StackRadar

CVE-2026-33671

High

Advisory

Published 25 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
498
of 17,781 indexed, latest versions
Container images
508
deployed by those charts
Fix available
1 of 2
affected packages

Picomatch has a ReDoS vulnerability via extglob quantifiers

Carried by container images the latest versions of 498 of 17,781 indexed charts deploy, on 508 images.

Affected packageAffected versionsFixed inImages
picomatchnpm2.1.1, 2.2.1, 2.2.2, 2.2.3+5 more2.3.2, 4.0.4508
node-anymatchdeb3.1.3+~cs4.6.1-2no fix listed1
OSV records
GHSA-c2c7-rcm5-vvqjUBUNTU-CVE-2026-33671

Charts affected

498 by stars
ChartLatestAffected imagesRadar Score
nightscoutgabe565Verified publisher0.13.01 of 2See more

nightscout gabe565 0.13.0

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
picomatch@2.3.1
2.3.2

Open the chart page →

2,521
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
picomatch@2.3.0
2.3.2

Open the chart page →

22,773
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
picomatch@2.3.1
2.3.2

Open the chart page →

7,579
zwavejs2mqttgeek-cookbookVerified publisher5.4.21 of 1See more

zwavejs2mqtt geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
picomatch@2.2.3
2.3.2

Open the chart page →

3,476
graphql-hivegraphql-hive1.0.01 of 17See more

graphql-hive graphql-hive 1.0.0

1 of the 17 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/kamilkisiela/graphql-hive/app:59b64c36c866b3555c135c70de76a884e63f8619a4a3639899f7
picomatch@2.3.1
2.3.2

Open the chart page →

10,311
kubebadgeskubebadges0.1.31 of 2See more

kubebadges kubebadges 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
shieldsio/shields:nextfa194b446e42
picomatch@4.0.3
4.0.4

Open the chart page →

1,798
kubeviouskubevious1.2.24 of 7See more

kubevious kubevious 1.2.2

4 of the 7 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
kubevious/backend:1.2.22d9ba6eb46b6
picomatch@2.3.1
2.3.2
kubevious/collector:1.2.1f58226f9d84e
picomatch@2.3.1
2.3.2
kubevious/guard:1.2.19bf567704de2
picomatch@2.3.1
2.3.2
kubevious/parser:1.2.299ae7a5168c2
picomatch@2.3.1
2.3.2

Open the chart page →

14,204
bitwarden-crd-operatorlerentisVerified publisher0.18.01 of 1See more

bitwarden-crd-operator lerentis 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
picomatch@4.0.3
4.0.4

Open the chart page →

2,003
activepiecesmeyerchartsVerified publisher0.1.61 of 1See more

activepieces meyercharts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
activepieces/activepieces:0.23.0c26188b44e62
picomatch@2.3.1
2.3.2

Open the chart page →

2,635
flagsmithone-acre-fundVerified publisher0.1.51 of 6See more

flagsmith one-acre-fund 0.1.5

1 of the 6 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
flagsmith/flagsmith-frontend:v2.6.0df02a29e8b0c
picomatch@2.2.2
2.3.2

Open the chart page →

6,868
kobotoolboxone-acre-fundVerified publisher0.7.42 of 9See more

kobotoolbox one-acre-fund 0.7.4

2 of the 9 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
enketo/enketo-express:3.0.4dcad9c2273f6
picomatch@2.3.0
2.3.2
kobotoolbox/kpi:2.022.24dbcacc01bccd4
picomatch@2.3.1
2.3.2

Open the chart page →

18,517
n8none-acre-fundVerified publisher0.1.521 of 3See more

n8n one-acre-fund 0.1.52

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
n8nio/n8n:0.212.0a9195bc499a3
picomatch@2.3.1
2.3.2

Open the chart page →

7,776
kratos-selfservice-ui-nodeory0.64.01 of 1See more

kratos-selfservice-ui-node ory 0.64.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
oryd/kratos-selfservice-ui-node:v26.2.046a7bac1ad0c
picomatch@2.3.1
2.3.2

