StackRadar

CVE-2026-59869

High

Advisory

Published 8 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
44th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
460
of 17,781 indexed, latest versions
Container images
458
deployed by those charts
Fix available
1 of 2
affected packages

js-yaml: YAML merge-key chains can force quadratic CPU consumption

Carried by container images the latest versions of 460 of 17,781 indexed charts deploy, on 458 images.

Affected packageAffected versionsFixed inImages
js-yamlnpm3.5.5, 3.6.1, 3.7.0, 3.9.1+11 more3.15.0, 4.3.0458
node-js-yamldeb4.1.0+dfsg+~4.0.5-7no fix listed1
OSV records
GHSA-52cp-r559-cp3mUBUNTU-CVE-2026-59869

Charts affected

460 by stars
ChartLatestAffected imagesRadar Score
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
js-yaml@3.13.1
3.15.0

Open the chart page →

3,969
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
js-yaml@4.1.1
4.3.0

Open the chart page →

4,259
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/kibana:7.17.150172f1c538e7
js-yaml@3.14.1
3.15.0

Open the chart page →

34,754
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
js-yaml@4.1.0
4.3.0

Open the chart page →

9,019
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
js-yaml@3.14.1
3.15.0

Open the chart page →

2,973
api-mapperglenndehaanVerified publisher1.2.01 of 1See more

api-mapper glenndehaan 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
glenndehaan/api-mapper:latest6ff6310683bf
js-yaml@4.1.0
4.3.0

Open the chart page →

1,158
kube-hookglenndehaanVerified publisher1.0.31 of 1See more

kube-hook glenndehaan 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
glenndehaan/kube-hook:latest0a7116f48bfe
js-yaml@4.1.0
4.3.0

Open the chart page →

923
Governify-Bluejaygovernify0.1.06 of 12See more

Governify-Bluejay governify 0.1.0

6 of the 12 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
js-yaml@3.14.1
3.15.0
governify/director:v1.4.0608c6940bb98
js-yaml@3.14.1
3.15.0
governify/registry:v3.4.0d3f37f4f8168
js-yaml@4.1.0
4.3.0
governify/render:v2.2.0daeca1ce28e6
js-yaml@3.14.1
3.15.0
governify/reporter:v2.2.038595913458f
js-yaml@3.14.1
3.15.0
library/mongo:latest5211c51171f5
js-yaml@3.13.1
3.15.0

Open the chart page →

22,512
Governify-Falcongovernify0.1.07 of 10See more

Governify-Falcon governify 0.1.0

7 of the 10 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
governify/assets-manager:v1.4.12987672448c7
js-yaml@3.14.1
3.15.0
governify/collector-dynamic:v1.3.06d3d1a5b46a9
js-yaml@3.14.1
3.15.0
governify/director:v1.4.0608c6940bb98
js-yaml@3.14.1
3.15.0
governify/registry:v3.4.0d3f37f4f8168
js-yaml@4.1.0
4.3.0
governify/render:v2.2.0daeca1ce28e6
js-yaml@3.14.1
3.15.0
governify/reporter:v2.2.038595913458f
js-yaml@3.14.1
3.15.0
library/mongo:latest5211c51171f5
js-yaml@3.13.1
3.15.0

Open the chart page →

24,319
opentelemetry-demogpg-dev0.33.81 of 27See more

opentelemetry-demo gpg-dev 0.33.8

1 of the 27 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
js-yaml@4.1.0
4.3.0

Open the chart page →

49,025
grayloggraylogVerified publisher1.0.21 of 4See more

graylog graylog 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/mongo:85211c51171f5
js-yaml@3.13.1
3.15.0

Open the chart page →

5,261
h2ph2pVerified publisher1.0.11 of 1See more

h2p h2p 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
dacinfomotion/h2p:latest68fa393b472c
js-yaml@4.1.0
4.3.0

Open the chart page →

1,713
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
js-yaml@4.1.0
4.3.0

Open the chart page →

2,950
irslackdhalkeye0.1.01 of 1See more

irslackd halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
halkeye/irslackd:latest7638bfba70b0
js-yaml@3.13.1
3.15.0

