StackRadar

CVE-2026-21441

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
836
of 17,790 indexed, latest versions
Container images
892
deployed by those charts
Fix available
5 of 5
affected packages

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

Carried by container images the latest versions of 836 of 17,790 indexed charts deploy, on 892 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
urllib3pypi1.22, 1.23, 1.24, 1.24.1+47 more2.6.3863
python-pipdeb9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1, 9.0.1-2.3~ubuntu1.18.04.2, 9.0.1-2.3~ubuntu1.18.04.4+14 more9.0.1-2.3~ubuntu1.18.04.8+esm860
python-urllib3deb1.22-1ubuntu0.18.04.1, 1.22-1ubuntu0.18.04.2, 1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2+8 more1.25.8-2ubuntu0.4+esm3, 1.26.5-1~exp1+deb11u3, 1.26.5-1~exp1ubuntu0.5, 1.26.12-1+deb12u3+1 more52
py3-urllib3apk1.26.18-r1, 1.26.20-r01.26.18-r2, 1.26.20-r14
OSV records
ALPINE-CVE-2026-21441CGA-295m-5rcj-2qm6CGA-7cp6-w84v-cpfxDEBIAN-CVE-2026-21441GHSA-38jv-5279-wg99UBUNTU-CVE-2026-21441DLA-4446-1
Also known as
CGA-hqjr-j69p-ch46, CGA-rh7x-c7j6-9qqm, DSA-6102-2, PYSEC-2026-1996, USN-7955-1, USN-7955-2, USN-8010-1

Charts affected

836 by stars
ChartLatestAffected imagesRadar Score
sdnc-websmo-helm-chart6.0.01 of 3See more

sdnc-web smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
urllib3@1.24.1
2.6.3

Open the chart page →

24,811
ueb-listenersmo-helm-chart6.0.01 of 3See more

ueb-listener smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
urllib3@1.24.1
2.6.3

Open the chart page →

25,804
smtpsmtpVerified publisher1.3.31 of 1See more

smtp smtp 1.3.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
urllib3@2.6.2
2.6.3

Open the chart page →

1,437
cost-analyzersoftonic2.5.52 of 6See more

cost-analyzer softonic 2.5.5

2 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gcr.io/kubecost1/kubecost-modeling:v0.1.24a2259b098b13
urllib3@2.3.0
2.6.3
ghcr.io/kiwigrid/k8s-sidecar:1.29.142002d66ddb3
urllib3@2.3.0
2.6.3

Open the chart page →

7,957
gar-exportersoftonic0.1.11 of 1See more

gar-exporter softonic 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
softonic/gar-exporter:0.2.1a64d6c0e0ae5
urllib3@1.25.11
2.6.3

Open the chart page →

2,296
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3

Open the chart page →

30,779
ambassador-manifestssqream-chartsVerified publisher0.6.31 of 1See more

ambassador-manifests sqream-charts 0.6.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
datawire/aes:3.11.195ec30b3c732
urllib3@2.2.1
2.6.3

Open the chart page →

2,422
downscalersqream-chartsVerified publisher1.0.01 of 1See more

downscaler sqream-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.05d328c003efe
urllib3@1.26.12
2.6.3

Open the chart page →

1,009
servicexssl-hep1.8.52 of 16See more

servicex ssl-hep 1.8.5

2 of the 16 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
sslhep/servicex-did-finder:v1.8.5ab0090083567
urllib3@1.26.5
2.6.3
sslhep/x509-secrets:v1.8.5d9e9ecb12d59
urllib3@1.26.5
2.6.3

Open the chart page →

67,262
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
urllib3@1.24.2
2.6.3

Open the chart page →

28,515
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
urllib3@2.2.1
2.6.3

Open the chart page →

20,321
horcruxstakewise1.0.11 of 1See more

horcrux stakewise 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
stakewiselabs/bls-horcrux:v1.0.02afd0c0b34cb
urllib3@1.26.2
2.6.3

Open the chart page →

1,421
cost-analyzerstatcan1.82.21 of 9See more

cost-analyzer statcan 1.82.2

1 of the 9 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.12.089739be9ff38
urllib3@1.25.11
2.6.3

Open the chart page →

16,537
datapusherstatcan1.0.01 of 1See more

datapusher statcan 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
urllib3@1.25.10
2.6.3

Open the chart page →

3,044
prometheus-operatorstatcan0.2.21 of 7See more

prometheus-operator statcan 0.2.2

1 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.1517b98eecdf6d1
urllib3@1.25.9
2.6.3

Open the chart page →

12,251
storageclass-routerstorageclass-routerVerified publisher0.4.11 of 1See more

storageclass-router storageclass-router 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/maxiv/storageclass-router:0.4.160725dab588c
urllib3@2.2.1
2.6.3

