StackRadar

CVE-2026-21441

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
836
of 17,787 indexed, latest versions
Container images
893
deployed by those charts
Fix available
5 of 5
affected packages

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

Carried by container images the latest versions of 836 of 17,787 indexed charts deploy, on 893 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
urllib3pypi1.22, 1.23, 1.24, 1.24.1+47 more2.6.3864
python-pipdeb9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1, 9.0.1-2.3~ubuntu1.18.04.2, 9.0.1-2.3~ubuntu1.18.04.4+14 more9.0.1-2.3~ubuntu1.18.04.8+esm860
python-urllib3deb1.22-1ubuntu0.18.04.1, 1.22-1ubuntu0.18.04.2, 1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2+8 more1.25.8-2ubuntu0.4+esm3, 1.26.5-1~exp1+deb11u3, 1.26.5-1~exp1ubuntu0.5, 1.26.12-1+deb12u3+1 more52
py3-urllib3apk1.26.18-r1, 1.26.20-r01.26.18-r2, 1.26.20-r14
OSV records
ALPINE-CVE-2026-21441CGA-295m-5rcj-2qm6CGA-7cp6-w84v-cpfxDEBIAN-CVE-2026-21441GHSA-38jv-5279-wg99UBUNTU-CVE-2026-21441DLA-4446-1
Also known as
CGA-hqjr-j69p-ch46, CGA-rh7x-c7j6-9qqm, DSA-6102-2, PYSEC-2026-1996, USN-7955-1, USN-7955-2, USN-8010-1

Charts affected

836 by stars
ChartLatestAffected imagesRadar Score
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg16d7db8f1085a3
python-pip@22.0.2+dfsg-1ubuntu0.7
urllib3@1.26.5
no fix listed
2.6.3

Open the chart page →

13,028
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
urllib3@1.26.14
2.6.3

Open the chart page →

3,942
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
python-urllib3@1.22-1ubuntu0.18.04.2
urllib3@1.22
no fix listed
2.6.3

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.101 of 9See more

kyoo rubxkube 0.1.10

1 of the 9 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
urllib3@2.3.0
2.6.3

Open the chart page →

30,310
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
urllib3@2.6.2
2.6.3

Open the chart page →

921
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
python-urllib3@1.26.12-1+deb12u1
urllib3@1.26.12
1.26.12-1+deb12u3
2.6.3

Open the chart page →

38,115
iopsciencemeshVerified publisher0.4.01 of 2See more

iop sciencemesh 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
urllib3@1.26.14
2.6.3

Open the chart page →

4,052
sentry-k8ssentry-k8sVerified publisher1.4.11 of 11See more

sentry-k8s sentry-k8s 1.4.1

1 of the 11 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
urllib3@2.4.0
2.6.3

Open the chart page →

16,194
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
urllib3@2.3.0
2.6.3
dserio83/velero-watchdog:0.1.8d5deae589229
urllib3@2.3.0
2.6.3

Open the chart page →

11,545
kube-resource-reportslamdev0.1.31 of 2See more

kube-resource-report slamdev 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
hjacobs/kube-resource-report:21.2.145f93491c434
urllib3@1.26.3
2.6.3

Open the chart page →

1,534
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
urllib3@2.2.3
2.6.3

Open the chart page →

2,934
smallest-self-hostsmallest-self-hostVerified publisher0.2.21 of 12See more

smallest-self-host smallest-self-host 0.2.2

1 of the 12 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
urllib3@1.26.18
2.6.3

Open the chart page →

7,684
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
urllib3@1.26.12
2.6.3
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
urllib3@1.26.12
2.6.3

Open the chart page →

46,028
mysql-backupsoftonic2.2.31 of 1See more

mysql-backup softonic 2.2.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
softonic/mysql-backup:0.4.0d9487a8dd70f
urllib3@1.26.8
2.6.3

Open the chart page →

547
alertasomeblackmagic0.2.31 of 2See more

alerta someblackmagic 0.2.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alerta/alerta-web:8.5.04786b9eaa606
urllib3@1.26.7
2.6.3

Open the chart page →

3,162
healthchecksstackhelmVerified publisher0.1.01 of 2See more

healthchecks stackhelm 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
healthchecks/healthchecks:v2.8.1e82bb0836e30
urllib3@1.26.15
2.6.3