Open the chart page →

1,966
pacmanpacmanVerified publisher2.0.21 of 2See more

pacman pacman 2.0.2

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/shuguet/pacman:latesta0ec71732c3c
picomatch@4.0.3
4.0.4

Open the chart page →

638
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
picomatch@2.3.0
2.3.2

Open the chart page →

24,488
soketisoketi2.0.01 of 1See more

soketi soketi 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
quay.io/soketi/soketi:1.6-16-debian713223456cf1
picomatch@2.3.1
2.3.2

Open the chart page →

1,636
pretixtechwolf12Verified publisher2026.7.01 of 3See more

pretix techwolf12 2026.7.0

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
pretix/standalone:2026.7.05df3b7aa852e
picomatch@4.0.3
4.0.4

Open the chart page →

9,770
feedbacksystemthm-mni-iiVerified publisher0.47.12 of 10See more

feedbacksystem thm-mni-ii 0.47.1

2 of the 10 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
thmmniii/fbs-collab:v1.27.15d389e3c5ce6
picomatch@2.3.1
2.3.2
thmmniii/fbs-qcm-frontend:v1.27.1a347f7f4d144
picomatch@2.3.1
2.3.2

Open the chart page →

28,534
nocodbzekker6Verified publisher1.10.01 of 1See more

nocodb zekker6 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
nocodb/nocodb:0.301.5d9516f0bf546
picomatch@2.3.1
2.3.2

Open the chart page →

4,016
aapbaapbVerified publisher0.1.31 of 1See more

aapb aapb 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/dream-aapb:main288a4774aa90
picomatch@4.0.3
4.0.4

Open the chart page →

1,044
agentareaagentareaVerified publisher0.0.182 of 16See more

agentarea agentarea 0.0.18

2 of the 16 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
agentarea/agentarea-frontend:latest2098a9d7b1fe
picomatch@4.0.3
4.0.4
agentarea/agentarea-mcp-runner:latestd3c209a5d531
picomatch@4.0.3
4.0.4

Open the chart page →

14,914
bredbandskollen-prometheus-exporteraolde0.2.31 of 1See more

bredbandskollen-prometheus-exporter aolde 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
aolde/bredbandskollen-prometheus-exporter:1.0.2dc61ee713720
picomatch@2.2.3
2.3.2

Open the chart page →

1,972
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
picomatch@2.2.2
2.3.2

Open the chart page →

17,896
siemassist-iot-cybersecurity-monitroting-siem0.1.01 of 3See more

siem assist-iot-cybersecurity-monitroting-siem 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
picomatch@2.2.2
2.3.2

Open the chart page →

10,730
dltbrokerassist-iot-distributed-broker0.2.01 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
picomatch@2.3.1
2.3.2

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.01 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
assistiot/dlt_api:2.0.0e36a8922fa0c
picomatch@2.3.1
2.3.2

Open the chart page →

77,687
seerrbdclark-helm-chartsVerified publisher0.1.51 of 1See more

seerr bdclark-helm-charts 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/seerr-team/seerr:v3.4.1f4768de5f616
picomatch@4.0.3
4.0.4

Open the chart page →

1,991
opensearch-dashboardscaptnbpVerified publisher2.2.11 of 1See more

opensearch-dashboards captnbp 2.2.1

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:2.15.0b7c26c60bfaf
picomatch@2.3.1
2.3.2

Open the chart page →

1,843
skoonerchristianhuthVerified publisher0.4.01 of 1See more

skooner christianhuth 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/skooner-k8s/skooner:stable60c1562e4d51
picomatch@2.3.1
2.3.2

Open the chart page →

1,341
data-fairdata354-helmVerified publisher1.1.25 of 12See more

data-fair data354-helm 1.1.2

5 of the 12 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/data-fair/data-fair:3cc9498b64b5b
picomatch@2.3.1
2.3.2
ghcr.io/data-fair/metrics:0a8d40779eeae
picomatch@2.3.0
2.3.2
ghcr.io/data-fair/notify:3c739b74dabb0
picomatch@2.3.1
2.3.2
ghcr.io/data-fair/processings:15a9216989707
picomatch@2.3.1
2.3.2
ghcr.io/data-fair/simple-directory:438a4f32fad82
picomatch@2.3.1
2.3.2

