StackRadar

CVE-2026-49264

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
549
of 17,957 indexed, latest versions
Container images
492
deployed by those charts
Fix available
1 of 1
affected package

Oauthlib : Unsafe JSONP callback injection in RevocationEndpoint allows arbitrary JavaScript response generation

Carried by container images the latest versions of 549 of 17,957 indexed charts deploy, on 492 images.

Affected packageAffected versionsFixed inImages
oauthlibpypi2.0.1, 2.0.7, 2.1.0, 3.0.1+7 more4.0.0492
OSV records
GHSA-hj66-6f7g-4r5v
Trending
Rank 28 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

549 by stars
ChartLatestAffected imagesRadar Score
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
oauthlib@3.2.0
4.0.0

Open the chart page →

34,130
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
oauthlib@3.1.1
4.0.0

Open the chart page →

5,654
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
oauthlib@3.2.1
4.0.0

Open the chart page →

5,170
aws-secrets-synchronizeraws-secrets-synchronizer0.2.11 of 1See more

aws-secrets-synchronizer aws-secrets-synchronizer 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
oauthlib@3.2.2
4.0.0

Open the chart page →

979
axosyslogaxosyslogVerified publisher0.22.01 of 1See more

axosyslog axosyslog 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.28.03785379a20f8
oauthlib@3.3.1
4.0.0

Open the chart page →

50
axosyslog-collectoraxosyslogVerified publisher0.8.11 of 1See more

axosyslog-collector axosyslog 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
oauthlib@3.2.2
4.0.0

Open the chart page →

1,539
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
oauthlib@3.0.1
4.0.0

Open the chart page →

4,641
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
oauthlib@3.1.0
4.0.0

Open the chart page →

5,620
twitter-sentimentazure-sample0.1.01 of 3See more

twitter-sentiment azure-sample 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
neilpeterson/get-tweet:v28b645ac1a23e
oauthlib@2.0.7
4.0.0

Open the chart page →

13,271
pvc-exporterbalihb-pvc-exporterVerified publisher0.2.41 of 2See more

pvc-exporter balihb-pvc-exporter 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
balihb/pod-pvc-mapping:0.2.4ee48e79f5d76
oauthlib@3.1.1
4.0.0

Open the chart page →

2,794
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
oauthlib@3.3.1
4.0.0

Open the chart page →

4,622
nzbgetbdclark-helm-chartsVerified publisher0.1.171 of 1See more

nzbget bdclark-helm-charts 0.1.17

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
linuxserver/nzbget:26.3.2026091124951ff9689d
oauthlib@3.3.1
4.0.0

Open the chart page →

27
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
oauthlib@3.2.2
4.0.0

Open the chart page →

10,708
bdbablackduck2026.9.01 of 9See more

bdba blackduck 2026.9.0

1 of the 9 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
blackducksoftware/bdba-frontend:2026.9.10afa8763ccb8
oauthlib@3.3.1
4.0.0

Open the chart page →

7,927
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.26.2e271016441af
oauthlib@3.2.2
4.0.0

Open the chart page →

8,619
kube-prometheus-stackbook-k8sinfra-v265.5.11 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
oauthlib@3.2.2
4.0.0

Open the chart page →

6,165
sickchillbryanalves0.3.01 of 1See more

sickchill bryanalves 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
linuxserver/sickchill:v2020.08.07-1-ls40e48b479c1891
oauthlib@3.1.0
4.0.0

Open the chart page →

2,634
calibre-web-automatedcalibre-web-automated1.0.01 of 1See more

calibre-web-automated calibre-web-automated 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
crocodilestick/calibre-web-automated:v4.0.6c31a738b6d5e
oauthlib@3.3.1
4.0.0

Open the chart page →

6,904
prometheus-operatorcamptocamp35.15.11 of 5See more

prometheus-operator camptocamp3 5.15.1

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.0.16899ccd0b1f54
oauthlib@3.0.1
4.0.0

