StackRadar

CVE-2026-6357

Medium

Advisory

Published 27 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,271
of 17,787 indexed, latest versions
Container images
1,222
deployed by those charts
Fix available
2 of 3
affected packages

pip Vulnerable to Inclusion of Functionality from Untrusted Control Sphere

Carried by container images the latest versions of 1,271 of 17,787 indexed charts deploy, on 1,222 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+65 more26.11,214
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+25 moreno fix listed141
py3-pipapk25.0.1-r0, 25.2-r0, 25.3-r2, 25.3-r3+2 more26.1.1-r09
OSV records
CGA-62q8-238c-v33cCGA-6934-j8w5-ggwcCGA-8w3m-p9rg-vfgvDEBIAN-CVE-2026-6357GHSA-jp4c-xjxw-mgf9UBUNTU-CVE-2026-6357
Also known as
CGA-65q2-63cw-4355, CGA-69j4-wp86-cj67, CGA-74h5-68pc-h963, CGA-7pw2-rhmg-m2hr, CGA-7vq8-m28w-6rmf, CGA-qmmj-2pmg-2vpx, CGA-r482-24m8-gv9h, CGA-vqpj-m7r7-vf4j, CGA-w8wp-q9p5-56fw, PYSEC-2026-2876

Charts affected

1,271 by stars
ChartLatestAffected imagesRadar Score
qleverzazukoVerified publisher0.7.02 of 2See more

qlever zazuko 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
ghcr.io/zazukoians/qlever-ui:v0.10.034c7b540a095
pip@24.0
26.1

Open the chart page →

2,947
changedetection-iozekker6Verified publisher1.99.01 of 1See more

changedetection-io zekker6 1.99.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
pip@24.0
26.1

Open the chart page →

2,448
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
pip@9.0.1
python-pip@9.0.1-2.3~ubuntu1.18.04.1
26.1
no fix listed

Open the chart page →

12,022
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
pip@9.0.3
26.1

Open the chart page →

7,713
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
pip@20.0.2
python-pip@20.0.2-5ubuntu1.1
26.1
no fix listed

Open the chart page →

25,507
airbyteairbyte-v2Verified publisher2.2.01 of 10See more

airbyte airbyte-v2 2.2.0

1 of the 10 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
airbyte/manifest-server:7.23.73b3a670af168
pip@25.2
26.1

Open the chart page →

12,481
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
pip@9.0.3
26.1
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
pip@20.2.4
26.1

Open the chart page →

13,689
akto-ai-guardrails-v2akto0.3.03 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

3 of the 6 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
aktosecurity/akto-agent-guard-anonymizer:1.1.4d4b100cbdc47
pip@25.0.1
26.1
aktosecurity/akto-agent-guard-embedder:1.1.4dbc566b2376c
pip@25.0.1
26.1
aktosecurity/akto-agent-guard-worker:1.1.4666eaffd5362
pip@25.0.1
26.1

Open the chart page →

9,400
akto-mini-testing-kafkaakto1.42.12 of 5See more

akto-mini-testing-kafka akto 1.42.1

2 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
pip@9.0.3
26.1
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
pip@20.2.4
26.1

Open the chart page →

6,395
akto-protectionakto0.1.02 of 4See more

akto-protection akto 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
pip@9.0.3
26.1
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
pip@20.2.4
26.1

Open the chart page →

11,283
akto-regional-setupakto1.3.12 of 9See more

akto-regional-setup akto 1.3.1

2 of the 9 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
aktosecurity/akto-agent-guard-embedder:1.1.6be8b0e235ac6
pip@26.0.1
26.1
aktosecurity/akto-agent-guard-worker:1.1.617db2702aa8f
pip@26.0.1
26.1

Open the chart page →

7,786
browserlessalekcVerified publisher1.2.71 of 1See more

browserless alekc 1.2.7

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1
no fix listed

Open the chart page →

2,138
speedtest-exporteralekcVerified publisher0.2.01 of 1See more

speedtest-exporter alekc 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/miguelndecarvalho/speedtest-exporter:v3.5.4f1064d49124c
pip@22.3
26.1

Open the chart page →

741
wsealekcVerified publisher0.1.11 of 1See more

wse alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
badsmoke/wunderground_exporter:0.0.5c54c004f24cc
pip@21.0.1
26.1

Open the chart page →

1,146
alertigatealertigate0.5.11 of 1See more

alertigate alertigate 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/feresberbeche/alertigate:1.2.1628d49e0e01b
pip@25.0.1
26.1

Open the chart page →

1,505
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

5,898
flaresolverralexmorbo-flaresolverrVerified publisher0.2.01 of 1See more

flaresolverr alexmorbo-flaresolverr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
pip@24.0
26.1

