StackRadar

CVE-2026-44431

High

Advisory

Published 11 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.003
26th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,026
of 17,787 indexed, latest versions
Container images
966
deployed by those charts
Fix available
4 of 5
affected packages

Red Hat Security Advisory: python-urllib3 security update

Carried by container images the latest versions of 1,026 of 17,787 indexed charts deploy, on 966 images.

Affected packageAffected versionsFixed inImages
py3-pipapk25.0.1-r0, 25.2-r0, 26.0.1-r126.1.2-r13
python-urllib3rpm1.24.2-4.el8, 1.24.2-5.el8, 1.24.2-5.el8_6.1, 1.24.2-5.el8_9.2+2 more0:1.24.2-10.el8_1043
urllib3pypi1.23, 1.24, 1.24.1, 1.24.2+47 more2.7.0911
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+22 moreno fix listed106
python-urllib3deb1.7.1-1build1, 1.7.1-1ubuntu4, 1.13.1-2ubuntu0.16.04.1, 1.13.1-2ubuntu0.16.04.2+14 more1.26.5-1~exp1ubuntu0.7, 1.26.12-1+deb12u4, 2.0.7-1ubuntu0.7, 2.3.0-3+deb13u265
OSV records
CGA-36hp-r4x4-75wjCGA-m6w2-x26r-3r44DEBIAN-CVE-2026-44431GHSA-qccp-gfcp-xxvcRHSA-2026:36732UBUNTU-CVE-2026-44431
Also known as
CGA-r2h3-92r9-9fw6, CGA-rw9r-pxcj-mmj5, PYSEC-2026-141, USN-8379-1

Charts affected

1,026 by stars
ChartLatestAffected imagesRadar Score
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
python-urllib3@1.26.12-1+deb12u3
urllib3@1.26.12
1.26.12-1+deb12u4
2.7.0

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
urllib3@1.26.18
2.7.0

Open the chart page →

11,367
rook-cephrookOfficialVerified publisher1.20.71 of 2See more

rook-ceph rook 1.20.7

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
rook/ceph:v1.20.72f970c425617
urllib3@1.26.5
2.7.0

Open the chart page →

1,447
openebsopenebsOfficialVerified publisher4.6.11 of 35See more

openebs openebs 4.6.1

1 of the 35 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
urllib3@2.3.0
2.7.0

Open the chart page →

23,894
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
urllib3@2.6.2
2.7.0

Open the chart page →

5,366
ceph-csi-cephfsceph-csiOfficialVerified publisher3.17.11 of 6See more

ceph-csi-cephfs ceph-csi 3.17.1

1 of the 6 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
urllib3@1.26.5
2.7.0

Open the chart page →

4,061
ceph-csi-rbdceph-csiOfficialVerified publisher3.17.11 of 6See more

ceph-csi-rbd ceph-csi 3.17.1

1 of the 6 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.17.10b62db8afc9b
urllib3@1.26.5
2.7.0

Open the chart page →

4,061
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
urllib3@1.26.11
2.7.0

Open the chart page →

9,145
milvusmilvus4.0.311 of 5See more

milvus milvus 4.0.31

1 of the 5 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
urllib3@1.26.7
2.7.0

Open the chart page →

32,259
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
urllib3@1.26.20
2.7.0

Open the chart page →

10,622
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
urllib3@2.2.3
2.7.0

Open the chart page →

2,800
difydoubanVerified publisher0.10.02 of 6See more

dify douban 0.10.0

2 of the 6 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.6.1
no fix listed
2.7.0
langgenius/dify-sandbox:0.2.124e65e8a351a2
urllib3@2.4.0
2.7.0

Open the chart page →

19,391
stackgres-operatorstackgres-chartsOfficialVerified publisher1.19.11 of 2See more

stackgres-operator stackgres-charts 1.19.1

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/stackgres/operator:1.19.1f241b0b20326
urllib3@2.2.3
2.7.0

