StackRadar

CVE-2026-73566

High

Advisory

Published 24 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
944
of 17,790 indexed, latest versions
Container images
969
deployed by those charts
Fix available
3 of 4
affected packages

node-tar: Uncontrolled recursion in mapHas/filesFilter allows uncatchable stack-overflow DoS via crafted long-path tar with member selection

Carried by container images the latest versions of 944 of 17,790 indexed charts deploy, on 969 images.

Affected packageAffected versionsFixed inImages
tarnpm1.0.3, 2.2.1, 2.2.2, 4.0.2+34 more7.5.21969
node-tardeb1.0.3-2, 2.2.1-1, 4.4.10+ds1-2ubuntu1, 6.1.13+~cs7.0.5-3+1 moreno fix listed7
node-gypapk13.0.0-r013.0.1-r11
npmapk11.17.0-r012.0.1-r21
OSV records
CGA-63gq-6rq6-x5wcCGA-cppm-m8p8-rqr4DEBIAN-CVE-2026-73566GHSA-r292-9mhp-454mUBUNTU-CVE-2026-73566
Also known as
CGA-hm85-254c-g849, CGA-jp96-8764-w59g

Charts affected

944 by stars
ChartLatestAffected imagesRadar Score
docker-mailservermailserverVerified publisher0.2.651 of 9See more

docker-mailserver mailserver 0.2.65

1 of the 9 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
tar@6.2.1
7.5.21

Open the chart page →

10,921
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
tar@6.2.1
7.5.21

Open the chart page →

7,334
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
tar@2.2.2
7.5.21

Open the chart page →

5,288
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
tar@7.5.15
7.5.21

Open the chart page →

8,409
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
tar@2.2.2
7.5.21

Open the chart page →

5,941
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
hugohg34/server:0.0.2503e5d8960ff
tar@6.1.11
7.5.21

Open the chart page →

29,746
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
tar@6.2.1
7.5.21

Open the chart page →

9,765
homarrmedia-servarrVerified publisher0.55.11 of 1See more

homarr media-servarr 0.55.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/homarr-labs/homarr:v1.77.11f5b892aeef4
tar@7.5.15
7.5.21

Open the chart page →

435
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
tar@6.0.2
7.5.21

Open the chart page →

68,417
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
tar@6.0.2
7.5.21

Open the chart page →

7,027
littlelink-servermhamzahkhanVerified publisher1.0.01 of 1See more

littlelink-server mhamzahkhan 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/techno-tim/littlelink-server:latest735a1fcd078b
tar@6.2.0
7.5.21

Open the chart page →

887
miot-appmicroboxlabs0.3.31 of 1See more

miot-app microboxlabs 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
tar@7.5.11
7.5.21

Open the chart page →

510
miot-dashboard-servermicroboxlabs0.1.11 of 1See more

miot-dashboard-server microboxlabs 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-dashboard-server:latest19b910920ab1
tar@7.5.19
7.5.21

Open the chart page →

238
miot-docsmicroboxlabs0.1.11 of 1See more

miot-docs microboxlabs 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-docs:lateste09d92c61f43
tar@7.5.11
7.5.21

Open the chart page →

379
miot-stackmicroboxlabs0.2.21 of 2See more

miot-stack microboxlabs 0.2.2

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
tar@7.5.11
7.5.21

Open the chart page →

510
modulariotmicroboxlabs0.9.02 of 4See more

modulariot microboxlabs 0.9.0

2 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-app:0.5.203cc10a496ced
tar@7.5.11
7.5.21
ghcr.io/microboxlabs/miot-docs:latest0307d2fd9f5c
tar@7.5.11
7.5.21

Open the chart page →

2,291
middleware-odigosmiddleware-labsVerified publisher0.2.411 of 6See more

middleware-odigos middleware-labs 0.2.41

1 of the 6 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-ui:middleware-test-0.0.787120a4561a9
tar@6.1.11
7.5.21

Open the chart page →

8,378
middleware-visionmiddleware-labsVerified publisher0.2.651 of 6See more

middleware-vision middleware-labs 0.2.65

1 of the 6 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-ui:middleware-test-0.0.853772b7b42c7
tar@6.1.11
7.5.21

Open the chart page →

8,370
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service-ui:7.0.34ebd8b4ef340
tar@4.4.13
7.5.21

Open the chart page →

12,858
mini-blogmini-blog-helm0.1.01 of 3See more

mini-blog mini-blog-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
tar@6.2.1
7.5.21

Open the chart page →

13,107
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
tar@6.1.11
7.5.21
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
tar@6.2.1
7.5.21

Open the chart page →

43,532
aws-api-gateway-operatormintel0.1.22 of 11See more

aws-api-gateway-operator mintel 0.1.2

2 of the 11 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
tar@7.5.19
7.5.21
opensearchproject/opensearch-dashboards:1.0.039695180364b
tar@4.4.13
7.5.21

