StackRadar

CVE-2026-22746

Low

Advisory

Published 22 Apr 2026In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
75
of 17,781 indexed, latest versions
Container images
73
deployed by those charts
Fix available
1 of 1
affected package

Spring Security Vulnerable to User Attribute Enumeration when Using DaoAuthenticationProvider

Carried by container images the latest versions of 75 of 17,781 indexed charts deploy, on 73 images.

Affected packageAffected versionsFixed inImages
spring-security-coremaven5.7.1, 5.7.2, 5.7.3, 5.7.4+33 more6.5.10, 7.0.573
OSV records
GHSA-vxf7-qj7q-83fh

Charts affected

75 by stars
ChartLatestAffected imagesRadar Score
kafka-uikafka-uiVerified publisher1.6.51 of 1See more

kafka-ui kafka-ui 1.6.5

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/kafbat/kafka-ui:v1.5.07cda86a33344
spring-security-core@6.5.9
6.5.10

Open the chart page →

729
nacosygqygq2Verified publisher2.1.101 of 4See more

nacos ygqygq2 2.1.10

1 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
nacos/nacos-server:v3.0.20e951a1d07bb
spring-security-core@6.4.4
no fix listed

Open the chart page →

4,983
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
spring-security-core@6.4.5
no fix listed

Open the chart page →

6,328
geonode-k8sgeonode-k8sVerified publisher2.0.01 of 10See more

geonode-k8s geonode-k8s 2.0.0

1 of the 10 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
spring-security-core@5.8.16
no fix listed

Open the chart page →

13,953
thingsboardcetic0.1.21 of 2See more

thingsboard cetic 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
thingsboard/tb-postgres:latest2d17e4e36edc
spring-security-core@6.4.11
no fix listed

Open the chart page →

5,235
flowableflowable-oss7.1.01 of 2See more

flowable flowable-oss 7.1.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
flowable/flowable-rest:7.1.0b7ae287502cd
spring-security-core@6.3.3
no fix listed

Open the chart page →

2,784
hazelcasthazelcastVerified publisher5.10.21 of 2See more

hazelcast hazelcast 5.10.2

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
hazelcast/management-center:5.5.2991ddb27c251
spring-security-core@6.3.3
no fix listed

Open the chart page →

2,634
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
spring-security-core@6.4.5
no fix listed

Open the chart page →

6,328
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.261 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

1 of the 6 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
thingsboard/tb-node:3.6.0f40a542832c4
spring-security-core@5.7.7
no fix listed

Open the chart page →

14,566
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
spring-security-core@5.7.8
no fix listed

Open the chart page →

28,534
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
spring-security-core@6.4.6
no fix listed

Open the chart page →

4,378
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
spring-security-core@5.7.8
no fix listed

Open the chart page →

8,811
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
spring-security-core@5.7.12
no fix listed

Open the chart page →

7,740
cbioportalcbioportalOfficialVerified publisher1.1.01 of 1See more

cbioportal cbioportal 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
spring-security-core@6.5.5
6.5.10

Open the chart page →

3,674
cert-vaultcert-vaultOfficialVerified publisher2.12.01 of 7See more

cert-vault cert-vault 2.12.0

1 of the 7 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
spring-security-core@6.5.7
6.5.10

Open the chart page →

15,863
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-core@5.8.11
no fix listed

Open the chart page →

5,398
enavenav-service-architectureVerified publisher0.0.75 of 10See more

enav enav-service-architecture 0.0.7

5 of the 10 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/enav-api-gateway:latest8f4345c77dda
spring-security-core@7.0.4
7.0.5
ghcr.io/gla-rad/enav-ckeeper:latest415323ef112b
spring-security-core@7.0.4
7.0.5
ghcr.io/gla-rad/enav-eureka:latest05002092c621
spring-security-core@7.0.4
7.0.5
ghcr.io/gla-rad/enav-msg-broker:latest6fe372e4e481
spring-security-core@7.0.4
7.0.5
ghcr.io/gla-rad/enav-vdes-controller:latestc4c52955814f
spring-security-core@7.0.4
7.0.5

Open the chart page →

15,860
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
spring-security-core@5.8.14
no fix listed

Open the chart page →

7,387
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
treskon/portrait:DEV-latest88e813f22347
spring-security-core@6.3.5
no fix listed

Open the chart page →

31,844
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
zbalogh/reservation-api-server:1.0.97c247e399a1f
spring-security-core@5.7.3
no fix listed