Open the chart page →

2,236
splunk-operatorstakaterVerified publisher0.0.61 of 2See more

splunk-operator stakater 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
splunk/splunk-operator:2.0.0c4e0d3146226
urllib3@1.24.2
2.6.3

Open the chart page →

11,459
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
urllib3@1.25.8
2.6.3

Open the chart page →

24,984
prometheus-pve-exporterstenicVerified publisher0.1.11 of 1See more

prometheus-pve-exporter stenic 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
prompve/prometheus-pve-exporter:2.0.1ff6749eb03b0
urllib3@1.25.9
2.6.3

Open the chart page →

2,469
streamlit-appstreamlit-appVerified publisher0.2.01 of 1See more

streamlit-app streamlit-app 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
sruthitanneru/pi-sample:ui-lateste565ea454ffd
urllib3@2.2.3
2.6.3

Open the chart page →

1,696
synapsesudermanjr1.1.51 of 1See more

synapse sudermanjr 1.1.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.53.0cb89c0f17ba1
urllib3@1.26.8
2.6.3

Open the chart page →

3,332
supabasesupabse0.8.01 of 11See more

supabase supabse 0.8.0

1 of the 11 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
supabase/realtime:v2.102.3aa1c92c0cf32
urllib3@1.26.12
2.6.3

Open the chart page →

18,213
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.24.44138bea678f0
urllib3@1.26.16
2.6.3

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.24.44138bea678f0
urllib3@1.26.16
2.6.3

Open the chart page →

9,108
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
urllib3@2.5.0
2.6.3

Open the chart page →

9,172
upbot-operatorupbot-operator0.0.201 of 2See more

upbot-operator upbot-operator 0.0.20

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
urllib3@2.2.2
2.6.3

Open the chart page →

4,461
urunnerurunnerOfficialVerified publisher0.7.01 of 1See more

urunner urunner 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
urllib3@1.26.20
2.6.3

Open the chart page →

501
verbacapverbacapVerified publisher1.0.71 of 1See more

verbacap verbacap 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
urllib3@2.2.1
2.6.3

Open the chart page →

2,232
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
python-urllib3@1.25.8-2ubuntu0.2
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3

Open the chart page →

26,843
pghoardwiremindVerified publisher0.8.11 of 1See more

pghoard wiremind 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
wiremind/pghoard:12-2019-11-264dea42c8166c
urllib3@1.25.7
2.6.3

Open the chart page →

2,952
raponchiygdrassilOfficialVerified publisher0.4.01 of 1See more

raponchi ygdrassil 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
elautoestopista/raponchi:0.3.0b6f74db9fc81
urllib3@1.26.18
2.6.3

Open the chart page →

1,314
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
python-pip@22.0.2+dfsg-1ubuntu0.2
no fix listed

Open the chart page →

9,832
qleverzazukoVerified publisher0.7.01 of 2See more

qlever zazuko 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed

Open the chart page →

2,947
plausible-analyticszekker6Verified publisher1.4.01 of 2See more

plausible-analytics zekker6 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
urllib3@1.26.20
2.6.3

Open the chart page →

1,170
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
python-pip@9.0.1-2.3~ubuntu1.18.04.1
urllib3@1.25.9
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3

Open the chart page →

12,022
adeptia-automate-mcpadeptia-automate-mcp1.0.01 of 2See more

adeptia-automate-mcp adeptia-automate-mcp 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
adeptiainc/adeptia-automate-mcp-server:1.0.0283001e83739
urllib3@1.26.19
2.6.3

Open the chart page →

3,600
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
urllib3@1.26.12
2.6.3

Open the chart page →

29,687
airbyteairbyte-v2Verified publisher2.2.01 of 10See more

airbyte airbyte-v2 2.2.0

1 of the 10 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
airbyte/manifest-server:7.23.73b3a670af168
urllib3@2.3.0
2.6.3

Open the chart page →

12,481
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
urllib3@2.0.3
2.6.3
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
urllib3@2.0.3
2.6.3

Open the chart page →

13,689
akto-mini-testing-kafkaakto1.42.12 of 5See more

akto-mini-testing-kafka akto 1.42.1

2 of the 5 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
urllib3@2.2.3
2.6.3
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
urllib3@2.2.3
2.6.3

