StackRadar

CVE-2026-49264

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
549
of 17,957 indexed, latest versions
Container images
492
deployed by those charts
Fix available
1 of 1
affected package

Oauthlib : Unsafe JSONP callback injection in RevocationEndpoint allows arbitrary JavaScript response generation

Carried by container images the latest versions of 549 of 17,957 indexed charts deploy, on 492 images.

Affected packageAffected versionsFixed inImages
oauthlibpypi2.0.1, 2.0.7, 2.1.0, 3.0.1+7 more4.0.0492
OSV records
GHSA-hj66-6f7g-4r5v
Trending
Rank 28 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

549 by stars
ChartLatestAffected imagesRadar Score
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kfserving/models-web-app:v0.6.1f322d6ffdfa3
oauthlib@3.1.1
4.0.0

Open the chart page →

3,864
csghubcsghubVerified publisher2.5.02 of 34See more

csghub csghub 2.5.0

2 of the 34 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
oauthlib@3.2.2
4.0.0
opencsghq/agenticflow:ee-v0.6.5-241cba9c366f1
oauthlib@3.3.1
4.0.0

Open the chart page →

52,989
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
opencsghq/csgship-web:v0.4.0c36a5bac3cf0
oauthlib@3.2.2
4.0.0

Open the chart page →

12,572
jupyterhubd4nVerified publisher3.3.72 of 7See more

jupyterhub d4n 3.3.7

2 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
oauthlib@3.2.2
4.0.0
aristidetm/k8s-hub:3.3.7ccb516cb8474
oauthlib@3.2.2
4.0.0

Open the chart page →

17,520
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
oauthlib@3.2.2
4.0.0

Open the chart page →

6,443
dapr-agentsdapr-agents-devVerified publisher0.1.52 of 31See more

dapr-agents dapr-agents-dev 0.1.5

2 of the 31 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
oauthlib@3.3.1
4.0.0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

23,432
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
oauthlib@3.2.2
4.0.0

Open the chart page →

5,533
datagrokdatagrok1.0.31 of 7See more

datagrok datagrok 1.0.3

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
datagrok/grok_spawner:latest8c2d48c1545c
oauthlib@3.3.1
4.0.0

Open the chart page →

2,512
mlflowdeliveryheroVerified publisher1.0.101 of 1See more

mlflow deliveryhero 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
larribas/mlflow:1.9.105ccb0b46bfb
oauthlib@3.1.0
4.0.0

Open the chart page →

4,535
newrelic-controllerdeliveryheroVerified publisher1.2.01 of 1See more

newrelic-controller deliveryhero 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
maxrocketinternet/newrelic-controller:0.8ff66958597f0
oauthlib@3.1.0
4.0.0

Open the chart page →

919
postgres-controllerdeliveryheroVerified publisher1.4.01 of 1See more

postgres-controller deliveryhero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
maxrocketinternet/postgres-controller:0.572ac4d33b99d
oauthlib@3.1.0
4.0.0

Open the chart page →

946
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
oauthlib@3.2.2
4.0.0

Open the chart page →

80,522
devnopesdevnopes0.1.81 of 1See more

devnopes devnopes 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
sokushinbutsu/devnopes:latest0bbd90448671
oauthlib@3.3.1
4.0.0

Open the chart page →

495
kube-openid-connectdevopstalesVerified publisher1.1.01 of 1See more

kube-openid-connect devopstales 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
devopstales/kube-openid-connector:1.042c40a0e9f1b
oauthlib@3.2.0
4.0.0

Open the chart page →

1,351
kube-prometheus-stackdevtron19.3.01 of 6See more

kube-prometheus-stack devtron 19.3.0

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
oauthlib@3.1.1
4.0.0

Open the chart page →

8,697
kube-prometheus-stackdevtron-labs19.3.01 of 6See more

kube-prometheus-stack devtron-labs 19.3.0

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.14.235654389f8a9
oauthlib@3.1.1
4.0.0

Open the chart page →

8,697
dbappdiabetesappVerified publisher0.1.01 of 1See more

dbapp diabetesapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
surayya25/diabetes-app:new042c31d5a979
oauthlib@3.1.0
4.0.0

Open the chart page →

4,107
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
oauthlib@3.2.2
4.0.0

Open the chart page →

56,519
autonodelabeldjjudas21Verified publisher0.0.101 of 1See more

autonodelabel djjudas21 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
djjudas21/autonodelabel:0.0.6f17233350c4f
oauthlib@3.2.2
4.0.0

Open the chart page →

1,333
uptime-kumadjjudas21Verified publisher1.5.181 of 1See more

uptime-kuma djjudas21 1.5.18

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.12bc6f244ecf27
oauthlib@2.1.0
4.0.0

Open the chart page →

4,486
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
oauthlib@2.1.0
4.0.0

Open the chart page →

15,295
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
oauthlib@3.3.1
4.0.0

