StackRadar

CVE-2026-22732

Critical

Advisory

Published 20 Mar 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.1
base score, highest
EPSS
0.005
40th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
136
of 17,781 indexed, latest versions
Container images
150
deployed by those charts
Fix available
1 of 1
affected package

Spring Security HTTP Headers Are not Written Under Some Conditions

Carried by container images the latest versions of 136 of 17,781 indexed charts deploy, on 150 images.

Affected packageAffected versionsFixed inImages
spring-security-webmaven3.2.10.RELEASE, 4.1.3.RELEASE, 4.1.4.RELEASE, 4.2.2.RELEASE+67 more6.5.9, 7.0.4150
OSV records
GHSA-mf92-479x-3373

Charts affected

136 by stars
ChartLatestAffected imagesRadar Score
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
spring-security-web@5.5.3
no fix listed

Open the chart page →

6,447
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
spring-security-web@4.2.11.RELEASE
no fix listed

Open the chart page →

9,144
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
spring-security-web@4.2.7.RELEASE
no fix listed

Open the chart page →

23,665
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-web@6.5.7
6.5.9

Open the chart page →

7,168
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-web@6.5.7
6.5.9

Open the chart page →

5,238
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
spring-security-web@6.4.4
no fix listed

Open the chart page →

4,578
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-web@5.8.11
no fix listed

Open the chart page →

5,398
apache-ranger-admindata-platform-stableVerified publisher0.2.01 of 2See more

apache-ranger-admin data-platform-stable 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
spring-security-web@4.2.17.RELEASE
no fix listed

Open the chart page →

8,245
kafka-uidoubanVerified publisher1.5.21 of 1See more

kafka-ui douban 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/kafbat/kafka-ui:v1.2.0185da4ad3e88
spring-security-web@6.4.3
no fix listed

Open the chart page →

1,269
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
spring-security-web@4.2.13.RELEASE
no fix listed

Open the chart page →

19,802
dshackledysnixVerified publisher0.1.11 of 2See more

dshackle dysnix 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.12ac2a4bc66ab6
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,237
management-portaleclipse-aeriosVerified publisher1.1.01 of 2See more

management-portal eclipse-aerios 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
eclipseaerios/management-portal-backend:1.2.215fba526a4f8
spring-security-web@6.2.2
no fix listed

Open the chart page →

3,888
shenyuerdeng2.4.211 of 2See more

shenyu erdeng 2.4.21

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
spring-security-web@5.2.1.RELEASE
no fix listed

Open the chart page →

12,513
dshackleethereum-helm-chartsVerified publisher0.1.91 of 2See more

dshackle ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
emeraldpay/dshackle:0.14.0126f0ae0b388
spring-security-web@5.5.3
no fix listed

Open the chart page →

2,021
eximeebpmseximeebpms-k8sOfficialVerified publisher0.3.01 of 1See more

eximeebpms eximeebpms-k8s 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/eximeebpms/eximeebpms-bpm-platform:run-1.3.0acb8dbce38fd
spring-security-web@7.0.3
7.0.4

Open the chart page →

727
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
spring-security-web@6.4.4
no fix listed

Open the chart page →

7,792
scorpio-brokerfiware0.3.39 of 10See more

scorpio-broker fiware 0.3.3

9 of the 10 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,600
scorpiobrokerfiware0.1.29 of 10See more

scorpiobroker fiware 0.1.2

9 of the 10 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed

Open the chart page →

55,600
scorpio-broker-aaiofiware0.4.151 of 1See more

scorpio-broker-aaio fiware 0.4.15

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
spring-security-web@5.6.0
no fix listed

Open the chart page →

5,286
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,874
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,760
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-web@5.8.16
no fix listed

Open the chart page →

1,733
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
spring-security-web@5.5.0
no fix listed

Open the chart page →

18,230
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
spring-security-web@5.2.4.RELEASE
no fix listed

Open the chart page →

19,215
gapsgeek-cookbookVerified publisher5.4.21 of 1See more

gaps geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
housewrecker/gaps:latestf417dd0a7547
spring-security-web@5.6.2
no fix listed

