StackRadar

CVE-2026-73566

High

Advisory

Published 24 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
927
of 17,787 indexed, latest versions
Container images
956
deployed by those charts
Fix available
3 of 4
affected packages

node-tar: Uncontrolled recursion in mapHas/filesFilter allows uncatchable stack-overflow DoS via crafted long-path tar with member selection

Carried by container images the latest versions of 927 of 17,787 indexed charts deploy, on 956 images.

Affected packageAffected versionsFixed inImages
tarnpm1.0.3, 2.2.1, 2.2.2, 4.0.2+34 more7.5.21956
node-tardeb1.0.3-2, 2.2.1-1, 4.4.10+ds1-2ubuntu1, 6.1.13+~cs7.0.5-3no fix listed6
node-gypapk13.0.0-r013.0.1-r11
npmapk11.17.0-r012.0.1-r21
OSV records
CGA-63gq-6rq6-x5wcCGA-cppm-m8p8-rqr4GHSA-r292-9mhp-454mUBUNTU-CVE-2026-73566
Also known as
CGA-hm85-254c-g849, CGA-jp96-8764-w59g

Charts affected

927 by stars
ChartLatestAffected imagesRadar Score
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
tar@6.1.11
7.5.21

Open the chart page →

15,653
magic-mirrorgeek-cookbookVerified publisher4.4.21 of 1See more

magic-mirror geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
tar@4.4.13
7.5.21

Open the chart page →

4,405
overseerrgeek-cookbookVerified publisher5.4.21 of 1See more

overseerr geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/sct/overseerr:1.26.1254d16af8f71
tar@6.1.0
7.5.21

Open the chart page →

3,444
sendgeek-cookbookVerified publisher1.2.21 of 1See more

send geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
tar@6.1.11
7.5.21

Open the chart page →

1,148
tdarrgeek-cookbookVerified publisher4.6.21 of 2See more

tdarr geek-cookbook 4.6.2

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.00.101e3f9328327d
tar@4.4.13
7.5.21

Open the chart page →

31,000
uptime-kumageek-cookbookVerified publisher1.4.21 of 1See more

uptime-kuma geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.17.1a4eab252e5a2
tar@6.1.11
7.5.21

Open the chart page →

5,079
uptimerobotgeek-cookbookVerified publisher3.0.41 of 1See more

uptimerobot geek-cookbook 3.0.4

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
billimek/node-influx-uptimerobot:latest5814f0bcf5ba
tar@4.4.1
7.5.21

Open the chart page →

1,669
youtubedl-materialgeek-cookbookVerified publisher4.4.21 of 1See more

youtubedl-material geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.23720b856bd2f
tar@4.4.13
7.5.21

Open the chart page →

4,410
zigbee2mqttgeek-cookbookVerified publisher9.4.21 of 1See more

zigbee2mqtt geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
tar@4.4.13
7.5.21

Open the chart page →

2,173
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
tar@7.5.11
7.5.21

Open the chart page →

3,123
globalpingglobalpingVerified publisher1.0.111 of 1See more

globalping globalping 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
globalping/globalping-probe:latest8acbd23009fd
tar@7.5.11
7.5.21

Open the chart page →

518
ghostgroundhog2k0.212.121 of 1See more

ghost groundhog2k 0.212.12

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
library/ghost:6.63.0e05bc1169fb2
tar@7.5.11
7.5.21

Open the chart page →

2,000
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
tar@6.2.0
7.5.21

Open the chart page →

4,196
openprojecthomeenterpriseinc0.5.01 of 1See more

openproject homeenterpriseinc 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
openproject/community:12.0.2734743d11094
tar@4.4.13
7.5.21

Open the chart page →

6,810
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
tar@7.5.4
7.5.21

Open the chart page →

12,397
pdc-portali4trustVerified publisher2.3.21 of 1See more

pdc-portal i4trust 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
i4trust/pdc-portal:2.0.03e77858e1219
tar@4.4.13
7.5.21