Open the chart page →

38,346
mastodondefault-ghVerified publisher0.3.11 of 3See more

mastodon default-gh 0.3.1

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
picomatch@2.3.1
2.3.2

Open the chart page →

5,056
directusdirectus-io2.1.01 of 3See more

directus directus-io 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
directus/directus:12.0.29c8470ea465c
picomatch@4.0.3
4.0.4

Open the chart page →

7,473
joplin-serverdjjudas21Verified publisher5.5.81 of 1See more

joplin-server djjudas21 5.5.8

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
joplin/server:2.14.2-betab87564ef34e9
picomatch@2.3.0
2.3.2

Open the chart page →

3,925
enbuildenbuildVerified publisher0.0.503 of 6See more

enbuild enbuild 0.0.50

3 of the 6 container images this version deploys carry CVE-2026-33671.

Open the chart page →

31,510
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
picomatch@2.3.1
2.3.2

Open the chart page →

11,458
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
taigaio/taiga-events:latest92fc0822564f
picomatch@2.3.0
2.3.2

Open the chart page →

8,496
ranetogabisonfire0.1.21 of 1See more

raneto gabisonfire 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
picomatch@2.2.2
2.3.2

Open the chart page →

2,519
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
picomatch@2.3.1
2.3.2

Open the chart page →

4,260
overseerrgeek-cookbookVerified publisher5.4.21 of 1See more

overseerr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.26.1254d16af8f71
picomatch@2.2.2
2.3.2

Open the chart page →

3,444
recipesgeek-cookbookVerified publisher6.6.21 of 2See more

recipes geek-cookbook 6.6.2

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
vabene1111/recipes:1.0.5.2ec4e9e2905b0
picomatch@2.3.0
2.3.2

Open the chart page →

7,801
youtubedl-materialgeek-cookbookVerified publisher4.4.21 of 1See more

youtubedl-material geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.23720b856bd2f
picomatch@2.2.2
2.3.2

Open the chart page →

4,410
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
picomatch@4.0.3
4.0.4

Open the chart page →

3,123
globalpingglobalpingVerified publisher1.0.111 of 1See more

globalping globalping 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
globalping/globalping-probe:latest8acbd23009fd
picomatch@2.3.1
2.3.2

Open the chart page →

518
ghostgroundhog2k0.212.121 of 1See more

ghost groundhog2k 0.212.12

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
library/ghost:6.63.0e05bc1169fb2
picomatch@4.0.3
4.0.4

Open the chart page →

2,000
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
picomatch@4.0.3
4.0.4

Open the chart page →

12,397
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
picomatch@4.0.2
4.0.4

Open the chart page →

15,712
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
picomatch@2.2.2
2.3.2

Open the chart page →

17,284
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
picomatch@2.3.0
2.3.2

Open the chart page →

3,369
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
picomatch@2.3.1
2.3.2

Open the chart page →

5,228
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-33671.

Container imageDigestPackageFixed in
ghcr.io/kikplate/kikplate-web:main34bbb61e8e42
picomatch@4.0.3
4.0.4

