StackRadar

CVE-2026-6357

Medium

Advisory

Published 27 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,259
of 17,787 indexed, latest versions
Container images
1,211
deployed by those charts
Fix available
2 of 3
affected packages

pip Vulnerable to Inclusion of Functionality from Untrusted Control Sphere

Carried by container images the latest versions of 1,259 of 17,787 indexed charts deploy, on 1,211 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+65 more26.11,203
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+24 moreno fix listed139
py3-pipapk25.0.1-r0, 25.2-r0, 25.3-r2, 25.3-r3+2 more26.1.1-r09
OSV records
CGA-62q8-238c-v33cCGA-6934-j8w5-ggwcCGA-8w3m-p9rg-vfgvDEBIAN-CVE-2026-6357GHSA-jp4c-xjxw-mgf9UBUNTU-CVE-2026-6357
Also known as
CGA-65q2-63cw-4355, CGA-69j4-wp86-cj67, CGA-74h5-68pc-h963, CGA-7pw2-rhmg-m2hr, CGA-7vq8-m28w-6rmf, CGA-qmmj-2pmg-2vpx, CGA-r482-24m8-gv9h, CGA-vqpj-m7r7-vf4j, CGA-w8wp-q9p5-56fw, PYSEC-2026-2876

Charts affected

1,259 by stars
ChartLatestAffected imagesRadar Score
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1

Open the chart page →

5,238
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/mailu/clamav:1.9.5001d30483e4a8
pip@23.0.1
26.1

Open the chart page →

4,671
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.6.14db6ff0b4045
pip@20.2.2
26.1

Open the chart page →

16,860
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1
no fix listed

Open the chart page →

13,220
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
pip@23.0.1
26.1

Open the chart page →

3,378
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1

Open the chart page →

5,329
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
conduction/cgrc-varnish:deve154d5781c8a
pip@9.0.1
26.1

Open the chart page →

7,572
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
conduction/conduction-ui-varnish:dev5f5add2c12e0
pip@9.0.1
26.1

Open the chart page →

12,907
sumoconsensys0.4.1451 of 4See more

sumo consensys 0.4.145

1 of the 4 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
pip@21.3.1
26.1

Open the chart page →

5,958
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
conduction/contactmoment-component-varnish:deve3546b97faea
pip@9.0.1
26.1

Open the chart page →

8,408
bitcoincosmicrocks2.0.31 of 2See more

bitcoin cosmicrocks 2.0.3

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
pip@25.0.1
26.1

Open the chart page →

928
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
pip@24.2
26.1

Open the chart page →

14,559
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
kfserving/models-web-app:v0.6.1f322d6ffdfa3
pip@21.2.4
26.1

Open the chart page →

3,830
cp-helm-chartscp-helm-charts0.6.17 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

7 of the 8 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
pip@9.0.3
26.1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
pip@9.0.3
26.1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
pip@9.0.3
26.1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
pip@9.0.3
26.1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
pip@9.0.3
26.1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
pip@9.0.3
26.1
confluentinc/cp-zookeeper:6.1.078c190f4472c
pip@9.0.3
26.1

Open the chart page →

58,857
couchpotatocronce0.0.11 of 1See more

couchpotato cronce 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
linuxserver/couchpotato:75e576ee-ls389cd8d5fb1ac
pip@19.0.1
26.1

Open the chart page →

3,871
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,190
wopiservercs3orgOfficialVerified publisher0.9.21 of 1See more

wopiserver cs3org 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
pip@23.0.1
26.1

Open the chart page →

2,348
csghubcsghubVerified publisher2.4.34 of 34See more

csghub csghub 2.4.3

4 of the 34 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
pip@24.3.1
26.1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
pip@25.0.1
26.1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
pip@24.2
26.1
opencsghq/label-studio:v2.4.0b4e849fcf94a
pip@25.1.1
26.1

Open the chart page →

58,897
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
opencsghq/csgship-agentic:v0.4.02cd29671a03e
pip@25.2
26.1
opencsghq/csgship-web:v0.4.0c36a5bac3cf0
pip@25.2
26.1

Open the chart page →

11,335
dataflowcsghubVerified publisher2.5.01 of 7See more

dataflow csghub 2.5.0

1 of the 7 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
pip@25.1.1
26.1

Open the chart page →

6,632
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
pip@23.0.1
26.1

Open the chart page →

13,852
cspconsolecspconsole1.3.112 of 5See more

cspconsole cspconsole 1.3.11

2 of the 5 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
pip@26.0.1
26.1
cspconsole/report-collector:1.0.15839750248193b
pip@24.0
26.1

Open the chart page →

12,274
jupyterhubd4nVerified publisher3.3.72 of 7See more

jupyterhub d4n 3.3.7

2 of the 7 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
pip@24.1.2
26.1
aristidetm/k8s-hub:3.3.7ccb516cb8474
pip@24.0
26.1