Open the chart page →

8,943
komgageek-cookbookVerified publisher2.4.21 of 1See more

komga geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gotson/komga:0.99.49b15ea6bfc30
spring-security-web@5.4.6
no fix listed

Open the chart page →

12,581
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
spring-security-web@5.3.3.RELEASE
no fix listed

Open the chart page →

17,702
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
spring-security-web@3.2.10.RELEASE
no fix listed

Open the chart page →

27,949
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.82 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

2 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
spring-security-web@5.3.6.RELEASE
no fix listed
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-web@5.7.11
no fix listed

Open the chart page →

34,754
siembolgresearch0.1.62 of 4See more

siembol gresearch 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-web@5.7.4
no fix listed
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-web@5.7.4
no fix listed

Open the chart page →

14,312
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-web@6.5.7
6.5.9

Open the chart page →

1,691
nacosheidaodageshiwoVerified publisher0.1.51 of 1See more

nacos heidaodageshiwo 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:v2.1.0dcf04549c6d7
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

3,978
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
dannielkil/book-backend:lateste3b479a55a69
spring-security-web@5.7.3
no fix listed

Open the chart page →

9,122
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
openbas/platform:2.0.5d986d80b0a75
spring-security-web@6.3.6
no fix listed

Open the chart page →

25,017
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
spring-security-web@5.8.13
no fix listed

Open the chart page →

5,320
appswitcher-serverit-at-mOfficialVerified publisher2.0.21 of 1See more

appswitcher-server it-at-m 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
spring-security-web@6.4.5
no fix listed

Open the chart page →

3,774
kf-app-eaiit-at-mOfficialVerified publisher0.1.71 of 1See more

kf-app-eai it-at-m 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
spring-security-web@6.5.3
6.5.9

Open the chart page →

1,947
kron-aapm-agentkron-aapm-agent1.1.01 of 1See more

kron-aapm-agent kron-aapm-agent 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.1.07feef7d2ab42
spring-security-web@5.4.1
no fix listed

Open the chart page →

8,884
nacoskubesphere-testVerified publisher0.1.11 of 1See more

nacos kubesphere-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:1.4.1fe6e5688cdf3
spring-security-web@5.1.12.RELEASE
no fix listed

Open the chart page →

4,153
komgalinkding0.2.31 of 1See more

komga linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
gotson/komga:1.22.0ba892ab3e082
spring-security-web@6.4.1
no fix listed

Open the chart page →

3,131
elastictranscoderluiscajl0.46.03 of 4See more

elastictranscoder luiscajl 0.46.0

3 of the 4 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
spring-security-web@5.5.0
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
spring-security-web@5.5.0
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
spring-security-web@5.5.0
no fix listed

Open the chart page →

58,160
lavandaluiscajl0.0.1343 of 5See more

lavanda luiscajl 0.0.134

3 of the 5 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
spring-security-web@5.3.4.RELEASE
no fix listed
lavandadelpatio/filebot:0.0.671f2ccec8c0d
spring-security-web@5.4.5
no fix listed

Open the chart page →

18,248
resource-processormicroservices-learningVerified publisher1.2.01 of 1See more

resource-processor microservices-learning 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
spring-security-web@6.1.4
no fix listed

Open the chart page →

3,683
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
spring-security-web@6.1.4
no fix listed

Open the chart page →

5,129
crowdmoxVerified publisher2.4.31 of 3See more

crowd mox 2.4.3

1 of the 3 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
atlassian/crowd:5.2.2ebf761c7d437
spring-security-web@5.5.8
no fix listed

Open the chart page →

5,663
nacosnacos-yunyeVerified publisher1.0.31 of 1See more

nacos nacos-yunye 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.130a39cb0c54d
spring-security-web@6.4.4
no fix listed

Open the chart page →

1,783
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
craigwillis/c2metadata-bd:latestae317d7e4724
spring-security-web@4.1.3.RELEASE
no fix listed

