StackRadar

CVE-2026-6019

Medium

Advisory

Published 22 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
553
of 17,781 indexed, latest versions
Container images
536
deployed by those charts
Fix available
13 of 16
affected packages

BaseCookie.js_output() does not neutralize embedded characters

Carried by container images the latest versions of 553 of 17,781 indexed charts deploy, on 536 images.

Affected packageAffected versionsFixed inImages
python3.11deb3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+6 more3.11.0~rc1-1~22.04.1+esm2181
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 more3.8.10-0ubuntu1~20.04.18+esm7100
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+14 more3.10.12-1~22.04.1671
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3, 3.12.3-1ubuntu0.4+8 more3.12.3-1ubuntu0.1548
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 more3.6.9-1~18.04ubuntu1.13+esm1044
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+9 more2.7.6-8ubuntu0.6+esm30, 2.7.12-1ubuntu0~16.04.18+esm22, 2.7.17-1~18.04ubuntu1.13+esm15, 2.7.18-13ubuntu1.5+esm943
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.93.5.2-2ubuntu0~16.04.13+esm2525
python3.13deb3.13.5-2, 3.13.5-2+e30, 3.13.7-1ubuntu0.13.13.5-2+deb13u2, 3.13.5-2+e3623
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.73.4.3-1ubuntu1~14.04.7+esm217
pythonbitnami3.11.11-0, 3.12.8-0, 3.13.5-13.13.143
python3.14deb3.14.4-13.14.4-1ubuntu0.12
python3rpm3.12.9-13.azl3no fix listed1
python-3.12apk3.12.0-r1, 3.12.9-r1, 3.12.14-r2, 3.12.14-r6no fix listed8
python-3.14apk3.14.2-r2, 3.14.4-r23.14.4-r45
python-3.13apk3.13.7-r0, 3.13.10-r0, 3.13.12-r23.13.13-r33
python-3.11apk3.11.16-r5no fix listed1
OSV records
BIT-python-2026-6019DEBIAN-CVE-2026-6019UBUNTU-CVE-2026-6019CGA-2rxc-qq2g-w4hfCGA-477g-5pph-75mjCGA-4q3r-438p-rwv3CGA-6rw5-pv82-g8jwAZL-84728ECHO-1e4c-228c-95ee
Also known as
BIT-libpython-2026-6019, BIT-python-min-2026-6019, CGA-g7j7-w4vj-6cfx, CGA-hjp9-xq8m-3jr3, CGA-qpp8-2qh9-qw2x, CGA-qxmw-675j-q4q2, PSF-2026-21, USN-8509-1, USN-8744-1

Charts affected

553 by stars
ChartLatestAffected imagesRadar Score
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
python3.11@3.11.2-6+deb12u4
no fix listed

Open the chart page →

6,324
anchore-admission-controlleranchore-charts0.8.41 of 2See more

anchore-admission-controller anchore-charts 0.8.4

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
python3.11@3.11.2-6
no fix listed

Open the chart page →

7,852
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

5,817
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
python3.11@3.11.2-6+deb12u7
no fix listed

Open the chart page →

7,239
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

3,991
games-on-whalesangelnu2.0.02 of 7See more

games-on-whales angelnu 2.0.0

2 of the 7 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
python3.10@3.10.12-1~22.04.11
3.10.12-1~22.04.16
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
python3.8@3.8.10-0ubuntu1~20.04
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

42,126
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
python3.13@3.13.5-2
3.13.5-2+deb13u2

Open the chart page →

5,558
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
library/rabbitmq:3.12.1-managementf020c06da226
python3.10@3.10.6-1~22.04.2ubuntu1.1
3.10.12-1~22.04.16

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
library/rabbitmq:3.12.1-managementf020c06da226
python3.10@3.10.6-1~22.04.2ubuntu1.1
3.10.12-1~22.04.16

Open the chart page →

16,975
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
python3.13@3.13.5-2
3.13.5-2+deb13u2

Open the chart page →

37,268
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
python@3.12.8-0
3.13.14

Open the chart page →

40,238
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

23,353
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
python3.6@3.6.9-1~18.04ubuntu1.1
3.6.9-1~18.04ubuntu1.13+esm10
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

22,568
assemblylineassemblylineVerified publisher7.4.171 of 12See more

assemblyline assemblyline 7.4.17

1 of the 12 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cccs/assemblyline-rust:4.7.4.stable17468326853ec5
python3.11@3.11.2-6+deb12u8
no fix listed

Open the chart page →

12,898
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25
hyperledger/fabric-couchdb:0.4.15f6c724592abf
python2.7@2.7.12-1ubuntu0~16.04.4
python3.5@3.5.2-2ubuntu0~16.04.5
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25
hyperledger/fabric-couchdb:0.4.15f6c724592abf
python2.7@2.7.12-1ubuntu0~16.04.4
python3.5@3.5.2-2ubuntu0~16.04.5
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

