StackRadar

CVE-2026-23490

High

Advisory

Published 16 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
101
of 17,781 indexed, latest versions
Container images
102
deployed by those charts
Fix available
2 of 2
affected packages

pyasn1 has a DoS vulnerability in decoder

Carried by container images the latest versions of 101 of 17,781 indexed charts deploy, on 102 images.

Affected packageAffected versionsFixed inImages
pyasn1pypi0.6.10.6.290
pyasn1deb0.4.2-3, 0.4.8-1, 0.4.8-30.4.2-3ubuntu0.18.04.1~esm1, 0.4.8-1ubuntu0.1, 0.4.8-3+deb12u113
OSV records
DEBIAN-CVE-2026-23490GHSA-63vm-454h-vhhqUBUNTU-CVE-2026-23490
Also known as
DSA-6114-1, PYSEC-2026-1810, USN-7975-1, USN-8134-1

Charts affected

101 by stars
ChartLatestAffected imagesRadar Score
zerossl-cert-managerzerossl-cert-manager0.1.01 of 2See more

zerossl-cert-manager zerossl-cert-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-23490.

Container imageDigestPackageFixed in
andreymileshin/zerossl-issuer:v1.0.0e0825acc9e48
pyasn1@0.6.1
0.6.2

Open the chart page →

570

Container images carrying it

102 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
pyasn1@0.6.1
0.6.2
1
quay.io/stackgres/operator:1.19.1f241b0b20326
pyasn1@0.6.1
0.6.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.