StackRadar

CVE-2026-49264

Medium

Advisory

Published 29 Sept 2026In the index since 30 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
549
of 17,957 indexed, latest versions
Container images
492
deployed by those charts
Fix available
1 of 1
affected package

Oauthlib : Unsafe JSONP callback injection in RevocationEndpoint allows arbitrary JavaScript response generation

Carried by container images the latest versions of 549 of 17,957 indexed charts deploy, on 492 images.

Affected packageAffected versionsFixed inImages
oauthlibpypi2.0.1, 2.0.7, 2.1.0, 3.0.1+7 more4.0.0492
OSV records
GHSA-hj66-6f7g-4r5v
Trending
Rank 28 in indexed charts, since 30 Sept 2026. See the ranking →

Charts affected

549 by stars
ChartLatestAffected imagesRadar Score
jx-app-datadogjenkins-x0.0.101 of 2See more

jx-app-datadog jenkins-x 0.0.10

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
datadog/agent:6aad9994de6a7
oauthlib@3.1.0
4.0.0

Open the chart page →

4,313
steamcmd-managerjfwenischVerified publisher0.4.51 of 1See more

steamcmd-manager jfwenisch 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
oauthlib@3.2.2
4.0.0

Open the chart page →

7,268
webtoolsjfwenischVerified publisher0.1.41 of 1See more

webtools jfwenisch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
oauthlib@3.2.2
4.0.0

Open the chart page →

7,250
beetsjmmaloney40.9.61 of 1See more

beets jmmaloney4 0.9.6

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/beets:1.4.9-ls94826263aebec3
oauthlib@3.1.0
4.0.0

Open the chart page →

1,231
shynetjuniorjpdj0.1.321 of 1See more

shynet juniorjpdj 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.13.1ba54f7797a6b
oauthlib@3.2.1
4.0.0

Open the chart page →

2,730
bazarrk8s-home-lab-repo11.3.21 of 1See more

bazarr k8s-home-lab-repo 11.3.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/home-operations/bazarr:1.5.680cb090162b4
oauthlib@3.2.2
4.0.0

Open the chart page →

1,900
beetsk8s-home-lab-repo3.1.11 of 1See more

beets k8s-home-lab-repo 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
oauthlib@3.2.2
4.0.0

Open the chart page →

2,957
paperlessk8s-home-lab-repo11.0.11 of 1See more

paperless k8s-home-lab-repo 11.0.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
oauthlib@3.3.1
4.0.0

Open the chart page →

10,059
jupyterhub-chartk8s-jupyterhub0.1.01 of 1See more

jupyterhub-chart k8s-jupyterhub 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
truebyteinnovationllp/jupyterhub-k8s:5.5.06bf978b96279
oauthlib@3.3.1
4.0.0

Open the chart page →

1,656
authentikkagiso-me0.1.11 of 1See more

authentik kagiso-me 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
oauthlib@3.3.1
4.0.0

Open the chart page →

5,011
karbkarbVerified publisher1.0.31 of 1See more

karb karb 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/xeor/karb:main647a3c938d31
oauthlib@3.3.1
4.0.0

Open the chart page →

700
karb-chartkarbVerified publisher1.0.61 of 1See more

karb-chart karb 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/xeor/karb:1.0.6647a3c938d31
oauthlib@3.3.1
4.0.0

Open the chart page →

700
mlflowkelvins0.4.01 of 3See more

mlflow kelvins 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kelvinsp/mlflow:1.26.1cd33e6db2a59
oauthlib@3.2.0
4.0.0

Open the chart page →

4,517
elastalert2kfirfer2.2.51 of 1See more

elastalert2 kfirfer 2.2.5

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
jertel/elastalert2:2.2.34dcc0ef93efc
oauthlib@3.1.1
4.0.0

Open the chart page →

1,652
home-assistantkfirfer0.5.41 of 1See more

home-assistant kfirfer 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.10.3021e2afc6e57
oauthlib@3.2.2
4.0.0

Open the chart page →

6,711
kibana-index-pattern-updaterkfirfer0.0.31 of 1See more

kibana-index-pattern-updater kfirfer 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kfirfer/kibana-index-pattern-updater:1.0.12e88cfcec5c93
oauthlib@3.1.0
4.0.0

Open the chart page →

3,382
kube-hunterkfirfer1.0.51 of 1See more

kube-hunter kfirfer 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
aquasec/kube-hunter:0.6.8e64fe49f059f
oauthlib@3.2.0
4.0.0

Open the chart page →

1,022
kubeflowkromanow94-kubeflow0.5.15 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

5 of the 30 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kserve/models-web-app:v0.13.073486345a602
oauthlib@3.2.2
4.0.0
kubeflownotebookswg/jupyter-web-app:v1.9.2afb52057c997
oauthlib@3.2.2
4.0.0
kubeflownotebookswg/tensorboards-web-app:v1.9.277f07f52a84a
oauthlib@3.2.2
4.0.0
kubeflownotebookswg/volumes-web-app:v1.9.2f63c3e550af3
oauthlib@3.2.2
4.0.0
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
oauthlib@3.2.2
4.0.0

