StackRadar

CVE-2026-53655

Medium

Advisory

Published 15 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
891
of 17,787 indexed, latest versions
Container images
922
deployed by those charts
Fix available
2 of 3
affected packages

node-tar applies PAX size override to intermediary GNU long-name/long-link headers, causing tar parser interpretation differential (file smuggling)

Carried by container images the latest versions of 891 of 17,787 indexed charts deploy, on 922 images.

Affected packageAffected versionsFixed inImages
tarnpm1.0.3, 2.2.1, 2.2.2, 4.0.2+31 more7.5.16922
npmapk11.17.0-r011.17.0-r21
node-tardeb1.0.3-2, 2.2.1-1, 4.4.10+ds1-2ubuntu1, 6.1.13+~cs7.0.5-3+1 moreno fix listed7
OSV records
CGA-85f3-cvh5-pcppDEBIAN-CVE-2026-53655GHSA-vmf3-w455-68vhUBUNTU-CVE-2026-53655
Also known as
CGA-r3rf-vp7c-364p

Charts affected

891 by stars
ChartLatestAffected imagesRadar Score
ibm-microclimateibm-charts0.1.03 of 8See more

ibm-microclimate ibm-charts 0.1.0

3 of the 8 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
tar@2.2.1
7.5.16
ibmcom/microclimate-portal:latested5505e5c7ec
tar@4.0.2
7.5.16
ibmcom/microclimate-theia:lateste17bdccc5030
tar@2.2.1
7.5.16

Open the chart page →

57,728
ibm-voice-gateway-devibm-charts3.1.01 of 2See more

ibm-voice-gateway-dev ibm-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
tar@2.2.1
7.5.16

Open the chart page →

4,504
multicaicoretechVerified publisher0.4.421 of 5See more

multica icoretech 0.4.42

1 of the 5 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/multica-ai/multica-web:v0.4.43fc937fbbf8e5
tar@7.5.11
7.5.16

Open the chart page →

2,730
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
tar@6.2.1
7.5.16

Open the chart page →

3,181
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4d95725b24dbe
tar@7.5.15
7.5.16

Open the chart page →

9,032
ilum-marquezilumVerified publisher6.7.01 of 3See more

ilum-marquez ilum 6.7.0

1 of the 3 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ilum/marquez-web:0.53.2716437a51a6c
tar@7.5.1
7.5.16

Open the chart page →

6,282
ilum-uiilumOfficialVerified publisher6.7.31 of 2See more

ilum-ui ilum 6.7.3

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ilum/ui:6.7.3998937726679
tar@7.5.2
7.5.16

Open the chart page →

1,236
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
tar@6.2.1
7.5.16

Open the chart page →

11,838
erpnextimprowisedVerified publisher3.3.02 of 3See more

erpnext improwised 3.3.0

2 of the 3 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
frappe/frappe-socketio:v13.4.12095767a9e82
tar@6.1.0
7.5.16
improwised/erpnext-worker:v13.4.197280b55cbd4
tar@4.4.13
7.5.16

Open the chart page →

6,502
indexer-chartindexer-application0.1.01 of 1See more

indexer-chart indexer-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ibarreche/cloud-indexer-ci:latestb7a08274e69f
tar@2.2.1
7.5.16

Open the chart page →

3,289
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
infisical/infisical:latest02082bf13163
tar@7.4.3
7.5.16

Open the chart page →

2,954
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
tar@6.1.11
7.5.16

Open the chart page →

4,944
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
tar@6.1.11
7.5.16

Open the chart page →

10,542
interbtc-hydrainterlay0.1.153 of 4See more

interbtc-hydra interlay 0.1.15

3 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
tar@6.1.11
7.5.16
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
tar@4.4.19
7.5.16
subsquid/hydra-indexer-status-service:5.0.0-alpha.37a4136013909c
tar@4.4.19
7.5.16

