StackRadar

CVE-2026-26996

High

Advisory

Published 18 Feb 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.005
43rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
788
of 17,787 indexed, latest versions
Container images
831
deployed by those charts
Fix available
1 of 2
affected packages

minimatch has a ReDoS via repeated wildcards with non-matching literal in pattern

Carried by container images the latest versions of 788 of 17,787 indexed charts deploy, on 831 images.

Affected packageAffected versionsFixed inImages
minimatchnpm0.3.0, 1.0.0, 2.0.10, 3.0.0+20 more3.1.3, 4.2.4, 5.1.7, 6.2.1+2 more831
node-minimatchdeb1.0.0-1, 3.0.4-3, 3.0.4-3+deb10u1build0.18.04.1, 3.0.4-4+3 moreno fix listed7
OSV records
DEBIAN-CVE-2026-26996GHSA-3ppc-4f35-3m26UBUNTU-CVE-2026-26996

Charts affected

788 by stars
ChartLatestAffected imagesRadar Score
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
infisical/infisical:latest02082bf13163
minimatch@9.0.5
9.0.6

Open the chart page →

3,014
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
minimatch@5.0.1
5.1.7

Open the chart page →

4,944
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
minimatch@3.0.4
3.1.3

Open the chart page →

10,494
interbtc-hydrainterlay0.1.153 of 4See more

interbtc-hydra interlay 0.1.15

3 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
minimatch@3.0.4
3.1.3
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
minimatch@3.1.2
3.1.3
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
minimatch@3.0.4
3.1.3

Open the chart page →

6,831
interlay-firesquidinterlay0.1.113 of 4See more

interlay-firesquid interlay 0.1.11

3 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
minimatch@3.1.2
3.1.3
subsquid/substrate-explorer:firesquid0889a857f192
minimatch@5.1.2
5.1.7
subsquid/substrate-ingest:firesquidfa549779e9b1
minimatch@3.1.2
3.1.3

Open the chart page →

4,667
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
minimatch@3.0.4
3.1.3

Open the chart page →

7,232
istio-bookinfoistio-bookinfo1.2.21 of 6See more

istio-bookinfo istio-bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
minimatch@3.0.4
3.1.3

Open the chart page →

18,980
keyoxide-webittrident-oss0.2.31 of 1See more

keyoxide-web ittrident-oss 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
keyoxide/keyoxide:stable96f27a71269d
minimatch@3.0.4
3.1.3

Open the chart page →

2,363
n8njanip81-helm-chartsVerified publisher0.1.41 of 1See more

n8n janip81-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
n8nio/n8n:1.86.08b39ed5a2de9
minimatch@9.0.5
9.0.6

Open the chart page →

5,826
monocularjenkins-x0.6.41 of 4See more

monocular jenkins-x 0.6.4

1 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
minimatch@3.0.4
3.1.3

Open the chart page →

4,614
hello-kubernetes-chartjhidalgo3-githubVerified publisher3.0.01 of 1See more

hello-kubernetes-chart jhidalgo3-github 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
jhidalgo3/hello-kubernetes:1.0.0.1397bf5ddfa8628d79f5
minimatch@10.0.1
10.2.1

Open the chart page →

914
github-exporterjkroepkeVerified publisher1.4.01 of 1See more

github-exporter jkroepke 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
jkroepke/github_exporter:1.8.03d850992786d
minimatch@9.0.5
9.0.6

Open the chart page →

1,031
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
minimatch@3.0.4
3.1.3

Open the chart page →

6,454
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
minimatch@3.1.2
3.1.3

Open the chart page →

2,315
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
minimatch@4.2.1
4.2.4

Open the chart page →

22,589
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
minimatch@3.1.2
3.1.3

Open the chart page →

2,231
shinsei-managerjtektVerified publisher0.2.04 of 8See more

shinsei-manager jtekt 0.2.0

4 of the 8 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
minimatch@9.0.5
9.0.6
moreillon/group-manager:latest3caa8f710ee0
minimatch@9.0.5
9.0.6
moreillon/user-manager:v5.0.2e1c9bfab5c16
minimatch@3.1.2
3.1.3
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
minimatch@3.1.2
3.1.3

