2.5.0
2.6.3

Open the chart page →

37,518
calendar-apiliturgical0.1.51 of 1See more

calendar-api liturgical 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
urllib3@2.5.0
2.6.3

Open the chart page →

1,557
liturgical-appliturgical0.9.01 of 1See more

liturgical-app liturgical 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
urllib3@2.5.0
2.6.3

Open the chart page →

953
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
urllib3@2.5.0
2.6.3

Open the chart page →

12,034
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
urllib3@1.26.5
2.6.3

Open the chart page →

2,524
lnbitslnbits0.2.11 of 1See more

lnbits lnbits 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
urllib3@1.26.14
2.6.3

Open the chart page →

1,949
local-businesslocal-business0.1.01 of 1See more

local-business local-business 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alakaganaguathoork/local-business:latest7eb27b0f4a5a
urllib3@2.5.0
2.6.3

Open the chart page →

947
weather-app-chartlocal-weatherapp0.1.01 of 4See more

weather-app-chart local-weatherapp 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
youssef11gaber10/deployment-weather-flask:latest96bce8b8b5a7
urllib3@1.26.20
2.6.3

Open the chart page →

5,905
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
urllib3@2.2.1
2.6.3

Open the chart page →

7,516
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
urllib3@1.26.12
2.6.3

Open the chart page →

32,893
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
logiqai/toolbox:2.0.155a574ec5b64
urllib3@1.25.8
2.6.3

Open the chart page →

23,255
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
urllib3@2.3.0
2.6.3

Open the chart page →

5,032
alert-stream-schema-registrylsst-sqre2.1.01 of 1See more

alert-stream-schema-registry lsst-sqre 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lsstdm/lsst_alert_packet:tickets-DM-3274374c97a490940
urllib3@1.26.7
2.6.3

Open the chart page →

2,293
nubladolsst-sqre0.9.233 of 5See more

nublado lsst-sqre 0.9.23

3 of the 5 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lsstsqre/prepuller:latest19c2dfc4e4ff
urllib3@1.26.4
2.6.3
lsstsqre/sciplat-hub:latest5e0ade6bed1c
urllib3@1.26.4
2.6.3
lsstsqre/wfdispatcher:lateste9feb99f524d
urllib3@1.26.4
2.6.3

Open the chart page →

5,787
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
urllib3@1.26.8
2.6.3

Open the chart page →

17,836
sasquatchlsst-sqre0.1.132 of 6See more

sasquatch lsst-sqre 0.1.13

2 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lsstsqre/kafkaconnect:0.9.34143c7cd705e
urllib3@1.26.7
2.6.3
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
urllib3@1.26.8
2.6.3

Open the chart page →

9,332
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
lsstsqre/squash-api:0.5.34879415ec6ac
urllib3@1.26.2
2.6.3

Open the chart page →

6,623
kube-hunterm9sweeperVerified publisher1.6.01 of 1See more

kube-hunter m9sweeper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
aquasec/kube-hunter:0.6.8e64fe49f059f
urllib3@1.26.9
2.6.3

Open the chart page →

997
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
urllib3@2.0.3
2.6.3

Open the chart page →

6,722
marge-botmarge-bot1.1.01 of 1See more

marge-bot marge-bot 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
smarketshq/marge-bot:0.9.2cfc765b27e64
urllib3@1.24.3
2.6.3

Open the chart page →

337
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
urllib3@2.1.0
2.6.3

Open the chart page →

3,541
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
urllib3@2.3.0
2.6.3

Open the chart page →

21,178
cleanuparrmedia-servarrVerified publisher0.18.01 of 1See more

cleanuparr media-servarr 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.5c7cd53ad559a
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed

Open the chart page →

1,837
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
urllib3@2.3.0
2.6.3

Open the chart page →

5,849
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
urllib3@1.26.0
2.6.3

Open the chart page →

68,330
kube-prometheus-stackmesosphere-stable75.9.11 of 7See more

kube-prometheus-stack mesosphere-stable 75.9.1

1 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.30.349dcce269568
urllib3@2.3.0
2.6.3

Open the chart page →

9,543
pritunlmglants0.1.01 of 1See more

pritunl mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
goofball222/pritunl:1.30.3070.5943c0743701d4
urllib3@1.26.7
2.6.3

Open the chart page →

1,902
middleware-odigosmiddleware-labsVerified publisher0.2.411 of 6See more

middleware-odigos middleware-labs 0.2.41

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
urllib3@1.26.14
2.6.3

Open the chart page →

8,370
middleware-visionmiddleware-labsVerified publisher0.2.651 of 6See more

middleware-vision middleware-labs 0.2.65

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
urllib3@1.26.15
2.6.3

Open the chart page →

8,361
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
python-pip@9.0.1-2.3~ubuntu1.18.04.5
urllib3@1.25.11
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3

Open the chart page →

12,862
errbotmidokura-communityVerified publisher0.0.51 of 1See more

errbot midokura-community 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
errbotio/errbot:6.1.900ee4e0953ab
urllib3@1.26.9
2.6.3

