StackRadar

CVE-2026-47884

Critical

Advisory

Published 27 Aug 2026In the index since 6 Oct 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
367
of 18,026 indexed, latest versions
Container images
328
deployed by those charts
Fix available
1 of 1
affected package

Spring Framework Improper Path Limitation in XsltView

Carried by container images the latest versions of 367 of 18,026 indexed charts deploy, on 328 images.

Affected packageAffected versionsFixed inImages
spring-webmvcmaven2.5.6, 2.5.6.SEC03, 3.2.18.RELEASE, 4.3.1.RELEASE+99 more7.0.9328
OSV records
GHSA-pc63-qcmh-9cmg

Charts affected

367 by stars
ChartLatestAffected imagesRadar Score
ipfix-generatorjfwenischVerified publisher0.3.16-feature-helm-package.01 of 1See more

ipfix-generator jfwenisch 0.3.16-feature-helm-package.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/ipfix-generator:latesta1b05567dbf6
spring-webmvc@6.2.18
no fix listed

Open the chart page →

848
mcpmcp-chartsVerified publisher0.0.231 of 7See more

mcp mcp-charts 0.0.23

1 of the 7 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
glarad/mc-service-registry:latest7b02b9e7f1ef
spring-webmvc@7.0.8
7.0.9

Open the chart page →

8,330
todo-apipavanelthepu0.1.01 of 2See more

todo-api pavanelthepu 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
pavanelthepu/todo-api:1.0.2f47658e3b24c
spring-webmvc@5.3.8
no fix listed

Open the chart page →

2,638
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
spring-webmvc@5.3.23
no fix listed

Open the chart page →

7,972
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
treskon/portrait:DEV-latest88e813f22347
spring-webmvc@6.1.15
no fix listed

Open the chart page →

36,111
nifi-registryprofyu1.14.0-r0011 of 1See more

nifi-registry profyu 1.14.0-r001

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apache/nifi-registry:1.14.0090b7f87ec7f
spring-webmvc@5.3.8
no fix listed

Open the chart page →

5,328
shinyproxyremche0.6.61 of 2See more

shinyproxy remche 0.6.6

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
remche/shinyproxy:2.6.18bcda8a04d3b
spring-webmvc@5.3.18
no fix listed

Open the chart page →

4,476
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
reportportal/service-api:5.15.4bf193091525a
spring-webmvc@6.2.19
no fix listed
reportportal/service-authorization:5.15.16a954407b417
spring-webmvc@6.2.19
no fix listed
reportportal/service-jobs:5.15.299d27d58d6b4
spring-webmvc@6.2.18
no fix listed

Open the chart page →

15,278
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest896635ecc91f
spring-webmvc@5.3.23
no fix listed

Open the chart page →

10,627
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
spring-webmvc@5.3.13
no fix listed

Open the chart page →

10,520
seldon-coreseldon0.2.72 of 3See more

seldon-core seldon 0.2.7

2 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
seldonio/apife:0.2.7ba81b17f00eb
spring-webmvc@4.3.20.RELEASE
no fix listed
seldonio/cluster-manager:0.2.729e362bb1ba2
spring-webmvc@4.3.20.RELEASE
no fix listed

Open the chart page →

13,944
sentinel-dashboardsentinel-dashboardVerified publisher0.1.01 of 1See more

sentinel-dashboard sentinel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
royalwang/sentinel-dashboard:1.8.4df99e2499f91
spring-webmvc@5.3.18
no fix listed

Open the chart page →

4,992
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
spring-webmvc@7.0.6
7.0.9

Open the chart page →

1,997
ocean-metric-exporterspot1.1.11 of 1See more

ocean-metric-exporter spot 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
gcr.io/spotinst-artifacts/spot-ocean-metric-exporter:1.0.5ae57b62291aa
spring-webmvc@6.2.10
no fix listed

Open the chart page →

1,648
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
spring-webmvc@5.3.24
no fix listed

Open the chart page →

14,210
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
spring-webmvc@6.2.18
no fix listed

Open the chart page →

3,244
accountaccount-serviceVerified publisher0.4.21 of 1See more

account account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
vitalii1992/account-service:latest0e694d94551d
spring-webmvc@6.0.9
no fix listed

Open the chart page →

2,252
analyticsaccount-serviceVerified publisher0.4.21 of 1See more

analytics account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
vitalii1992/analytics-service:latest8e798836ecea
spring-webmvc@6.0.9
no fix listed

Open the chart page →

2,414
gatewayaccount-serviceVerified publisher0.4.21 of 1See more

gateway account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-webmvc@6.0.9
no fix listed