Open the chart page →

63,461
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
minimatch@4.2.1
4.2.4

Open the chart page →

16,600
docker-hub-rssjuniorjpdj0.1.311 of 1See more

docker-hub-rss juniorjpdj 0.1.31

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
minimatch@9.0.5
9.0.6

Open the chart page →

1,966
shynetjuniorjpdj0.1.301 of 1See more

shynet juniorjpdj 0.1.30

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.13.1ba54f7797a6b
minimatch@3.0.4
3.1.3

Open the chart page →

2,581
todo-appjunktext-via-aws1.2.101 of 1See more

todo-app junktext-via-aws 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.34d44adf5a4da2
minimatch@3.0.4
3.1.3

Open the chart page →

1,579
k10appk10app0.2.13 of 11See more

k10app k10app 0.2.1

3 of the 11 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/k10app/basicuserservice:latest2ee057ad3bef
minimatch@5.1.0
5.1.7
ghcr.io/k10app/catalog:latest639c980be0f1
minimatch@3.1.2
3.1.3
ghcr.io/k10app/order:lateste1017d0dbd78
minimatch@3.1.2
3.1.3

Open the chart page →

10,546
actual-budgetk8s-chartsVerified publisher0.2.31 of 1See more

actual-budget k8s-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
actualbudget/actual-server:25.3.158fecd9088b7
minimatch@5.1.6
5.1.7

Open the chart page →

2,611
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
minimatch@9.0.5
9.0.6

Open the chart page →

8,811
audiobookshelfk8s-home-lab-repo2.0.11 of 1See more

audiobookshelf k8s-home-lab-repo 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.32.1a52dc5db694a
minimatch@3.1.2
3.1.3

Open the chart page →

2,350
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
minimatch@3.0.4
3.1.3

Open the chart page →

4,667
youtubedl-materialk8s-home-lab-repo5.1.11 of 1See more

youtubedl-material k8s-home-lab-repo 5.1.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.3.22f943d584711
minimatch@3.0.4
3.1.3

Open the chart page →

9,783
k8s-jacoco-operatork8s-jacoco-operator0.4.01 of 4See more

k8s-jacoco-operator k8s-jacoco-operator 0.4.0

1 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-jacoco-operator:maina558ceae6cdb
minimatch@9.0.5
9.0.6

Open the chart page →

2,437
k8s-mutating-webhookk8s-mutating-webhook0.3.01 of 2See more

k8s-mutating-webhook k8s-mutating-webhook 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-mutating-webhook:mainaaab005242ae
minimatch@9.0.3
9.0.6

Open the chart page →

2,009
zwave-js-uik8sonlabVerified publisher0.7.121 of 1See more

zwave-js-ui k8sonlab 0.7.12

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
zwavejs/zwave-js-ui:11.22.314d018bb689e
minimatch@9.0.5
9.0.6

Open the chart page →

973
k8s-validating-webhookk8s-validating-webhook0.4.01 of 2See more

k8s-validating-webhook k8s-validating-webhook 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-validating-webhook:main8344061b2f22
minimatch@9.0.3
9.0.6

Open the chart page →

2,009
kube-admission-controller-starterk8s-validating-webhook0.2.01 of 2See more

kube-admission-controller-starter k8s-validating-webhook 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/kube-admission-controller-starter:maine9716966f30b
minimatch@3.1.2
3.1.3

Open the chart page →

2,166
huekatool1.0.81 of 1See more

hue katool 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
gethue/hue:4.11.011b649636e68
minimatch@3.0.4
3.1.3

Open the chart page →

16,417
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
minimatch@9.0.1
9.0.6

Open the chart page →

5,228
keycloak-multi-client-notifierkeycloak-multi-client-notifier2.1.21 of 2See more

keycloak-multi-client-notifier keycloak-multi-client-notifier 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
minimatch@9.0.5
9.0.6