Open the chart page →

4,038
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
oauthlib@3.3.1
4.0.0

Open the chart page →

4,038
dnation-kubernetes-monitoring-stackdnationcloud5.0.03 of 18See more

dnation-kubernetes-monitoring-stack dnationcloud 5.0.0

3 of the 18 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
oauthlib@3.3.1
4.0.0
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
oauthlib@3.2.2
4.0.0
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
oauthlib@3.3.1
4.0.0

Open the chart page →

23,915
codecovdoubanVerified publisher0.2.43 of 8See more

codecov douban 0.2.4

3 of the 8 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
codecov/self-hosted-api:24.4.10475cb1c3136
oauthlib@3.1.0
4.0.0
codecov/self-hosted-worker:24.4.1837f546b479b
oauthlib@3.1.0
4.0.0
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
oauthlib@3.2.0
4.0.0

Open the chart page →

25,854
healthchecksdoubanVerified publisher1.0.101 of 2See more

healthchecks douban 1.0.10

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
healthchecks/healthchecks:latestaa08a61b0dcf
oauthlib@3.3.1
4.0.0

Open the chart page →

2,000
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
oauthlib@3.2.0
4.0.0

Open the chart page →

31,633
drogue-cloud-metricsdrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-metrics drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
oauthlib@3.2.0
4.0.0

Open the chart page →

13,665
rook-cephdtrdnk-helm-chartsVerified publisher0.0.11 of 2See more

rook-ceph dtrdnk-helm-charts 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
rook/ceph:v1.19.2944a1dd70496
oauthlib@3.1.1
4.0.0

Open the chart page →

2,048
amundsenduyet1.1.01 of 7See more

amundsen duyet 1.1.0

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
amundsendev/amundsen-frontend:2.1.169e7915e61c1
oauthlib@3.1.0
4.0.0

Open the chart page →

11,353
grafana-dashboardsdysnixVerified publisher0.2.21 of 2See more

grafana-dashboards dysnix 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.10.718feb3906286
oauthlib@3.1.0
4.0.0

Open the chart page →

5,198
aerios-k8s-shimeclipse-aeriosVerified publisher1.0.01 of 1See more

aerios-k8s-shim eclipse-aerios 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
eclipseaerios/aerios-k8s-shim:v1.0.0d4ed3d8e5db4
oauthlib@3.2.2
4.0.0

Open the chart page →

1,687
home-assistantegebackVerified publisher2.0.351 of 1See more

home-assistant egeback 2.0.35

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
oauthlib@3.3.1
4.0.0

Open the chart page →

2,521
uptime-kumaegebackVerified publisher2.0.121 of 1See more

uptime-kuma egeback 2.0.12

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
oauthlib@3.2.2
4.0.0

Open the chart page →

32,872
pgadmin4eks-storageclass0.1.01 of 2See more

pgadmin4 eks-storageclass 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
dpage/pgadmin4:latestc332c5f6dfba
oauthlib@3.3.1
4.0.0

Open the chart page →

17
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
oauthlib@3.2.2
4.0.0

Open the chart page →

95,989
upgrade-responderepinioVerified publisher0.2.01 of 5See more

upgrade-responder epinio 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.25.2cb4c638ffb1f
oauthlib@3.2.2
4.0.0

Open the chart page →

7,605
argocd-version-exporterevilmartians0.0.11 of 1See more

argocd-version-exporter evilmartians 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
oauthlib@3.1.1
4.0.0

Open the chart page →

2,463
extended-ceph-exporterextended-ceph-exporterVerified publisher1.10.01 of 2See more

extended-ceph-exporter extended-ceph-exporter 1.10.0

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
oauthlib@3.2.2
4.0.0

Open the chart page →

3,473
external-secrets-reloaderexternal-secrets-reloader0.1.01 of 1See more

external-secrets-reloader external-secrets-reloader 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
oauthlib@3.3.1
4.0.0

Open the chart page →

1,093
datadog-apmfairwinds-incubator2.0.11 of 1See more

datadog-apm fairwinds-incubator 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
oauthlib@3.3.1
4.0.0

Open the chart page →

3,126
farm-observabilityfarm-observabilityOfficialVerified publisher0.27.22 of 18See more

farm-observability farm-observability 0.27.2

2 of the 18 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.7.3694950d736c8
oauthlib@3.3.1
4.0.0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

14,098
fauxgpufauxgpuVerified publisher0.2.41 of 4See more

fauxgpu fauxgpu 0.2.4

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/devops-dojo7/fauxgpu/api:0.2.428f706597c2f
oauthlib@3.3.1
4.0.0

Open the chart page →

3,231
azure-pipelines-agentfermosit0.0.11 of 1See more

azure-pipelines-agent fermosit 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
jmferrer/azure-devops-agent:latest030f68ec6998
oauthlib@3.0.1
4.0.0