Open the chart page →

6,639
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
spring-security-core@5.7.6
no fix listed

Open the chart page →

13,486
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
spring-security-core@5.8.7
no fix listed

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
spring-security-core@5.8.7
no fix listed

Open the chart page →

9,102
airsonic-advancedairsonic-advancedVerified publisher0.3.11 of 1See more

airsonic-advanced airsonic-advanced 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
linuxserver/airsonic-advanced:11.1.4d286a7f55a59
spring-security-core@6.3.3
no fix listed

Open the chart page →

1,748
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
hazelcast/management-center:5.3.2f9d34300d330
spring-security-core@5.7.10
no fix listed

Open the chart page →

28,131
apimap-apiapimapOfficialVerified publisher1.8.111 of 1See more

apimap-api apimap 1.8.11

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apimap/api:v1.8.11ae2b3ab00177
spring-security-core@5.7.4
no fix listed

Open the chart page →

2,231
kafka-uiappscodeVerified publisher2026.3.301 of 1See more

kafka-ui appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/kafbat/kafka-ui:v1.5.07cda86a33344
spring-security-core@6.5.9
6.5.10

Open the chart page →

729
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
spring-security-core@5.7.1
no fix listed

Open the chart page →

4,145
blackduck-alertblackduck8.4.01 of 4See more

blackduck-alert blackduck 8.4.0

1 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
spring-security-core@6.3.10
no fix listed

Open the chart page →

4,292
bluerange-serverbluerangeOfficialVerified publisher1.3.11 of 1See more

bluerange-server bluerange 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
bluerange/bluerange:26.1.307c8f73b55df
spring-security-core@6.4.5
no fix listed

Open the chart page →

1,816
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
spring-security-core@5.8.11
no fix listed

Open the chart page →

8,323
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-core@6.5.7
6.5.10

Open the chart page →

7,168
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-core@6.5.7
6.5.10

Open the chart page →

5,238
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
spring-security-core@6.4.4
no fix listed

Open the chart page →

4,578
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-core@5.8.11
no fix listed

Open the chart page →

5,398
kafka-uidoubanVerified publisher1.5.21 of 1See more

kafka-ui douban 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/kafbat/kafka-ui:v1.2.0185da4ad3e88
spring-security-core@6.4.3
no fix listed

Open the chart page →

1,269
eximeebpmseximeebpms-k8sOfficialVerified publisher0.3.01 of 1See more

eximeebpms eximeebpms-k8s 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
ghcr.io/eximeebpms/eximeebpms-bpm-platform:run-1.3.0acb8dbce38fd
spring-security-core@7.0.3
7.0.5

Open the chart page →

727
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
spring-security-core@6.4.4
no fix listed

Open the chart page →

7,792
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
spring-security-core@5.8.16
no fix listed

Open the chart page →

1,874
mod-data-export-springfolio-org0.1.41 of 1See more

mod-data-export-spring folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-data-export-spring:latestf1d7caf4544b
spring-security-core@7.0.2
7.0.5

Open the chart page →

1,253
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
spring-security-core@5.8.16
no fix listed

Open the chart page →

1,760
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
spring-security-core@5.8.16
no fix listed

Open the chart page →

1,733
mod-serials-managementfolio-org0.1.11 of 1See more

mod-serials-management folio-org 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-core@5.8.16
no fix listed

Open the chart page →

1,733
mod-service-interactionfolio-org0.1.61 of 1See more

mod-service-interaction folio-org 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-core@5.8.16
no fix listed

Open the chart page →

1,733
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-core@5.7.11
no fix listed

Open the chart page →

34,754
siembolgresearch0.1.62 of 4See more

siembol gresearch 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-core@5.7.4
no fix listed
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-core@5.7.4
no fix listed

Open the chart page →

14,312
cc-spring-appgridgainVerified publisher1.0.61 of 1See more

cc-spring-app gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-core@6.5.7
6.5.10

Open the chart page →

1,691
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
dannielkil/book-backend:lateste3b479a55a69
spring-security-core@5.7.3
no fix listed

Open the chart page →

9,122
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
openbas/platform:2.0.5d986d80b0a75
spring-security-core@6.3.6
no fix listed

Open the chart page →

25,017
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-22746.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
spring-security-core@5.8.13
no fix listed

