StackRadar

CVE-2026-3219

Medium

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.6
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,271
of 17,787 indexed, latest versions
Container images
1,222
deployed by those charts
Fix available
2 of 3
affected packages

pip has an interpretation conflict due to handling both concatenated tar and ZIP files as ZIP files

Carried by container images the latest versions of 1,271 of 17,787 indexed charts deploy, on 1,222 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+65 more26.11,214
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+25 moreno fix listed141
py3-pipapk25.0.1-r0, 25.2-r0, 25.3-r2, 25.3-r3+2 more26.1.1-r09
OSV records
CGA-33rw-387h-r2wcCGA-7cc7-f2g6-2gq5CGA-hjw3-7v3m-86rwDEBIAN-CVE-2026-3219GHSA-58qw-9mgm-455vUBUNTU-CVE-2026-3219
Also known as
CGA-4gf9-hhmr-5wj7, CGA-7j43-qmq2-2j84, CGA-cp2g-x5m2-rpp9, CGA-fm73-hhr9-j3j7, CGA-jx64-c9rw-9jqr, CGA-m77r-p4v4-p976, CGA-p26j-w2gh-vcv5, CGA-pj9j-7m5w-p5w7, CGA-vpj3-hmwp-h3qf, PYSEC-2026-2875

Charts affected

1,271 by stars
ChartLatestAffected imagesRadar Score
pagesroccohiggins-pages1.0.01 of 3See more

pages roccohiggins-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
matrix-stackrock8sVerified publisher0.8.11 of 7See more

matrix-stack rock8s 0.8.1

1 of the 7 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
pip@24.3.1
26.1

Open the chart page →

9,275
monitoringrocketchat-server0.0.171 of 9See more

monitoring rocketchat-server 0.0.17

1 of the 9 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
pip@25.2
26.1

Open the chart page →

6,860
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
pip@24.0
26.1

Open the chart page →

9,152
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
pip@18.1
26.1

Open the chart page →

10,468
kube-prometheus-stackromholdings19.3.01 of 6See more

kube-prometheus-stack romholdings 19.3.0

1 of the 6 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
pip@21.2.4
26.1

Open the chart page →

8,645
rommromm-helm-chartVerified publisher1.5.51 of 3See more

romm romm-helm-chart 1.5.5

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
rommapp/romm:5.2.03512f2ca4557
pip@25.3
26.1

Open the chart page →

3,415
pagesronan-pages1.0.01 of 3See more

pages ronan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
imgtagrotationalVerified publisher0.2.01 of 1See more

imgtag rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
pip@25.0.1
26.1

Open the chart page →

3,318
agentdatarss30.1.01 of 1See more

agentdata rss3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
pip@24.0
26.1

Open the chart page →

3,406
noderss30.7.21 of 3See more

node rss3 0.7.2

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
pip@24.0
26.1

Open the chart page →

4,612
checkmkrtomik-helm-chartsVerified publisher0.1.01 of 1See more

checkmk rtomik-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
checkmk/check-mk-community:2.5.0p6c11b422210c4
pip@26.0.1
26.1

Open the chart page →

7,491
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
pip@25.0.1
26.1

Open the chart page →

10,492
tandoorrtomik-helm-chartsVerified publisher0.0.11 of 1See more

tandoor rtomik-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
vabene1111/recipes:2.3.50f8d061895e9
pip@25.3
26.1

Open the chart page →

4,537
flaresolverrrubxkubeVerified publisher0.1.11 of 1See more

flaresolverr rubxkube 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
pip@24.0
26.1

Open the chart page →

27,282
linkdingrubxkubeVerified publisher1.2.31 of 1See more

linkding rubxkube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.46.20c0a9a04c7eb
pip@25.2
26.1

Open the chart page →

2,063
rybbitrybbit-helm1.3.01 of 7See more

rybbit rybbit-helm 1.3.0

1 of the 7 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
pip@26.0.1
26.1

Open the chart page →

5,833
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
pip@23.0.1
26.1

Open the chart page →

9,421
test-helm-app1saam-helm-test0.1.01 of 1See more

test-helm-app1 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
hamidyousefi93/saam-test:latestc34f071f6ed0
pip@23.0.1
26.1

Open the chart page →

3,374
test-helm-app2saam-helm-test0.1.01 of 1See more

test-helm-app2 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
asdkant/fastapi-hello-world:latesta23d8bf7c885
pip@20.3.3
26.1

Open the chart page →

2,771
pagessamanvithkaranth1.0.01 of 3See more

pages samanvithkaranth 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed
santisbon/evworker:lateste807283f8d69
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

12,090
speedtestsantisbon0.1.01 of 3See more

speedtest santisbon 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
santisbon/speedtest:latest8ee3a1697227
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

11,314
uptime-kumasarab97Verified publisher0.1.51 of 1See more

uptime-kuma sarab97 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.22.10b55bcb83a1c
pip@18.1
26.1

