StackRadar

CVE-2026-59890

Medium

Advisory

Published 8 Jul 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,264
of 17,790 indexed, latest versions
Container images
1,324
deployed by those charts
Fix available
4 of 5
affected packages

setuptools: MANIFEST.in exclusion bypass in sdist via Unicode normalization collision (NFC/NFD) on macOS APFS/HFS+

Carried by container images the latest versions of 1,264 of 17,790 indexed charts deploy, on 1,324 images.

Affected packageAffected versionsFixed inImages
setuptoolspypi0.9.8, 20.7.0, 20.8.0, 29.0.1.post20161130+135 more83.0.01,262
setuptoolsdeb45.2.0-1, 45.2.0-1ubuntu0.1, 45.2.0-1ubuntu0.2, 45.2.0-1ubuntu0.3+9 moreno fix listed161
setuptoolsbitnami70.3.0, 80.9.083.0.03
py3-setuptoolsapk75.8.0-r083.0.0-r01
python-3.11deb3.11.15+e43.11.16+e21
OSV records
BIT-setuptools-2026-59890CGA-45cv-ppqx-4qxhGHSA-h35f-9h28-mq5cUBUNTU-CVE-2026-59890ECHO-732c-d358-5fef
Also known as
CGA-4hr8-28qq-pc5f, CGA-7mpr-r977-c726, CGA-qfw9-8w49-7c33, PYSEC-2026-3447

Charts affected

1,264 by stars
ChartLatestAffected imagesRadar Score
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
setuptools@65.5.1
83.0.0
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
setuptools@65.5.1
83.0.0

Open the chart page →

19,051
exporteropenshift1.0.473 of 3See more

exporter openshift 1.0.47

3 of the 3 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
setuptools@39.2.0
83.0.0
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
setuptools@53.0.0
83.0.0
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
setuptools@53.0.0
83.0.0

Open the chart page →

13,041
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
setuptools@39.2.0
83.0.0
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
setuptools@39.2.0
83.0.0

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.61 of 6See more

fsm openshift 0.1.8-ubi.6

1 of the 6 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
setuptools@39.2.0
83.0.0

Open the chart page →

16,563
hamiopenshift2.10.0-r0-openshift.c4e22e881 of 2See more

hami openshift 2.10.0-r0-openshift.c4e22e88

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/dynamia-ai/hami-enterprise:v2.10.0-r0-openshift.c4e22e88745504757300
setuptools@39.2.0
83.0.0

Open the chart page →

4,756
kb-cloud-installeropenshift2.1.351 of 1See more

kb-cloud-installer openshift 2.1.35

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
setuptools@53.0.0
83.0.0

Open the chart page →

4,170
kite-agentopenshift1.0.01 of 1See more

kite-agent openshift 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
setuptools@39.2.0
83.0.0

Open the chart page →

5,863
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
setuptools@39.2.0
83.0.0
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
setuptools@39.0.1
83.0.0

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi81 of 7See more

osm-edge openshift 1.2.1-ubi8

1 of the 7 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
setuptools@39.2.0
83.0.0

Open the chart page →

19,471
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
setuptools@53.0.0
83.0.0

Open the chart page →

8,643
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
setuptools@39.2.0
83.0.0

Open the chart page →

13,612
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
setuptools@39.2.0
83.0.0

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
setuptools@39.2.0
83.0.0

Open the chart page →

13,573
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
setuptools@39.2.0
83.0.0

Open the chart page →

13,556
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
setuptools@39.2.0
83.0.0

Open the chart page →

13,460
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
setuptools@39.2.0
83.0.0

Open the chart page →

13,105
open-webconceptopen-webconcept0.1.01 of 3See more

open-webconcept open-webconcept 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
setuptools@58.1.0
83.0.0

Open the chart page →

3,423
openwhiskopenwhisk1.0.02 of 10See more

openwhisk openwhisk 1.0.0

2 of the 10 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
openwhisk/kafkaprovider:2.1.063dc3d2a0904
setuptools@41.4.0
83.0.0
openwhisk/ow-utils:1.0.0c80dba0de3aa
setuptools@44.1.1
83.0.0

Open the chart page →

36,252
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.09 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

9 of the 40 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
yetiplatform/yeti:2.9.09bcbe2650a14
setuptools@78.1.0
83.0.0
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
setuptools@68.1.2-2ubuntu1.2
no fix listed
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
setuptools@68.1.2-2ubuntu1.2
no fix listed
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
setuptools@68.1.2-2ubuntu1.2
no fix listed
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
setuptools@68.1.2-2ubuntu1.2
no fix listed