Open the chart page →

2,119
pulsarapache4.7.02 of 10See more

pulsar apache 4.7.0

2 of the 10 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
urllib3@2.6.3
2.7.0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
urllib3@2.6.3
2.7.0

Open the chart page →

9,864
difydify-helmVerified publisher0.38.02 of 11See more

dify dify-helm 0.38.0

2 of the 11 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
langgenius/dify-sandbox:0.2.15750e1111426e
urllib3@2.6.3
2.7.0

Open the chart page →

22,002
ambassadordatawire6.9.51 of 2See more

ambassador datawire 6.9.5

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
datawire/aes:1.14.48588eafe6862
urllib3@1.26.3
2.7.0

Open the chart page →

4,086
oncallgrafana1.16.51 of 12See more

oncall grafana 1.16.5

1 of the 12 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
grafana/oncall:v1.16.5499851658393
urllib3@1.26.19
2.7.0

Open the chart page →

16,251
wazuhwazuh-helm-morgovedVerified publisher2.0.72 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

2 of the 5 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
python-urllib3@1.26.12-1+deb12u1
urllib3@2.2.0
1.26.12-1+deb12u4
2.7.0
wazuh/wazuh-manager:4.14.3f09282d281f6
urllib3@2.6.3
2.7.0

Open the chart page →

11,384
emissary-ingressdatawire7.1.8-ea1 of 1See more

emissary-ingress datawire 7.1.8-ea

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
datawire/emissary:2.0.2-ea9716efbdd24b
urllib3@1.26.3
2.7.0

Open the chart page →

4,918
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
urllib3@2.0.3
2.7.0

Open the chart page →

4,293
home-assistantgeek-cookbookVerified publisher13.5.01 of 1See more

home-assistant geek-cookbook 13.5.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
urllib3@1.26.9
2.7.0

Open the chart page →

7,705
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
urllib3@2.2.2
2.7.0

Open the chart page →

6,543
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
urllib3@1.26.19
2.7.0

Open the chart page →

5,987
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
urllib3@2.0.4
2.7.0
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
urllib3@2.1.0
2.7.0

Open the chart page →

12,746
homeassistantvolker-raschekVerified publisher0.2.31 of 1See more

homeassistant volker-raschek 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.12.48d000332b09b
urllib3@1.26.18
2.7.0

Open the chart page →

6,041
edge-stackdatawire7.1.8-ea1 of 2See more

edge-stack datawire 7.1.8-ea

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
datawire/aes:2.0.3-ea07f8fe4f4f8e
urllib3@1.26.3
2.7.0

Open the chart page →

5,173
milvusmilvus-helm5.0.281See more

milvus milvus-helm 5.0.28

1 container image this version deploys carries CVE-2026-44431.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
python-pip@22.0.2+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

mssqlmssqlVerified publisher1.10.31 of 1See more

mssql mssql 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-mssql/mssql:1.10.3f923d842bc47
urllib3@1.26.19
2.7.0

Open the chart page →

642
supersetcloudposse1.2.01 of 1See more

superset cloudposse 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
amancevice/superset:0.35.212a0a9e66550
urllib3@1.25.3
2.7.0

Open the chart page →

5,851
servarrkubitodevVerified publisher1.5.21 of 10See more

servarr kubitodev 1.5.2

1 of the 10 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.3.21f104ee51e512
urllib3@2.2.2
2.7.0

Open the chart page →

3,004
stackstorm-hastackstormVerified publisher1.1.011 of 17See more

stackstorm-ha stackstorm 1.1.0

11 of the 17 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.26.18
no fix listed
2.7.0
stackstorm/st2api:3.86f56d239d280
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2auth:3.833ecfda16608
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.26.18
no fix listed
2.7.0
stackstorm/st2notifier:3.8f190a6212195
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2rulesengine:3.8259503496ff9
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.26.18
no fix listed
2.7.0
stackstorm/st2scheduler:3.8b1de2055c362
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2sensorcontainer:3.8b1a338f64773
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2stream:3.81c8904a3bf67
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.26.18
no fix listed
2.7.0
stackstorm/st2timersengine:3.81bf35bfaf00c
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0
stackstorm/st2workflowengine:3.819fdfffdbba8
python-urllib3@1.25.8-2ubuntu0.3
urllib3@1.25.8
no fix listed
2.7.0