Open the chart page →

10,683
standard-application-stackmintel11.4.11 of 12See more

standard-application-stack mintel 11.4.1

1 of the 12 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
tar@4.4.13
7.5.21

Open the chart page →

10,613
iotmmontesVerified publisher0.3.24 of 7See more

iot mmontes 0.3.2

4 of the 7 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
ghcr.io/mmontes11/iot-back:v3.11.096683c54ae65
tar@4.4.13
7.5.21
ghcr.io/mmontes11/iot-biot:v3.11.033f7976b26a8
tar@4.4.13
7.5.21
ghcr.io/mmontes11/iot-thing:v3.11.0542e91e8499c
tar@4.4.13
7.5.21
ghcr.io/mmontes11/iot-worker:v3.11.0491bb243f555
tar@4.4.13
7.5.21

Open the chart page →

10,608
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
tar@6.1.11
7.5.21
mojaloop/event-sidecar:v11.0.189b8ab71b74b
tar@6.1.0
7.5.21

Open the chart page →

11,762
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
tar@6.1.11
7.5.21
mojaloop/event-sidecar:v11.0.189b8ab71b74b
tar@6.1.0
7.5.21

Open the chart page →

11,762
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
tar@4.4.13
7.5.21
mojaloop/event-sidecar:v11.0.189b8ab71b74b
tar@6.1.0
7.5.21

Open the chart page →

12,175
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
tar@7.5.1
7.5.21

Open the chart page →

2,458
finance-portalmojaloop5.1.46 of 11See more

finance-portal mojaloop 5.1.4

6 of the 11 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
tar@6.2.1
7.5.21
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
tar@6.2.1
7.5.21
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
tar@7.4.3
7.5.21
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
tar@6.1.11
7.5.21
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
tar@6.2.1
7.5.21
mojaloop/role-assignment-service:v2.1.0def4bf273721
tar@6.2.0
7.5.21

Open the chart page →

14,813
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
tar@6.1.0
7.5.21
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
tar@4.4.13
7.5.21

Open the chart page →

11,546
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
tar@6.1.11
7.5.21
mojaloop/central-ledger:v13.14.01abc8a7aa71c
tar@4.4.13
7.5.21
mojaloop/event-sidecar:v11.0.189b8ab71b74b
tar@6.1.0
7.5.21
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
tar@4.4.13
7.5.21

Open the chart page →

19,293
reporting-aggregator-svcmojaloop1.0.71 of 1See more

reporting-aggregator-svc mojaloop 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
tar@6.2.1
7.5.21

Open the chart page →

801
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
tar@7.4.3
7.5.21

Open the chart page →

2,632
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
tar@6.1.11
7.5.21

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
tar@6.2.1
7.5.21

Open the chart page →

2,319
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
tar@6.2.1
7.5.21

Open the chart page →

1,949
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
tar@6.2.0
7.5.21

Open the chart page →

2,316
security-role-perm-operator-svcmojaloop3.0.01 of 1See more

security-role-perm-operator-svc mojaloop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
tar@7.5.1
7.5.21

Open the chart page →

2,458
mongo-compassmongo-compass-webVerified publisher1.1.41 of 1See more

mongo-compass mongo-compass-web 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.1f4f8fe4e21f1
tar@7.5.19
7.5.21

Open the chart page →

1,781
mongo-compassmongo-compass-web-helm1.1.01 of 1See more

mongo-compass mongo-compass-web-helm 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.054f2112602ee
tar@7.5.13
7.5.21

Open the chart page →

2,419
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.01 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
library/mongo-express:latest1b23d7976f02
tar@6.2.1
7.5.21

Open the chart page →

5,220
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
tar@6.1.11
7.5.21

Open the chart page →

6,438
monocularmonocular1.4.151 of 5See more

monocular monocular 1.4.15

1 of the 5 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
migmartri/prerender:latest486aacfd5aa9
tar@2.2.1
7.5.21

Open the chart page →

7,048
monopolymonopolypackage0.1.01 of 1See more

monopoly monopolypackage 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
gonzague/monopoly:latest70465995deea
tar@6.1.11
7.5.21

Open the chart page →

1,130
api-proxymoreillonVerified publisher0.1.41 of 1See more

api-proxy moreillon 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/api-proxy:2373c1953739ef6956b5
tar@6.1.11
7.5.21

Open the chart page →

1,711
camera-viewermoreillonVerified publisher0.2.11 of 4See more

camera-viewer moreillon 0.2.1

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/camera-proxy:latestce60056b50c2
tar@6.1.11
7.5.21

Open the chart page →

11,708
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/face-recognition-fastapi-front:latestc1072f4ab6aa
tar@4.4.19
7.5.21

Open the chart page →

8,556
group-managermoreillonVerified publisher0.4.41 of 3See more

group-manager moreillon 0.4.4

1 of the 3 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/group-manager:v4.9.0d5a0ec8394c0
tar@6.1.11
7.5.21

Open the chart page →

9,900
mqtt-loggermoreillonVerified publisher0.3.11 of 5See more

mqtt-logger moreillon 0.3.1

1 of the 5 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/mqtt-logger:9ffbf7180a8a7daf56f6
tar@6.1.11
7.5.21

Open the chart page →

11,008
user-manager-mongodbmoreillonVerified publisher0.6.21 of 4See more

user-manager-mongodb moreillon 0.6.2

1 of the 4 container images this version deploys carry CVE-2026-73566.

