StackRadar

CVE-2026-21441

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
836
of 17,787 indexed, latest versions
Container images
893
deployed by those charts
Fix available
5 of 5
affected packages

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

Carried by container images the latest versions of 836 of 17,787 indexed charts deploy, on 893 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
urllib3pypi1.22, 1.23, 1.24, 1.24.1+47 more2.6.3864
python-pipdeb9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1, 9.0.1-2.3~ubuntu1.18.04.2, 9.0.1-2.3~ubuntu1.18.04.4+14 more9.0.1-2.3~ubuntu1.18.04.8+esm860
python-urllib3deb1.22-1ubuntu0.18.04.1, 1.22-1ubuntu0.18.04.2, 1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2+8 more1.25.8-2ubuntu0.4+esm3, 1.26.5-1~exp1+deb11u3, 1.26.5-1~exp1ubuntu0.5, 1.26.12-1+deb12u3+1 more52
py3-urllib3apk1.26.18-r1, 1.26.20-r01.26.18-r2, 1.26.20-r14
OSV records
ALPINE-CVE-2026-21441CGA-295m-5rcj-2qm6CGA-7cp6-w84v-cpfxDEBIAN-CVE-2026-21441GHSA-38jv-5279-wg99UBUNTU-CVE-2026-21441DLA-4446-1
Also known as
CGA-hqjr-j69p-ch46, CGA-rh7x-c7j6-9qqm, DSA-6102-2, PYSEC-2026-1996, USN-7955-1, USN-7955-2, USN-8010-1

Charts affected

836 by stars
ChartLatestAffected imagesRadar Score
dapr-agentsdapr-agents-devVerified publisher0.1.51 of 31See more

dapr-agents dapr-agents-dev 0.1.5

1 of the 31 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
urllib3@2.5.0
2.6.3

Open the chart page →

22,223
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
urllib3@1.26.19
2.6.3

Open the chart page →

4,914
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
python-pip@9.0.1-2.3~ubuntu1
python-urllib3@1.22-1ubuntu0.18.04.1
urllib3@1.24.2
9.0.1-2.3~ubuntu1.18.04.8+esm8
no fix listed
2.6.3

Open the chart page →

27,749
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
python-pip@9.0.1-2.3~ubuntu1.18.04.2
urllib3@1.25.10
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3

Open the chart page →

18,884
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
urllib3@2.3.0
2.6.3

Open the chart page →

6,177
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
urllib3@2.3.0
2.6.3

Open the chart page →

6,028
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
python-pip@9.0.1-2.3~ubuntu1
urllib3@1.24.2
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3

Open the chart page →

22,425
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
urllib3@2.3.0
2.6.3

Open the chart page →

6,226
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
python-pip@9.0.1-2.3~ubuntu1
python-urllib3@1.22-1ubuntu0.18.04.1
urllib3@1.24.2
9.0.1-2.3~ubuntu1.18.04.8+esm8
no fix listed
2.6.3

Open the chart page →

24,356
kube-web-viewdecayofmind0.0.41 of 1See more

kube-web-view decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
urllib3@1.25.10
2.6.3

Open the chart page →

2,264
intel-gpu-exporterdefault-ghVerified publisher0.1.01 of 1See more

intel-gpu-exporter default-gh 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
python-pip@22.0.2+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

4,846
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
urllib3@2.2.3
2.6.3

Open the chart page →

5,656
mlflowdeliveryheroVerified publisher1.0.101 of 1See more

mlflow deliveryhero 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
larribas/mlflow:1.9.105ccb0b46bfb
urllib3@1.25.9
2.6.3

Open the chart page →

4,422
deployhubdeployhubVerified publisher10.0.4157 of 11See more

deployhub deployhub 10.0.415

7 of the 11 container images this version deploys carry CVE-2026-21441.