Open the chart page →

96,419
frigateblakeblackshear7.8.01 of 1See more

frigate blakeblackshear 7.8.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/blakeblackshear/frigate:0.14.122e3d0b486df
urllib3@2.2.2
2.7.0

Open the chart page →

3,004
kube-prometheuschoerodon9.3.11 of 7See more

kube-prometheus choerodon 9.3.1

1 of the 7 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.1517b98eecdf6d1
urllib3@1.25.9
2.7.0

Open the chart page →

12,237
openclawopenclawVerified publisher1.91.32 of 2See more

openclaw openclaw 1.91.3

2 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
registry.gitlab.com/xrow-public/helm-openclaw/openclaw:1.91.3ed44d81a65de
urllib3@1.26.19
2.7.0

Open the chart page →

2,977
dependabot-gitlabdependabot-gitlabVerified publisher6.3.01 of 3See more

dependabot-gitlab dependabot-gitlab 6.3.0

1 of the 3 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
urllib3@2.0.7
2.7.0

Open the chart page →

4,556
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
urllib3@2.6.3
2.7.0

Open the chart page →

4,332
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
urllib3@1.25.9
2.7.0

Open the chart page →

30,326
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
openmined/syft-backend:0.9.5b72f74a68b32
py3-pip@25.0.1-r0
urllib3@2.3.0
26.1.2-r1
2.7.0

Open the chart page →

17,245
barmanadfinisVerified publisher0.10.01 of 1See more

barman adfinis 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ubcctlt/barman:v2.19cbbbbc8ae16b
urllib3@1.25.11
2.7.0

Open the chart page →

1,552
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
python-urllib3@1.26.12-1+deb12u1
urllib3@1.26.12
1.26.12-1+deb12u4
2.7.0

Open the chart page →

6,457
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
python-urllib3@1.24.2-5.el8_9.2
urllib3@1.26.18
0:1.24.2-10.el8_10
2.7.0

Open the chart page →

9,868
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
urllib3@2.3.0
2.7.0

Open the chart page →

3,033
uptime-kumaduyet0.1.71 of 1See more

uptime-kuma duyet 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.18.5a84767d7934f
urllib3@1.24.1
2.7.0

Open the chart page →

4,515
emqx-operatoremqx-operator2.3.21 of 2See more

emqx-operator emqx-operator 2.3.2

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
alpine/k8s:1.31.49c4976d47656
urllib3@2.2.3
2.7.0

Open the chart page →

4,531
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
library/mysql:9.7.2257388edf9c8
urllib3@2.6.3
2.7.0

Open the chart page →

4,148
lightrun-helm-chartlightrun-helm-chartOfficialVerified publisher3.52.01See more

lightrun-helm-chart lightrun-helm-chart 3.52.0

1 container image this version deploys carries CVE-2026-44431.

Container imageDigestPackageFixed in
library/mysql:8.4.108dbcf531a03a
urllib3@2.6.3
2.7.0

Open the chart page →

jellyfinloeken-at-homeVerified publisher10.11.81 of 1See more

jellyfin loeken-at-home 10.11.8

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
loeken/jellyfin:10.11.87efbc24e47b0
urllib3@2.6.3
2.7.0

Open the chart page →

883
py-kube-downscalerpy-kube-downscalerVerified publisher0.3.121 of 1See more

py-kube-downscaler py-kube-downscaler 0.3.12

1 of the 1 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
ghcr.io/caas-team/py-kube-downscaler:26.4.0af05a098b0d2
urllib3@2.6.3
2.7.0

Open the chart page →

731
backstagerhdh-chartVerified publisher4.0.11 of 2See more

backstage rhdh-chart 4.0.1

1 of the 2 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
urllib3@2.2.2
2.7.0

Open the chart page →

1,339
servarrservarr1.0.22 of 10See more

servarr servarr 1.0.2

2 of the 10 container images this version deploys carry CVE-2026-44431.