Open the chart page →

6,831
interlay-firesquidinterlay0.1.113 of 4See more

interlay-firesquid interlay 0.1.11

3 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
tar@6.1.11
7.5.16
subsquid/substrate-explorer:firesquid0889a857f192
tar@6.1.11
7.5.16
subsquid/substrate-ingest:firesquidfa549779e9b1
tar@6.1.11
7.5.16

Open the chart page →

4,667
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
tar@4.4.13
7.5.16

Open the chart page →

7,233
istio-bookinfoistio-bookinfo1.2.21 of 6See more

istio-bookinfo istio-bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
istio/examples-bookinfo-ratings-v1:1.15.009b9d6958a13
tar@2.2.1
7.5.16

Open the chart page →

18,998
keyoxide-webittrident-oss0.2.31 of 1See more

keyoxide-web ittrident-oss 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
keyoxide/keyoxide:stable96f27a71269d
tar@6.1.11
7.5.16

Open the chart page →

2,363
ghostjanip81-helm-chartsVerified publisher0.1.21 of 1See more

ghost janip81-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
library/ghost:6.37.01ef2e532ca4d
tar@7.5.11
7.5.16

Open the chart page →

3,448
n8njanip81-helm-chartsVerified publisher0.1.41 of 1See more

n8n janip81-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
n8nio/n8n:1.86.08b39ed5a2de9
tar@6.2.1
7.5.16

Open the chart page →

5,826
zomboid-serverjanip81-helm-chartsVerified publisher0.1.211 of 3See more

zomboid-server janip81-helm-charts 0.1.21

1 of the 3 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/fpsacha/zomboid-panel:v1.0.6605e16dd56cfb
tar@7.5.11
7.5.16

Open the chart page →

425
monocularjenkins-x0.6.41 of 4See more

monocular jenkins-x 0.6.4

1 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
tar@2.2.1
7.5.16

Open the chart page →

4,614
hello-kubernetes-chartjhidalgo3-githubVerified publisher3.0.01 of 1See more

hello-kubernetes-chart jhidalgo3-github 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
jhidalgo3/hello-kubernetes:1.0.0.1397bf5ddfa8628d79f5
tar@6.2.1
7.5.16

Open the chart page →

914
github-exporterjkroepkeVerified publisher1.4.01 of 1See more

github-exporter jkroepke 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
jkroepke/github_exporter:1.8.03d850992786d
tar@7.5.1
7.5.16

Open the chart page →

1,032
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
tar@4.4.13
7.5.16

Open the chart page →

6,452
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
tar@4.4.19
7.5.16

Open the chart page →

2,315
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
tar@6.2.1
7.5.16

Open the chart page →

22,665
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
tar@4.4.19
7.5.16

Open the chart page →

2,231
shinsei-managerjtektVerified publisher0.2.04 of 8See more

shinsei-manager jtekt 0.2.0

4 of the 8 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
tar@6.2.1
7.5.16
moreillon/group-manager:latest3caa8f710ee0
tar@6.2.1
7.5.16
moreillon/user-manager:v5.0.2e1c9bfab5c16
tar@6.1.13
7.5.16
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
tar@6.2.1
7.5.16

Open the chart page →

59,560
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
tar@6.1.15
7.5.16

Open the chart page →

16,626
docker-hub-rssjuniorjpdj0.1.311 of 1See more

docker-hub-rss juniorjpdj 0.1.31

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
tar@6.2.1
7.5.16

Open the chart page →

1,967
shynetjuniorjpdj0.1.301 of 1See more

shynet juniorjpdj 0.1.30

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.13.1ba54f7797a6b
tar@6.1.0
7.5.16

Open the chart page →

2,581
todo-appjunktext-via-aws1.2.101 of 1See more

todo-app junktext-via-aws 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.34d44adf5a4da2
tar@2.2.2
7.5.16