Open the chart page →

27,282
fritzbox-exporteralexvanderberkelVerified publisher2.0.31 of 1See more

fritzbox-exporter alexvanderberkel 2.0.3

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
sealife/fritzbox-exporter:1.0f5cc2f0f4c9b
pip@20.3.3
26.1

Open the chart page →

2,094
pagesalstom-pages-app1.0.01 of 3See more

pages alstom-pages-app 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
hazelcast/management-center:5.3.2f9d34300d330
pip@9.0.3
26.1

Open the chart page →

28,212
radosgwananace-chartsVerified publisher0.3.41 of 1See more

radosgw ananace-charts 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ceph/daemon:latest-nautilus90f30824a96e
pip@9.0.3
26.1

Open the chart page →

1,650
pagesandrei-pages1.0.01 of 3See more

pages andrei-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,233
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

3,872
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
pip@25.3
26.1

Open the chart page →

5,516
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
pip@26.0.1
26.1

Open the chart page →

1,340
ddosifyanteonVerified publisher1.7.53 of 13See more

ddosify anteon 1.7.5

3 of the 13 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
pip@24.0
26.1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
pip@24.0
26.1
ddosify/selfhosted_hammermanager:1.2.471b8768f49bc
pip@22.0.4
26.1

Open the chart page →

25,720
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
pip@9.0.3
26.1

Open the chart page →

2,454
nfs-server-provisioneranvibo1.3.01 of 1See more

nfs-server-provisioner anvibo 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
gcr.io/k8s-staging-sig-storage/nfs-provisioner:v3.0.02de1d15fc1f2
pip@19.0.3
26.1

Open the chart page →

2,730
sensitive-dataapicheck1.0.01 of 1See more

sensitive-data apicheck 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
bbvalabs/sensitive-data:1.0.13ea299ae63c0
pip@21.0.1
26.1

Open the chart page →

1,843
app-mobilityappmo0.1.01 of 5See more

app-mobility appmo 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
pip@9.0.3
26.1

Open the chart page →

12,520
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
pip@25.3
26.1

Open the chart page →

1,565
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
pip@9.0.3
26.1

Open the chart page →

2,902
snappassappuio1.0.01 of 3See more

snappass appuio 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
samueldg/snappass:latest3987195edbe6
pip@19.3.1
26.1

Open the chart page →

1,488
argocd-ecr-updaterargocd-ecr-updater4.1.01 of 1See more

argocd-ecr-updater argocd-ecr-updater 4.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
odaniait/aws-kubectl:latest3fff8a8570ec
pip@20.0.2
26.1

Open the chart page →

1,511
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
pip@25.1.1
26.1

Open the chart page →

40,411
pgadminarunalakmalVerified publisher0.1.01 of 1See more

pgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
26.1

Open the chart page →

2,418
swdpgadminarunalakmalVerified publisher0.1.01 of 1See more

swdpgadmin arunalakmal 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
26.1

Open the chart page →

2,418
itera-lmaarzu1.34.601 of 6See more

itera-lma arzu 1.34.60

1 of the 6 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.19.26a8671702d6f
pip@22.1.2
26.1

Open the chart page →

8,608
keystonearzu0.2.292 of 4See more

keystone arzu 0.2.29

2 of the 4 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
pip@21.2.3
26.1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
pip@21.2.3
26.1

Open the chart page →

22,677
authorizationassist-iot-authorisation0.1.01 of 2See more

authorization assist-iot-authorisation 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/authorization_db:latestc3adbab6a3e7
pip@20.2.4
26.1

Open the chart page →

5,536
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
pip@20.2.4
26.1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
pip@20.2.4
26.1

Open the chart page →

14,725
fllocaloperationsassist-iot-fl-local-operations1.1.01 of 3See more

fllocaloperations assist-iot-fl-local-operations 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/fl_local_operations_inference:latest0518b63a2e69
pip@23.2.1
26.1

Open the chart page →

3,786
flrepositorydbassist-iot-fl-repository1.1.01 of 2See more

flrepositorydb assist-iot-fl-repository 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/fl_repository:latest0fce3ea719a5
pip@20.1.1
26.1

Open the chart page →

4,367
trainingcollectorassist-iot-fl-training-collector1.1.01 of 1See more

trainingcollector assist-iot-fl-training-collector 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/fl_training_collector:latest792715dd3084
pip@23.2.1
26.1

Open the chart page →

1,719
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
pip@9.0.3
26.1

Open the chart page →

12,799
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
dpage/pgadmin4:6.12781369df9994
pip@20.3.4
26.1

Open the chart page →

10,101
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
pip@23.3.1
python-pip@22.0.2+dfsg-1ubuntu0.4
26.1
no fix listed

Open the chart page →

18,331
resource-provisioningassist-iot-resource-provisioning1.0.04 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