Container imageDigestPackageFixed in
nyurik/alpine-python3-requests:lateste0553236e3eb
urllib3@1.26.6
2.7.0
ghcr.io/flaresolverr/flaresolverr:v3.3.16088412db1051
urllib3@2.2.1
2.7.0

Open the chart page →

14,238

Container images carrying it

966 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/libretime/libretime-api:latesteae026cc8909
urllib3@2.5.0
2.7.0
1
ghcr.io/libretime/libretime-playout:latest71a8706531aa
urllib3@2.5.0
2.7.0
1
ghcr.io/libretime/libretime-worker:latestd39ff5272b2e
urllib3@2.5.0
2.7.0
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
urllib3@2.4.0
2.7.0
1
ghcr.io/linuxserver/mylar3:version-v0.5.3b96f0e97ab3f
urllib3@1.26.2
2.7.0
1
ghcr.io/linuxserver/tvheadend:version-eb59284b66c4c9e18e40
urllib3@1.25.9
2.7.0
1
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
urllib3@2.5.0
2.7.0
1
ghcr.io/liturgical-app/liturgical-api:1.0.12637bdcebdd8d
urllib3@2.6.3
2.7.0
1
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
urllib3@2.5.0
2.7.0
1
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
urllib3@2.6.3
2.7.0
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
urllib3@1.26.5
2.7.0
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
urllib3@1.26.11
2.7.0
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
urllib3@1.26.14
2.7.0
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
urllib3@1.26.18
2.7.0
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
urllib3@2.5.0
2.7.0
1
ghcr.io/mglants/kea-dhcp:2.5.8e1b6eb9e37f9
urllib3@2.2.1
2.7.0
1
ghcr.io/middleware-labs/odigos-odiglet:middleware-test-0.0.103c8c835ecee
urllib3@1.26.14
2.7.0
1
ghcr.io/middleware-labs/vision-odiglet:middleware-test-0.0.3bce34c98668e
urllib3@1.26.15
2.7.0
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
urllib3@2.2.1
2.7.0
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
urllib3@1.26.16
2.7.0
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
urllib3@1.26.18
2.7.0
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
urllib3@2.6.3
2.7.0
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
urllib3@2.2.2
2.7.0
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
urllib3@2.6.3
2.7.0
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
urllib3@1.26.20
2.7.0
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
urllib3@2.6.3
2.7.0
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
urllib3@2.3.0
2.7.0
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
urllib3@2.6.3
2.7.0
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.7.0
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.7.0
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.7.0
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
urllib3@2.0.7
2.7.0
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.7.0
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
python-pip@24.0+dfsg-1ubuntu1.3
urllib3@2.0.7
no fix listed
2.7.0
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
urllib3@2.0.7
2.7.0
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
python-pip@20.0.2-5ubuntu1.6
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
urllib3@2.2.3
2.7.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
urllib3@2.5.0
2.7.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
urllib3@2.5.0
2.7.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
urllib3@2.5.0
2.7.0
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
urllib3@1.26.10
2.7.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
urllib3@2.5.0
2.7.0
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
urllib3@1.26.20
2.7.0
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
urllib3@1.26.18
2.7.0
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
urllib3@1.26.18
2.7.0
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
urllib3@2.4.0
2.7.0
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
urllib3@2.4.0
2.7.0
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
urllib3@2.0.6
2.7.0
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
urllib3@1.26.18
2.7.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.