Open the chart page →

16,604
daejeon_2-3daejeon2-30.1.01 of 2See more

daejeon_2-3 daejeon2-3 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
clsen2024/daejeon_2-3:latest1156cd87c8fb
pip@23.0.1
26.1

Open the chart page →

1,141
pagesdalston-pages1.0.01 of 3See more

pages dalston-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,190
pagesdaman-dell-kuber1.0.01 of 3See more

pages daman-dell-kuber 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,190
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
pip@23.3.1
26.1

Open the chart page →

6,179
proxmox-exporterdamounVerified publisher1.10.01 of 1See more

proxmox-exporter damoun 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
prompve/prometheus-pve-exporter:3.4.2fcf041f0c24d
pip@23.3.1
26.1

Open the chart page →

1,141
dapr-agentsdapr-agents-devVerified publisher0.1.52 of 31See more

dapr-agents dapr-agents-dev 0.1.5

2 of the 31 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
pip@25.2
26.1
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1

Open the chart page →

22,193
dask-gatewaydask2026.3.01 of 2See more

dask-gateway dask 2026.3.0

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-gateway-server:2026.3.0afa5a729114e
pip@25.2
26.1

Open the chart page →

1,994
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
pip@19.0.3
26.1

Open the chart page →

2,806
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
pip@25.3
26.1

Open the chart page →

5,062
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
pip@19.3.1
python-pip@9.0.1-2.3~ubuntu1
26.1
no fix listed

Open the chart page →

27,728
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
pip@20.2.3
python-pip@9.0.1-2.3~ubuntu1.18.04.2
26.1
no fix listed

Open the chart page →

18,863
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
pip@19.0.3
python-pip@9.0.1-2.3~ubuntu1
26.1
no fix listed

Open the chart page →

22,405
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
pip@19.3.1
python-pip@9.0.1-2.3~ubuntu1
26.1
no fix listed

Open the chart page →

24,335
pagesdavid-pages1.0.01 of 3See more

pages david-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,190
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1
no fix listed

Open the chart page →

10,090
pagesdebasish-pages1.0.01 of 3See more

pages debasish-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1

Open the chart page →

20,190
kube-web-viewdecayofmind0.0.41 of 1See more

kube-web-view decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
pip@20.2.3
26.1

Open the chart page →

2,264
intel-gpu-exporterdefault-ghVerified publisher0.1.01 of 1See more

intel-gpu-exporter default-gh 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.3
26.1
no fix listed

Open the chart page →

4,798
isponsorblocktvdefault-ghVerified publisher1.0.51 of 1See more

isponsorblocktv default-gh 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
ghcr.io/dmunozv04/isponsorblocktv:v2.9.05b8cfa805cb6
pip@25.3
26.1

Open the chart page →

546
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
pip@24.2
26.1

Open the chart page →

6,075
mlflowdeliveryheroVerified publisher1.0.101 of 1See more

mlflow deliveryhero 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
larribas/mlflow:1.9.105ccb0b46bfb
pip@20.1
26.1

Open the chart page →

4,422
prometheus-aws-costs-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-aws-costs-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
nachomillangarcia/prometheus_aws_cost_exporter:lateste4ce056f2d6d
pip@18.0
26.1

Open the chart page →

3,553
rds-downscalerdeliveryheroVerified publisher1.0.51 of 1See more

rds-downscaler deliveryhero 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
library/python:3.7.0-alpine3.8e12594db7297
pip@18.1
26.1

Open the chart page →

574
supersetdeliveryheroVerified publisher1.1.31 of 1See more

superset deliveryhero 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
pip@23.0.1
26.1

Open the chart page →

2,305
deployhubdeployhubVerified publisher10.0.4157 of 11See more

deployhub deployhub 10.0.415

7 of the 11 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
pip@25.3
py3-pip@25.3-r3
26.1
26.1.1-r0
quay.io/ortelius/ms-dep-pkg-cud:main-v10.0.1670-g9abe110c0c881b509a
pip@25.3
26.1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
pip@25.3
py3-pip@25.3-r3
26.1
26.1.1-r0
quay.io/ortelius/ms-sbom-export:main-v10.0.933-g2e222ef43bdaa51598
pip@25.3
26.1
quay.io/ortelius/ms-scorecard:main-v10.0.1276-g966a8a43337e52fdd4
pip@25.3
26.1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
pip@25.3
py3-pip@25.3-r3
26.1
26.1.1-r0
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
pip@25.3
py3-pip@25.3-r3
26.1
26.1.1-r0

Open the chart page →

11,160
testdeploymentapp0.1.01 of 1See more

test deploymentapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
cbanuka/pythonapp:latestc742770d4247
pip@9.0.0
26.1

Open the chart page →

409
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-6357.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
pip@20.0.2
python-pip@20.0.2-5ubuntu1.9
26.1
no fix listed

