StackRadar

CVE-2026-21441

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.9
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
827
of 17,787 indexed, latest versions
Container images
885
deployed by those charts
Fix available
5 of 5
affected packages

Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)

Carried by container images the latest versions of 827 of 17,787 indexed charts deploy, on 885 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.1-r03
urllib3pypi1.22, 1.23, 1.24, 1.24.1+47 more2.6.3858
python-pipdeb9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1, 9.0.1-2.3~ubuntu1.18.04.2, 9.0.1-2.3~ubuntu1.18.04.4+13 more9.0.1-2.3~ubuntu1.18.04.8+esm858
python-urllib3deb1.22-1ubuntu0.18.04.1, 1.22-1ubuntu0.18.04.2, 1.25.8-2ubuntu0.1, 1.25.8-2ubuntu0.2+8 more1.25.8-2ubuntu0.4+esm3, 1.26.5-1~exp1+deb11u3, 1.26.5-1~exp1ubuntu0.5, 1.26.12-1+deb12u3+1 more51
py3-urllib3apk1.26.18-r1, 1.26.20-r01.26.18-r2, 1.26.20-r14
OSV records
ALPINE-CVE-2026-21441CGA-295m-5rcj-2qm6CGA-7cp6-w84v-cpfxDEBIAN-CVE-2026-21441GHSA-38jv-5279-wg99UBUNTU-CVE-2026-21441DLA-4446-1
Also known as
CGA-hqjr-j69p-ch46, CGA-rh7x-c7j6-9qqm, DSA-6102-2, PYSEC-2026-1996, USN-7955-1, USN-7955-2, USN-8010-1

Charts affected

827 by stars
ChartLatestAffected imagesRadar Score
nfl-walletnfl-walletVerified publisher0.1.31 of 4See more

nfl-wallet nfl-wallet 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
urllib3@1.24.2
2.6.3

Open the chart page →

13,041
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
urllib3@1.26.12
2.6.3

Open the chart page →

22,658
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
python-pip@9.0.1-2.3~ubuntu1.18.04.1
9.0.1-2.3~ubuntu1.18.04.8+esm8

Open the chart page →

27,633
object-clonerobject-clonerVerified publisher2.0.01 of 1See more

object-cloner object-cloner 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/ideamixes/object-cloner:2.0.031030fd2f192
urllib3@2.0.4
2.6.3

Open the chart page →

1,588
ocellusaiocellusaiVerified publisher0.1.121 of 2See more

ocellusai ocellusai 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
urllib3@1.26.20
2.6.3

Open the chart page →

1,162
lensoci-ai-incubations0.1.141 of 16See more

lens oci-ai-incubations 0.1.14

1 of the 16 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
alpine/k8s:1.31.106dbe6f391eda
urllib3@2.5.0
2.6.3

Open the chart page →

17,070
my-bloody-jenkinsodavid0.1.2181 of 1See more

my-bloody-jenkins odavid 0.1.218

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
urllib3@2.2.3
2.6.3

Open the chart page →

5,826
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
python-pip@22.0.2+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

9,005
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
urllib3@1.25.9
2.6.3

Open the chart page →

18,023
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
2.6.3
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
urllib3@1.22
2.6.3
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
urllib3@1.22
2.6.3

Open the chart page →

88,546
comac-platformopencord0.0.172 of 11See more

comac-platform opencord 0.0.17

2 of the 11 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
omecproject/kubernetes-synchronizer:comac-1.0.07c17a7b1d1ef
urllib3@1.25.3
2.6.3
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
urllib3@1.22
2.6.3

Open the chart page →

26,211
nem-monitoringopencord1.3.221 of 9See more

nem-monitoring opencord 1.3.22

1 of the 9 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.20af151f677a63
urllib3@1.25.3
2.6.3

Open the chart page →

4,612
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
omecproject/mme-exporter:paging-latestbcc5f19fd676
python-pip@9.0.1-2.3~ubuntu1.18.04.1
9.0.1-2.3~ubuntu1.18.04.8+esm8

Open the chart page →

40,715
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
urllib3@1.22
2.6.3

Open the chart page →

12,609
sebaopencord1.0.04 of 17See more

seba opencord 1.0.0

4 of the 17 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
voltha/voltha-cli:1.6.0c4e41e92f046
urllib3@1.22
2.6.3
voltha/voltha-netconf:1.6.037f80524c207
urllib3@1.22
2.6.3
voltha/voltha-ofagent:1.6.09ee8c1f4428c
urllib3@1.22
2.6.3
voltha/voltha-voltha:1.6.0ff596b62de59
urllib3@1.22
2.6.3