Open the chart page →

74,154
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
oauthlib@3.3.1
4.0.0

Open the chart page →

10,703
jupyterhubkubeblocksVerified publisher0.1.02 of 7See more

jupyterhub kubeblocks 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:3.0.1-0.dev.git.6287.hbfb05cd65a0ceed1300a
oauthlib@3.2.2
4.0.0
jupyterhub/k8s-singleuser-sample:3.0.1-0.dev.git.6287.hbfb05cd68e4778efec8e
oauthlib@3.2.2
4.0.0

Open the chart page →

7,645
lokikubeblocksVerified publisher5.39.01 of 5See more

loki kubeblocks 5.39.0

1 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.24.35af76eebbba7
oauthlib@3.2.2
4.0.0

Open the chart page →

5,896
cephfs-csikubegems1.0.81 of 6See more

cephfs-csi kubegems 1.0.8

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
oauthlib@2.1.0
4.0.0

Open the chart page →

4,526
kube-infokube-info0.1.01 of 1See more

kube-info kube-info 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
andreymileshin/kube-info:v0.1.0f7b300bc9e66
oauthlib@3.2.2
4.0.0

Open the chart page →

542
kube-pod-alertskube-pod-alertsVerified publisher0.1.81 of 1See more

kube-pod-alerts kube-pod-alerts 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
tussanakorndev/kube-pod-alerts:1.0.5216fdadadf9a
oauthlib@3.3.1
4.0.0

Open the chart page →

1,878
kubernetes-feedskubernetes-feeds0.1.11 of 3See more

kubernetes-feeds kubernetes-feeds 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
lumutools/kubernetes-feeder:lateste35ffa90b129
oauthlib@3.3.1
4.0.0

Open the chart page →

1,099
uptime-kumakubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

uptime-kuma kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.2.1-slim059b49d64739
oauthlib@3.2.2
4.0.0

Open the chart page →

6,973
forkliftkubevirt-forkliftVerified publisher0.3.01 of 2See more

forklift kubevirt-forklift 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kubev2v/forklift-operator:release-2.1200312252b07e
oauthlib@3.3.1
4.0.0

Open the chart page →

1,550
kubevoipkubevoipOfficialVerified publisher0.6.81 of 1See more

kubevoip kubevoip 0.6.8

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
oauthlib@3.3.1
4.0.0

Open the chart page →

1,295
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
oauthlib@3.2.2
4.0.0

Open the chart page →

36,169
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
oauthlib@3.1.0
4.0.0

Open the chart page →

4,738
legendlegend0.1.21 of 1See more

legend legend 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/grofers/legend:0.1d6e901ad0ebd
oauthlib@3.1.0
4.0.0

Open the chart page →

4,486
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
oauthlib@3.2.2
4.0.0
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
oauthlib@3.2.2
4.0.0

Open the chart page →

5,805
home-assistantlmatfyVerified publisher0.1.381 of 1See more

home-assistant lmatfy 0.1.38

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2026.75a531753cea9
oauthlib@3.3.1
4.0.0

Open the chart page →

2,806
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
oauthlib@3.2.2
4.0.0

Open the chart page →

36,169
oncall-hobbylovemew67Verified publisher0.0.51 of 2See more

oncall-hobby lovemew67 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
grafana/oncall:v1.13.11159b6b836fed
oauthlib@3.2.2
4.0.0

Open the chart page →

6,203
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
oauthlib@3.3.1
4.0.0

Open the chart page →

5,312
nubladolsst-sqre0.9.233 of 5See more

nublado lsst-sqre 0.9.23

3 of the 5 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
lsstsqre/prepuller:latest19c2dfc4e4ff
oauthlib@3.1.0
4.0.0
lsstsqre/sciplat-hub:latest5e0ade6bed1c
oauthlib@3.1.0
4.0.0
lsstsqre/wfdispatcher:lateste9feb99f524d
oauthlib@3.1.0
4.0.0

Open the chart page →

6,150
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
oauthlib@3.2.0
4.0.0

Open the chart page →

95,443
sasquatchlsst-sqre0.1.131 of 6See more

sasquatch lsst-sqre 0.1.13

1 of the 6 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
oauthlib@3.1.1
4.0.0

Open the chart page →

9,388
bazarrm0nsterrr-bazarrVerified publisher2.3.21 of 1See more

bazarr m0nsterrr-bazarr 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/home-operations/bazarr:1.6.217dc1cff22e9
oauthlib@3.3.1
4.0.0

Open the chart page →

113
kube-hunterm9sweeperVerified publisher1.6.01 of 1See more

kube-hunter m9sweeper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
aquasec/kube-hunter:0.6.8e64fe49f059f
oauthlib@3.2.0
4.0.0

Open the chart page →

1,022
mayastormayastorVerified publisher2.12.11 of 31See more

mayastor mayastor 2.12.1

1 of the 31 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
oauthlib@3.2.2
4.0.0

Open the chart page →

19,344
mcp-hangarmcp-hangarVerified publisher0.15.281 of 1See more

mcp-hangar mcp-hangar 0.15.28

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/mcp-hangar/mcp-hangar:2.23.0b731546941ce
oauthlib@3.3.1
4.0.0

