StackRadar

CVE-2026-47884

Critical

Advisory

Published 27 Aug 2026In the index since 6 Oct 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
367
of 18,026 indexed, latest versions
Container images
328
deployed by those charts
Fix available
1 of 1
affected package

Spring Framework Improper Path Limitation in XsltView

Carried by container images the latest versions of 367 of 18,026 indexed charts deploy, on 328 images.

Affected packageAffected versionsFixed inImages
spring-webmvcmaven2.5.6, 2.5.6.SEC03, 3.2.18.RELEASE, 4.3.1.RELEASE+99 more7.0.9328
OSV records
GHSA-pc63-qcmh-9cmg

Charts affected

367 by stars
ChartLatestAffected imagesRadar Score
pagescarmel-pages-dell1.0.01 of 3See more

pages carmel-pages-dell 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
Chart-Oracle-Host-Appchart-oracle-host-appVerified publisher0.1.21 of 1See more

Chart-Oracle-Host-App chart-oracle-host-app 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
stanislovesid/oracle-host-app:14fe1ed26e194
spring-webmvc@5.3.12
no fix listed

Open the chart page →

2,523
event-store-servicechoerodon0.8.01 of 2See more

event-store-service choerodon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
choerodon/event-store-service:0.8.03c94c97f6f69
spring-webmvc@4.3.8.RELEASE
no fix listed

Open the chart page →

9,887
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
spring-webmvc@4.3.22.RELEASE
no fix listed

Open the chart page →

9,202
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
spring-webmvc@4.3.18.RELEASE
no fix listed

Open the chart page →

24,191
robot-shopcloud-native-toolkit1.1.11 of 12See more

robot-shop cloud-native-toolkit 1.1.1

1 of the 12 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
robotshop/rs-shipping:latest89753ab48919
spring-webmvc@5.2.8.RELEASE
no fix listed

Open the chart page →

39,300
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
spring-webmvc@6.2.5
no fix listed

Open the chart page →

5,079
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
audig/clamapi:2.1.62c3fe34ee430
spring-webmvc@5.2.8.RELEASE
no fix listed

Open the chart page →

4,768
ganttcnieg2.1.01 of 1See more

gantt cnieg 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
cnieg/gantt:1.1.2d4b478d76f2a
spring-webmvc@5.3.23
no fix listed

Open the chart page →

2,479
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
spring-webmvc@5.0.6.RELEASE
no fix listed

Open the chart page →

18,376
consumer-helmconsumer-app-helm-chart0.1.01 of 1See more

consumer-helm consumer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
j4ckhunter/consumer:1.00bb7a429e3e75
spring-webmvc@5.3.22
no fix listed

Open the chart page →

2,682
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
spring-webmvc@5.3.34
no fix listed

Open the chart page →

5,966
pagesdalston-pages1.0.01 of 3See more

pages dalston-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
pagesdaman-dell-kuber1.0.01 of 3See more

pages daman-dell-kuber 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
razzy10/product-service:latest702e411956db
spring-webmvc@6.2.10
no fix listed

Open the chart page →

3,878
pagesdavid-pages1.0.01 of 3See more

pages david-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
db2restdb2rest0.2.01 of 1See more

db2rest db2rest 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
kdhrubo/db2rest:lateste20610ff81b0
spring-webmvc@6.2.10
no fix listed

Open the chart page →

1,077
pagesdebasish-pages1.0.01 of 3See more

pages debasish-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
dial-admindialVerified publisher0.19.01 of 3See more

dial-admin dial 0.19.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
epam/ai-dial-admin-backend:0.21.08b91130e3731
spring-webmvc@6.2.19
no fix listed

Open the chart page →

4,169
pagesdipak1.0.01 of 3See more

pages dipak 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
spring-webmvc@4.3.24.RELEASE
no fix listed

Open the chart page →

20,337
entrypoint-balancereclipse-aeriosVerified publisher1.3.01 of 1See more

entrypoint-balancer eclipse-aerios 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
eclipseaerios/entrypoint-balancer:1.3.043cd999a008d
spring-webmvc@6.1.5
no fix listed

Open the chart page →

2,665
management-portaleclipse-aeriosVerified publisher1.1.01 of 2See more

management-portal eclipse-aerios 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
eclipseaerios/management-portal-backend:1.2.215fba526a4f8
spring-webmvc@6.1.4
no fix listed

Open the chart page →

4,123
pagesedgwarepages1.0.01 of 3See more

pages edgwarepages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
spring-webmvc@5.2.7.RELEASE
no fix listed

Open the chart page →

21,150
unifiegebackVerified publisher2.1.61 of 1See more

unifi egeback 2.1.6

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
spring-webmvc@6.1.21
no fix listed

Open the chart page →

8,235
shenyuerdeng2.4.211 of 2See more

shenyu erdeng 2.4.21

1 of the 2 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apache/shenyu-admin:2.4.2e8b7c4ddd069
spring-webmvc@5.2.2.RELEASE
no fix listed