Open the chart page →

11,161
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
python-urllib3@1.25.8-2ubuntu0.2
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3

Open the chart page →

14,910
kube-openid-connectdevopstalesVerified publisher1.1.01 of 1See more

kube-openid-connect devopstales 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
devopstales/kube-openid-connector:1.042c40a0e9f1b
urllib3@1.26.9
2.6.3

Open the chart page →

1,333
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
urllib3@1.26.20
2.6.3

Open the chart page →

9,152
argocddevtron1.8.11 of 3See more

argocd devtron 1.8.1

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
urllib3@1.25.11
2.6.3

Open the chart page →

10,468
kube-prometheus-stackdevtron19.3.01 of 6See more

kube-prometheus-stack devtron 19.3.0

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
urllib3@1.26.7
2.6.3

Open the chart page →

8,645
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
urllib3@1.26.20
2.6.3

Open the chart page →

9,152
argocddevtron-labs1.8.11 of 3See more

argocd devtron-labs 1.8.1

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
urllib3@1.25.11
2.6.3

Open the chart page →

10,468
kube-prometheus-stackdevtron-labs19.3.01 of 6See more

kube-prometheus-stack devtron-labs 19.3.0

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
urllib3@1.26.7
2.6.3

Open the chart page →

8,645
difydify1.0.03 of 4See more

dify dify 1.0.0

3 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
urllib3@2.3.0
2.6.3
langgenius/dify-plugin-daemon:main-localda995c129e2f
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
urllib3@2.2.1
2.6.3

Open the chart page →

19,063
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
urllib3@2.4.0
2.6.3

Open the chart page →

2,384
autonodelabeldjjudas21Verified publisher0.0.101 of 1See more

autonodelabel djjudas21 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
djjudas21/autonodelabel:0.0.6f17233350c4f
urllib3@1.26.16
2.6.3

Open the chart page →

1,303
uptime-kumadjjudas21Verified publisher1.5.181 of 1See more

uptime-kuma djjudas21 1.5.18

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.12bc6f244ecf27
urllib3@1.24.1
2.6.3

Open the chart page →

4,217
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
urllib3@2.0.7
2.6.3

Open the chart page →

13,031
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
urllib3@1.25.11
2.6.3

Open the chart page →

3,626
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
urllib3@1.25.11
2.6.3

Open the chart page →

3,626
dnation-kubernetes-monitoring-stackdnationcloud4.0.22 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

2 of the 17 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
urllib3@1.25.11
2.6.3
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
urllib3@2.2.3
2.6.3

Open the chart page →

21,455
vmware-exporterdniel0.0.11 of 1See more

vmware-exporter dniel 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
pryorda/vmware_exporter:v0.18.3e0f5ba8b7856
urllib3@1.26.9
2.6.3

Open the chart page →

1,351
dominodomino-iisasVerified publisher0.3.11 of 3See more

domino domino-iisas 0.3.1

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/iisas/domino-rest:latest3009350bfc11
urllib3@2.5.0
2.6.3

Open the chart page →

10,307
codecovdoubanVerified publisher0.2.43 of 8See more

codecov douban 0.2.4

3 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
codecov/self-hosted-api:24.4.10475cb1c3136
urllib3@1.26.18
2.6.3
codecov/self-hosted-worker:24.4.1837f546b479b
urllib3@1.26.18
2.6.3
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
python-urllib3@1.26.5-1~exp1
urllib3@1.26.5
1.26.5-1~exp1ubuntu0.5
2.6.3

Open the chart page →

24,975
helpdeskdoubanVerified publisher0.3.31 of 2See more

helpdesk douban 0.3.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
douz/helpdesk:latest4384103d0219
urllib3@1.25.11
2.6.3

Open the chart page →

4,550
k8s-crondoubanVerified publisher0.2.01 of 1See more

k8s-cron douban 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alpine/k8s:1.28.2fc059f056ad0
urllib3@2.0.6
2.6.3

Open the chart page →

3,660
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
python-urllib3@1.26.5-1~exp1
urllib3@1.26.5
1.26.5-1~exp1ubuntu0.5
2.6.3

Open the chart page →

30,759
drogue-cloud-metricsdrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
urllib3@1.26.9
2.6.3

Open the chart page →

13,558
rook-cephdtrdnk-helm-chartsVerified publisher0.0.11 of 2See more

rook-ceph dtrdnk-helm-charts 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
rook/ceph:v1.19.2944a1dd70496
urllib3@1.26.5
2.6.3

Open the chart page →

1,990
amundsenduyet1.1.03 of 7See more

amundsen duyet 1.1.0

3 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
amundsendev/amundsen-frontend:2.1.169e7915e61c1
urllib3@1.24.3
2.6.3
amundsendev/amundsen-metadata:2.5.44d98eb21f5f9
urllib3@1.25.10
2.6.3
amundsendev/amundsen-search:2.4.099dda9502c3e
urllib3@1.22
2.6.3

