StackRadar

CVE-2026-77860

Low

Advisory

Published 16 Sept 2026In the index since 17 Sept 2026
Severity
Low
worst across findings
CVSS
3.7
base score, highest
EPSS
0.003
20th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
42
of 17,792 indexed, latest versions
Container images
55
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 42 of 17,792 indexed charts deploy, on 55 images.

Affected packageAffected versionsFixed inImages
unbounddeb1.17.1-2, 1.17.1-2+deb12u2, 1.17.1-2+deb12u4, 1.22.0-2+3 more1.26.155
OSV records
DEBIAN-CVE-2026-77860ECHO-a935-81b8-4eae

Charts affected

42 by stars
ChartLatestAffected imagesRadar Score
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

5,593
zammadzammadOfficialVerified publisher18.2.11 of 5See more

zammad zammad 18.2.1

1 of the 5 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

6,476
oneuptimeoneuptimeOfficialVerified publisher13.0.61 of 7See more

oneuptime oneuptime 13.0.6

1 of the 7 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
oneuptime/runner:releasebc4f82c54680
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

11,633
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

4,454
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

2,361
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

9,526
defectdojodefectdojo1.9.521 of 4See more

defectdojo defectdojo 1.9.52

1 of the 4 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
defectdojo/defectdojo-django:3.3.100c597abdbb535
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

2,591
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
unbound@1.17.1-2+deb12u4
no fix listed

Open the chart page →

3,446
pretixtechwolf12Verified publisher2026.7.01 of 3See more

pretix techwolf12 2026.7.0

1 of the 3 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
pretix/standalone:2026.7.05df3b7aa852e
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

10,046
anteonanteonVerified publisher2.6.41 of 13See more

anteon anteon 2.6.4

1 of the 13 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
unbound@1.17.1-2+deb12u2
no fix listed

Open the chart page →

22,442
pgcagriekinVerified publisher2.1.01 of 2See more

pg cagriekin 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

2,407
pgvectorcagriekinVerified publisher2.1.01 of 3See more

pgvector cagriekin 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

4,172
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

11,420
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
unbound@1.22.0-2
no fix listed

Open the chart page →

11,967
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
unbound@1.17.1-2+deb12u4
no fix listed

Open the chart page →

8,367
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

7,319
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
unbound@1.17.1-2+deb12u2
no fix listed

Open the chart page →

4,403
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
opennode/waldur-mastermind:8.1.24c82b15d9042
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

5,017
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
unbound@1.17.1-2+deb12u2
no fix listed
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
unbound@1.17.1-2+deb12u2
no fix listed

Open the chart page →

26,070
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
unbound@1.17.1-2+deb12u2
no fix listed

Open the chart page →

7,322
exim4dossif0.2.01 of 1See more

exim4 dossif 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
tianon/exim4:latestb489049cdbca
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

1,477
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
unbound@1.22.0-2
no fix listed

Open the chart page →

13,613
static-siteethersphereVerified publisher0.73.11 of 2See more

static-site ethersphere 0.73.1

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
library/node:latestf5d1cc40abc1
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

7,077
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

5,222
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
unbound@1.22.0-2+deb13u1
no fix listed
fireflyiii/data-importer:version-2.2.3ab52bf932546
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

10,626
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

5,012
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
unbound@1.17.1-2+deb12u4
no fix listed

Open the chart page →

65,325
mod-z3950folio-org0.1.31 of 1See more

mod-z3950 folio-org 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
folioci/mod-z3950:latest2493041ce880
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

2,572
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
unbound@1.17.1-2+deb12u4
no fix listed

Open the chart page →

9,335
chiefonboardinghelmforgeVerified publisher1.1.151 of 3See more

chiefonboarding helmforge 1.1.15

1 of the 3 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

7,209
moodlehelmforgeVerified publisher1.1.01 of 2See more

moodle helmforge 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
unbound@1.17.1-2+deb12u4
no fix listed

Open the chart page →

6,325
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
unbound@1.17.1-2+deb12u2
no fix listed

Open the chart page →

6,050
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
unbound@1.22.0-2+deb13u1
no fix listed

Open the chart page →

9,824
firefly-iiikubernetes-homelab-helm-chartsVerified publisher0.1.31 of 3See more

firefly-iii kubernetes-homelab-helm-charts 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.6.6ae69fdd95cde
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