Open the chart page →

12,737
fddb-exporterfddb-exporterVerified publisher2.4.31 of 1See more

fddb-exporter fddb-exporter 2.4.3

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
ghcr.io/itobey/fddb-exporter:2.4.1a824933e0f87
spring-webmvc@7.0.8
7.0.9

Open the chart page →

632
fibfibonacci-cluster-appsVerified publisher1.0.03 of 5See more

fib fibonacci-cluster-apps 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
spring-webmvc@6.1.14
no fix listed
golenski/fibonacci-task-manager:2.0.03a2b36df247b
spring-webmvc@6.1.14
no fix listed
golenski/fibonacci-worker:2.0.0954caf4aaf6a
spring-webmvc@6.1.14
no fix listed

Open the chart page →

18,606
findery-marketfindery-market0.1.01 of 7See more

findery-market findery-market 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
chandanteekinavar/findery-market-order-service:1.00cf52bf5ee9a
spring-webmvc@5.3.10
no fix listed

Open the chart page →

9,807
fineractfineract-openshift0.1.11 of 4See more

fineract fineract-openshift 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
apache/fineract:1.12.1a83cf1980609
spring-webmvc@6.2.5
no fix listed

Open the chart page →

8,944
scorpio-brokerfiware0.3.310 of 10See more

scorpio-broker fiware 0.3.3

10 of the 10 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
spring-webmvc@5.1.10.RELEASE
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-webmvc@5.3.13
no fix listed

Open the chart page →

61,206
scorpiobrokerfiware0.1.210 of 10See more

scorpiobroker fiware 0.1.2

10 of the 10 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
spring-webmvc@5.1.10.RELEASE
no fix listed
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
spring-webmvc@5.3.13
no fix listed
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
spring-webmvc@5.3.13
no fix listed

Open the chart page →

61,206
scorpio-broker-aaiofiware0.4.151 of 1See more

scorpio-broker-aaio fiware 0.4.15

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
spring-webmvc@5.3.13
no fix listed

Open the chart page →

5,831
my-chartfleet-web-app0.1.03 of 6See more

my-chart fleet-web-app 0.1.0

3 of the 6 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
richardchesterwood/k8s-fleetman-api-gateway:release2518f946b9f05
spring-webmvc@4.3.7.RELEASE
no fix listed
richardchesterwood/k8s-fleetman-position-tracker:release336c43961214c
spring-webmvc@4.3.2.RELEASE
no fix listed
richardchesterwood/k8s-fleetman-queue:release2f7f8d5951155
spring-webmvc@5.3.23
no fix listed

Open the chart page →

26,896
base-depflofree-chartVerified publisher1.0.11 of 1See more

base-dep flofree-chart 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
flofree/base-project:2.1.16b6486c5f81e
spring-webmvc@5.3.29
no fix listed

Open the chart page →

3,257
edge-caiasoftfolio-org0.1.321 of 1See more

edge-caiasoft folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/edge-caiasoft:latestc3cfa89eee2f
spring-webmvc@7.0.8
7.0.9

Open the chart page →

526
edge-dematicfolio-org0.1.331 of 1See more

edge-dematic folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/edge-dematic:latest48c9b1d180d4
spring-webmvc@7.0.8
7.0.9

Open the chart page →

526
edge-inn-reachfolio-org0.1.41 of 1See more

edge-inn-reach folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/edge-inn-reach:latestc64e4d9dd3fc
spring-webmvc@7.0.8
7.0.9

Open the chart page →

526
edge-rtacfolio-org0.1.281 of 1See more

edge-rtac folio-org 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/edge-rtac:latest15ef73b1abd0
spring-webmvc@7.0.5
7.0.9

Open the chart page →

1,265
mod-agreementsfolio-org0.1.321 of 1See more

mod-agreements folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-agreements:latest29c3f233a498
spring-webmvc@5.3.39
no fix listed

Open the chart page →

1,902
mod-calendarfolio-org0.1.341 of 1See more

mod-calendar folio-org 0.1.34

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-calendar:latest22f65982efd7
spring-webmvc@7.0.8
7.0.9

Open the chart page →

416
mod-data-exportfolio-org0.1.401 of 1See more

mod-data-export folio-org 0.1.40

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-data-export:latest0cc86bf09755
spring-webmvc@7.0.3
7.0.9

Open the chart page →

1,425
mod-data-export-springfolio-org0.1.41 of 1See more

mod-data-export-spring folio-org 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-data-export-spring:latestf1d7caf4544b
spring-webmvc@7.0.3
7.0.9

Open the chart page →

1,258
mod-data-export-workerfolio-org0.1.151 of 1See more

mod-data-export-worker folio-org 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-data-export-worker:latest1ad1811c9b37
spring-webmvc@7.0.3
7.0.9

Open the chart page →

1,244
mod-ebsconetfolio-org0.1.31 of 1See more

mod-ebsconet folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-ebsconet:latest3ae8cb99daa3
spring-webmvc@7.0.3
7.0.9

Open the chart page →

1,210
mod-inn-reachfolio-org0.1.71 of 1See more

mod-inn-reach folio-org 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-inn-reach:latestcc8584e43382
spring-webmvc@7.0.8
7.0.9

Open the chart page →

513
mod-ldpfolio-org0.1.331 of 1See more

mod-ldp folio-org 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-ldp:latestb55696fd9065
spring-webmvc@6.1.5
no fix listed

Open the chart page →

1,929
mod-licensesfolio-org0.1.321 of 1See more

mod-licenses folio-org 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-licenses:latestcfd6109bf477
spring-webmvc@5.3.39
no fix listed

Open the chart page →

1,787
mod-oafolio-org0.1.21 of 1See more

mod-oa folio-org 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-47884.