Open the chart page →

1,579
k10appk10app0.2.13 of 11See more

k10app k10app 0.2.1

3 of the 11 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/k10app/basicuserservice:latest2ee057ad3bef
tar@6.1.11
7.5.16
ghcr.io/k10app/catalog:latest639c980be0f1
tar@6.1.11
7.5.16
ghcr.io/k10app/order:lateste1017d0dbd78
tar@6.1.13
7.5.16

Open the chart page →

10,560
actual-budgetk8s-chartsVerified publisher0.2.31 of 1See more

actual-budget k8s-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
actualbudget/actual-server:25.3.158fecd9088b7
tar@6.2.1
7.5.16

Open the chart page →

2,622
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
tar@6.2.1
7.5.16

Open the chart page →

8,879
audiobookshelfk8s-home-lab-repo2.0.11 of 1See more

audiobookshelf k8s-home-lab-repo 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.32.1a52dc5db694a
tar@6.1.15
7.5.16

Open the chart page →

2,351
floodk8s-home-lab-repo7.3.01 of 1See more

flood k8s-home-lab-repo 7.3.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
jesec/flood:4.14.3c887dad96b40
tar@7.5.11
7.5.16

Open the chart page →

746
ghostk8s-home-lab-repo4.1.01 of 1See more

ghost k8s-home-lab-repo 4.1.0

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
library/ghost:6.41.129773d6be407
tar@7.5.13
7.5.16

Open the chart page →

3,040
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
tar@6.1.0
7.5.16

Open the chart page →

4,667
youtubedl-materialk8s-home-lab-repo5.1.11 of 1See more

youtubedl-material k8s-home-lab-repo 5.1.1

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.3.22f943d584711
tar@6.1.11
7.5.16

Open the chart page →

9,832
k8s-jacoco-operatork8s-jacoco-operator0.4.01 of 4See more

k8s-jacoco-operator k8s-jacoco-operator 0.4.0

1 of the 4 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-jacoco-operator:maina558ceae6cdb
tar@7.5.1
7.5.16

Open the chart page →

2,439
k8s-mutating-webhookk8s-mutating-webhook0.3.01 of 2See more

k8s-mutating-webhook k8s-mutating-webhook 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-mutating-webhook:mainaaab005242ae
tar@6.1.11
7.5.16

Open the chart page →

2,009
zwave-js-uik8sonlabVerified publisher0.7.121 of 1See more

zwave-js-ui k8sonlab 0.7.12

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
zwavejs/zwave-js-ui:11.22.314d018bb689e
tar@7.4.3
7.5.16

Open the chart page →

974
k8s-validating-webhookk8s-validating-webhook0.4.01 of 2See more

k8s-validating-webhook k8s-validating-webhook 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/k8s-validating-webhook:main8344061b2f22
tar@6.1.11
7.5.16

Open the chart page →

2,009
kube-admission-controller-starterk8s-validating-webhook0.2.01 of 2See more

kube-admission-controller-starter k8s-validating-webhook 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/curium-rocks/kube-admission-controller-starter:maine9716966f30b
tar@6.1.11
7.5.16

Open the chart page →

2,166
huekatool1.0.81 of 1See more

hue katool 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
gethue/hue:4.11.011b649636e68
tar@4.4.19
7.5.16

Open the chart page →

16,464
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
tar@7.4.3
7.5.16

Open the chart page →

5,098
keycloak-multi-client-notifierkeycloak-multi-client-notifier2.1.21 of 2See more

keycloak-multi-client-notifier keycloak-multi-client-notifier 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
tar@7.5.11
7.5.16

Open the chart page →

1,473
statsdkeyporttech0.1.191 of 1See more

statsd keyporttech 0.1.19

1 of the 1 container images this version deploys carry CVE-2026-53655.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
tar@4.4.6
7.5.16