Open the chart page →

1,006
mcp-atlassianmcp-helmVerified publisher0.2.281 of 1See more

mcp-atlassian mcp-helm 0.2.28

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/sooperset/mcp-atlassian:0.11.927c8e5b890e1
oauthlib@3.3.1
4.0.0

Open the chart page →

2,056
cleanuparrmedia-servarrVerified publisher0.19.41 of 1See more

cleanuparr media-servarr 0.19.4

1 of the 1 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.8ec444338a67e
oauthlib@3.3.1
4.0.0

Open the chart page →

1,328
kube-prometheus-stackmesosphere87.16.01 of 7See more

kube-prometheus-stack mesosphere 87.16.0

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
oauthlib@3.3.1
4.0.0

Open the chart page →

7,782
prometheus-operatormesosphere12.11.131 of 8See more

prometheus-operator mesosphere 12.11.13

1 of the 8 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
oauthlib@3.3.1
4.0.0

Open the chart page →

11,829
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.3.065095a82d4a1
oauthlib@3.1.0
4.0.0

Open the chart page →

68,790
kube-prometheus-stackmesosphere-stable75.9.11 of 7See more

kube-prometheus-stack mesosphere-stable 75.9.1

1 of the 7 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.30.349dcce269568
oauthlib@3.2.2
4.0.0

Open the chart page →

10,866
servicesmicroslacVerified publisher0.4.01 of 8See more

services microslac 0.4.0

1 of the 8 container images this version deploys carry CVE-2026-49264.

Container imageDigestPackageFixed in
microslac/auth:latest5c1eb1f5c64d
oauthlib@3.2.2
4.0.0

Open the chart page →

32,895

Container images carrying it

492 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
oauthlib@3.2.0
4.0.0
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
oauthlib@3.1.1
4.0.0
1
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
oauthlib@3.2.1
4.0.0
1
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
oauthlib@3.3.1
4.0.0
1
ghcr.io/lerentis/bitwarden-crd-operator:0.18.0912b19a7f09a
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/beets:1.4.9-ls94826263aebec3
oauthlib@3.1.0
4.0.0
1
ghcr.io/linuxserver/calibre-web:latest0767226fcf20
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
oauthlib@3.3.1
4.0.0
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
oauthlib@3.2.2
4.0.0
1
ghcr.io/linuxserver/papermerge:version-v2.0.198ba2dd3f0bd
oauthlib@3.2.0
4.0.0
1
ghcr.io/linuxserver/sickchill:2021.5.10-1-ls63a607452a692a
oauthlib@3.1.0
4.0.0
1
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
oauthlib@3.3.1
4.0.0
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
oauthlib@3.2.0
4.0.0
1
ghcr.io/macropower/kubernetes-python:1.0a887b5cae4af
oauthlib@3.3.1
4.0.0
1
ghcr.io/mcp-hangar/mcp-hangar:2.23.0b731546941ce
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
oauthlib@3.2.2
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.28.08b02290f4d18
oauthlib@3.3.1
4.0.0
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
oauthlib@3.2.2
4.0.0
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
oauthlib@3.3.1
4.0.0
1
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
oauthlib@3.2.2
4.0.0
1
ghcr.io/mlops-for-all/mlflow-tracking-server:3.8-1.30.1-v1.0.0d30e631684c3
oauthlib@3.2.2
4.0.0
1
ghcr.io/mshade/kronic:v0.1.466e3043851cd
oauthlib@3.2.2
4.0.0
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
oauthlib@3.2.2
4.0.0
1
ghcr.io/netbox-community/netbox:v4.7.159e3e5954d02
oauthlib@3.3.1
4.0.0
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
oauthlib@3.3.1
4.0.0
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
oauthlib@3.2.2
4.0.0
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
oauthlib@3.3.1
4.0.0
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
oauthlib@3.2.2
4.0.0
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
oauthlib@3.2.2
4.0.0
1
ghcr.io/open-webui/terminals-operator:latest5e1ceb6b3b26
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
oauthlib@3.2.2
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
oauthlib@3.3.1
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.10.1a132c2ac7c57
oauthlib@3.2.2
4.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
oauthlib@3.3.1
4.0.0
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
oauthlib@3.3.1
4.0.0
1
ghcr.io/quenchworks/images/pgadmina989540d10b6
oauthlib@3.3.1
4.0.0
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
oauthlib@3.2.2
4.0.0
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.32c1ec86675d4
oauthlib@3.3.1
4.0.0
1
ghcr.io/sooperset/mcp-atlassian:0.11.927c8e5b890e1
oauthlib@3.3.1
4.0.0
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
oauthlib@3.2.2
4.0.0
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
oauthlib@3.2.2
4.0.0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
oauthlib@3.2.2
4.0.0
1
ghcr.io/tarkyaio/tarka:0.4.1e8d3f1512f06
oauthlib@3.3.1
4.0.0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
oauthlib@3.2.2
4.0.0
1
ghcr.io/wittdennis/calibre-web:1.1.2953aa0935251
oauthlib@3.3.1
4.0.0
1

syft 1.42.1 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.