Container imageDigestPackageFixed in
folioci/mod-oa:latestae3b069d4ba5
spring-webmvc@5.3.39
no fix listed

Open the chart page →

1,735

Container images carrying it

328 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
siakhooi/query:1.0.0f1f4b5b1b870
spring-webmvc@7.0.6
7.0.9
1
slamdev/hetzner-irobo:0.0.13ca20c184c55
spring-webmvc@5.3.10
no fix listed
1
someblackmagic/smtp-fake-server:latest0d63ba37a560
spring-webmvc@5.3.2
no fix listed
1
stanislovesid/oracle-host-app:14fe1ed26e194
spring-webmvc@5.3.12
no fix listed
1
streamnative/private-cloud-console:v2.3.27-all91e54375e154
spring-webmvc@6.2.10
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
spring-webmvc@6.2.7
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
spring-webmvc@5.3.27
no fix listed
1
sysnet4admin/colosseum-agg:logbc25b152d88e
spring-webmvc@6.2.1
no fix listed
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
spring-webmvc@6.2.19
no fix listed
1
thingsboard/tbmq-node:2.4.070661025dba5
spring-webmvc@6.2.19
no fix listed
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-node:3.4.1645f43b688f7
spring-webmvc@5.3.20
no fix listed
1
thingsboard/tb-node:3.6.0f40a542832c4
spring-webmvc@5.3.26
no fix listed
1
thingsboard/tb-postgres:latest2d17e4e36edc
spring-webmvc@6.2.11
no fix listed
1
treskon/portrait:DEV-latest88e813f22347
spring-webmvc@6.1.15
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
spring-webmvc@5.3.9
no fix listed
1
vincentgwzhang/k8sforjava:latesta9139f2cd98f
spring-webmvc@6.2.1
no fix listed
1
vitalii1992/account-service:latest0e694d94551d
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/analytics-service:latest8e798836ecea
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/api-gateway-service:latestaabe6ac39356
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/order-service:latest07c4a8833ce4
spring-webmvc@6.0.9
no fix listed
1
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
spring-webmvc@6.0.9
no fix listed
1
vlebediantsev/config-server-another:lateste7f20450d2ae
spring-webmvc@5.3.22
no fix listed
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/logic-ms:latestdf8bf38c535b
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/registration-ms-final:latest427af418b75e
spring-webmvc@5.3.21
no fix listed
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
spring-webmvc@5.3.21
no fix listed
1
vrijbrp/haal-centraal-brp-bevragen:develop5c770c2ae48c
spring-webmvc@5.3.27
no fix listed
1
zahoriaut/zahori-process:0.1.13351f8a220ed7
spring-webmvc@6.0.10
no fix listed
1
zahoriaut/zahori-server:0.1.17b2de13916f3e
spring-webmvc@5.3.25
no fix listed
1
gcr.io/spinnaker-marketplace/halyard:1.32.00ee5f968d2ab
spring-webmvc@5.2.3.RELEASE
no fix listed
1
gcr.io/spotinst-artifacts/spot-ocean-metric-exporter:1.0.5ae57b62291aa
spring-webmvc@6.2.10
no fix listed
1
ghcr.io/axelixlabs/axelix:1.1.0449dc880bbfb
spring-webmvc@7.0.8
7.0.9
1
ghcr.io/booklore-app/booklore:v2.3.1d3d3af34bc2c
spring-webmvc@7.0.8
7.0.9
1
ghcr.io/bysamio/casepack-api:0.32.067aa72b00d0a
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
spring-webmvc@6.1.2
no fix listed
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
spring-webmvc@6.0.9
no fix listed
1
ghcr.io/gla-rad/enav-aton-admin-service:latest8b963221a007
spring-webmvc@7.0.7
7.0.9
1
ghcr.io/gla-rad/enav-aton-service:latest3ffe10cd9cef
spring-webmvc@7.0.7
7.0.9
1
ghcr.io/gla-rad/enav-eureka:latest05002092c621
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gla-rad/enav-msg-broker:latest5c0966fa0257
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gla-rad/enav-vdes-controller:latesta66c35016a11
spring-webmvc@7.0.6
7.0.9
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
spring-webmvc@6.2.14
no fix listed
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
spring-webmvc@6.2.6
no fix listed
1
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-document-storage/dave-document-storage:10.0.09c7fc07330c9
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-eai/dave-eai:10.0.0fd93e0d125b3
spring-webmvc@6.2.19
no fix listed
1
ghcr.io/it-at-m/dave-geodata-eai/dave-geodata-eai:10.0.06a3fe3136856
spring-webmvc@6.2.19
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.