4,567
smtplbenicio-communityVerified publisher0.1.31 of 1See more

smtp lbenicio-community 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

1,353
smilencsaVerified publisher1.1.04 of 23See more

smile ncsa 1.1.0

4 of the 23 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
unbound@1.17.1-2
no fix listed
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
unbound@1.17.1-2
no fix listed
socialmediamacroscope/preprocessing:0.1.3ca863306314b
unbound@1.17.1-2
no fix listed
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
unbound@1.17.1-2
no fix listed

Open the chart page →

110,325
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

2,841
agentpolyaxon2.16.43 of 4See more

agent polyaxon 2.16.4

3 of the 4 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

10,593
polyaxonpolyaxon2.16.43 of 5See more

polyaxon polyaxon 2.16.4

3 of the 5 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-api:2.16.42b55c3265a90
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

14,334
port-agentport-labsVerified publisher0.8.161 of 1See more

port-agent port-labs 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
ghcr.io/port-labs/port-agent:v0.8.12c92d1e223f5c
unbound@1.26.0-1+e1
1.26.1

Open the chart page →

780
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
unbound@1.22.0-2
no fix listed

Open the chart page →

9,738
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2026-77860.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

68,323

Container images carrying it

55 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
unbound@1.22.0-2+deb13u3
no fix listed
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
unbound@1.22.0-2+deb13u1
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
unbound@1.22.0-2+deb13u1
no fix listed
2
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
unbound@1.22.0-2+deb13u3
no fix listed
2
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
unbound@1.22.0-2+deb13u3
no fix listed
2
boky/postfix:5.1.0aafc77238423
unbound@1.22.0-2+deb13u1
no fix listed
1
boky/postfix:4.4.0f3f247fd4252
unbound@1.17.1-2+deb12u2
no fix listed
1
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
unbound@1.22.0-2+deb13u3
no fix listed
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
unbound@1.17.1-2+deb12u2
no fix listed
1
ddosify/selfhosted_backend:3.2.93c11e3182652
unbound@1.17.1-2+deb12u2
no fix listed
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
unbound@1.17.1-2+deb12u2
no fix listed
1
defectdojo/defectdojo-django:3.3.100c597abdbb535
unbound@1.22.0-2+deb13u3
no fix listed
1
domainmod/domainmod:4.23.04017bfe4c597
unbound@1.17.1-2+deb12u2
no fix listed
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
unbound@1.22.0-2
no fix listed
1
fireflyiii/core:version-6.6.6ae69fdd95cde
unbound@1.22.0-2+deb13u3
no fix listed
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
unbound@1.17.1-2+deb12u4
no fix listed
1
folioci/mod-z3950:latest2493041ce880
unbound@1.22.0-2+deb13u1
no fix listed
1
jbtronics/part-db1:latest5db71f6db59d
unbound@1.17.1-2+deb12u4
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
unbound@1.17.1-2+deb12u4
no fix listed
1
library/node:latestf5d1cc40abc1
unbound@1.22.0-2+deb13u3
no fix listed
1
library/python:3.1070c9cc675605
unbound@1.22.0-2+deb13u3
no fix listed
1
library/python:3.9da5aee29682d
unbound@1.22.0-2
no fix listed
1
library/varnish:7.5.04d0bb287d87b
unbound@1.17.1-2+deb12u2
no fix listed
1
mindsdb/mindsdb:latest163011c09299
unbound@1.22.0-2+deb13u1
no fix listed
1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
unbound@1.17.1-2+deb12u4
no fix listed
1
networktocode/nautobot:3.0-py3.13ed484336b1ad
unbound@1.22.0-2+deb13u1
no fix listed
1
oneuptime/runner:releasebc4f82c54680
unbound@1.22.0-2+deb13u3
no fix listed
1
opennode/waldur-mastermind:8.1.24c82b15d9042
unbound@1.22.0-2+deb13u3
no fix listed
1
polyaxon/polyaxon-api:2.16.42b55c3265a90
unbound@1.22.0-2+deb13u3
no fix listed
1
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
unbound@1.22.0-2+deb13u3
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
unbound@1.22.0-2+deb13u3
no fix listed
1
prowlercloud/prowler-api:5.31.14f252d579be2
unbound@1.17.1-2+deb12u4
no fix listed
1
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
unbound@1.22.0-2+deb13u3
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
unbound@1.17.1-2
no fix listed
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
unbound@1.22.0-2+deb13u1
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
unbound@1.22.0-2+deb13u3
no fix listed
1
tianon/exim4:latestb489049cdbca
unbound@1.22.0-2+deb13u3
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
unbound@1.22.0-2+deb13u1
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
unbound@1.22.0-2+deb13u1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.