Open the chart page →

2,968
orderaccount-serviceVerified publisher0.4.21 of 1See more

order account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
vitalii1992/order-service:latest07c4a8833ce4
spring-webmvc@6.0.9
no fix listed

Open the chart page →

2,305
quotes-provideraccount-serviceVerified publisher0.4.21 of 1See more

quotes-provider account-service 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
spring-webmvc@6.0.9
no fix listed

Open the chart page →

2,293
migrationadeptia-automate-migration5.2.91 of 1See more

migration adeptia-automate-migration 5.2.9

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
adeptiainc/adeptia-connect-migration:5.2.98607f4f29732
spring-webmvc@6.2.15
no fix listed

Open the chart page →

631
airports-apiairports-api0.1.01 of 1See more

airports-api airports-api 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dina1993/airports-api:latestac731244aed1
spring-webmvc@6.0.7
no fix listed

Open the chart page →

2,056
airports-consumerairports-consumer0.1.01 of 1See more

airports-consumer airports-consumer 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dina1993/airports-consumer:latest669d146a5e63
spring-webmvc@6.0.7
no fix listed

Open the chart page →

2,045
airports-producerairports-producer0.1.01 of 1See more

airports-producer airports-producer 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dina1993/airports-producer:latest3d6b0dac1cb4
spring-webmvc@6.0.7
no fix listed

Open the chart page →

2,045
airsonic-advancedairsonic-advancedVerified publisher0.3.11 of 1See more

airsonic-advanced airsonic-advanced 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
linuxserver/airsonic-advanced:11.1.4bae6dde843d7
spring-webmvc@6.1.12
no fix listed

Open the chart page →

2,028
alibaba-rsocket-brokeralibaba-rsocket-brokerVerified publisher0.1.31 of 1See more

alibaba-rsocket-broker alibaba-rsocket-broker 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
linuxchina/alibaba-rsocket-broker:1.1.3-k8sf758e2e567ee
spring-webmvc@5.3.18
no fix listed

Open the chart page →

94,306
pagesalstom-pages-app1.0.01 of 3See more

pages alstom-pages-app 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
amorphieamorphie0.1.22 of 18See more

amorphie amorphie 0.1.2

2 of the 18 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
hazelcast/management-center:5.3.2f9d34300d330
spring-webmvc@5.3.29
no fix listed
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
spring-webmvc@6.1.2
no fix listed

Open the chart page →

33,448
pagesandrei-pages1.0.01 of 3See more

pages andrei-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
spring-webmvc@5.1.6.RELEASE
no fix listed

Open the chart page →

12,192
apache-iotdbapache-iotdb-single-nodeVerified publisher0.1.01 of 1See more

apache-iotdb apache-iotdb-single-node 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apache/iotdb:0.11.28647309f95d1
spring-webmvc@4.3.18.RELEASE
no fix listed

Open the chart page →

5,801
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
spring-webmvc@6.1.1
no fix listed

Open the chart page →

6,658
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
fimperato/sparkvid-api:1.0.5-RELEASE604012b77841
spring-webmvc@5.2.9.RELEASE
no fix listed

Open the chart page →

8,839
dashboard-pui9assist-iot-tactile-dashboard0.2.01 of 3See more

dashboard-pui9 assist-iot-tactile-dashboard 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
spring-webmvc@5.3.20
no fix listed

Open the chart page →

4,482
url-shortenerbeastob1.0.21 of 3See more

url-shortener beastob 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
beastob/url-shortener:1.0.299a49885ab33
spring-webmvc@5.3.10
no fix listed

Open the chart page →

4,095
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
blackduck-alertblackduck8.4.11 of 4See more

blackduck-alert blackduck 8.4.1

1 of the 4 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.1b66c8385ba53
spring-webmvc@6.1.21
no fix listed

Open the chart page →

1,918
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
spring-webmvc@5.3.18
no fix listed

Open the chart page →

15,541
bluerange-serverbluerangeOfficialVerified publisher1.4.01 of 1See more

bluerange-server bluerange 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
bluerange/bluerange:26.2.0503577ef9143
spring-webmvc@6.2.6
no fix listed

Open the chart page →

1,987
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-agg:logbc25b152d88e
spring-webmvc@6.2.1
no fix listed

Open the chart page →

30,100
pagesbrian-pages1.0.01 of 3See more

pages brian-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
pagesbrixton-mayuribhavsar23-pages1.0.01 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
pagesbrixton-pages1.0.01 of 3See more

pages brixton-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

12,113
pages-microservicebusi-adsVerified publisher1.0.01 of 3See more

pages-microservice busi-ads 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
casepack-apibysamioVerified publisher0.32.01 of 1See more

casepack-api bysamio 0.32.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
ghcr.io/bysamio/casepack-api:0.32.067aa72b00d0a
spring-webmvc@6.2.19
no fix listed