Container imageDigestPackageFixed in
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
tar@6.2.0
7.5.21

Open the chart page →

25,844

Container images carrying it

969 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
tar@7.4.3
7.5.21
1
ghcr.io/umami-software/umami:3.0.328f263fe06f7
tar@7.5.2
7.5.21
1
ghcr.io/umami-software/umami:postgresql-v1.39.560fa8875aff8
tar@6.1.11
7.5.21
1
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
tar@7.4.3
7.5.21
1
ghcr.io/umami-software/umami:3.1.0e3f80c0625aa
tar@7.5.12
7.5.21
1
ghcr.io/vincenttaglia/indexer-tools:v3.4.45bae30456ddb
tar@6.1.11
7.5.21
1
ghcr.io/wachd/wachd:0.4.1805b05c56da94
tar@7.5.11
7.5.21
1
ghcr.io/waldo-vision/migrate:v0.3.6ae31923312ed
tar@6.1.13
7.5.21
1
ghcr.io/waldo-vision/web:v0.3.65bbc7647df07
tar@6.1.13
7.5.21
1
ghcr.io/wasilak/kube-ingress-dash:0.3.1ff55992f905c
tar@7.5.1
7.5.21
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
tar@6.1.0
7.5.21
1
ghcr.io/wei-shaw/claude-relay-service:v1.1.292398c34934453
tar@6.2.1
7.5.21
1
ghcr.io/wgbh-mla/dream-aapb:main288a4774aa90
tar@7.5.16
7.5.21
1
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
tar@7.4.3
7.5.21
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
tar@6.2.0
7.5.21
1
ghcr.io/woodenmaiden/relfinderreformedapi:1.1.20708d30433d4
tar@6.2.1
7.5.21
1
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
tar@7.4.3
7.5.21
1
ghcr.io/wundergraph/cosmo/controlplane:0.133.149800ff775f3
tar@7.4.3
7.5.21
1
ghcr.io/wundergraph/cosmo/studio:0.111.0454f4384713a
tar@7.4.3
7.5.21
1
ghcr.io/xmv-solutions-gmbh/strapi:latesta288b4571142
tar@7.5.11
7.5.21
1
ghcr.io/zazukoians/qlever-ui:v0.10.151a7ec1c2de4
tar@7.4.3
7.5.21
1
ghcr.io/zoriya/kyoo_front:4.7.1d7f76c9c65d9
tar@6.2.1
7.5.21
1
mcr.microsoft.com/azure-storage/azurite:latest830430c1da1a
tar@7.5.11
7.5.21
1
public.ecr.aws/aktosecurity/akto-puppeteer-replay:1.49.4_latestf1c5763d565e
tar@7.5.9
7.5.21
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
tar@6.2.1
7.5.21
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
tar@6.2.1
7.5.21
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
tar@6.2.1
7.5.21
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
tar@6.1.15
7.5.21
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
tar@6.2.0
7.5.21
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
tar@6.2.1
7.5.21
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
tar@2.2.2
7.5.21
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
tar@4.4.19
7.5.21
1
quay.io/hedgedoc/hedgedoc:1.10.8abdb6b08815d
tar@6.2.1
7.5.21
1
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
tar@6.0.5
7.5.21
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
tar@2.2.2
7.5.21
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
tar@4.4.13
7.5.21
1
quay.io/ibmgaragecloud/slack-notifications:latest041df93e2bac
tar@4.4.13
7.5.21
1
quay.io/kuberay/dashboard:v1.7.07e43d4b4fd9f
tar@7.5.16
7.5.21
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
tar@7.5.11
7.5.21
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
tar@7.5.11
7.5.21
1
quay.io/mittwald/kube-mail:latest04f1099241fc
tar@6.2.1
7.5.21
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
tar@6.1.11
7.5.21
1
quay.io/netwarps/blockscoutbecd3e39360a
tar@6.1.11
7.5.21
1
quay.io/netwarps/walletconnect-relay:v2.1.3-rc.15d90b9c193e0
tar@6.1.11
7.5.21
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
tar@6.2.0
7.5.21
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
tar@6.1.0
7.5.21
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
tar@6.1.0
7.5.21
1
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
tar@4.4.15
7.5.21
1
quay.io/rhdh/rhdh-hub-rhel9:latest0b26358f5793
tar@7.5.19
7.5.21
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
tar@4.4.13
7.5.21
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.