Open the chart page →

1,473
statsdkeyporttech0.1.191 of 1See more

statsd keyporttech 0.1.19

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
minimatch@3.0.4
3.1.3

Open the chart page →

4,185
allurekfirfer0.1.81 of 2See more

allure kfirfer 0.1.8

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:7.0.34ebd8b4ef340
minimatch@3.0.4
3.1.3

Open the chart page →

12,527
skoonerkfirfer0.0.61 of 1See more

skooner kfirfer 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ghcr.io/skooner-k8s/skooner:stable60c1562e4d51
minimatch@3.1.2
3.1.3

Open the chart page →

1,341
redisinsightklicktippVerified publisher0.5.01 of 1See more

redisinsight klicktipp 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
redis/redisinsight:3.2.055542a762210
minimatch@9.0.5
9.0.6

Open the chart page →

1,290
visual-regression-trackerkokuwa5.1.02 of 4See more

visual-regression-tracker kokuwa 5.1.0

2 of the 4 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
visualregressiontracker/api:5.0.11941aeb8c8bf9
minimatch@9.0.3
9.0.6
visualregressiontracker/migration:5.0.1f983a1d4306e
minimatch@9.0.0
9.0.6

Open the chart page →

9,098
kubeflowkromanow94-kubeflow0.5.11 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

1 of the 30 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
kubeflownotebookswg/centraldashboard:v1.9.2af55c22ef5de
minimatch@3.1.2
3.1.3

Open the chart page →

70,530
rtlkronkltdVerified publisher0.1.01 of 2See more

rtl kronkltd 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
shahanafarooqui/rtl:0.11.0d0cd3d868aca
minimatch@3.0.4
3.1.3

Open the chart page →

5,604
sqlpadkronkltdVerified publisher0.1.01 of 1See more

sqlpad kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
sqlpad/sqlpad:6.7d3d2f430dffd
minimatch@3.0.4
3.1.3

Open the chart page →

3,397
ohmyformkrzwiatrzyk0.0.11 of 1See more

ohmyform krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
ohmyform/ohmyform:1.0.3afe53f4acdb1
minimatch@3.0.4
3.1.3

Open the chart page →

4,230
pangolinkrzwiatrzyk0.11.01 of 1See more

pangolin krzwiatrzyk 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
fosrl/pangolin:1.13.0c32ad797ab96
minimatch@3.1.2
3.1.3

Open the chart page →

3,441
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
minimatch@3.0.4
3.1.3

Open the chart page →

5,410
component-storekubebb0.0.231 of 1See more

component-store kubebb 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
kubebb/component-store:latestfd8ecbd73213
minimatch@3.1.2
3.1.3

Open the chart page →

2,178
tampkubebb5.6.01 of 2See more

tamp kubebb 5.6.0

1 of the 2 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
kubebb/tamp-portal:v5.6.0fadac6d52470
minimatch@3.0.4
3.1.3

Open the chart page →

4,664
tapm-componentkubebb5.7.11 of 3See more

tapm-component kubebb 5.7.1

1 of the 3 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
refar/apm-portal:v5.7.1dcca8e4477a6
minimatch@3.0.4
3.1.3

Open the chart page →

10,264
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2026-26996.

Container imageDigestPackageFixed in
kubebb/tdsf-portal:v5.7.0258458311bc9
minimatch@3.0.4
3.1.3