Open the chart page →

93,855
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
urllib3@2.3.0
2.6.3

Open the chart page →

10,978
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
urllib3@2.2.1
2.6.3

Open the chart page →

11,796
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
urllib3@1.24.2
2.6.3

Open the chart page →

34,671
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
urllib3@1.24.2
2.6.3

Open the chart page →

7,519
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
urllib3@2.5.0
2.6.3
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
urllib3@2.2.1
2.6.3

Open the chart page →

18,922
exporteropenshift1.0.473 of 3See more

exporter openshift 1.0.47

3 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
urllib3@1.24.2
2.6.3
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
urllib3@1.26.5
2.6.3
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
urllib3@1.26.5
2.6.3

Open the chart page →

13,000
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
urllib3@1.24.2
2.6.3

Open the chart page →

4,749
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
urllib3@1.26.5
2.6.3

Open the chart page →

4,127
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
urllib3@1.24.2
2.6.3

Open the chart page →

5,863
orion-ldopenshift1.0.31 of 2See more

orion-ld openshift 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
urllib3@1.24.2
2.6.3

Open the chart page →

14,727
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
urllib3@1.26.5
2.6.3

Open the chart page →

8,599
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
urllib3@1.24.2
2.6.3

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
urllib3@1.24.2
2.6.3

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
urllib3@1.24.2
2.6.3

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
urllib3@1.24.2
2.6.3

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
urllib3@1.24.2
2.6.3

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
urllib3@1.24.2
2.6.3

Open the chart page →

13,100
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
python-pip@9.0.1-2.3~ubuntu1.18.04.4
urllib3@1.25.11
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3

Open the chart page →

36,215
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.07 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

7 of the 40 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
yetiplatform/yeti:2.9.09bcbe2650a14
urllib3@2.4.0
2.6.3
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.6.3
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.6.3

Open the chart page →

71,208
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
urllib3@2.4.0
2.6.3

Open the chart page →

6,583
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
urllib3@1.26.18
2.6.3

Open the chart page →

5,137
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
urllib3@2.2.1
2.6.3

Open the chart page →

5,411
devpiowan-charts0.1.01 of 1See more

devpi owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
owanio1992/devpi:6.16.04ade8e1e4d7e
urllib3@2.5.0
2.6.3

Open the chart page →

510
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
urllib3@2.6.0
2.6.3

Open the chart page →

2,376
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
urllib3@2.6.2
2.6.3

Open the chart page →

4,749
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
urllib3@2.6.2
2.6.3

Open the chart page →

3,854
plausiblepascaliskeVerified publisher2.0.01 of 1See more

plausible pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
py3-urllib3@1.26.18-r1
urllib3@1.26.18
1.26.18-r2
2.6.3

Open the chart page →

960
pet-battle-infrapetbattle1.0.322 of 2See more

pet-battle-infra petbattle 1.0.32

2 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
urllib3@1.26.19
2.6.3
quay.io/openshift/origin-cli:4.8bb5e052770e5
urllib3@1.24.2
2.6.3

Open the chart page →

15,466
pet-battle-tournamentpetbattle1.0.402 of 3See more

pet-battle-tournament petbattle 1.0.40

2 of the 3 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
urllib3@1.26.19
2.6.3
quay.io/openshift/origin-cli:4.8bb5e052770e5
urllib3@1.24.2
2.6.3

Open the chart page →

15,466
falcon-asgi-serverphanVerified publisher0.1.01 of 1See more

falcon-asgi-server phan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phan2410/falcon-asgi-server:0.1.04a86d138832d
urllib3@2.3.0
2.6.3

Open the chart page →

8,189
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
urllib3@1.26.14
2.6.3

Open the chart page →

2,565
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
urllib3@1.26.12
2.6.3

Open the chart page →

4,642
npre-essentialsphntom0.1.601 of 22See more

npre-essentials phntom 0.1.60

1 of the 22 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
urllib3@1.26.12
2.6.3

Open the chart page →

26,840
postgresql-backupphntom0.1.91 of 1See more

postgresql-backup phntom 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phntom/postgresql-backup-s3:1.0.2249b6488f618b
urllib3@1.26.13
2.6.3

Open the chart page →

2,556
stocks-nasdaq-crawlerphntom0.0.361 of 1See more

stocks-nasdaq-crawler phntom 0.0.36

1 of the 1 container images this version deploys carry CVE-2026-21441.