Open the chart page →

55,726
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-22732.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-security-web@5.7.2
no fix listed

Open the chart page →

5,875

Container images carrying it

150 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
apache/shenyu-bootstrap:2.4.20bd3b25c4be4
spring-security-web@5.2.1.RELEASE
no fix listed
3
provectuslabs/kafka-ui:latest8f2ff02d64b0
spring-security-web@6.1.3
no fix listed
3
apache/fineract:1.12.1a83cf1980609
spring-security-web@6.4.4
no fix listed
2
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-web@5.8.11
no fix listed
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
spring-security-web@6.4.5
no fix listed
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
spring-security-web@5.3.4.RELEASE
no fix listed
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
spring-security-web@5.3.4.RELEASE
no fix listed
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
spring-security-web@5.3.4.RELEASE
no fix listed
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
spring-security-web@5.3.4.RELEASE
no fix listed
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
spring-security-web@5.3.4.RELEASE
no fix listed
2
hazelcast/management-center:5.5.2991ddb27c251
spring-security-web@6.3.3
no fix listed
2
hookiesolutions/webhookie:latest0629694246ba
spring-security-web@5.6.1
no fix listed
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
spring-security-web@5.8.7
no fix listed
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-web@6.5.7
6.5.9
2
nacos/nacos-server:v2.1.0dcf04549c6d7
spring-security-web@5.1.12.RELEASE
no fix listed
2
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-security-web@5.6.0
no fix listed
2
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-security-web@5.6.0
no fix listed
2
2martens/timetable:latestbd1ba6ab84c9
spring-security-web@6.5.5
6.5.9
1
2martens/wahlrecht:latestba2c3040dab0
spring-security-web@6.5.2
6.5.9
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
spring-security-web@5.5.0
no fix listed
1
andrianrf/backoffice-be:latest6036614803d4
spring-security-web@5.7.8
no fix listed
1
andrianrf/bpjstk-service:latest46abe878d9d8
spring-security-web@5.3.4.RELEASE
no fix listed
1
andrianrf/iso-client:latestba560086ce15
spring-security-web@5.3.4.RELEASE
no fix listed
1
apache/nifi-registry:1.14.0090b7f87ec7f
spring-security-web@5.5.0
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
spring-security-web@5.8.13
no fix listed
1
apache/nifi-registry:0.8.0974efa2f21da
spring-security-web@5.2.2.RELEASE
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
spring-security-web@5.7.12
no fix listed
1
apache/shenyu-bootstrap:2.5.11bd5756f6273
spring-security-web@5.6.5
no fix listed
1
apimap/api:v1.8.11ae2b3ab00177
spring-security-web@5.7.4
no fix listed
1
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
spring-security-web@5.7.1
no fix listed
1
atlassian/crowd:5.2.2ebf761c7d437
spring-security-web@5.5.8
no fix listed
1
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
spring-security-web@5.3.3.RELEASE
no fix listed
1
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
spring-security-web@6.3.10
no fix listed
1
bluerange/bluerange:26.1.307c8f73b55df
spring-security-web@6.4.5
no fix listed
1
castlemock/castlemock:latestb7f3f1527ba9
spring-security-web@6.4.4
no fix listed
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
spring-security-web@6.5.5
6.5.9
1
choerodon/event-store-service:0.8.03c94c97f6f69
spring-security-web@4.2.2.RELEASE
no fix listed
1
commerceexperts/smartquery-service:2.2.09e33ad89baf6
spring-security-web@5.7.10
no fix listed
1
craigwillis/c2metadata-bd:latestae317d7e4724
spring-security-web@4.1.3.RELEASE
no fix listed
1
dannielkil/book-backend:lateste3b479a55a69
spring-security-web@5.7.3
no fix listed
1
drpcorg/dshackle:0.54.08858fae1859d
spring-security-web@5.5.3
no fix listed
1
eclipseaerios/management-portal-backend:1.2.215fba526a4f8
spring-security-web@6.2.2
no fix listed
1
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
spring-security-web@4.2.17.RELEASE
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.