StackRadar

CVE-2026-22732

Critical

Advisory

Published 20 Mar 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.005
40th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
136
of 17,781 indexed, latest versions
Container images
150
deployed by those charts
Fix available
1 of 1
affected package

Spring Security HTTP Headers Are not Written Under Some Conditions

Carried by container images the latest versions of 136 of 17,781 indexed charts deploy, on 150 images.

Affected packageAffected versionsFixed inImages
spring-security-webmaven3.2.10.RELEASE, 4.1.3.RELEASE, 4.1.4.RELEASE, 4.2.2.RELEASE+67 more6.5.9, 7.0.4150
OSV records
GHSA-mf92-479x-3373

Charts affected

136 by stars
ChartLatestAffected imagesRadar Score
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
spring-security-web@5.5.3
no fix listed

Open the chart page →

6,447
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
spring-security-web@4.2.11.RELEASE
no fix listed

Open the chart page →

9,144
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
spring-security-web@4.2.7.RELEASE
no fix listed

Open the chart page →

23,665
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-web@6.5.7
6.5.9

Open the chart page →

7,168
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-web@6.5.7
6.5.9

Open the chart page →

5,238
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
spring-security-web@6.4.4
no fix listed

Open the chart page →

4,578
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-web@5.8.11
no fix listed

Open the chart page →

5,398
apache-ranger-admindata-platform-stableVerified publisher0.2.01 of 2See more

apache-ranger-admin data-platform-stable 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
spring-security-web@4.2.17.RELEASE
no fix listed

Open the chart page →

8,245
kafka-uidoubanVerified publisher1.5.21 of 1See more

kafka-ui douban 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/kafbat/kafka-ui:v1.2.0185da4ad3e88
spring-security-web@6.4.3
no fix listed

Open the chart page →

1,269
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
spring-security-web@4.2.13.RELEASE
no fix listed

Open the chart page →

19,802
dshackledysnixVerified publisher0.1.11 of 2See more

dshackle dysnix 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.12ac2a4bc66ab6
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,237
management-portaleclipse-aeriosVerified publisher1.1.01 of 2See more

management-portal eclipse-aerios 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
eclipseaerios/management-portal-backend:1.2.215fba526a4f8
spring-security-web@6.2.2
no fix listed

Open the chart page →

3,888
shenyuerdeng2.4.211 of 2See more

shenyu erdeng 2.4.21

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
spring-security-web@5.2.1.RELEASE
no fix listed

Open the chart page →

12,513
dshackleethereum-helm-chartsVerified publisher0.1.91 of 2See more

dshackle ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.14.0126f0ae0b388
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,021
eximeebpmseximeebpms-k8sOfficialVerified publisher0.3.01 of 1See more

eximeebpms eximeebpms-k8s 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/eximeebpms/eximeebpms-bpm-platform:run-1.3.0acb8dbce38fd
spring-security-web@7.0.3
7.0.4

Open the chart page →

727
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
spring-security-web@6.4.4
no fix listed

Open the chart page →

7,792
scorpio-brokerfiware0.3.39 of 10See more

scorpio-broker fiware 0.3.3

9 of the 10 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,600
scorpiobrokerfiware0.1.29 of 10See more

scorpiobroker fiware 0.1.2

9 of the 10 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,600
scorpio-broker-aaiofiware0.4.151 of 1See more

scorpio-broker-aaio fiware 0.4.15

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
spring-security-web@5.6.0
no fix listed

Open the chart page →

5,286
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,874
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,760
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
spring-security-web@5.5.0
no fix listed

Open the chart page →

18,230
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
spring-security-web@5.2.4.RELEASE
no fix listed

Open the chart page →

19,215
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
spring-security-web@5.6.2
no fix listed

Open the chart page →

8,943
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
spring-security-web@5.4.6
no fix listed

Open the chart page →

12,581
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
spring-security-web@5.3.3.RELEASE
no fix listed