Open the chart page →

2,770

Container images carrying it

508 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
helga09/shoes_ukr:v1.1.17999bc8b77c0
picomatch@2.3.1
2.3.2
1
heywood8/redisinsight:2.28.00bc9ab313d37
picomatch@2.3.1
2.3.2
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
picomatch@4.0.2
4.0.4
1
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
picomatch@2.3.1
2.3.2
1
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
picomatch@2.3.1
2.3.2
1
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
picomatch@2.3.1
2.3.2
1
ianw/quickchart:v1.7.1dc49dd460c37
picomatch@2.3.1
2.3.2
1
ibarreche/cloud-front-ci:latestc8970ac1c8dc
picomatch@2.3.1
2.3.2
1
ibarreche/cloud-indexer-ci:latestb7a08274e69f
picomatch@2.3.1
2.3.2
1
ilum/marquez-web:0.53.2716437a51a6c
picomatch@2.3.1
2.3.2
1
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
picomatch@2.3.0
2.3.2
1
jakowenko/double-take:1.6.0b858bac9e32a
picomatch@2.3.0
2.3.2
1
jayfong/yapi:1.10.2163e5d621910
picomatch@2.3.0
2.3.2
1
jesec/flood:4.14.3c887dad96b40
picomatch@4.0.3
4.0.4
1
jkroepke/github_exporter:1.8.03d850992786d
picomatch@4.0.3
4.0.4
1
johly/airtrail:v3.11.19f702b91e0e7
picomatch@4.0.3
4.0.4
1
joplin/server:latest3f7b852959aa
picomatch@4.0.2
4.0.4
1
joplin/server:3.0-beta52af57880c0e
picomatch@2.3.0
2.3.2
1
joplin/server:2.14.2-betab87564ef34e9
picomatch@2.3.0
2.3.2
1
josepht05/nodejs-feb24:latest36cb0c618c94
picomatch@2.3.1
2.3.2
1
josepht05/titajo-docker:v1.0.0d94024965d78
picomatch@2.3.1
2.3.2
1
junktext/getting-started:1.0.5a70936c04aed
picomatch@2.3.0
2.3.2
1
junktext/getting-started:1.0.34d44adf5a4da2
picomatch@2.3.0
2.3.2
1
jupyterhub/jupyterhub:5.4.63974ba945e65
node-anymatch@3.1.3+~cs4.6.1-2
picomatch@2.3.1
no fix listed
2.3.2
1
keyoxide/keyoxide:stable96f27a71269d
picomatch@2.3.1
2.3.2
1
kobotoolbox/kpi:2.022.24dbcacc01bccd4
picomatch@2.3.1
2.3.2
1
ktitilayo2/nodejswebapp:latest8bac28058688
picomatch@2.3.1
2.3.2
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
picomatch@2.3.1
2.3.2
1
kubebb/component-store:latestfd8ecbd73213
picomatch@2.3.1
2.3.2
1
kubevious/backend:1.2.22d9ba6eb46b6
picomatch@2.3.1
2.3.2
1
kubevious/collector:1.2.1f58226f9d84e
picomatch@2.3.1
2.3.2
1
kubevious/guard:1.2.19bf567704de2
picomatch@2.3.1
2.3.2
1
kubevious/parser:1.0.151acf1a1f0b47
picomatch@2.3.0
2.3.2
1
kubevious/parser:1.2.299ae7a5168c2
picomatch@2.3.1
2.3.2
1
kubevious/workload-operator:1.0.20b0f4c507eb6
picomatch@2.3.1
2.3.2
1
kyleslugg/klusterview:latestba8c36dfdfbd
picomatch@2.3.1
2.3.2
1
kyso/kyso-front:lateste52595c5c16f
picomatch@2.3.1
2.3.2
1
laly9999/node-app:1dd0e503913e1
picomatch@2.3.1
2.3.2
1
laly9999/node-app-dockerized:latest75ae77a20c6c
picomatch@2.3.1
2.3.2
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
picomatch@4.0.2
4.0.4
1
langgenius/dify-api:1.16.1dcefa5f7c47c
picomatch@4.0.2
4.0.4
1
langgenius/dify-ee-enterprise-frontend:3.9.8-ubi98dd9de6b6190
picomatch@2.3.1
2.3.2
1
langgenius/dify-ee-web:3.9.8-ubi9ba1dd1d0bcea
picomatch@2.3.1
2.3.2
1
langgenius/dify-web:1.16.187dd47e4e28f
picomatch@4.0.2
4.0.4
1
langgenius/dify-web:0.6.11a2a294743634
picomatch@2.3.1
2.3.2
1
langgenius/dify-web:1.10.1-fix.1c306ac577912
picomatch@4.0.2
4.0.4
1
langgenius/dify-web:1.0.0d64914ff0d6d
picomatch@2.3.1
2.3.2
1
lavandadelpatio/frontend:latest501c3f31e0bc
picomatch@2.2.2
2.3.2
1
lbenicio/helm-pilot:0.2.54594a2632510
picomatch@4.0.3
4.0.4
1
lbenicio/stremio-web:latest732f9003de33
picomatch@4.0.3
4.0.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.