Open the chart page →

72,547
yetiosdfir-infrastructureVerified publisher1.0.51 of 4See more

yeti osdfir-infrastructure 1.0.5

1 of the 4 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
yetiplatform/yeti:latest9c3006cedcca
setuptools@78.1.0
83.0.0

Open the chart page →

6,679
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
setuptools@69.0.3
83.0.0

Open the chart page →

5,143
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
setuptools@70.0.0
83.0.0

Open the chart page →

5,418
devpiowan-charts0.1.01 of 1See more

devpi owan-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
owanio1992/devpi:6.16.04ade8e1e4d7e
setuptools@80.9.0
83.0.0

Open the chart page →

513
arpap2p-avs0.1.31 of 2See more

arpa p2p-avs 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/arpa-network/node-client:latest657a2c9f6e6d
setuptools@59.4.0
83.0.0

Open the chart page →

1,987
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
setuptools@39.2.0
83.0.0

Open the chart page →

27,702
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
setuptools@79.0.1
83.0.0

Open the chart page →

2,393
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
setuptools@80.9.0
83.0.0

Open the chart page →

4,805
plausiblepascaliskeVerified publisher2.0.01 of 1See more

plausible pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
setuptools@70.3.0
83.0.0

Open the chart page →

960
stk-fluent-bit-loki-s3paxtecnologia0.2.11 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

1 of the 6 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
setuptools@80.9.0
83.0.0

Open the chart page →

3,749
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
setuptools@39.2.0
83.0.0

Open the chart page →

15,474
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
setuptools@39.2.0
83.0.0

Open the chart page →

15,474
redis-stack-awsphamxuanduong0.1.01 of 1See more

redis-stack-aws phamxuanduong 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.0-v0887cf87cc744
setuptools@59.6.0-1.2ubuntu0.22.04.1
no fix listed

Open the chart page →

3,279
dummy-servicephanVerified publisher0.3.41 of 1See more

dummy-service phan 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phan2410/dummy-service:0.0.89c6ed6de26ca
setuptools@66.1.1
83.0.0

Open the chart page →

5,778
falcon-asgi-serverphanVerified publisher0.1.01 of 1See more

falcon-asgi-server phan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phan2410/falcon-asgi-server:0.1.04a86d138832d
setuptools@78.1.0
83.0.0

Open the chart page →

8,262
email-managerphntom0.1.221 of 2See more

email-manager phntom 0.1.22

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phntom/email-manager:0.1.22d8e2a9f2f085
setuptools@65.5.1
83.0.0

Open the chart page →

2,566
external-dns-host-networkphntom0.0.121 of 1See more

external-dns-host-network phntom 0.0.12

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phntom/external-dns-host-network:0.0.123adadbac8443
setuptools@58.1.0
83.0.0

Open the chart page →

4,644
npre-essentialsphntom0.1.601 of 22See more

npre-essentials phntom 0.1.60

1 of the 22 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
setuptools@65.5.1
83.0.0

Open the chart page →

26,883
postgresql-backupphntom0.1.91 of 1See more

postgresql-backup phntom 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phntom/postgresql-backup-s3:1.0.2249b6488f618b
setuptools@65.6.0
83.0.0

Open the chart page →

2,556
stocks-nasdaq-crawlerphntom0.0.361 of 1See more

stocks-nasdaq-crawler phntom 0.0.36

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
phntom/stocks-nasdaq-crawler:0.0.28d2b844700b57
setuptools@50.3.0
83.0.0

Open the chart page →

1,845
phronetisphronetis0.1.272 of 2See more

phronetis phronetis 0.1.27

2 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
knspar/phronetis:0.1.4609499d2dc91a
setuptools@68.1.2-2ubuntu1.2
no fix listed
knspar/phronetis-operator:0.1.60c4f0543ee58
setuptools@69.5.1
83.0.0

Open the chart page →

16,321
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
setuptools@45.2.0-1
setuptools@45.2.0
no fix listed
83.0.0

Open the chart page →

22,156
pingdom-operatorpingdom-operator0.0.201 of 1See more

pingdom-operator pingdom-operator 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
setuptools@71.1.0
83.0.0

Open the chart page →

11,996
planectlplanectlVerified publisher0.7.01 of 10See more

planectl planectl 0.7.0

1 of the 10 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
setuptools@70.1.1
83.0.0

Open the chart page →

26,118
plausibleplausible0.1.21 of 2See more

plausible plausible 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
setuptools@70.3.0
83.0.0