Container imageDigestPackageFixed in
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
urllib3@1.25.10
2.6.3

Open the chart page →

1,845

Container images carrying it

885 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
blacktop/httpie:latestfc5e68e2f5ab
urllib3@1.22
2.6.3
1
bmeares/meerschaum:2.8.48e9c5bacaa82
urllib3@2.3.0
2.6.3
1
bnjbvr/kresus:0.22.137e216b182c8
urllib3@1.26.20
2.6.3
1
boky/postfix:5.1.0aafc77238423
urllib3@2.6.2
2.6.3
1
bootc/puppetboard:1.1.0f1383295e7be
urllib3@1.25.8
2.6.3
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3
1
buildkite/agent:3.25.0aec38cfaae0e
urllib3@1.24.3
2.6.3
1
buntha/mlflow:2.1.1154542cc3083
urllib3@1.26.13
2.6.3
1
camerahub/camerahub:0.36.23a5af37dd6e1b
urllib3@1.26.15
2.6.3
1
camptocamp/bucket-cloner:latestacfafc308d88
urllib3@1.26.6
2.6.3
1
camptocamp/ekorre:0.1.035c91d5fda04
urllib3@1.25.8
2.6.3
1
camptocamp/pghoard:10bff736b15623
urllib3@1.24.1
2.6.3
1
camptocamp/snow-webhook:latest2924b43dbf40
urllib3@1.24.1
2.6.3
1
cdignam/kodiak:v0.54.05a6a55b39cee
urllib3@1.26.9
2.6.3
1
chetangautamm/repo:sipp.v3e7f7049e1544
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3
1
chubaofs/cfs-client:3.2.015ff74209ce7
urllib3@1.26.8
2.6.3
1
chubaofs/cfs-server:3.2.0205030e045f2
urllib3@1.26.8
2.6.3
1
ciuse99/suggestarr:v1.0.20d72768245ef5
urllib3@2.2.3
2.6.3
1
ckan/ckan-base-datapusher:0.0.2184d11924549f
urllib3@1.26.5
2.6.3
1
cleveritcz/opencve:1.5.0c75c1636e0b7
urllib3@1.25.11
2.6.3
1
cloudve/janis-terminal:latestaf56e77ca587
python-pip@9.0.1-2.3~ubuntu1.18.04.1
urllib3@1.25.9
9.0.1-2.3~ubuntu1.18.04.8+esm8
2.6.3
1
cloudve/ttyd:latestd79c1c5881c0
urllib3@1.25.8
2.6.3
1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
urllib3@1.26.20
2.6.3
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
urllib3@1.26.20
2.6.3
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
urllib3@1.26.20
2.6.3
1
codaprotocol/buildkite-exporter:0.2.137c68e67a401
urllib3@1.26.3
2.6.3
1
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
urllib3@1.25.9
2.6.3
1
codecov/self-hosted-api:24.4.10475cb1c3136
urllib3@1.26.18
2.6.3
1
codecov/self-hosted-worker:24.4.1837f546b479b
urllib3@1.26.18
2.6.3
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
urllib3@1.26.3
2.6.3
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
urllib3@1.26.3
2.6.3
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
urllib3@1.26.9
2.6.3
1
confluentinc/cp-kafka:7.6.683dbca3efd2a
urllib3@2.4.0
2.6.3
1
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
urllib3@2.2.3
2.6.3
1
confluentinc/cp-kafka:7.4.4c0224a1adf7a
urllib3@2.1.0
2.6.3
1
confluentinc/cp-kafka:7.5.1dc9b972db002
urllib3@2.0.5
2.6.3
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
urllib3@1.26.3
2.6.3
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
urllib3@1.26.3
2.6.3
1
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
urllib3@2.2.0
2.6.3
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
urllib3@1.26.3
2.6.3
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
urllib3@1.26.3
2.6.3
1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
urllib3@2.0.5
2.6.3
1
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
urllib3@2.2.3
2.6.3
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
urllib3@1.26.3
2.6.3
1
countly/countly-server:25.05.4e3c238248f99
python-urllib3@1.25.8-2ubuntu0.1
urllib3@1.25.8
1.25.8-2ubuntu0.4+esm3
2.6.3
1
cr0hn/ja-shortener:v0.1.414482d0bc4a1
urllib3@2.4.0
2.6.3
1
craigwillis/c2metadata-bd:latestae317d7e4724
urllib3@1.26.1
2.6.3
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
urllib3@1.26.13
2.6.3
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
urllib3@2.3.0
2.6.3
1
danuk/telegram-sender:0.0.1026560388070
urllib3@1.26.12
2.6.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.