Open the chart page →

2,064
matrix-appservice-gitterhalkeye0.1.01 of 1See more

matrix-appservice-gitter halkeye 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
js-yaml@3.13.1
3.15.0

Open the chart page →

3,003
zigbee2mqtthelm-chart-roeiVerified publisher1.19.01 of 1See more

zigbee2mqtt helm-chart-roei 1.19.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
js-yaml@3.14.1
3.15.0

Open the chart page →

2,173
streamsheetshelm-chartsVerified publisher0.2.34 of 8See more

streamsheets helm-charts 0.2.3

4 of the 8 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
js-yaml@3.14.1
3.15.0
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
js-yaml@3.14.0
3.15.0
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
js-yaml@3.14.0
3.15.0
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
js-yaml@3.14.0
3.15.0

Open the chart page →

89,959
backstagehelm-charts-nr0.1.151 of 2See more

backstage helm-charts-nr 0.1.15

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
js-yaml@3.14.0
3.15.0

Open the chart page →

8,213
hoppscotchhelm-charts-nr0.3.11 of 1See more

hoppscotch helm-charts-nr 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.8.2f1da831950b7
js-yaml@4.1.0
4.3.0

Open the chart page →

3,451
automatischhelmforgeVerified publisher1.3.71 of 4See more

automatisch helmforge 1.3.7

1 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
automatischio/automatisch:0.15.03bace7a12d5f
js-yaml@4.1.0
4.3.0

Open the chart page →

5,769
countlyhelmforgeVerified publisher1.2.62 of 3See more

countly helmforge 1.2.6

2 of the 3 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
js-yaml@4.1.0
4.3.0
library/mongo:8.3.85211c51171f5
js-yaml@3.13.1
3.15.0

Open the chart page →

18,813
mongodbhelmforgeVerified publisher1.8.01 of 1See more

mongodb helmforge 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/mongo:8.3.85211c51171f5
js-yaml@3.13.1
3.15.0

Open the chart page →

1,254
paprahelmforgeVerified publisher1.0.01 of 1See more

papra helmforge 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
js-yaml@3.14.1
3.15.0

Open the chart page →

2,538
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
js-yaml@4.1.0
4.3.0

Open the chart page →

25,017
self-learning-platformhelm-self-learning-platformVerified publisher1.1.01 of 1See more

self-learning-platform helm-self-learning-platform 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
devopsiaci/self-learning-platform:1.1.3d9441c931f75
js-yaml@4.1.1
4.3.0

Open the chart page →

1,468
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
js-yaml@3.13.1
3.15.0

Open the chart page →

4,253
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
js-yaml@4.1.0
4.3.0

Open the chart page →

3,614
ibm-app-navigatoribm-charts1.0.12 of 5See more

ibm-app-navigator ibm-charts 1.0.1

2 of the 5 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ibmcom/app-nav-init:1.0.1240ff499eb5b
js-yaml@3.13.1
3.15.0
ibmcom/app-nav-ui:1.0.1e2a86997b36b
js-yaml@3.13.1
3.15.0

Open the chart page →

32,915
ibm-business-automation-insights-devibm-charts3.2.01 of 6See more

ibm-business-automation-insights-dev ibm-charts 3.2.0

1 of the 6 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ibmcom/bai-admin-dev:19.0.202d882f2836e
js-yaml@3.11.0
3.15.0

Open the chart page →

39,349
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ibmcom/microclimate-portal:latested5505e5c7ec
js-yaml@3.11.0
3.15.0

Open the chart page →

57,669
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
js-yaml@4.1.0
4.3.0

Open the chart page →

3,154
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
js-yaml@3.14.1
3.15.0

Open the chart page →

11,812
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
js-yaml@4.1.0
4.3.0

Open the chart page →

4,944
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
js-yaml@3.13.1
3.15.0