Open the chart page →

2,551
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
oauthlib@3.2.2
4.0.0

Open the chart page →

11,543
castai-hibernatecastaiVerified publisher0.2.121 of 1See more

castai-hibernate castai 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
castai/hibernate:v0.14da62858c8381
oauthlib@3.3.1
4.0.0

Open the chart page →

1,364
catalyst-agentscatalyst-agents0.1.331 of 18See more

catalyst-agents catalyst-agents 0.1.33

1 of the 18 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:2.10.17eac5c4fed71
oauthlib@3.3.1
4.0.0

Open the chart page →

18,107
kube-ceemsceemsOfficialVerified publisher1.43.01 of 5See more

kube-ceems ceems 1.43.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.11.22912be006f62
oauthlib@3.3.1
4.0.0

Open the chart page →

559
opencvecfi20170.1.21 of 7See more

opencve cfi2017 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
oauthlib@3.3.1
4.0.0

Open the chart page →

16,539
calibre-webcharts-derwitt-devVerified publisher1.1.31 of 1See more

calibre-web charts-derwitt-dev 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.2953aa0935251
oauthlib@3.3.1
4.0.0

Open the chart page →

5,272
paperless-ngxcharts-derwitt-devVerified publisher2.1.51 of 1See more

paperless-ngx charts-derwitt-dev 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.2.15fa76604a81d
oauthlib@3.3.1
4.0.0

Open the chart page →

4,370
kube-ops-viewchristianhuthVerified publisher8.3.31 of 1See more

kube-ops-view christianhuth 8.3.3

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
hjacobs/kube-ops-view:23.5.0a4fae38f93d7
oauthlib@3.2.2
4.0.0

Open the chart page →

1,254
kube-acp-stackcloudentity2.29.01 of 7See more

kube-acp-stack cloudentity 2.29.0

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
oauthlib@3.2.0
4.0.0

Open the chart page →

21,883
check-mkcloudnativeapp0.2.11 of 1See more

check-mk cloudnativeapp 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
nlmacamp/check_mk:latest5dbb8589f824
oauthlib@2.1.0
4.0.0

Open the chart page →

2,482
prometheus-operatorcloudnativeapp6.4.01 of 7See more

prometheus-operator cloudnativeapp 6.4.0

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.0.186eb52513d59e
oauthlib@3.0.2
4.0.0

Open the chart page →

3,013
sentry-kubernetescloudnativeapp0.2.01 of 1See more

sentry-kubernetes cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
getsentry/sentry-kubernetes:latest6ac37974fd2a
oauthlib@3.0.1
4.0.0

Open the chart page →

1,476
supersetcloudnativeapp1.1.61 of 1See more

superset cloudnativeapp 1.1.6

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
amancevice/superset:0.28.1c8c04bfe3d66
oauthlib@2.1.0
4.0.0

Open the chart page →

5,488
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
oauthlib@3.2.2
4.0.0

Open the chart page →

25,449
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
oauthlib@3.2.0
4.0.0

Open the chart page →

6,793
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
oauthlib@3.2.0
4.0.0

Open the chart page →

7,031
cloudlaunchcloudve0.6.01 of 5See more

cloudlaunch cloudve 0.6.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
oauthlib@3.1.1
4.0.0

Open the chart page →

12,885
cloudlaunch-servercloudve0.2.01 of 5See more

cloudlaunch-server cloudve 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
oauthlib@3.1.1
4.0.0

Open the chart page →

12,444
cloudlaunchservercloudve0.6.01 of 4See more

cloudlaunchserver cloudve 0.6.0

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
oauthlib@3.1.1
4.0.0

Open the chart page →

12,020
galaxycloudve6.8.81 of 3See more

galaxy cloudve 6.8.8

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
oauthlib@3.3.1
4.0.0

Open the chart page →

6,006
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
oauthlib@3.2.1
4.0.0

Open the chart page →

16,579
galaxy-stablecloudve2.0.01 of 5See more

galaxy-stable cloudve 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
oauthlib@2.1.0
4.0.0

Open the chart page →

176,359
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
oauthlib@3.3.1
4.0.0