Open the chart page →

2,723
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
tar@7.4.3
7.5.21

Open the chart page →

15,712
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
tar@6.1.11
7.5.21

Open the chart page →

17,284
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
tar@4.4.19
7.5.21

Open the chart page →

3,369
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
tar@6.2.1
7.5.21

Open the chart page →

5,228
keycloak-reporterkeycloak-reporterVerified publisher1.4.151 of 1See more

keycloak-reporter keycloak-reporter 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
continuoussecuritytooling/keycloak-reporting-cli:1.3.3f04ecefab64e
tar@7.5.16
7.5.21

Open the chart page →

1,322
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/kikplate/kikplate-web:main34bbb61e8e42
tar@7.5.11
7.5.21

Open the chart page →

2,770
dashykrzwiatrzyk1.0.01 of 1See more

dashy krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
tar@6.1.11
7.5.21

Open the chart page →

3,143
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.009b7e8705673
tar@6.2.0
7.5.21
langgenius/dify-web:0.6.11a2a294743634
tar@6.2.0
7.5.21

Open the chart page →

20,403
kube-ingress-dash-chartkube-ingress-dashVerified publisher0.3.11 of 1See more

kube-ingress-dash-chart kube-ingress-dash 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/wasilak/kube-ingress-dash:0.3.1ff55992f905c
tar@7.5.1
7.5.21

Open the chart page →

1,505
chibisafel4gVerified publisher0.1.12 of 3See more

chibisafe l4g 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
chibisafe/chibisafe:latest836467a50792
tar@6.2.1
7.5.21
chibisafe/chibisafe-server:latest3da4fcbc1a18
tar@6.2.1
7.5.21

Open the chart page →

5,654
lifecycle-jira-integrationlifecycle-jira-integration1.0.01 of 1See more

lifecycle-jira-integration lifecycle-jira-integration 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
anoopnair/lifecycle-jira-integration:latestd80c73a6089d
tar@6.1.11
7.5.21

Open the chart page →

927
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
tar@6.2.1
7.5.21

Open the chart page →

4,292
litlyxlitlyx0.2.03 of 5See more

litlyx litlyx 0.2.0

3 of the 5 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
litlyx/litlyx-consumer:latest02225e77d316
tar@7.5.2
7.5.21
litlyx/litlyx-dashboard:lateste64ff2d52385
tar@7.4.3
7.5.21
litlyx/litlyx-producer:latest10407f36613f
tar@7.5.2
7.5.21

Open the chart page →

7,874
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
tar@6.1.11
7.5.21

Open the chart page →

2,309
actualbudgetm0nsterrr-actualbudgetVerified publisher2.10.01 of 1See more

actualbudget m0nsterrr-actualbudget 2.10.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
tar@7.5.19
7.5.21

Open the chart page →

1,091
chatwootmaxcrm-chartsVerified publisher1.1.2011 of 4See more

chatwoot maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
tar@2.2.2
7.5.21

Open the chart page →

5,940
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
tar@4.4.13
7.5.21
fjvela/urjc-fjvela-server:1.0.53c840aebce22
tar@4.4.13
7.5.21

Open the chart page →

19,187
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
tar@6.2.1
7.5.21

Open the chart page →

13,738
n8nn8n-helm2.25.71 of 1See more

n8n n8n-helm 2.25.7

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
n8nio/n8n:2.25.7761374d4eb84
tar@7.5.11
7.5.21

Open the chart page →

2,575
tristian-idnonkronk0.1.31 of 1See more

tristian-id nonkronk 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
nonkronk/tristian-id:latest0a3694d70647
tar@6.1.11
7.5.21