Open the chart page →

4,185

Container images carrying it

922 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/talhajuikar/stateful-data-generator:v1.1.1dfd7ea7303a2
tar@6.1.11
7.5.16
1
ghcr.io/techno-tim/littlelink-server:latest735a1fcd078b
tar@6.2.0
7.5.16
1
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
tar@6.2.1
7.5.16
1
ghcr.io/theduffman85/crowdsec-web-ui:2026.8.3bfadbab9a72c
tar@7.5.15
7.5.16
1
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
tar@7.5.11
7.5.16
1
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
tar@7.4.3
7.5.16
1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
tar@7.4.3
7.5.16
1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
tar@7.4.3
7.5.16
1
ghcr.io/umami-software/umami:3.0.328f263fe06f7
tar@7.5.2
7.5.16
1
ghcr.io/umami-software/umami:postgresql-v1.39.560fa8875aff8
tar@6.1.11
7.5.16
1
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
tar@7.4.3
7.5.16
1
ghcr.io/umami-software/umami:3.1.0e3f80c0625aa
tar@7.5.12
7.5.16
1
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
tar@6.1.11
7.5.16
1
ghcr.io/wachd/wachd:0.4.1805b05c56da94
tar@7.5.11
7.5.16
1
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
tar@6.1.13
7.5.16
1
ghcr.io/waldo-vision/web:v0.3.65bbc7647df07
tar@6.1.13
7.5.16
1
ghcr.io/wasilak/kube-ingress-dash:0.3.1ff55992f905c
tar@7.5.1
7.5.16
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
tar@6.1.0
7.5.16
1
ghcr.io/wei-shaw/claude-relay-service:v1.1.292398c34934453
tar@6.2.1
7.5.16
1
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
tar@7.4.3
7.5.16
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
tar@6.2.0
7.5.16
1
ghcr.io/woodenmaiden/relfinderreformedapi:1.1.20708d30433d4
tar@6.2.1
7.5.16
1
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
tar@7.4.3
7.5.16
1
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
tar@7.4.3
7.5.16
1
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
tar@7.4.3
7.5.16
1
ghcr.io/xmv-solutions-gmbh/strapi:latesta288b4571142
tar@7.5.11
7.5.16
1
ghcr.io/zazukoians/qlever-ui:v0.10.034c7b540a095
tar@7.4.3
7.5.16
1
ghcr.io/zoriya/kyoo_front:4.7.1d7f76c9c65d9
tar@6.2.1
7.5.16
1
mcr.microsoft.com/azure-storage/azurite:latest830430c1da1a
tar@7.5.11
7.5.16
1
public.ecr.aws/aktosecurity/akto-puppeteer-replay:1.49.4_latestf1c5763d565e
tar@7.5.9
7.5.16
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
tar@6.2.1
7.5.16
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
tar@6.2.1
7.5.16
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
tar@6.2.1
7.5.16
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
tar@6.1.15
7.5.16
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
tar@6.2.0
7.5.16
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
tar@6.2.1
7.5.16
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
tar@2.2.2
7.5.16
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
tar@4.4.19
7.5.16
1
quay.io/hedgedoc/hedgedoc:1.10.8abdb6b08815d
tar@6.2.1
7.5.16
1
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
tar@6.0.5
7.5.16
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
tar@2.2.2
7.5.16
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
tar@4.4.13
7.5.16
1
quay.io/ibmgaragecloud/slack-notifications:latest041df93e2bac
tar@4.4.13
7.5.16
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
tar@7.5.11
7.5.16
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
tar@7.5.11
7.5.16
1
quay.io/mittwald/kube-mail:latest04f1099241fc
tar@6.2.1
7.5.16
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
tar@6.1.11
7.5.16
1
quay.io/netwarps/blockscoutbecd3e39360a
tar@6.1.11
7.5.16
1
quay.io/netwarps/walletconnect-relay:v2.1.3-rc.15d90b9c193e0
tar@6.1.11
7.5.16
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
tar@6.2.0
7.5.16
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.