Open the chart page →

17,702
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
spring-security-web@3.2.10.RELEASE
no fix listed

Open the chart page →

27,949
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.82 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

2 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
spring-security-web@5.3.6.RELEASE
no fix listed
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-web@5.7.11
no fix listed

Open the chart page →

34,754
siembolgresearch0.1.62 of 4See more

siembol gresearch 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-web@5.7.4
no fix listed
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-web@5.7.4
no fix listed

Open the chart page →

14,312
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-web@6.5.7
6.5.9

Open the chart page →

1,691
nacosheidaodageshiwoVerified publisher0.1.51 of 1See more

nacos heidaodageshiwo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:v2.1.0dcf04549c6d7
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

3,978
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
dannielkil/book-backend:lateste3b479a55a69
spring-security-web@5.7.3
no fix listed

Open the chart page →

9,122
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
openbas/platform:2.0.5d986d80b0a75
spring-security-web@6.3.6
no fix listed

Open the chart page →

25,017
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
spring-security-web@5.8.13
no fix listed

Open the chart page →

5,320
appswitcher-serverit-at-mOfficialVerified publisher2.0.21 of 1See more

appswitcher-server it-at-m 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
spring-security-web@6.4.5
no fix listed

Open the chart page →

3,774
kf-app-eaiit-at-mOfficialVerified publisher0.1.71 of 1See more

kf-app-eai it-at-m 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
spring-security-web@6.5.3
6.5.9

Open the chart page →

1,947
kron-aapm-agentkron-aapm-agent1.1.01 of 1See more

kron-aapm-agent kron-aapm-agent 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.1.07feef7d2ab42
spring-security-web@5.4.1
no fix listed

Open the chart page →

8,884
nacoskubesphere-testVerified publisher0.1.11 of 1See more

nacos kubesphere-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:1.4.1fe6e5688cdf3
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

4,153
komgalinkding0.2.31 of 1See more

komga linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gotson/komga:1.22.0ba892ab3e082
spring-security-web@6.4.1
no fix listed

Open the chart page →

3,131
elastictranscoderluiscajl0.46.03 of 4See more

elastictranscoder luiscajl 0.46.0

3 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
spring-security-web@5.5.0
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
spring-security-web@5.5.0
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
spring-security-web@5.5.0
no fix listed

Open the chart page →

58,160
lavandaluiscajl0.0.1343 of 5See more

lavanda luiscajl 0.0.134

3 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/filebot:0.0.671f2ccec8c0d
spring-security-web@5.4.5
no fix listed

Open the chart page →

18,248
resource-processormicroservices-learningVerified publisher1.2.01 of 1See more

resource-processor microservices-learning 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
spring-security-web@6.1.4
no fix listed

Open the chart page →

3,683
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
spring-security-web@6.1.4
no fix listed

Open the chart page →

5,129
crowdmoxVerified publisher2.4.31 of 3See more

crowd mox 2.4.3

1 of the 3 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
atlassian/crowd:5.2.2ebf761c7d437
spring-security-web@5.5.8
no fix listed

Open the chart page →

5,663
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
spring-security-web@6.4.4
no fix listed

Open the chart page →

1,783
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
spring-security-web@4.1.3.RELEASE
no fix listed

Open the chart page →

55,726
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-security-web@5.7.2
no fix listed