Open the chart page →

5,320

Container images carrying it

73 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
apache/fineract:1.12.1a83cf1980609
spring-security-core@6.4.4
no fix listed
2
apache/nifi-registry:1.26.07cdfd8deec92
spring-security-core@5.8.11
no fix listed
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
spring-security-core@6.4.5
no fix listed
2
hazelcast/management-center:5.5.2991ddb27c251
spring-security-core@6.3.3
no fix listed
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
spring-security-core@5.8.7
no fix listed
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
spring-security-core@6.5.7
6.5.10
2
ghcr.io/kafbat/kafka-ui:v1.5.07cda86a33344
spring-security-core@6.5.9
6.5.10
2
2martens/timetable:latestbd1ba6ab84c9
spring-security-core@6.5.5
6.5.10
1
2martens/wahlrecht:latestba2c3040dab0
spring-security-core@6.5.2
6.5.10
1
andrianrf/backoffice-be:latest6036614803d4
spring-security-core@5.7.8
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
spring-security-core@5.8.13
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
spring-security-core@5.7.12
no fix listed
1
apimap/api:v1.8.11ae2b3ab00177
spring-security-core@5.7.4
no fix listed
1
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
spring-security-core@5.7.1
no fix listed
1
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
spring-security-core@6.3.10
no fix listed
1
bluerange/bluerange:26.1.307c8f73b55df
spring-security-core@6.4.5
no fix listed
1
castlemock/castlemock:latestb7f3f1527ba9
spring-security-core@6.4.4
no fix listed
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
spring-security-core@6.5.5
6.5.10
1
commerceexperts/smartquery-service:2.2.09e33ad89baf6
spring-security-core@5.7.10
no fix listed
1
conductoross/conductor:3.31.09fba127693e6
spring-security-core@6.3.9
no fix listed
1
dannielkil/book-backend:lateste3b479a55a69
spring-security-core@5.7.3
no fix listed
1
fimperato/detected-info-notification:1.2.6-RELEASE6441f6545613
spring-security-core@5.7.5
no fix listed
1
flowable/flowable-rest:7.1.0b7ae287502cd
spring-security-core@6.3.3
no fix listed
1
folioci/mod-agreements:latest29c3f233a498
spring-security-core@5.8.16
no fix listed
1
folioci/mod-data-export-spring:latestf1d7caf4544b
spring-security-core@7.0.2
7.0.5
1
folioci/mod-licenses:latestcfd6109bf477
spring-security-core@5.8.16
no fix listed
1
folioci/mod-oa:latestae3b069d4ba5
spring-security-core@5.8.16
no fix listed
1
folioci/mod-serials-management:latest571fa1ffe8c9
spring-security-core@5.8.16
no fix listed
1
folioci/mod-service-interaction:latestf53c327a48e8
spring-security-core@5.8.16
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
spring-security-core@5.8.16
no fix listed
1
gotson/komga:1.22.0ba892ab3e082
spring-security-core@6.4.1
no fix listed
1
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
spring-security-core@5.7.4
no fix listed
1
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
spring-security-core@5.7.4
no fix listed
1
gridgain/cloud-connector:2025.5.15ab838d7d3cb
spring-security-core@6.5.7
6.5.10
1
hazelcast/management-center:5.3.2f9d34300d330
spring-security-core@5.7.10
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
spring-security-core@5.8.14
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
spring-security-core@5.8.11
no fix listed
1
jhipster/jhipster-registry:latest7184525acd4d
spring-security-core@5.7.3
no fix listed
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
spring-security-core@5.7.11
no fix listed
1
linuxserver/airsonic-advanced:11.1.4d286a7f55a59
spring-security-core@6.3.3
no fix listed
1
nacos/nacos-server:v3.0.20e951a1d07bb
spring-security-core@6.4.4
no fix listed
1
nacos/nacos-server:v3.0.130a39cb0c54d
spring-security-core@6.4.4
no fix listed
1
odavid/my-bloody-jenkins:2.462.3-306e7ab3bbc948e
spring-security-core@5.8.14
no fix listed
1
openbas/platform:2.0.5d986d80b0a75
spring-security-core@6.3.6
no fix listed
1
operaton/operaton:1.0.0-beta-4b35867ffe4d8
spring-security-core@6.4.4
no fix listed
1
seataio/seata-server:latest703b5de7f1a6
spring-security-core@5.7.11
no fix listed
1
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-security-core@6.3.8
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
spring-security-core@6.4.6
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
spring-security-core@5.8.3
no fix listed
1
thingsboard/tb-node:3.4.1645f43b688f7
spring-security-core@5.7.1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.