Open the chart page →

2,233
fossologymidokura-communityVerified publisher0.2.21 of 2See more

fossology midokura-community 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
fossology/fossology:4.2.18bd1f22ba7bb
urllib3@1.26.12
2.6.3

Open the chart page →

3,294
saltmidokura-communityVerified publisher0.0.31 of 1See more

salt midokura-community 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
saltstack/salt:3006.3e9c7906b7a5c
urllib3@1.26.6
2.6.3

Open the chart page →

896
buildkite-exporterminaVerified publisher0.1.41 of 1See more

buildkite-exporter mina 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
codaprotocol/buildkite-exporter:0.2.137c68e67a401
urllib3@1.26.3
2.6.3

Open the chart page →

2,599
o1-botminaVerified publisher0.0.31 of 1See more

o1-bot mina 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
urllib3@1.25.9
2.6.3

Open the chart page →

2,656
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
urllib3@1.26.2
2.6.3
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
urllib3@1.26.12
2.6.3

Open the chart page →

42,983
mlflow-servermlflow-server0.3.01 of 1See more

mlflow-server mlflow-server 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
urllib3@1.26.16
2.6.3

Open the chart page →

3,158
pritunl-vpnmoinologics0.0.11 of 1See more

pritunl-vpn moinologics 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
goofball222/pritunl:1.32.3602.807bf26032dfce
urllib3@1.26.14
2.6.3

Open the chart page →

2,470
mlflowmondata-helm-chartsVerified publisher0.2.31 of 1See more

mlflow mondata-helm-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
mondata/mlflow:v2.3.0.s3.gc6f94c6caf8bf
urllib3@1.26.15
2.6.3

Open the chart page →

3,811
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
moreillon/face-recognition-fastapi:x86bacb2ddd8394
urllib3@1.26.10
2.6.3

Open the chart page →

8,556
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
urllib3@1.26.7
2.6.3

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
urllib3@1.26.9
2.6.3

Open the chart page →

15,731
mozalert-controllermozilla0.4.01 of 1See more

mozalert-controller mozilla 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
afrank/mozalert-controller:latestd463c37b08d7
urllib3@1.25.10
2.6.3

Open the chart page →

2,969
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
urllib3@2.2.1
2.6.3

Open the chart page →

4,560
paperless-ngxmt1905027.6.141 of 4See more

paperless-ngx mt190502 7.6.14

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
urllib3@2.5.0
2.6.3

Open the chart page →

11,860
mysql2s3bkmysql2s3bk0.1.01 of 1See more

mysql2s3bk mysql2s3bk 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
pyaephyohein/mysql2s3bk:alphafdee05f2d441
urllib3@1.26.15
2.6.3

Open the chart page →

1,207
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
urllib3@1.22
2.6.3

Open the chart page →

4,913

Container images carrying it

893 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/linuxserver/tvheadend:version-eb59284b66c4c9e18e40
urllib3@1.25.9
2.6.3
1
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
urllib3@2.5.0
2.6.3
1
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
urllib3@2.5.0
2.6.3
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
urllib3@1.26.5
2.6.3
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
urllib3@1.26.11
2.6.3
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
urllib3@1.26.14
2.6.3
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
urllib3@1.26.18
2.6.3
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
urllib3@2.5.0
2.6.3
1
ghcr.io/mglants/kea-dhcp:2.5.8e1b6eb9e37f9
urllib3@2.2.1
2.6.3
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
urllib3@1.26.14
2.6.3
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
urllib3@1.26.15
2.6.3
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
urllib3@2.2.1
2.6.3
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
urllib3@1.26.16
2.6.3
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
urllib3@1.26.18
2.6.3
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
urllib3@2.2.2
2.6.3
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
urllib3@1.26.20
2.6.3
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
urllib3@2.3.0
2.6.3
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.6.3
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
urllib3@2.0.7
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
urllib3@2.2.3
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
urllib3@1.26.10
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
urllib3@2.5.0
2.6.3
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
py3-urllib3@1.26.20-r0
urllib3@1.26.20
1.26.20-r1
2.6.3
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
py3-urllib3@1.26.18-r1
urllib3@1.26.18
1.26.18-r2
2.6.3
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
py3-urllib3@1.26.18-r1
urllib3@1.26.18
1.26.18-r2
2.6.3
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
urllib3@2.4.0
2.6.3
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
urllib3@2.4.0
2.6.3
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
urllib3@2.0.6
2.6.3
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
urllib3@1.26.18
2.6.3
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
urllib3@2.0.2
2.6.3
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
urllib3@2.0.2
2.6.3
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
urllib3@2.0.3
2.6.3
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
urllib3@2.3.0
2.6.3
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
urllib3@2.6.2
2.6.3
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
urllib3@1.26.2
2.6.3
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
urllib3@1.26.12
2.6.3
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
urllib3@1.26.12
2.6.3
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
urllib3@2.3.0
2.6.3
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
urllib3@2.3.0
2.6.3
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
urllib3@2.5.0
2.6.3
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
urllib3@2.5.0
2.6.3
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
urllib3@2.5.0
2.6.3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.