77,706
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16

Open the chart page →

18,277
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
python3.11@3.11.2-6
no fix listed
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
python3.11@3.11.2-6
no fix listed
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
python3.11@3.11.2-6
no fix listed

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
python3.8@3.8.10-0ubuntu1~20.04.7
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
python3.10@3.10.6-1~22.04.2ubuntu1
3.10.12-1~22.04.16
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
python3.11@3.11.2-6+deb12u3
no fix listed

Open the chart page →

32,501
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.16

Open the chart page →

7,190
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15

Open the chart page →

5,059
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
python3.8@3.8.10-0ubuntu1~20.04.6
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

7,956
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
python2.7@2.7.17-1~18.04ubuntu1.6
python3.6@3.6.9-1~18.04ubuntu1.4
2.7.17-1~18.04ubuntu1.13+esm15
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

22,891
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

10,145
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
python3.11@3.11.2-6+deb12u6
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

26,996
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

6,220
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
library/cassandra:3.11.65aa8400b4b3b
python2.7@2.7.17-1~18.04ubuntu1.1
2.7.17-1~18.04ubuntu1.13+esm15

Open the chart page →

19,229
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
python3.11@3.11.2-6+deb12u8
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
python3.12@3.12.3-1ubuntu0.5
3.12.3-1ubuntu0.15

Open the chart page →

14,352
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
python3.6@3.6.9-1~18.04ubuntu1.6
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

6,143
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
python3.11@3.11.2-6+deb12u5
no fix listed

Open the chart page →

10,776
opencvecfi20170.1.21 of 7See more

opencve cfi2017 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
python3.11@3.11.2-6+deb12u4
no fix listed

Open the chart page →

15,371
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
python3.13@3.13.5-2
3.13.5-2+deb13u2

Open the chart page →

4,396
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
python3.13@3.13.5-2
3.13.5-2+deb13u2

Open the chart page →

7,405
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
python2.7@2.7.17-1~18.04ubuntu1.11
python3.6@3.6.9-1~18.04ubuntu1.12
2.7.17-1~18.04ubuntu1.13+esm15
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

12,779
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
python3.4@3.4.3-1ubuntu1~14.04.7
3.4.3-1ubuntu1~14.04.7+esm21

Open the chart page →

30,140
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
python3.8@3.8.5-1~20.04
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

12,483
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
python3.11@3.11.2-6+deb12u6
no fix listed

Open the chart page →

6,998
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
python3.10@3.10.12-1~22.04.7
3.10.12-1~22.04.16

Open the chart page →

4,810
kamaji-etcdclastixVerified publisher0.17.01 of 4See more

kamaji-etcd clastix 0.17.0

1 of the 4 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
python3.11@3.11.2-6
no fix listed

Open the chart page →

11,995
kube-acp-stackcloudentity2.28.01 of 7See more

kube-acp-stack cloudentity 2.28.0

1 of the 7 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
python3.10@3.10.12-1~22.04.9
3.10.12-1~22.04.16

Open the chart page →

20,900
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
python3.6@3.6.7-1~18.04
3.6.9-1~18.04ubuntu1.13+esm10

Open the chart page →

29,901
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

36,094
ethereumcloudnativeapp1.0.01 of 3See more

ethereum cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
python2.7@2.7.12-1ubuntu0~16.04.2
2.7.12-1ubuntu0~16.04.18+esm22

Open the chart page →

27,417
guestbookcloudnativeapp0.2.01 of 3See more

guestbook cloudnativeapp 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
resouer/redis-slave:v2e2f198b49ba7
python2.7@2.7.6-8
python3.4@3.4.0-2ubuntu1
2.7.6-8ubuntu0.6+esm30
3.4.3-1ubuntu1~14.04.7+esm21

Open the chart page →

36,839
hlf-couchdbcloudnativeapp1.0.61 of 1See more

hlf-couchdb cloudnativeapp 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
hyperledger/fabric-couchdb:0.4.10c65891b6c237
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

33,963
seleniumcloudnativeapp1.0.81 of 1See more

selenium cloudnativeapp 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
python3.8@3.8.10-0ubuntu1~20.04
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

11,782
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25

Open the chart page →

77,758
cloudlaunchcloudve0.6.01 of 5See more

cloudlaunch cloudve 0.6.0

1 of the 5 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
python3.8@3.8.10-0ubuntu1~20.04.1
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

12,457
cloudlaunch-servercloudve0.2.01 of 5See more

cloudlaunch-server cloudve 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-6019.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
python3.8@3.8.10-0ubuntu1~20.04.1
3.8.10-0ubuntu1~20.04.18+esm7

Open the chart page →

12,131

Container images carrying it

536 by charts deploying them

A fixed version is listed for 13 of the 16 affected packages.