Open the chart page →

14,856

Container images carrying it

1,211 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
genseb/rabbitmq-producer-randomizer:0.0.6cb7599641099
pip@23.1.2
26.1
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.7
26.1
no fix listed
1
geopython/pycsw:3.0.0-beta284662ea6b78b
pip@25.3
26.1
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
pip@20.2.3
python-pip@9.0.1-2.3~ubuntu1.18.04.2
26.1
no fix listed
1
gethue/hue:4.11.011b649636e68
pip@22.2.2
python-pip@20.0.2-5ubuntu1.6
26.1
no fix listed
1
gethue/hue:4.10.05702b2c37ff9
pip@21.1.2
python-pip@9.0.1-2.3~ubuntu1.18.04.5
26.1
no fix listed
1
gethue/hue:latest7d5c1b9f8a79
pip@23.2.1
python-pip@22.0.2+dfsg-1ubuntu0.6
26.1
no fix listed
1
getsentry/sentry-kubernetes:latest6ac37974fd2a
pip@19.0.3
26.1
1
gluufederation/opendj:4.3.0_011a1128b28b95
pip@21.2.4
26.1
1
gmaas2/github-api:latest148fc2d9afe9
pip@22.3.1
26.1
1
gmelillo/registry:0.1.8c599d608a2f7
pip@25.2
26.1
1
golenski/db-init:1.0.086ca17cd3063
pip@24.2
26.1
1
gomods/athens:v0.8.1d714c7ff0231
pip@19.2.3
26.1
1
gomods/athens:v0.11.0efb811df7844
pip@19.2.3
26.1
1
goofball222/pritunl:1.30.3070.5943c0743701d4
pip@22.0.3
26.1
1
goofball222/pritunl:1.32.3602.807bf26032dfce
pip@23.2.1
26.1
1
gpappsoft/privacyidea-docker:3.12.2af7841adad26
pip@25.3
py3-pip@25.3-r2
26.1
26.1.1-r0
1
grafana/oncall:v1.16.5499851658393
pip@25.0.1
26.1
1
graphiteapp/graphite-statsd:1.1.7-604a0037cc2ae
pip@20.1.1
26.1
1
greenbirdit/locust:0.9.0e99d53bdc944
pip@18.1
26.1
1
greenkube/greenkube:0.3.00c01932282a4
pip@25.3
26.1
1
gristlabs/grist:0.7.96e71b1914a7e
pip@18.1
26.1
1
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
pip@23.0.1
26.1
1
ha33ona/python:test6affdfc644d0
pip@21.2.4
26.1
1
halkeye/slack-resurrect:v0.1.477b05e95fdb5
pip@19.1.1
26.1
1
hamidyousefi93/saam-test:latestc34f071f6ed0
pip@23.0.1
26.1
1
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
pip@21.3.1
26.1
1
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
pip@23.0.1
26.1
1
hamzaarshad10/querypodpy:1.7154f38e8668e
pip@23.0.1
26.1
1
hansehe/locust:1.1.0bc8e45262bc4
pip@24.0
26.1
1
hayk96/alerta-web:9.0.486377705e9e3
pip@23.0.1
26.1
1
hazelcast/management-center:5.3.2f9d34300d330
pip@9.0.3
26.1
1
hcguersoy/cleanreg:v0.8.063b76fdcfbe1
pip@22.0.3
26.1
1
healthchecks/healthchecks:v2.8.1e82bb0836e30
pip@23.0.1
26.1
1
heartexlabs/label-studio:latestaa461572e8f9
pip@26.0.1
26.1
1
helga09/my_sql_shoes:v1.1.1a03657d97897
pip@20.2.4
26.1
1
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
pip@20.0.2
python-pip@20.0.2-5ubuntu1.11
26.1
no fix listed
1
helmforge/fastmcp-server:0.2.061f759a1421f
pip@25.3
26.1
1
helmforge/fastmcp-server:0.11.2fcb7017327d6
pip@26.0.1
26.1
1
hhyo/archery:v1.9.11aa41843419e
pip@22.1.2
26.1
1
hiboxsystems/marge-bot:0.11.07235809b43b3
pip@22.3.1
26.1
1
hiboxsystems/marge-bot:0.12.1a96c10b61a59
pip@22.3.1
26.1
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
pip@25.2
26.1
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
pip@23.0.1
26.1
1
hjacobs/kube-downscaler:23.2.05d328c003efe
pip@22.3.1
26.1
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
pip@23.0.1
26.1
1
hjacobs/kube-ops-view:23.5.0a4fae38f93d7
pip@22.3.1
26.1
1
hjacobs/kube-resource-report:21.2.145f93491c434
pip@21.0.1
26.1
1
hjacobs/kube-resource-report:22.11.0c173cd02f5af
pip@22.2.2
26.1
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
pip@23.0.1
26.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.