Open the chart page →

1,338
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
setuptools@46.0.0
83.0.0

Open the chart page →

11,162
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
setuptools@68.2.2
83.0.0

Open the chart page →

13,089
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
setuptools@69.2.0
83.0.0

Open the chart page →

13,002
libretimepodzone-chartsVerified publisher0.4.14 of 9See more

libretime podzone-charts 0.4.1

4 of the 9 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/libretime/libretime-analyzer:latest3d5e236216ad
setuptools@65.5.1
83.0.0
ghcr.io/libretime/libretime-api:latesteae026cc8909
setuptools@65.5.1
83.0.0
ghcr.io/libretime/libretime-playout:latest71a8706531aa
setuptools@65.5.1
83.0.0
ghcr.io/libretime/libretime-worker:latestd39ff5272b2e
setuptools@65.5.1
83.0.0

Open the chart page →

11,213
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
setuptools@80.9.0
python-3.11@3.11.15+e4
83.0.0
3.11.16+e2

Open the chart page →

724
postgres-controllerpostgres-controller1.3.61 of 1See more

postgres-controller postgres-controller 1.3.6

1 of the 1 container images this version deploys carry CVE-2026-59890.

Container imageDigestPackageFixed in
evgkrsk/postgres-controller:0.6.237f0e1f435c3
setuptools@67.1.0
83.0.0

Open the chart page →

1,782

Container images carrying it

1,324 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
setuptools@81.0.0
83.0.0
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
setuptools@71.1.0
83.0.0
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
setuptools@65.5.1
83.0.0
1
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
setuptools@79.0.1
83.0.0
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
setuptools@79.0.1
83.0.0
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
setuptools@65.5.0
83.0.0
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
setuptools@68.1.2-2ubuntu1.2
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
setuptools@68.1.2-2ubuntu1.2
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
setuptools@68.1.2-2ubuntu1.2
no fix listed
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
setuptools@68.1.2-2ubuntu1.2
setuptools@68.1.2
no fix listed
83.0.0
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
setuptools@68.1.2-2ubuntu1.2
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
setuptools@75.3.0
83.0.0
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
setuptools@75.3.0
83.0.0
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
setuptools@45.2.0-1
setuptools@45.2.0
no fix listed
83.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
setuptools@75.2.0
83.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
setuptools@52.0.0
83.0.0
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
setuptools@65.5.1
83.0.0
1
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
setuptools@70.3.0
83.0.0
1
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
setuptools@70.3.0
83.0.0
1
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
setuptools@70.3.0
83.0.0
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
setuptools@52.0.0
83.0.0
1
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
setuptools@80.9.0
python-3.11@3.11.15+e4
83.0.0
3.11.16+e2
1
ghcr.io/puckpuck/seashell:1.2ef5e31333821
setuptools@65.5.0
83.0.0
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
setuptools@82.0.1
83.0.0
1
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
setuptools@69.0.2
83.0.0
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
setuptools@58.1.0
83.0.0
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
setuptools@58.1.0
83.0.0
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
setuptools@65.5.1
83.0.0
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
setuptools@66.1.1
83.0.0
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
setuptools@79.0.1
83.0.0
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
setuptools@72.1.0
83.0.0
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
setuptools@51.3.3
83.0.0
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
setuptools@45.2.0-1
setuptools@65.5.1
no fix listed
83.0.0
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
setuptools@45.2.0-1
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
setuptools@45.2.0-1
setuptools@45.2.0
no fix listed
83.0.0
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
setuptools@68.1.2-2ubuntu1.2
no fix listed
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
setuptools@75.8.0
83.0.0
1
ghcr.io/tandoorrecipes/recipes:1.5.31063eb446e298
setuptools@75.8.0
83.0.0
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
setuptools@65.5.1
83.0.0
1
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
setuptools@78.1.0
83.0.0
1
ghcr.io/thoroslives/zilean:v3.10.1bce6aca0f6ca
setuptools@70.3.0
83.0.0
1
ghcr.io/timothepoznanski/poznote:6.86.0182664fe1ca0
setuptools@80.9.0
83.0.0
1
ghcr.io/tremolosecurity/python-slim-nonroot/python3:1.0.094f64e1f40cb
setuptools@65.5.1
83.0.0
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
setuptools@80.7.1
83.0.0
1
ghcr.io/wasi-master/13ft:0.3.4563ce7794a71
setuptools@58.1.0
83.0.0
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
setuptools@68.2.2
83.0.0
1
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
setuptools@79.0.1
83.0.0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.