Open the chart page →

4,744
pagessarubits-pages1.0.01 of 3See more

pages sarubits-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
pip@23.3.2
26.1

Open the chart page →

9,340
mlflowsb-helm-charts0.3.01 of 1See more

mlflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/python:3.11-slim9534e5a8e315
pip@24.0
26.1

Open the chart page →

885
pgadminsb-helm-charts0.3.01 of 1See more

pgadmin sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
dpage/pgadmin4:8.13561c1f8f99f2
pip@24.0
26.1

Open the chart page →

1,712
scapyscapy-containerised0.3.41 of 2See more

scapy scapy-containerised 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
saidsef/scapy-containerised:v2025.02f17f7c435891
pip@24.3.1
26.1

Open the chart page →

2,817
nvme-exporterschichtelVerified publisher0.1.61 of 1See more

nvme-exporter schichtel 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
pip@23.0.1
26.1

Open the chart page →

1,071
pev2schichtelVerified publisher0.3.01 of 1See more

pev2 schichtel 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
dalibo/explain.dalibo.com:2.20.12a0b749c2f7f
pip@25.3
26.1

Open the chart page →

1,179
syncstorageschichtelVerified publisher0.1.11 of 1See more

syncstorage schichtel 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
mozilla/syncstorage-rs:0.15.893752877dced
pip@20.3.4
26.1

Open the chart page →

1,318
mikrotik-exporterschoolguys-helmcharts0.2.41 of 1See more

mikrotik-exporter schoolguys-helmcharts 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/akpw/mktxp:1.2.17bd6f22f7db0a
pip@25.3
26.1

Open the chart page →

583
wyoming-faster-whisperschoolguys-helmcharts0.1.41 of 1See more

wyoming-faster-whisper schoolguys-helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
rhasspy/wyoming-whisper:3.5.0308b7959a925
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

2,196
wyoming-piperschoolguys-helmcharts0.1.41 of 1See more

wyoming-piper schoolguys-helmcharts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.3.169b7f797ae3a
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

1,770
sealed-secrets-uisealed-secrets-uiVerified publisher0.0.81 of 1See more

sealed-secrets-ui sealed-secrets-ui 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
pip@24.3.1
26.1

Open the chart page →

4,570
search-proxysearch-proxy2026.38.01 of 1See more

search-proxy search-proxy 2026.38.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/unique-ag/ai/search-proxy:2026.38.0aa6699b027bb
pip@25.0.1
26.1

Open the chart page →

1,262
seawise-dashboardseawiseVerified publisher1.7.11 of 1See more

seawise-dashboard seawise 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
shwcloud/seawise-backup:v1.7.1a97479a54df4
pip@24.0
26.1

Open the chart page →

1,078
pagessekharpkube1.0.01 of 3See more

pages sekharpkube 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
seldon-core-analyticsseldon1.17.11 of 8See more

seldon-core-analytics seldon 1.17.1

1 of the 8 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.1517b98eecdf6d1
pip@20.1
26.1

Open the chart page →

10,733
seldon-core-loadtestingseldon0.2.01 of 1See more

seldon-core-loadtesting seldon 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
seldonio/locust-core:0.81d0da98a2d76
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed

Open the chart page →

23,022
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
pip@19.3.1
26.1

Open the chart page →

21,997
semaphoresemaphore-light1.0.01 of 1See more

semaphore semaphore-light 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
semaphoreui/semaphore:latest3996804607eb
pip@24.3.1
26.1

Open the chart page →

1,674
sentry-dbsentry0.9.41 of 10See more

sentry-db sentry 0.9.4

1 of the 10 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:5.4.01bbda887bc53
pip@8.1.2
26.1

Open the chart page →

10,972
ccx-monitoringseveralnines0.6.211 of 7See more

ccx-monitoring severalnines 0.6.21

1 of the 7 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1

Open the chart page →

7,709
first-chartshashkist-test0.1.02 of 3See more

first-chart shashkist-test 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:latest66aec17cd21a
pip@25.3
26.1
shashkist/flask-contacts-app:latest581de1fd6084
pip@24.2
26.1

Open the chart page →

2,934
showroom-docs-mcpshowroom-docs-mcpVerified publisher2.1.01 of 4See more

showroom-docs-mcp showroom-docs-mcp 2.1.0

1 of the 4 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
litellm/litellm-non_root:v1.82.3-stable09b217802ded
pip@26.0.1
py3-pip@26.0.1-r1
26.1
26.1.1-r0

Open the chart page →

5,230
pagesshrutiujlan-pages1.0.01 of 3See more

pages shrutiujlan-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
sibylsibyl0.2.01 of 1See more

sibyl sibyl 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
ghcr.io/bensoer/sibyl:v0.2.06dca4455fde3
pip@24.0
26.1

Open the chart page →

1,020
backendsignalen4.24.01 of 4See more

backend signalen 4.24.0

1 of the 4 container images this version deploys carry CVE-2026-3219.