Open the chart page →

1,105
oadaoadaVerified publisher5.0.510 of 11See more

oada oada 5.0.5

10 of the 11 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
oada/auth:4.0.0c0d077e79ef4
tar@7.4.3
7.5.21
oada/http-handler:4.0.0d87efe8ba4b0
tar@7.4.3
7.5.21
oada/rev-graph-update:4.0.0ebc8343f05ff
tar@7.4.3
7.5.21
oada/shares:4.0.0c6ffb4e8ed63
tar@7.4.3
7.5.21
oada/startup:4.0.0fc09495e2f3c
tar@7.4.3
7.5.21
oada/sync-handler:4.0.0b7a2cfc137cf
tar@7.4.3
7.5.21
oada/users:4.0.0b6c562fa5b1b
tar@7.4.3
7.5.21
oada/webhooks:4.0.06590c60de347
tar@7.4.3
7.5.21
oada/well-known:4.0.07943fde43b19
tar@7.4.3
7.5.21
oada/write-handler:4.0.08464c7f48aae
tar@7.4.3
7.5.21

Open the chart page →

13,317
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
tar@6.2.1
7.5.21

Open the chart page →

1,238
kuttone-acre-fundVerified publisher0.2.51 of 1See more

kutt one-acre-fund 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
kutt/kutt:latestfa3d24a89b04
tar@7.5.11
7.5.21

Open the chart page →

454
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
gradiant/open5gs-webui:2.7.5fbd10c017541
tar@6.2.0
7.5.21

Open the chart page →

5,300
open-api-discoveryopen-api-discoveryVerified publisher0.1.11 of 1See more

open-api-discovery open-api-discovery 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
lukasreining/open-api-schema-collector:0.1.050e021c42e33
tar@6.1.11
7.5.21

Open the chart page →

2,473
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
tar@7.4.3
7.5.21

Open the chart page →

6,873
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
tar@6.2.1
7.5.21

Open the chart page →

6,883
patchworkpatchworkVerified publisher0.8.61 of 2See more

patchwork patchwork 0.8.6

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/patchwork:mainc01e018bced4
tar@7.4.3
7.5.21

Open the chart page →

2,083
pdf-editor-helmpdf-editor-web1.0.01 of 4See more

pdf-editor-helm pdf-editor-web 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
tar@6.1.11
7.5.21

Open the chart page →

4,206
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
tar@7.5.13
7.5.21

Open the chart page →

7,035
camophntom0.1.11 of 1See more

camo phntom 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
phntom/camo:2.3.1a9b1304d6c71
tar@4.4.15
7.5.21

Open the chart page →

1,217
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
tar@6.1.11
7.5.21
treskon/portrait-ui:DEV-lateste7970783bc8d
tar@6.2.1
7.5.21

Open the chart page →

31,844
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
prowlercloud/prowler-ui:5.31.179ee83c8e702
tar@7.5.1
7.5.21

Open the chart page →

8,158
psa-restricted-patcherpsa-restricted-patcherVerified publisher0.10.11 of 1See more

psa-restricted-patcher psa-restricted-patcher 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
tar@7.4.3
7.5.21