Open the chart page →

162
pagescamden-pages1.0.01 of 3See more

pages camden-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
geoservercamptocamp20.0.35 of 12See more

geoserver camptocamp2 0.0.3

5 of the 12 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
spring-webmvc@5.2.8.RELEASE
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
spring-webmvc@5.2.8.RELEASE
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
spring-webmvc@5.2.8.RELEASE
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
spring-webmvc@5.2.8.RELEASE
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
spring-webmvc@5.2.8.RELEASE
no fix listed

Open the chart page →

91,998
pagescarina-pages1.0.01 of 3See more

pages carina-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150

Container images carrying it

328 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
siakhooi/query:1.0.0f1f4b5b1b870
spring-webmvc@7.0.6
7.0.9
1
slamdev/hetzner-irobo:0.0.13ca20c184c55
spring-webmvc@5.3.10
no fix listed
1
someblackmagic/smtp-fake-server:latest0d63ba37a560
spring-webmvc@5.3.2
no fix listed
1
stanislovesid/oracle-host-app:14fe1ed26e194
spring-webmvc@5.3.12
no fix listed
1
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-webmvc@6.2.10
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
spring-webmvc@6.2.7
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
spring-webmvc@5.3.27
no fix listed
1
sysnet4admin/colosseum-agg:logbc25b152d88e
spring-webmvc@6.2.1
no fix listed
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
spring-webmvc@6.2.19
no fix listed
1
thingsboard/tbmq-node:2.4.070661025dba5
spring-webmvc@6.2.19
no fix listed
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-node:3.4.1645f43b688f7
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-node:3.6.0f40a542832c4
spring-webmvc@5.3.26
no fix listed
1
thingsboard/tb-postgres:latest2d17e4e36edc
spring-webmvc@6.2.11
no fix listed
1
treskon/portrait:DEV-latest88e813f22347
spring-webmvc@6.1.15
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
spring-webmvc@5.3.9
no fix listed
1
vincentgwzhang/k8sforjava:latesta9139f2cd98f
spring-webmvc@6.2.1
no fix listed
1
vitalii1992/account-service:latest0e694d94551d
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/analytics-service:latest8e798836ecea
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/order-service:latest07c4a8833ce4
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
spring-webmvc@6.0.9
no fix listed
1
vlebediantsev/config-server-another:lateste7f20450d2ae
spring-webmvc@5.3.22
no fix listed
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/logic-ms:latestdf8bf38c535b
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/registration-ms-final:latest427af418b75e
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
spring-webmvc@5.3.21
no fix listed
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
spring-webmvc@5.3.27
no fix listed
1
zahoriaut/zahori-process:0.1.13351f8a220ed7
spring-webmvc@6.0.10
no fix listed
1
zahoriaut/zahori-server:0.1.17b2de13916f3e
spring-webmvc@5.3.25
no fix listed
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
spring-webmvc@5.2.3.RELEASE
no fix listed
1
gcr.io/spotinst-artifacts/spot-ocean-metric-exporter:1.0.5ae57b62291aa
spring-webmvc@6.2.10
no fix listed
1
ghcr.io/axelixlabs/axelix:1.1.0449dc880bbfb
spring-webmvc@7.0.8
7.0.9
1
ghcr.io/booklore-app/booklore:v2.3.1d3d3af34bc2c
spring-webmvc@7.0.8
7.0.9
1
ghcr.io/bysamio/casepack-api:0.32.067aa72b00d0a
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
spring-webmvc@6.1.2
no fix listed
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
spring-webmvc@6.0.9
no fix listed
1
ghcr.io/gla-rad/enav-aton-admin-service:latest8b963221a007
spring-webmvc@7.0.7
7.0.9
1
ghcr.io/gla-rad/enav-aton-service:latest3ffe10cd9cef
spring-webmvc@7.0.7
7.0.9
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gla-rad/enav-msg-broker:latest5c0966fa0257
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gla-rad/enav-vdes-controller:latesta66c35016a11
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
spring-webmvc@6.2.14
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
spring-webmvc@6.2.6
no fix listed
1
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-document-storage/dave-document-storage:10.0.09c7fc07330c9
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-eai/dave-eai:10.0.0fd93e0d125b3
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-geodata-eai/dave-geodata-eai:10.0.06a3fe3136856
spring-webmvc@6.2.19
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.