Open the chart page →

5,875

Container images carrying it

150 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
openbas/platform:2.0.5d986d80b0a75
spring-security-web@6.3.6
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
spring-security-web@3.2.10.RELEASE
no fix listed
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
spring-security-web@6.4.4
no fix listed
1
platform9community/api-gateway:latest40a4970de568
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/customers-service:latest2089811e5cc6
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/vets-service:latestd1165c94dfb3
spring-security-web@5.3.3.RELEASE
no fix listed
1
platform9community/visits-service:latest8d11b50368c6
spring-security-web@5.3.3.RELEASE
no fix listed
1
remche/shinyproxy:2.6.18bcda8a04d3b
spring-security-web@5.5.5
no fix listed
1
reportportal/service-api:5.7.29df41f8fb320
spring-security-web@5.2.4.RELEASE
no fix listed
1
reportportal/service-authorization:5.7.09e73114dbd15
spring-security-web@5.2.4.RELEASE
no fix listed
1
rundeck/rundeck:3.2.74d64fe56f767
spring-security-web@4.2.13.RELEASE
no fix listed
1
rundeck/rundeck:3.0.16b13e8059ad72
spring-security-web@4.2.7.RELEASE
no fix listed
1
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
spring-security-web@5.6.0
no fix listed
1
seataio/seata-server:latest703b5de7f1a6
spring-security-web@5.7.11
no fix listed
1
seataio/seata-server:1.5.1ee1ed55f4144
spring-security-web@5.4.9
no fix listed
1
seldonio/apife:0.2.7ba81b17f00eb
spring-security-web@4.2.9.RELEASE
no fix listed
1
seldonio/apife:0.3.1eea0d3f578ca
spring-security-web@4.2.9.RELEASE
no fix listed
1
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-security-web@6.3.8
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
spring-security-web@6.4.6
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
spring-security-web@5.8.3
no fix listed
1
thingsboard/tb-node:3.4.1645f43b688f7
spring-security-web@5.7.1
no fix listed
1
thingsboard/tb-node:3.6.0f40a542832c4
spring-security-web@5.7.7
no fix listed
1
thingsboard/tb-postgres:latest2d17e4e36edc
spring-security-web@6.4.11
no fix listed
1
thmmniii/fbs-core:v1.27.15438517d9fc2
spring-security-web@5.7.8
no fix listed
1
treskon/portrait:DEV-latest88e813f22347
spring-security-web@6.3.5
no fix listed
1
vitalii1992/account-service:latest0e694d94551d
spring-security-web@6.1.0
no fix listed
1
vitalii1992/analytics-service:latest8e798836ecea
spring-security-web@6.1.0
no fix listed
1
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-security-web@6.1.0
no fix listed
1
vitalii1992/order-service:latest07c4a8833ce4
spring-security-web@6.1.0
no fix listed
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-security-web@5.7.2
no fix listed
1
vlebediantsev/logic-ms:latestdf8bf38c535b
spring-security-web@5.7.2
no fix listed
1
vlebediantsev/registration-ms-final:latest427af418b75e
spring-security-web@5.7.2
no fix listed
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
spring-security-web@5.7.2
no fix listed
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
spring-security-web@5.7.8
no fix listed
1
zahoriaut/zahori-server:0.1.17b2de13916f3e
spring-security-web@5.7.6
no fix listed
1
zbalogh/reservation-api-server:1.0.97c247e399a1f
spring-security-web@5.7.3
no fix listed
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
spring-security-web@5.2.1.RELEASE
no fix listed
1
ghcr.io/eximeebpms/eximeebpms-bpm-platform:run-1.3.0acb8dbce38fd
spring-security-web@7.0.3
7.0.4
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
spring-security-web@6.5.7
6.5.9
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
spring-security-web@6.4.5
no fix listed
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
spring-security-web@6.5.3
6.5.9
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
spring-security-web@5.3.3.RELEASE
no fix listed
1
ghcr.io/kafbat/kafka-ui:v1.2.0185da4ad3e88
spring-security-web@6.4.3
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
spring-security-web@5.2.4.RELEASE
no fix listed
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
spring-security-web@5.7.13
no fix listed
1
ghcr.io/stacksimplify/kube-usermgmt-webapp:1.0.0-mysqldb41b45003c6b6
spring-security-web@5.1.5.RELEASE
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
spring-security-web@5.7.6
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.59.3_local8cdcb7e83f9f
spring-security-web@5.6.2
no fix listed
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
spring-security-web@6.2.0
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
spring-security-web@6.0.5
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.