Open the chart page →

1,057
sn-consolestreamnative1.13.01 of 1See more

sn-console streamnative 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
streamnative/private-cloud-console:v2.3.27-all91e54375e154
urllib3@1.26.18
2.6.3

Open the chart page →

1,830
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
urllib3@2.1.0
2.6.3

Open the chart page →

1,447
artifactory-cleanupsubshellVerified publisher1.0.11 of 1See more

artifactory-cleanup subshell 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
devopshq/artifactory-cleanup:1.0.1830e093bffa91
urllib3@2.4.0
2.6.3

Open the chart page →

2,551
substra-backendsubstraVerified publisher26.15.31 of 7See more

substra-backend substra 26.15.3

1 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/substra/substra-backend:1.0.121967f54ec86
urllib3@2.3.0
2.6.3

Open the chart page →

4,799
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
urllib3@2.2.1
2.6.3

Open the chart page →

13,463
authentik-webfinger-proxysudo-kraken-authentik-webfinger-proxyVerified publisher0.1.41 of 1See more

authentik-webfinger-proxy sudo-kraken-authentik-webfinger-proxy 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
urllib3@2.5.0
2.6.3

Open the chart page →

2,773
fantasy-dice-chambersudo-kraken-fantasy-dice-chamberVerified publisher0.1.31 of 1See more

fantasy-dice-chamber sudo-kraken-fantasy-dice-chamber 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
urllib3@2.5.0
2.6.3

Open the chart page →

2,805
finances-trackersudo-kraken-finances-trackerVerified publisher0.1.51 of 1See more

finances-tracker sudo-kraken-finances-tracker 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
urllib3@2.5.0
2.6.3

Open the chart page →

2,773
flaresolverrsudo-kraken-flaresolverrVerified publisher2.1.41 of 1See more

flaresolverr sudo-kraken-flaresolverr 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
urllib3@2.5.0
2.6.3

Open the chart page →

33,864
jf-pushover-webhooksudo-kraken-jf-pushover-webhookVerified publisher0.1.31 of 1See more

jf-pushover-webhook sudo-kraken-jf-pushover-webhook 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
urllib3@2.5.0
2.6.3

Open the chart page →

2,773
surogate-hubsurogate-hubVerified publisher2.1.51 of 1See more

surogate-hub surogate-hub 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
urllib3@2.0.7
2.6.3

Open the chart page →

3,494
icinga2svtech-public-helm-charts1.0.01 of 4See more

icinga2 svtech-public-helm-charts 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
svtechnmaa/svtech_icinga2:v1.1.667be2aba9436
urllib3@1.26.18
2.6.3

Open the chart page →

5,535
icinga2-reportsvtech-public-helm-charts1.0.01 of 1See more

icinga2-report svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
urllib3@1.24.1
2.6.3

Open the chart page →

1,779
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.26.9
1.25.8-2ubuntu0.4+esm3
2.6.3

Open the chart page →

18,846
rundeck-option-providersvtech-public-helm-charts1.0.01 of 2See more

rundeck-option-provider svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck_option_provider:v1.1.1674fad30a51f
urllib3@1.26.18
2.6.3

Open the chart page →

1,428
swr-cache-proxyswr-cache-proxy0.2.01 of 1See more

swr-cache-proxy swr-cache-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
vividplanet/swr-cache-proxy:v1ae1c5b1cbecb
urllib3@1.24.2
2.6.3

Open the chart page →

14,058
gtmetrix-bqt3n1.0.01 of 1See more

gtmetrix-bq t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
t3nde/gtmetrix-bq:0.2.0d2939e9a719b
urllib3@1.25.9
2.6.3

Open the chart page →

1,287
democharttech-challenge0.1.01 of 4See more

demochart tech-challenge 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alexvm6/generator:latestfb99ee4f760a
urllib3@2.0.2
2.6.3

Open the chart page →

3,630
rundeck-exportertechpreta0.1.91 of 1See more

rundeck-exporter techpreta 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phsmith/rundeck-exporter:2.6.10265a7616ae8
urllib3@2.0.2
2.6.3

Open the chart page →

1,104
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
python-pip@22.0.2+dfsg-1
no fix listed

Open the chart page →

17,590
supabaseteochenglim0.1.21 of 13See more

supabase teochenglim 0.1.2

1 of the 13 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
supabase/realtime:latestd3aa0c86c7b3
urllib3@2.3.0
2.6.3

Open the chart page →

9,795
flask-contactstest-configmap1.0.11 of 3See more

flask-contacts test-configmap 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
shashkist/flask-contacts-app:latest581de1fd6084
urllib3@2.2.3
2.6.3