Open the chart page →

1,401

Container images carrying it

956 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
matrixdotorg/matrix-appservice-gitter:latest0d37b4d42b47
tar@4.4.13
7.5.21
1
mauricenino/dashdot:5.9.2236997816917
tar@6.2.1
7.5.21
1
mautic/mautic:7-apacheeb8cc73d97e1
tar@7.5.15
7.5.21
1
mcpuse/inspector:latest91b25e3eb604
tar@7.5.11
7.5.21
1
microcks/microcks-postman-runtime:latestcb72e46a1b3c
tar@2.2.1
7.5.21
1
middlewareeng/middleware:0.3.1747d880812f1
tar@7.4.3
7.5.21
1
milesmcc/shynet:v0.13.1ba54f7797a6b
tar@6.1.0
7.5.21
1
milesmcc/shynet:v0.12.0e821e31140f7
tar@6.1.0
7.5.21
1
minddocdev/hubot:0.1.96c60b11a4fa7
tar@2.2.1
7.5.21
1
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
tar@6.1.11
7.5.21
1
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
tar@6.2.1
7.5.21
1
mishtinetwork/operator:latestbb3fe67a5f7c
tar@6.2.0
7.5.21
1
misskey/misskey:12.110.1e08b7c478093
tar@6.1.11
7.5.21
1
mitchxxx/amazon:214e72480ec63a
tar@6.2.0
7.5.21
1
moonrailgun/tianji:1.11.2b528c8f8fcc4
tar@6.1.15
7.5.21
1
moreillon/api-proxy:2373c1953739ef6956b5
tar@6.1.11
7.5.21
1
moreillon/api-proxy:latestd7d4a5463525
tar@6.2.1
7.5.21
1
moreillon/camera-proxy:latestce60056b50c2
tar@6.1.11
7.5.21
1
moreillon/face-recognition-fastapi-front:latestc1072f4ab6aa
tar@4.4.19
7.5.21
1
moreillon/food-manager:lateste8fd856e593d
tar@6.2.1
7.5.21
1
moreillon/group-manager:latest3caa8f710ee0
tar@6.2.1
7.5.21
1
moreillon/mqtt-logger:9ffbf7180a8a7daf56f6
tar@6.1.11
7.5.21
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
tar@6.2.0
7.5.21
1
mozilla/sentencecollector:2.0.91da6ff5c4895
tar@4.4.13
7.5.21
1
mpopoola1/nodejsapp:latest061fc532de7d
tar@6.2.0
7.5.21
1
muluder/prograncontrollermcord:0.1.843b597a93da7
tar@2.2.1
7.5.21
1
n8nio/n8n:2.25.7761374d4eb84
tar@7.5.11
7.5.21
1
n8nio/n8n:1.86.08b39ed5a2de9
tar@6.2.1
7.5.21
1
n8nio/n8n:0.212.0a9195bc499a3
tar@6.1.11
7.5.21
1
n8nio/n8n:1.33.1dd171d45102a
tar@6.1.15
7.5.21
1
neoskop/ixy:2.1.125152b474f54
tar@7.5.19
7.5.21
1
neoskop/papergirl:3.2.67f52b5949f03
tar@6.1.15
7.5.21
1
netrisai/controller-web-service-backend:4.6.0-0086e865080e86c
tar@4.4.19
7.5.21
1
nightscout/cgm-remote-monitor:14.2.500c3b4833f1b
tar@4.4.13
7.5.21
1
nightscout/cgm-remote-monitor:15.0.2ad29ca7a4de6
tar@6.1.11
7.5.21
1
nightscout/cgm-remote-monitor:15.0.3f604dc4c03ca
tar@6.1.11
7.5.21
1
nocodb/nocodb:0.258.06779a4ddedf2
tar@6.2.1
7.5.21
1
nocodb/nocodb:0.301.5d9516f0bf546
tar@6.2.1
7.5.21
1
nodered/node-red:5.0.410f40d0a83e7
tar@7.5.15
7.5.21
1
nodered/node-red:4.1.2216e7403aab9
tar@7.4.3
7.5.21
1
nodered/node-red:5.0.7a649dd711d55
tar@7.5.19
7.5.21
1
nodered/node-red:4.1.10-minimald73ae167cb9b
tar@7.5.12
7.5.21
1
nodered/node-red:2.2.2e131dcadfe92
tar@6.1.11
7.5.21
1
nodered/node-red:3.0.2-18e2632a7a35dd
tar@6.1.11
7.5.21
1
nodered/node-red-docker:0.19.6-v8070643219ea2
tar@2.2.1
7.5.21
1
nonkronk/tristian-id:latest0a3694d70647
tar@6.1.11
7.5.21
1
nottiey/mynodejswebapp:latest9c35a24c9eb3
tar@6.1.15
7.5.21
1
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
tar@7.5.16
7.5.21
1
oada/auth:4.0.0c0d077e79ef4
tar@7.4.3
7.5.21
1
oada/http-handler:4.0.0d87efe8ba4b0
tar@7.4.3
7.5.21
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.