Container imageDigestPackageFixed in
signalen/backend:2.50.14760256000738
pip@25.0.1
26.1

Open the chart page →

10,972

Container images carrying it

1,222 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
kenchrcum/wasabi-s3-operator:0.2.7ce657c622ce5
pip@26.0.1
26.1
1
kennethreitz/httpbin:latest599fe5e50731
pip@9.0.1
python-pip@9.0.1-2.3~ubuntu1
26.1
no fix listed
1
kfirfer/elasticsearch-cacher:0.0.1cf81d0959256
pip@24.3.1
26.1
1
kfirfer/gcloud-mysql:1.0.3c257c1e0e8b9
pip@23.2.1
26.1
1
kfirfer/kibana-index-pattern-updater:1.0.12e88cfcec5c93
pip@20.3.3
26.1
1
kfirfer/percona-xtradb-healthcheck:0.0.1ef7b909a8e6b
pip@20.2.4
26.1
1
kfirfer/scripts:0.0.2481e5c4e5d70e
pip@22.3.1
26.1
1
kfirfer/slackgpt:0.0.15461331bd838e
pip@23.2.1
26.1
1
kfserving/models-web-app:v0.6.1f322d6ffdfa3
pip@21.2.4
26.1
1
kinseii/wazuh-agent:4.14.17160eb143728
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed
1
kiwigrid/k8s-sidecar:1.1.03e86186656d3
pip@20.2.3
26.1
1
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
pip@20.2.4
26.1
1
kiwigrid/k8s-sidecar:0.0.186eb52513d59e
pip@19.1.1
26.1
1
kiwigrid/k8s-sidecar:1.12.089739be9ff38
pip@21.0.1
26.1
1
kiwigrid/k8s-sidecar:0.0.16899ccd0b1f54
pip@19.0.3
26.1
1
kiwigrid/k8s-sidecar:0.1.20af151f677a63
pip@19.2.1
26.1
1
kiwigrid/k8s-sidecar:1.27.6db85bd553253
pip@24.2
26.1
1
kiwigrid/k8s-sidecar:1.26.2e271016441af
pip@24.0
26.1
1
knspar/phronetis:0.1.4609499d2dc91a
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.1
26.1
no fix listed
1
knspar/phronetis-operator:0.1.60c4f0543ee58
pip@24.0
26.1
1
kobotoolbox/kobocat:2.022.24ab15679454415
pip@22.2.1
26.1
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
pip@22.2.1
26.1
1
kocolosk/couchdb-statefulset-assembler:1.2.06effb982154e
pip@9.0.1
26.1
1
kodekloud/webapp-color:latest99c3821ea49b
pip@18.1
26.1
1
kong/httpbin:latesta6ac46531193
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.5
26.1
no fix listed
1
kpetrem/mqtt-exporter:latestdca3255f3531
pip@23.0.1
26.1
1
kporwit/vinyl_lib_app:v0.1.1217de0302218
pip@22.1.2
26.1
1
kserve/models-web-app:v0.8.063ea05e73842
pip@22.0.4
26.1
1
kserve/models-web-app:v0.13.073486345a602
pip@24.0
26.1
1
kubeaws/kube-spot-termination-notice-handler:1.13.0-1c9cd2ba4373a
pip@19.0.3
26.1
1
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
pip@23.0.1
26.1
1
kubeflownotebookswg/jupyter-web-app:v1.6.1d762690e21c1
pip@22.0.4
26.1
1
kubeflownotebookswg/tensorboards-web-app:v1.6.10876fef1973b
pip@22.0.4
26.1
1
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
pip@23.0.1
26.1
1
kubeflownotebookswg/volumes-web-app:v1.6.17299fa94db15
pip@22.0.4
26.1
1
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
pip@23.0.1
26.1
1
kubesphere/examples-bookinfo-productpage-v1:1.13.0378f49ec9c44
pip@19.1.1
26.1
1
kubitodev/traefik-ip-whitelist-sync:1.0.2aa24869319bf
pip@22.0.4
26.1
1
kunchalavikram/connectedcity:v14a559a47579e
pip@19.0.1
26.1
1
kunchalavikram/connectedfactory:v152c13fb9b1d9
pip@19.0.1
26.1
1
kusionstack/kusion:v0.14.0126c8f0b0976
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.5
26.1
no fix listed
1
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
pip@24.0
26.1
1
kyovint/kyoimgusers:1.0.080084149156e
pip@24.0
26.1
1
kyso/kyso-nbdime:latest4aa9d38ee81d
pip@22.3.1
26.1
1
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
pip@25.0.1
26.1
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
pip@25.0.1
26.1
1
langgenius/dify-api:1.0.0066035f93856
pip@25.0.1
26.1
1
langgenius/dify-api:1.16.1dcefa5f7c47c
pip@25.0.1
26.1
1
langgenius/dify-api:0.6.11fca918260dd6
pip@23.0.1
26.1
1
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.