Open the chart page →

2,886
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
oauthlib@3.2.2
4.0.0

Open the chart page →

8,557
monitoringcluster-deploy0.3.01 of 11See more

monitoring cluster-deploy 0.3.0

1 of the 11 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

8,404
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

7,603
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

7,377
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
oauthlib@3.3.1
4.0.0

Open the chart page →

14,240
loki-stackcommon-chartsVerified publisher1.0.32 of 12See more

loki-stack common-charts 1.0.3

2 of the 12 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.10.021b9fe7bb29d
oauthlib@3.3.1
4.0.0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

5,794
opencloudcommunity-opencloud3.1.01 of 13See more

opencloud community-opencloud 3.1.0

1 of the 13 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
oauthlib@3.3.1
4.0.0

Open the chart page →

10,169
couchbase-monitor-stackcouchbaseVerified publisher2.1.21 of 5See more

couchbase-monitor-stack couchbase 2.1.2

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.12.3eabdae16a5cc
oauthlib@3.1.1
4.0.0

Open the chart page →

7,015

Container images carrying it

492 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
oauthlib@3.2.0
4.0.0
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
oauthlib@3.1.1
4.0.0
1
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
oauthlib@3.2.1
4.0.0
1
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
oauthlib@3.3.1
4.0.0
1
ghcr.io/lerentis/bitwarden-crd-operator:0.18.0912b19a7f09a
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/beets:1.4.9-ls94826263aebec3
oauthlib@3.1.0
4.0.0
1
ghcr.io/linuxserver/calibre-web:latest0767226fcf20
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
oauthlib@3.2.2
4.0.0
1
ghcr.io/linuxserver/papermerge:version-v2.0.198ba2dd3f0bd
oauthlib@3.2.0
4.0.0
1
ghcr.io/linuxserver/sickchill:2021.5.10-1-ls63a607452a692a
oauthlib@3.1.0
4.0.0
1
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
oauthlib@3.3.1
4.0.0
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
oauthlib@3.2.0
4.0.0
1
ghcr.io/macropower/kubernetes-python:1.0a887b5cae4af
oauthlib@3.3.1
4.0.0
1
ghcr.io/mcp-hangar/mcp-hangar:2.23.0b731546941ce
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
oauthlib@3.2.2
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.28.08b02290f4d18
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
oauthlib@3.2.2
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
oauthlib@3.3.1
4.0.0
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
oauthlib@3.2.2
4.0.0
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
oauthlib@3.2.2
4.0.0
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
oauthlib@3.2.2
4.0.0
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
oauthlib@3.2.2
4.0.0
1
ghcr.io/netbox-community/netbox:v4.7.159e3e5954d02
oauthlib@3.3.1
4.0.0
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
oauthlib@3.3.1
4.0.0
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
oauthlib@3.2.2
4.0.0
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
oauthlib@3.3.1
4.0.0
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
oauthlib@3.2.2
4.0.0
1
ghcr.io/open-webui/terminals-operator:latest5e1ceb6b3b26
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
oauthlib@3.2.2
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.10.1a132c2ac7c57
oauthlib@3.2.2
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
oauthlib@3.3.1
4.0.0
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
oauthlib@3.3.1
4.0.0
1
ghcr.io/quenchworks/images/pgadmina989540d10b6
oauthlib@3.3.1
4.0.0
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
oauthlib@3.2.2
4.0.0
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.32c1ec86675d4
oauthlib@3.3.1
4.0.0
1
ghcr.io/sooperset/mcp-atlassian:0.11.927c8e5b890e1
oauthlib@3.3.1
4.0.0
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
oauthlib@3.2.2
4.0.0
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
oauthlib@3.2.2
4.0.0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
oauthlib@3.2.2
4.0.0
1
ghcr.io/tarkyaio/tarka:0.4.1e8d3f1512f06
oauthlib@3.3.1
4.0.0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
oauthlib@3.2.2
4.0.0
1
ghcr.io/wittdennis/calibre-web:1.1.2953aa0935251
oauthlib@3.3.1
4.0.0
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.