Open the chart page →

14,964
infrafibonacci-cluster-infraVerified publisher1.0.01 of 4See more

infra fibonacci-cluster-infra 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
dpage/pgadmin4:8.418cd5711fc9a
oauthlib@3.2.2
4.0.0

Open the chart page →

13,227
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
oauthlib@3.1.0
4.0.0

Open the chart page →

118,495
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
oauthlib@3.2.2
4.0.0

Open the chart page →

5,862
kube-ops-viewfluent-operatorVerified publisher0.1.21 of 1See more

kube-ops-view fluent-operator 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
hjacobs/kube-ops-view:20.4.058221b57d4d2
oauthlib@3.1.0
4.0.0

Open the chart page →

1,872
uptime-kumafluent-operatorVerified publisher0.1.01 of 1See more

uptime-kuma fluent-operator 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:170233f4acb51
oauthlib@2.1.0
4.0.0

Open the chart page →

3,748
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
oauthlib@3.3.1
4.0.0

Open the chart page →

2,575

Container images carrying it

492 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/axoflow/axosyslog:4.28.03785379a20f8
oauthlib@3.3.1
4.0.0
1
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
oauthlib@3.2.2
4.0.0
1
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
oauthlib@3.3.1
4.0.0
1
ghcr.io/bensoer/sibyl:v0.2.06dca4455fde3
oauthlib@3.3.1
4.0.0
1
ghcr.io/berriai/litellm:1.102.0:main-stable32cfd7a427f6
oauthlib@3.3.1
4.0.0
1
ghcr.io/berriai/litellm:1.103.1df15400b5b80
oauthlib@3.3.1
4.0.0
1
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
oauthlib@3.3.1
4.0.0
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
oauthlib@3.2.2
4.0.0
1
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
oauthlib@3.2.2
4.0.0
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
oauthlib@3.2.2
4.0.0
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
oauthlib@3.2.2
4.0.0
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
oauthlib@3.2.2
4.0.0
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
oauthlib@3.3.1
4.0.0
1
ghcr.io/cleanuparr/cleanuparr:2.10.8ec444338a67e
oauthlib@3.3.1
4.0.0
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
oauthlib@3.2.2
4.0.0
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
oauthlib@3.2.2
4.0.0
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
oauthlib@3.2.2
4.0.0
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
oauthlib@3.3.1
4.0.0
1
ghcr.io/developmentseed/titiler:latestfe8f2224e674
oauthlib@3.3.1
4.0.0
1
ghcr.io/devops-dojo7/fauxgpu/api:0.2.428f706597c2f
oauthlib@3.3.1
4.0.0
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
oauthlib@3.3.1
4.0.0
1
ghcr.io/dgtlmoon/changedetection.io:0.44534b9bc5c46e
oauthlib@3.2.2
4.0.0
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
oauthlib@3.1.1
4.0.0
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
oauthlib@3.2.2
4.0.0
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
oauthlib@3.0.1
4.0.0
1
ghcr.io/gabe565/obico/web:latest122456be28c9
oauthlib@3.2.2
4.0.0
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
oauthlib@3.1.0
4.0.0
1
ghcr.io/gluufederation/flex/admin-ui:0.0.0-nightly60587399f746
oauthlib@3.3.1
4.0.0
1
ghcr.io/gluufederation/flex/persistence-loader:0.0.0-nightlycd60a0ae161c
oauthlib@3.3.1
4.0.0
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
oauthlib@3.3.1
4.0.0
1
ghcr.io/goauthentik/server:2026.8.3ab9b4e8cc4ab
oauthlib@3.3.1
4.0.0
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
oauthlib@3.3.1
4.0.0
1
ghcr.io/grofers/legend:0.1d6e901ad0ebd
oauthlib@3.1.0
4.0.0
1
ghcr.io/grycap/im:latest06a16d4f279f
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-assistant/home-assistant:2026.3.10e091dfce306
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
oauthlib@3.2.2
4.0.0
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
oauthlib@3.2.0
4.0.0
1
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
oauthlib@3.2.2
4.0.0
1
ghcr.io/home-operations/bazarr:1.6.217dc1cff22e9
oauthlib@3.3.1
4.0.0
1
ghcr.io/home-operations/bazarr:1.5.680cb090162b4
oauthlib@3.2.2
4.0.0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
oauthlib@3.2.2
4.0.0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
oauthlib@3.3.1
4.0.0
1
ghcr.io/itobey/playlist-mirror:1.0.0601082677a46
oauthlib@3.3.1
4.0.0
1
ghcr.io/janssenproject/jans/persistence-loader:0.0.0-nightlyc6e314e9467d
oauthlib@3.3.1
4.0.0
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
oauthlib@3.2.2
4.0.0
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
oauthlib@3.2.2
4.0.0
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
oauthlib@3.2.2
4.0.0
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.