Open the chart page →

6,490

Container images carrying it

831 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
mojaloop/event-sidecar:v11.0.189b8ab71b74b
minimatch@3.0.4
3.1.3
5
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
minimatch@3.0.4
3.1.3
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
minimatch@3.0.4
3.1.3
4
kodekloud/examplevotingapp_result:v1e510023fdf38
minimatch@3.1.2
3.1.3
4
oscarsotosanchez/server:v1.06e2e1279126b
minimatch@3.0.4
3.1.3
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
minimatch@3.0.4
3.1.3
4
redis/redisinsight:3.8:latestb5e19ee240ab
minimatch@9.0.5
9.0.6
4
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
minimatch@3.1.2
3.1.3
4
ghcr.io/skooner-k8s/skooner:stable60c1562e4d51
minimatch@3.1.2
3.1.3
4
assistiot/dlt_api:2.0.0e36a8922fa0c
minimatch@5.1.0
5.1.7
3
dgraph/dgraph:v21.12.03b55ea83fffe
minimatch@3.0.4
3.1.3
3
frankescobar/allure-docker-service-ui:7.0.3:latest4ebd8b4ef340
minimatch@3.0.4
3.1.3
3
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
minimatch@3.0.4
3.1.3
3
pantsel/konga:latestc8172b75607d
minimatch@2.0.10
3.1.3
3
rcdelacruz/my-strapi-app:js-amd6438007f358355
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/emails:59b64c36c866b3555c135c70de76a884e63f86197d2d6d7c099a
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/schema:59b64c36c866b3555c135c70de76a884e63f8619931d1f6e5ad4
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/server:59b64c36c866b3555c135c70de76a884e63f86196d3899d281cc
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/storage:59b64c36c866b3555c135c70de76a884e63f86199808dac13353
minimatch@5.1.0
5.1.7
3
ghcr.io/kamilkisiela/graphql-hive/tokens:59b64c36c866b3555c135c70de76a884e63f86190f3416d940b4
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/usage:59b64c36c866b3555c135c70de76a884e63f861953619ee7614e
minimatch@3.1.2
3.1.3
3
ghcr.io/kamilkisiela/graphql-hive/usage-ingestor:59b64c36c866b3555c135c70de76a884e63f861947b87c071af4
minimatch@5.1.0
5.1.7
3
ghcr.io/kamilkisiela/graphql-hive/webhooks:59b64c36c866b3555c135c70de76a884e63f861918a5c5b5b671
minimatch@3.1.2
3.1.3
3
ghcr.io/seerr-team/seerr:latest:v3.4.1f4768de5f616
minimatch@9.0.5
9.0.6
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
minimatch@10.0.3
10.2.1
3
agoldis/sorry-cypress-api:2.5.11afaa5a84051d
minimatch@3.1.2
3.1.3
2
agoldis/sorry-cypress-director:2.5.1110228ecd353b
minimatch@3.1.2
3.1.3
2
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
minimatch@3.0.4
3.1.3
2
chatwoot/chatwoot:v3.1.0d530ab8c1753
minimatch@3.0.4
3.1.3
2
epamedp/krci-portal:0.8.0687acf641097
minimatch@9.0.4
9.0.6
2
ethersphere/bee-localchain:latest0558799ca992
minimatch@9.0.3
9.0.6
2
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
minimatch@3.0.4
3.1.3
2
fjvela/urjc-fjvela-server:1.0.53c840aebce22
minimatch@3.0.4
3.1.3
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
minimatch@3.1.2
3.1.3
2
governify/assets-manager:v1.4.12987672448c7
minimatch@3.0.4
3.1.3
2
governify/director:v1.4.0608c6940bb98
minimatch@3.0.4
3.1.3
2
governify/registry:v3.4.0d3f37f4f8168
minimatch@3.0.4
3.1.3
2
governify/render:v2.2.0daeca1ce28e6
minimatch@3.0.4
3.1.3
2
governify/reporter:v2.2.038595913458f
minimatch@3.0.4
3.1.3
2
gradiant/open5gs-webui:2.7.5fbd10c017541
minimatch@3.0.4
3.1.3
2
hookiesolutions/webhookie:latest0629694246ba
minimatch@3.0.4
3.1.3
2
hoppscotch/hoppscotch:2024.8.2f1da831950b7
minimatch@10.0.1
10.2.1
2
htmlprogrammer2001/simple-db-app:1.0a7e0a233a9bc
minimatch@3.0.4
3.1.3
2
ilum/ui:6.7.3998937726679
minimatch@9.0.5
9.0.6
2
infisical/infisical:latest:v0.165.602082bf13163
minimatch@9.0.5
9.0.6
2
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
minimatch@3.0.4
3.1.3
2
istio/examples-bookinfo-ratings-v1:1.14.0eb0f1a725ca8
minimatch@3.0.4
3.1.3
2
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
minimatch@3.0.4
3.1.3
2
krtk6160/galoy-nostrcc82a694f818
minimatch@5.1.0
5.1.7
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.