StackRadar

CVE-2026-44288

Medium

Advisory

Published 12 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.003
23rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
141
of 17,781 indexed, latest versions
Container images
138
deployed by those charts
Fix available
2 of 2
affected packages

protobufjs has overlong UTF-8 decoding

Carried by container images the latest versions of 141 of 17,781 indexed charts deploy, on 138 images.

Affected packageAffected versionsFixed inImages
@protobufjs/utf8npm1.1.01.1.1130
protobufjsnpm5.0.3, 6.8.6, 6.8.8, 6.8.9+18 more7.5.6, 8.0.2110
OSV records
GHSA-q6x5-8v7m-xcrf

Charts affected

141 by stars
ChartLatestAffected imagesRadar Score
eolo-plannereolo-planner-repo0.1.01 of 7See more

eolo-planner eolo-planner-repo 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
arturisimo/server-urjc:v1.0d8dc4430531e
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

27,096
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
louislam/uptime-kuma:13d632903e6af
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

3,474
galoy-paygaloymoney0.11.481 of 2See more

galoy-pay galoymoney 0.11.48

1 of the 2 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6

Open the chart page →

2,528
galoy-paygaloymoney20.11.481 of 2See more

galoy-pay galoymoney2 0.11.48

1 of the 2 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
krtk6160/galoy-nostrdigest-pinnedcc82a694f818
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6

Open the chart page →

2,528
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
@protobufjs/utf8@1.1.0
protobufjs@7.2.5
1.1.1
7.5.6

Open the chart page →

9,019
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6

Open the chart page →

2,973
opentelemetry-demogpg-dev0.33.82 of 27See more

opentelemetry-demo gpg-dev 0.33.8

2 of the 27 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
@protobufjs/utf8@1.1.0
protobufjs@7.3.0
1.1.1
7.5.6
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
@protobufjs/utf8@1.1.0
protobufjs@7.2.5
1.1.1
7.5.6

Open the chart page →

49,025
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6

Open the chart page →

2,950
streamsheetshelm-chartsVerified publisher0.2.34 of 8See more

streamsheets helm-charts 0.2.3

4 of the 8 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
@protobufjs/utf8@1.1.0
1.1.1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
@protobufjs/utf8@1.1.0
1.1.1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
@protobufjs/utf8@1.1.0
1.1.1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

89,959
backstagehelm-charts-nr0.1.151 of 2See more

backstage helm-charts-nr 0.1.15

1 of the 2 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

8,213
hoppscotchhelm-charts-nr0.3.11 of 1See more

hoppscotch helm-charts-nr 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

3,451
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

18,813
homarrhelmforgeVerified publisher1.2.81 of 1See more

homarr helmforge 1.2.8

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/homarr-labs/homarr:v1.77.0f23ad77a681b
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6

Open the chart page →

435
uptime-kumahelmforgeVerified publisher1.5.121 of 1See more

uptime-kuma helmforge 1.5.12

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.33e24e96c89ef
protobufjs@7.2.6
7.5.6

Open the chart page →

30,099
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

4,253
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

3,614
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
@protobufjs/utf8@1.1.0
protobufjs@6.11.3
1.1.1
7.5.6

Open the chart page →

4,944
interbtc-hydrainterlay0.1.151 of 4See more

interbtc-hydra interlay 0.1.15

1 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

6,831
interlay-firesquidinterlay0.1.112 of 4See more

interlay-firesquid interlay 0.1.11

2 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
@protobufjs/utf8@1.1.0
1.1.1
subsquid/substrate-explorer:firesquid0889a857f192
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

4,667
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

7,232
n8njanip81-helm-chartsVerified publisher0.1.41 of 1See more

n8n janip81-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
n8nio/n8n:1.86.08b39ed5a2de9
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6

Open the chart page →

5,826
shinsei-managerjtektVerified publisher0.2.01 of 8See more

shinsei-manager jtekt 0.2.0

1 of the 8 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
@protobufjs/utf8@1.1.0
protobufjs@7.2.5
1.1.1
7.5.6

Open the chart page →

63,461
kubeflowkromanow94-kubeflow0.5.11 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

1 of the 30 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
kubeflownotebookswg/centraldashboard:v1.9.2af55c22ef5de
@protobufjs/utf8@1.1.0
protobufjs@7.3.0
1.1.1
7.5.6

Open the chart page →

70,530
ohmyformkrzwiatrzyk0.0.11 of 1See more

ohmyform krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ohmyform/ohmyform:1.0.3afe53f4acdb1
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

4,230
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

5,410
component-storekubebb0.0.231 of 1See more

component-store kubebb 0.0.23

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
kubebb/component-store:latestfd8ecbd73213
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

2,178
u4a-componentkubebb0.2.101 of 8See more

u4a-component kubebb 0.2.10

1 of the 8 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
kubebb/bff-server:v0.2.0-202312040fbb732379bc
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

13,819
homepagekubernetes-homelab-helm-chartsVerified publisher0.1.01 of 1See more

homepage kubernetes-homelab-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/gethomepage/homepage:v1.13.1d8d784e50901
@protobufjs/utf8@1.1.0
protobufjs@7.5.5
1.1.1
7.5.6

Open the chart page →

1,378
uptime-kumakubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

uptime-kuma kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.2.1-slim059b49d64739
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

6,356
online-boutiquekubesphere-testVerified publisher0.1.02 of 11See more

online-boutique kubesphere-test 0.1.0

2 of the 11 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
@protobufjs/utf8@1.1.0
protobufjs@6.10.2
1.1.1
7.5.6
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6

Open the chart page →

26,018
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
protobufjs@7.2.6
7.5.6