Open the chart page →

10,494
interbtc-hydrainterlay0.1.152 of 4See more

interbtc-hydra interlay 0.1.15

2 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
js-yaml@3.14.1
3.15.0
subsquid/hydra-indexer:5.0.0-alpha.37a7f8b9bad7ee
js-yaml@4.1.0
4.3.0

Open the chart page →

6,831
interlay-firesquidinterlay0.1.112 of 4See more

interlay-firesquid interlay 0.1.11

2 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:0.10.55b2c414307b9
js-yaml@4.1.0
4.3.0
subsquid/substrate-explorer:firesquid0889a857f192
js-yaml@4.1.0
4.3.0

Open the chart page →

4,667
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
js-yaml@4.1.0
4.3.0

Open the chart page →

7,232
keyoxide-webittrident-oss0.2.31 of 1See more

keyoxide-web ittrident-oss 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
keyoxide/keyoxide:stable96f27a71269d
js-yaml@4.1.0
4.3.0

Open the chart page →

2,363
ghostjanip81-helm-chartsVerified publisher0.1.21 of 1See more

ghost janip81-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/ghost:6.37.01ef2e532ca4d
js-yaml@4.1.1
4.3.0

Open the chart page →

3,436
n8njanip81-helm-chartsVerified publisher0.1.41 of 1See more

n8n janip81-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
n8nio/n8n:1.86.08b39ed5a2de9
js-yaml@4.1.0
4.3.0

Open the chart page →

5,826
unifi-network-applicationjanip81-helm-chartsVerified publisher0.2.91 of 3See more

unifi-network-application janip81-helm-charts 0.2.9

1 of the 3 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
js-yaml@3.13.1
3.15.0

Open the chart page →

2,143
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
js-yaml@3.14.1
3.15.0

Open the chart page →

6,454
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
js-yaml@3.14.1
3.15.0

Open the chart page →

2,315
image-storage-servicejtektVerified publisher0.4.31 of 4See more

image-storage-service jtekt 0.4.3

1 of the 4 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
js-yaml@3.14.1
3.15.0

Open the chart page →

22,589
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
js-yaml@3.14.1
3.15.0

Open the chart page →

2,231
shinsei-managerjtektVerified publisher0.2.04 of 8See more

shinsei-manager jtekt 0.2.0

4 of the 8 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
js-yaml@3.14.1
3.15.0
moreillon/group-manager:latest3caa8f710ee0
js-yaml@4.1.0
4.3.0
moreillon/user-manager:v5.0.2e1c9bfab5c16
js-yaml@3.14.1
3.15.0
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
js-yaml@3.14.1
3.15.0

Open the chart page →

63,461
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
js-yaml@4.1.0
4.3.0

Open the chart page →

16,600
todo-appjunktext-via-aws1.2.101 of 1See more

todo-app junktext-via-aws 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.34d44adf5a4da2
js-yaml@3.14.1
3.15.0

Open the chart page →

1,579
ghostk8s-home-lab-repo4.1.01 of 1See more

ghost k8s-home-lab-repo 4.1.0

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
library/ghost:6.41.129773d6be407
js-yaml@4.1.1
4.3.0

Open the chart page →

3,092
youtubedl-materialk8s-home-lab-repo5.1.11 of 1See more

youtubedl-material k8s-home-lab-repo 5.1.1

1 of the 1 container images this version deploys carry CVE-2026-59869.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.3.22f943d584711
js-yaml@3.14.0
3.15.0