Open the chart page →

5,789
asrtest-opea1.0.01 of 1See more

asr test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/asr:1.025dd26d9cd09
urllib3@2.2.3
2.6.3

Open the chart page →

4,411
chatqnatest-opea1.0.05 of 11See more

chatqna test-opea 1.0.0

5 of the 11 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/chatqna:1.038c51b791efa
urllib3@2.2.3
2.6.3
opea/embedding-tei:1.05c9639de61c1
urllib3@2.2.3
2.6.3
opea/llm-tgi:1.00c25aab3f106
urllib3@2.2.3
2.6.3
opea/reranking-tei:1.0e48613afb191
urllib3@2.2.3
2.6.3
opea/retriever-redis:1.0eb746b263705
urllib3@2.2.3
2.6.3

Open the chart page →

39,273
codegentest-opea1.0.02 of 5See more

codegen test-opea 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/codegen:1.058f91683892d
urllib3@2.2.3
2.6.3
opea/llm-tgi:1.00c25aab3f106
urllib3@2.2.3
2.6.3

Open the chart page →

28,944
codetranstest-opea1.0.02 of 5See more

codetrans test-opea 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/codetrans:1.0e2436483b73d
urllib3@2.2.3
2.6.3
opea/llm-tgi:1.00c25aab3f106
urllib3@2.2.3
2.6.3

Open the chart page →

28,515
docsumtest-opea1.0.02 of 5See more

docsum test-opea 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/docsum:1.03eaa91849512
urllib3@2.2.3
2.6.3
opea/llm-docsum-tgi:1.002f9e8fa5d71
urllib3@2.2.3
2.6.3

Open the chart page →

28,990
embedding-usvctest-opea1.0.01 of 1See more

embedding-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/embedding-tei:1.05c9639de61c1
urllib3@2.2.3
2.6.3

Open the chart page →

5,203
guardrails-usvctest-opea1.0.01 of 1See more

guardrails-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/guardrails-tgi:1.0262c6048aab8
urllib3@2.2.3
2.6.3

Open the chart page →

5,238
llm-uservicetest-opea1.0.01 of 1See more

llm-uservice test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/llm-tgi:1.00c25aab3f106
urllib3@2.2.3
2.6.3

Open the chart page →

4,737
reranking-usvctest-opea1.0.01 of 1See more

reranking-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/reranking-tei:1.0e48613afb191
urllib3@2.2.3
2.6.3

Open the chart page →

5,002
retriever-usvctest-opea1.0.01 of 1See more

retriever-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/retriever-redis:1.0eb746b263705
urllib3@2.2.3
2.6.3

Open the chart page →

5,215
speecht5test-opea1.0.01 of 1See more

speecht5 test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/speecht5:1.0249afad3d268
urllib3@2.2.3
2.6.3

Open the chart page →

9,668
ttstest-opea1.0.01 of 1See more

tts test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opea/tts:1.0257ae94709e9
urllib3@2.2.3
2.6.3

Open the chart page →

4,395

Container images carrying it

892 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
urllib3@1.24.2
2.6.3
1
quay.io/maxiv/storageclass-router:0.4.160725dab588c
urllib3@2.2.1
2.6.3
1
quay.io/netscaler/netscaler-cpx:14.1-66.598602e36d4564
urllib3@1.26.19
2.6.3
1
quay.io/netscaler/netscaler-k8s-ingress-controller:4.1.1755b12c2a8440
urllib3@1.26.19
2.6.3
1
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
urllib3@1.26.12
2.6.3
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
urllib3@1.26.20
2.6.3
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
urllib3@1.26.7
2.6.3
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
urllib3@1.26.5
2.6.3
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
urllib3@1.26.20
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
urllib3@1.24.2
2.6.3
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-dep-pkg-cud:main-v10.0.1670-g9abe110c0c881b509a
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-sbom-export:main-v10.0.933-g2e222ef43bdaa51598
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-scorecard:main-v10.0.1276-g966a8a43337e52fdd4
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
urllib3@2.6.2
2.6.3
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
urllib3@2.2.1
2.6.3
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
urllib3@1.26.5
2.6.3
1
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
urllib3@2.2.2
2.6.3
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
urllib3@1.24.2
2.6.3
1
quay.io/stackgres/operator:1.19.1f241b0b20326
urllib3@2.2.3
2.6.3
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
urllib3@1.24.2
2.6.3
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
urllib3@1.26.7
2.6.3
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
urllib3@1.26.7
2.6.3
1
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
urllib3@2.1.0
2.6.3
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
urllib3@1.26.5
2.6.3
1
registry.gitlab.com/xrow-public/helm-mssql/mssql:1.10.3f923d842bc47
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.91.3ed44d81a65de
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
urllib3@2.6.2
2.6.3
1
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
urllib3@1.26.19
2.6.3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.