Open the chart page →

6,395
akto-protectionakto0.1.02 of 4See more

akto-protection akto 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
urllib3@2.0.3
2.6.3
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
urllib3@2.0.3
2.6.3

Open the chart page →

11,283
browserlessalekcVerified publisher1.2.71 of 1See more

browserless alekc 1.2.7

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed

Open the chart page →

2,138
backupalexanderbadel1.1.01 of 1See more

backup alexanderbadel 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/alexanderbabel/database-s3-backup:1.3.33191b771a6f2
urllib3@1.25.11
2.6.3

Open the chart page →

2,803
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
urllib3@2.2.3
2.6.3

Open the chart page →

5,898
fritzbox-exporteralexvanderberkelVerified publisher2.0.31 of 1See more

fritzbox-exporter alexvanderberkel 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
sealife/fritzbox-exporter:1.0f5cc2f0f4c9b
urllib3@1.26.2
2.6.3

Open the chart page →

2,094
ddosifyanteonVerified publisher1.7.53 of 13See more

ddosify anteon 1.7.5

3 of the 13 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
urllib3@2.2.1
2.6.3
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
urllib3@2.2.1
2.6.3
ddosify/selfhosted_hammermanager:1.2.471b8768f49bc
urllib3@2.2.1
2.6.3

Open the chart page →

25,720
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
urllib3@2.4.0
2.6.3

Open the chart page →

2,454
sensitive-dataapicheck1.0.01 of 1See more

sensitive-data apicheck 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
bbvalabs/sensitive-data:1.0.13ea299ae63c0
urllib3@1.26.4
2.6.3

Open the chart page →

1,843
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift:v0.3.08fbbcd23b902
urllib3@1.26.5
2.6.3

Open the chart page →

2,947
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
urllib3@2.6.1
2.6.3

Open the chart page →

1,565

Container images carrying it

893 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/linuxserver/tvheadend:version-eb59284b66c4c9e18e40
urllib3@1.25.9
2.6.3
1
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
urllib3@2.5.0
2.6.3
1
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
urllib3@2.5.0
2.6.3
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
urllib3@1.26.5
2.6.3
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
urllib3@1.26.11
2.6.3
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
urllib3@1.26.14
2.6.3
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
urllib3@1.26.18
2.6.3
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
urllib3@2.5.0
2.6.3
1
ghcr.io/mglants/kea-dhcp:2.5.8e1b6eb9e37f9
urllib3@2.2.1
2.6.3
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
urllib3@1.26.14
2.6.3
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
urllib3@1.26.15
2.6.3
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
urllib3@2.2.1
2.6.3
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
urllib3@1.26.16
2.6.3
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
urllib3@1.26.18
2.6.3
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
urllib3@2.2.2
2.6.3
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
urllib3@1.26.20
2.6.3
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
urllib3@2.3.0
2.6.3
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.6.3
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
urllib3@2.0.7
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
urllib3@2.2.3
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
urllib3@2.5.0
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
urllib3@1.26.10
2.6.3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
urllib3@2.5.0
2.6.3
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
py3-urllib3@1.26.20-r0
urllib3@1.26.20
1.26.20-r1
2.6.3
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
py3-urllib3@1.26.18-r1
urllib3@1.26.18
1.26.18-r2
2.6.3
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
py3-urllib3@1.26.18-r1
urllib3@1.26.18
1.26.18-r2
2.6.3
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
urllib3@2.4.0
2.6.3
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
urllib3@2.4.0
2.6.3
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
urllib3@2.0.6
2.6.3
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
urllib3@1.26.18
2.6.3
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
urllib3@2.0.2
2.6.3
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
urllib3@2.0.2
2.6.3
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
urllib3@2.0.3
2.6.3
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
urllib3@2.3.0
2.6.3
1
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
urllib3@2.6.2
2.6.3
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
urllib3@1.26.2
2.6.3
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
urllib3@1.26.12
2.6.3
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
urllib3@1.26.12
2.6.3
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
urllib3@2.3.0
2.6.3
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
urllib3@2.3.0
2.6.3
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
urllib3@2.5.0
2.6.3
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
urllib3@2.5.0
2.6.3
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
urllib3@2.5.0
2.6.3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.