Container imageDigestPackageFixed inUsed by
photoprism/photoprism:251130db16ee6b1ba3
python3.13@3.13.7-1ubuntu0.1
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
python3.12@3.12.3-1
3.12.3-1ubuntu0.15
1
project2team4/react:latest3ff031a08887
python3.8@3.8.10-0ubuntu1~20.04.4
3.8.10-0ubuntu1~20.04.18+esm7
1
prowlercloud/prowler-api:5.31.14f252d579be2
python3.11@3.11.2-6+deb12u7
no fix listed
1
psorab/elibrary:latest53b68896c4ce
python3.8@3.8.10-0ubuntu1~20.04.7
3.8.10-0ubuntu1~20.04.18+esm7
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
python3.6@3.6.9-1~18.04ubuntu1.6
3.6.9-1~18.04ubuntu1.13+esm10
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
3.5.2-2ubuntu0~16.04.13+esm25
1
razorbladex401/dayz:latest6a4d79248e7d
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
1
redimp/otterwiki:2778bf30da3da
python3.11@3.11.2-6+deb12u8
no fix listed
1
redis/redis-stack-server:latest798ab84d9f26
python3.10@3.10.12-1~22.04.11
3.10.12-1~22.04.16
1
redis/redis-stack-server:7.4.0-v0887cf87cc744
python3.10@3.10.12-1~22.04.4
3.10.12-1~22.04.16
1
resouer/redis-slave:v2e2f198b49ba7
python2.7@2.7.6-8
python3.4@3.4.0-2ubuntu1
2.7.6-8ubuntu0.6+esm30
3.4.3-1ubuntu1~14.04.7+esm21
1
resurfaceio/resurface:3.7.84d5cda2f64109
python3.10@3.10.12-1~22.04.9
3.10.12-1~22.04.16
1
rezachalak/bzen-mongo:1.0.034f694325191
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7
1
rhasspy/wyoming-piper:2.3.169b7f797ae3a
python3.11@3.11.2-6+deb12u8
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
python3.11@3.11.2-6+deb12u6
no fix listed
1
rhasspy/wyoming-whisper:3.5.0308b7959a925
python3.11@3.11.2-6+deb12u7
no fix listed
1
rocketadmin/rocketadmin:1.17.710955ef540b9
python3.11@3.11.2-6+deb12u6
no fix listed
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
python3.10@3.10.12-1~22.04.9
3.10.12-1~22.04.16
1
santisbon/evwatcher:latestc4e994ca4540
python3.11@3.11.2-6
no fix listed
1
santisbon/evworker:lateste807283f8d69
python3.11@3.11.2-6
no fix listed
1
santisbon/speedtest:latest8ee3a1697227
python3.11@3.11.2-6
no fix listed
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
python3.11@3.11.2-6+deb12u3
no fix listed
1
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.16
1
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.16
1
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.16
1
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15
1
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15
1
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15
1
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
python3.14@3.14.4-1
3.14.4-1ubuntu0.1
1
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
python3.14@3.14.4-1
3.14.4-1ubuntu0.1
1
scrapinghub/splash:3.4.1a5f89bc84606
python3.6@3.6.9-1~18.04
3.6.9-1~18.04ubuntu1.13+esm10
1
seafileltd/seafile-mc:9.0.106693911bcc40
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
1
seafileltd/seafile-mc:10.0.170628f29c663
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7
1
seafileltd/seafile-mc:9.0.97ac833196f60
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
python3.10@3.10.12-1~22.04.5
3.10.12-1~22.04.16
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
python3.8@3.8.10-0ubuntu1~20.04
3.8.10-0ubuntu1~20.04.18+esm7
1
seldonio/locust-core:0.81d0da98a2d76
python2.7@2.7.12-1ubuntu0~16.04.4
2.7.12-1ubuntu0~16.04.18+esm22
1
shaowenchen/ops-server:latest315444f703f4
python3.10@3.10.12-1~22.04.11
3.10.12-1~22.04.16
1
signalen/backend:2.50.14760256000738
python3.11@3.11.2-6+deb12u8
no fix listed
1
sismics/docs:v1.10f4b0ef019cf1
python3.6@3.6.6-1~18.04
3.6.9-1~18.04ubuntu1.13+esm10
1
sissbruecker/linkding:1.41.0-plusa222fb777e1f
python3.11@3.11.2-6+deb12u6
no fix listed
1
snipe/snipe-it:v8.3.1141ebf2386fe
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15
1
snipe/snipe-it:v6.0.1455fb7636a98c
python3.8@3.8.10-0ubuntu1~20.04.5
3.8.10-0ubuntu1~20.04.18+esm7
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
python3.8@3.8.10-0ubuntu1~20.04.8
3.8.10-0ubuntu1~20.04.18+esm7
1
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
python3.6@3.6.9-1~18.04ubuntu1.12
3.6.9-1~18.04ubuntu1.13+esm10
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
python3.11@3.11.2-6
no fix listed
1
socialmediamacroscope/image_crawler:0.1.2f508216be63c
python3.6@3.6.9-1~18.04ubuntu1.12
3.6.9-1~18.04ubuntu1.13+esm10
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
python3.11@3.11.2-6
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
python3.11@3.11.2-6
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.