Open the chart page →

11,174
grafana-dashboardsdysnixVerified publisher0.2.21 of 2See more

grafana-dashboards dysnix 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.10.718feb3906286
urllib3@1.25.11
2.6.3

Open the chart page →

5,161
pritunldysnixVerified publisher0.2.71 of 3See more

pritunl dysnix 0.2.7

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
dysnix/pritunl:v1.29-r819951e3e7a32
urllib3@1.25.8
2.6.3

Open the chart page →

5,055
aerios-k8s-shimeclipse-aeriosVerified publisher1.0.01 of 1See more

aerios-k8s-shim eclipse-aerios 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/aerios-k8s-shim:v1.0.0d4ed3d8e5db4
urllib3@2.2.2
2.6.3

Open the chart page →

1,446
hlo-allocatoreclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-allocator eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/hlo-allocator:v3.0.03cc1d94cfe96
urllib3@2.2.0
2.6.3

Open the chart page →

1,512
hlo-data-aggregatoreclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-data-aggregator eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/hlo-data-aggregator:v3.0.0b433c2b9f5dc
urllib3@2.2.0
2.6.3

Open the chart page →

1,655
hlo-deployment-engineeclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-deployment-engine eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/hlo-deployment-engine:v3.0.0d582d39208c7
urllib3@2.1.0
2.6.3

Open the chart page →

1,665
hlo-fe-engineeclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-fe-engine eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/hlo-fe-engine:v3.0.08ed2df4ca692
urllib3@2.2.0
2.6.3

Open the chart page →

1,655
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
urllib3@2.5.0
2.6.3

Open the chart page →

13,422
orion-ldeclipse-aeriosVerified publisher1.0.01 of 2See more

orion-ld eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
fiware/orion-ld:1.10.03c490a746f65
urllib3@1.24.2
2.6.3

Open the chart page →

9,805
self-awarenesseclipse-aeriosVerified publisher1.4.42 of 2See more

self-awareness eclipse-aerios 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
eclipseaerios/self-awareness-hardware-info:1.4.434b72f45b46a
urllib3@2.5.0
2.6.3
eclipseaerios/self-awareness-power-consumption:1.3.3c8af377c709f
urllib3@2.5.0
2.6.3

Open the chart page →

2,195
uptime-kumaegebackVerified publisher2.0.121 of 1See more

uptime-kuma egeback 2.0.12

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
urllib3@1.26.12
2.6.3

Open the chart page →

30,167

Container images carrying it

893 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
urllib3@1.26.5
2.6.3
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
urllib3@1.24.2
2.6.3
1
quay.io/maxiv/storageclass-router:0.4.160725dab588c
urllib3@2.2.1
2.6.3
1
quay.io/netscaler/netscaler-cpx:14.1-66.598602e36d4564
urllib3@1.26.19
2.6.3
1
quay.io/netscaler/netscaler-k8s-ingress-controller:4.1.1755b12c2a8440
urllib3@1.26.19
2.6.3
1
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
urllib3@1.26.12
2.6.3
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
urllib3@1.26.20
2.6.3
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
urllib3@1.26.7
2.6.3
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
urllib3@1.26.5
2.6.3
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
urllib3@1.26.20
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
urllib3@1.24.2
2.6.3
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
urllib3@1.24.2
2.6.3
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-dep-pkg-cud:main-v10.0.1670-g9abe110c0c881b509a
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-sbom-export:main-v10.0.933-g2e222ef43bdaa51598
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-scorecard:main-v10.0.1276-g966a8a43337e52fdd4
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
urllib3@2.6.2
2.6.3
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
urllib3@2.6.2
2.6.3
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
urllib3@2.2.1
2.6.3
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
urllib3@1.26.5
2.6.3
1
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
urllib3@2.2.2
2.6.3
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
urllib3@1.24.2
2.6.3
1
quay.io/stackgres/operator:1.19.1f241b0b20326
urllib3@2.2.3
2.6.3
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
urllib3@1.24.2
2.6.3
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
urllib3@1.26.7
2.6.3
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
urllib3@1.26.7
2.6.3
1
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
urllib3@2.1.0
2.6.3
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
urllib3@1.26.5
2.6.3
1
registry.gitlab.com/xrow-public/helm-mssql/mssql:1.10.3f923d842bc47
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.91.3ed44d81a65de
urllib3@1.26.19
2.6.3
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
urllib3@2.6.2
2.6.3
1
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
urllib3@1.26.19
2.6.3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.