Open the chart page →

33,242
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
protobufjs@7.2.6
7.5.6

Open the chart page →

33,242
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
hugohg34/server:0.0.2503e5d8960ff
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

29,588
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

9,668
homarrmedia-servarrVerified publisher0.55.11 of 1See more

homarr media-servarr 0.55.1

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/homarr-labs/homarr:v1.77.11f5b892aeef4
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6

Open the chart page →

435
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

68,284
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

7,027
middleware-odigosmiddleware-labsVerified publisher0.2.411 of 6See more

middleware-odigos middleware-labs 0.2.41

1 of the 6 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6

Open the chart page →

8,370
middleware-visionmiddleware-labsVerified publisher0.2.651 of 6See more

middleware-vision middleware-labs 0.2.65

1 of the 6 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6

Open the chart page →

8,361
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6
mojaloop/event-sidecar:v11.0.189b8ab71b74b
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6

Open the chart page →

11,695
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6
mojaloop/event-sidecar:v11.0.189b8ab71b74b
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6

Open the chart page →

11,695
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6
mojaloop/event-sidecar:v11.0.189b8ab71b74b
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6

Open the chart page →

12,108
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
@protobufjs/utf8@1.1.0
protobufjs@7.5.4
1.1.1
7.5.6

Open the chart page →

2,457
finance-portalmojaloop5.1.44 of 11See more

finance-portal mojaloop 5.1.4

4 of the 11 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
@protobufjs/utf8@1.1.0
1.1.1
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6
mojaloop/role-assignment-service:v2.1.0def4bf273721
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

14,809
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

11,479
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6
mojaloop/central-ledger:v13.14.01abc8a7aa71c
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6
mojaloop/event-sidecar:v11.0.189b8ab71b74b
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6

Open the chart page →

19,226
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6

Open the chart page →

2,631
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
@protobufjs/utf8@1.1.0
1.1.1

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6

Open the chart page →

2,318
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-44288.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6

Open the chart page →

2,316

Container images carrying it

138 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
@protobufjs/utf8@1.1.0
protobufjs@7.2.4
1.1.1
7.5.6
1
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
@protobufjs/utf8@1.1.0
protobufjs@7.2.4
1.1.1
7.5.6
1
thingsboard/tb-js-executor:3.4.113e1eadf8ace
@protobufjs/utf8@1.1.0
protobufjs@6.11.3
1.1.1
7.5.6
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
@protobufjs/utf8@1.1.0
protobufjs@6.11.2
1.1.1
7.5.6
1
winfred008/amazon:910a68de5b398
@protobufjs/utf8@1.1.0
protobufjs@6.11.3
1.1.1
7.5.6
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
@protobufjs/utf8@1.1.0
protobufjs@7.3.2
1.1.1
7.5.6
1
gcr.io/google-samples/microservices-demo/currencyservice:v0.2.349d458a3650f
@protobufjs/utf8@1.1.0
protobufjs@6.10.2
1.1.1
7.5.6
1
gcr.io/google-samples/microservices-demo/paymentservice:v0.2.36eb201217a8f
@protobufjs/utf8@1.1.0
protobufjs@5.0.3
1.1.1
7.5.6
1
ghcr.io/backstage/backstage:latest792e262ea504
protobufjs@7.5.5
7.5.6
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
@protobufjs/utf8@1.1.0
1.1.1
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
@protobufjs/utf8@1.1.0
1.1.1
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
@protobufjs/utf8@1.1.0
1.1.1
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
@protobufjs/utf8@1.1.0
1.1.1
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/data-fair/notify:3c739b74dabb0
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/data-fair/processings:15a9216989707
@protobufjs/utf8@1.1.0
protobufjs@6.8.6
1.1.1
7.5.6
1
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
@protobufjs/utf8@1.1.0
protobufjs@6.10.2
1.1.1
7.5.6
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6
1
ghcr.io/gethomepage/homepage:v1.13.1d8d784e50901
@protobufjs/utf8@1.1.0
protobufjs@7.5.5
1.1.1
7.5.6
1
ghcr.io/homarr-labs/homarr:v1.77.11f5b892aeef4
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/homarr-labs/homarr:v1.77.0f23ad77a681b
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
@protobufjs/utf8@1.1.0
protobufjs@7.5.4
1.1.1
7.5.6
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
@protobufjs/utf8@1.1.0
protobufjs@7.4.0
1.1.1
7.5.6
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
@protobufjs/utf8@1.1.0
1.1.1
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
@protobufjs/utf8@1.1.0
protobufjs@7.2.6
1.1.1
7.5.6
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
@protobufjs/utf8@1.1.0
protobufjs@7.2.2
1.1.1
7.5.6
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
@protobufjs/utf8@1.1.0
protobufjs@7.3.0
1.1.1
7.5.6
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
@protobufjs/utf8@1.1.0
protobufjs@7.2.5
1.1.1
7.5.6
1
public.ecr.aws/aws-containers/retail-store-sample-checkout:1.3.0687aa68dd490
@protobufjs/utf8@1.1.0
protobufjs@7.5.3
1.1.1
7.5.6
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
@protobufjs/utf8@1.1.0
protobufjs@7.2.5
1.1.1
7.5.6
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
@protobufjs/utf8@1.1.0
1.1.1
1
quay.io/soketi/k8soketi:0.1-18-debian4cd9ea9434c4
@protobufjs/utf8@1.1.0
protobufjs@6.11.3
1.1.1
7.5.6
1
quay.io/t3n/dashkiosk:v2.7.8c973e166a5dc
@protobufjs/utf8@1.1.0
protobufjs@6.8.9
1.1.1
7.5.6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.