Open the chart page →

9,783

Container images carrying it

458 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
statsd/statsd:v0.8.6dab129e74c25
js-yaml@3.13.1
3.15.0
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
js-yaml@3.14.0
3.15.0
2
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
js-yaml@3.14.1
3.15.0
2
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
js-yaml@4.1.0
4.3.0
2
adeptiainc/adeptia-automate-mcp-server:1.0.0283001e83739
js-yaml@4.1.1
4.3.0
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
js-yaml@4.1.0
4.3.0
1
alazidis/stornx:1.1.1602d4f7f090c
js-yaml@4.1.0
4.3.0
1
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
js-yaml@3.13.1
3.15.0
1
amundsendev/amundsen-frontend:2.1.169e7915e61c1
js-yaml@3.13.1
3.15.0
1
anamskenneth/recipe_backend:2025-06-079b7d2cd389b7
js-yaml@3.14.1
3.15.0
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
js-yaml@4.1.0
4.3.0
1
apecloud/aperag-frontend:v0.0.0-nightlyb3ae37840ace
js-yaml@4.1.1
4.3.0
1
arfath29/3-tier-app-frontend:latest384b3e377f47
js-yaml@3.14.1
3.15.0
1
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
js-yaml@3.14.0
3.15.0
1
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
js-yaml@3.14.0
3.15.0
1
assistiot/fl_orchestrator:api-latest7473d77448e1
js-yaml@3.14.1
3.15.0
1
assistiot/open_api_frontend:1.0.1f11d82defc70
js-yaml@4.1.0
4.3.0
1
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
js-yaml@4.1.0
4.3.0
1
assistiot/smart-orchestrator_enabler:latest89f37e88c871
js-yaml@4.1.0
4.3.0
1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
js-yaml@4.1.0
4.3.0
1
automatischio/automatisch:0.15.03bace7a12d5f
js-yaml@4.1.0
4.3.0
1
baserow/baserow:1.30.1df0c42eb67e8
js-yaml@3.14.1
3.15.0
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
js-yaml@3.14.1
3.15.0
1
belirta/beli-docker:v1.0.0f65ad0e23b4d
js-yaml@4.1.0
4.3.0
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
js-yaml@3.14.1
3.15.0
1
bluerange/bluerange-mosquitto:25f1bfbba84832
js-yaml@3.14.1
3.15.0
1
bnjbvr/kresus:0.22.137e216b182c8
js-yaml@4.1.0
4.3.0
1
bnwokoye/nodejswebapp:latest74de7dc7ebfb
js-yaml@4.1.0
4.3.0
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
js-yaml@3.13.1
3.15.0
1
budibase/apps:3.41.344fe6feab985
js-yaml@4.2.0
4.3.0
1
budibase/worker:3.41.3de5e2e560ce8
js-yaml@4.2.0
4.3.0
1
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
js-yaml@3.14.1
3.15.0
1
catalysm/csmm:latestf003b35f54d9
js-yaml@3.14.1
3.15.0
1
ccjacobs14/amazon:59a9b14a6f09e
js-yaml@3.14.1
3.15.0
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
js-yaml@4.1.0
4.3.0
1
chatwoot/chatwoot:v4.15.167ebc751c171
js-yaml@3.14.1
3.15.0
1
chibisafe/chibisafe:latest836467a50792
js-yaml@4.1.0
4.3.0
1
chibisafe/chibisafe-server:latest3da4fcbc1a18
js-yaml@4.1.0
4.3.0
1
chocobozzz/peertube:v8.1.5052712130691
js-yaml@4.1.1
4.3.0
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
js-yaml@4.1.0
4.3.0
1
codercom/code-server:4.11.0-debian1e2cc688008e
js-yaml@4.1.0
4.3.0
1
codercom/code-server:3.10.247605610ad8d
js-yaml@4.1.0
4.3.0
1
codetogether/codetogether:latest4348c8a38752
js-yaml@4.1.0
4.3.0
1
coldatom/containers-security-api:latesteae9e82da080
js-yaml@4.1.0
4.3.0
1
coldatom/containers-security-front:latest7c2fbbb41bcf
js-yaml@4.1.0
4.3.0
1
conduction/conduction-ui-app:devd591f5e6f2a9
js-yaml@3.14.1
3.15.0
1
contane/foreman:0.5.2efb98bdcc4e9
js-yaml@4.1.0
4.3.0
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
js-yaml@4.1.0
4.3.0
1
countly/api:25.05.4f4cc7447c4f5
js-yaml@4.1.0
4.3.0
1
countly/countly-server:25.05.4e3c238248f99
js-yaml@4.1.0
4.3.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.