4 of the 7 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
pip@23.0.1
26.1
assistiot/resource-provisioning_im:1.0.0a942dc14030a
pip@23.0.1
26.1
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
pip@20.3.4
26.1
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1

Open the chart page →

8,042
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
pip@23.0.1
26.1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
pip@23.0.1
26.1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1

Open the chart page →

42,460
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
pip@23.0.1
26.1

Open the chart page →

1,165

Container images carrying it

1,222 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
trungkien210493/icinga2-report:v1.7.12cc8c3763c4c
pip@20.1.1
26.1
1
tussanakorndev/kube-pod-alerts:1.0.5216fdadadf9a
pip@25.0.1
26.1
1
ubcctlt/barman:v2.19cbbbbc8ae16b
pip@22.0.4
26.1
1
vabene1111/recipes:2.3.50f8d061895e9
pip@25.3
26.1
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
pip@21.3.1
26.1
1
vcnngr/telegram-login:latest1a849a997b6d
pip@24.0
26.1
1
vcnngr/telegram-rebot:latest30f1f05e57a6
pip@24.0
26.1
1
veecode/devportalc443520aebf7
pip@22.3.1
26.1
1
viadee/docker-hub-rate-limit-exporter:version-1.52e27e3b3ee56
pip@21.0
26.1
1
voltha/voltha-cli:1.6.0c4e41e92f046
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed
1
voltha/voltha-netconf:1.6.037f80524c207
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed
1
voltha/voltha-tester:1.7.0655c3048a602
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed
1
voltha/voltha-voltha:1.6.0ff596b62de59
pip@8.1.1
python-pip@8.1.1-2ubuntu0.4
26.1
no fix listed
1
wallarm/aih-scanner:2.7.11f1cb26db1f5b
pip@25.1.1
python-pip@25.1.1+dfsg-1
26.1
no fix listed
1
wallarm/sysbindings:v0.9.9c527865df85d
pip@22.2.1
26.1
1
wazuh/wazuh-manager:4.11.11da5c38c6a78
pip@23.3.2
26.1
1
wazuh/wazuh-manager:4.4.121994f40e0da
pip@23.0.1
26.1
1
wazuh/wazuh-manager:4.14.45a065930682d
pip@23.3.2
26.1
1
wazuh/wazuh-manager:4.14.3f09282d281f6
pip@23.3.2
26.1
1
weblate/weblate:3.11.3-182848df56ecd
pip@18.1
26.1
1
wiktorn/overpass-api:latest9bb5f4a9b54c
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed
1
wiremind/pghoard:12-2019-11-264dea42c8166c
pip@19.3.1
26.1
1
witcherek7/pav:0.0.342a744f29ac0
pip@22.3.1
26.1
1
xeladock/mysql_dns:latest4baf531453f1
pip@22.0.2
python-pip@22.0.2+dfsg-1
26.1
no fix listed
1
ybucci/traefik-external-dns-controller:2.2.08d27ad8b5f73
pip@24.0
26.1
1
ybucci/traefik-external-dns-operator:1.0.0f1fcc7c8d9fd
pip@24.3.1
26.1
1
ygqygq2/mysql-exec-sql:latest54f30def1558
pip@20.2.4
26.1
1
youssef11gaber10/deployment-weather-flask:latest96bce8b8b5a7
pip@23.0.1
26.1
1
youssef11gaber10/flask-service:latest9c727fcfde76
pip@24.0
26.1
1
yugabytedb/yugabyte:2026.1.1.1-b23926eedf0ff4
pip@9.0.3
26.1
1
yugabytedb/yugabyte:2026.1.1.0-b91de2e00278645
pip@9.0.3
26.1
1
yuzutech/kroki-blockdiag:0.16.07c1917c66d96
pip@21.2.4
26.1
1
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
pip@25.0.1
26.1
1
zohardocker12/weather_app_flask:latestb86d60dbb68d
pip@21.1.3
26.1
1
zurdi15/romm:2.3.12db88fe44c89
pip@23.3.2
26.1
1
gcr.io/getindata-images-public/mlflow:latest25d6975951f1
pip@24.0
26.1
1
gcr.io/google-samples/microservices-demo/loadgenerator:v0.2.3360130ab5850
pip@21.0.1
26.1
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
pip@21.0.1
26.1
1
gcr.io/kubecost1/kubecost-modeling:v0.1.24a2259b098b13
pip@25.0.1
26.1
1
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
pip@24.3.1
26.1
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
pip@23.0.1
26.1
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
pip@22.0.4
26.1
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
pip@25.0.1
26.1
1
ghcr.io/akpw/mktxp:1.2.17bd6f22f7db0a
pip@25.3
26.1
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
pip@26.0
26.1
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
pip@23.0.1
26.1
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
pip@9.0.3
26.1
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
pip@20.3.4
26.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.