StackRadar

CVE-2026-84375

High

Advisory

Published 2 Sept 2026In the index since 9 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
32nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
500
of 17,781 indexed, latest versions
Container images
492
deployed by those charts
Fix available
1 of 2
affected packages

js-yaml: maxTotalMergeKeys does not limit CPU use for empty merge sources

Carried by container images the latest versions of 500 of 17,781 indexed charts deploy, on 492 images.

Affected packageAffected versionsFixed inImages
js-yamlnpm3.5.5, 3.6.1, 3.7.0, 3.9.1+15 more3.15.2, 4.3.2492
node-js-yamldeb4.1.0+dfsg+~4.0.5-7no fix listed1
OSV records
GHSA-2883-xcg3-v3hhUBUNTU-CVE-2026-84375

Charts affected

500 by stars
ChartLatestAffected imagesRadar Score
kyso-frontkyso1.0.01 of 1See more

kyso-front kyso 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
kyso/kyso-front:lateste52595c5c16f
js-yaml@3.14.1
3.15.2

Open the chart page →

2,685
jellyseerrlbenicio-communityVerified publisher0.1.01 of 1See more

jellyseerr lbenicio-community 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
fallenbagel/jellyseerr:latest4538137bc5af
js-yaml@4.1.0
4.3.2

Open the chart page →

3,555
lgtv2mqttleprechaun-charts0.1.11 of 1See more

lgtv2mqtt leprechaun-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/lgtv2mqtt:latestac2e11c41ffb
js-yaml@4.1.0
4.3.2

Open the chart page →

1,062
node-redlmatfyVerified publisher0.1.61 of 1See more

node-red lmatfy 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
nodered/node-red:4.1.10-minimald73ae167cb9b
js-yaml@4.1.1
4.3.2

Open the chart page →

1,809
zigbee2mqttlmatfyVerified publisher0.1.141 of 2See more

zigbee2mqtt lmatfy 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.7.260a295b40f4e
js-yaml@4.1.1
4.3.2

Open the chart page →

1,391
redisinsightlogic3579Verified publisher3.4.01 of 1See more

redisinsight logic3579 3.4.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
redis/redisinsight:3.485562d67a912
js-yaml@4.1.1
4.3.2

Open the chart page →

1,490
logtidelogtideVerified publisher2.1.142 of 4See more

logtide logtide 2.1.14

2 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/logtide-dev/logtide-backend:1.0.265463e02f887
js-yaml@4.2.0
4.3.2
ghcr.io/logtide-dev/logtide-frontend:1.0.22a7da1451f86
js-yaml@4.2.0
4.3.2

Open the chart page →

2,774
opendistro-eslsst-sqre1.4.11 of 3See more

opendistro-es lsst-sqre 1.4.1

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
js-yaml@3.13.1
3.15.2

Open the chart page →

7,929
squareonelsst-sqre0.4.11 of 1See more

squareone lsst-sqre 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
lsstsqre/squareone:0.4.09ded78e7fe03
js-yaml@3.14.1
3.15.2

Open the chart page →

2,247
frontendluiscajl0.1.71 of 1See more

frontend luiscajl 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
lavandadelpatio/frontend:latest501c3f31e0bc
js-yaml@3.13.1
3.15.2

Open the chart page →

3,651
lynxpromptlynxpromptVerified publisher0.1.21 of 3See more

lynxprompt lynxprompt 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
drumsergio/lynxprompt:2.0.75c6afb6679301
js-yaml@4.1.1
4.3.2

Open the chart page →

1,852
m9sweeperm9sweeperVerified publisher1.6.01 of 6See more

m9sweeper m9sweeper 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/m9sweeper/dash:1.6.02e27cdff8344
js-yaml@4.1.0
4.3.2

Open the chart page →

9,774
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/rodg/nodecg-base:latest31be4bf87070
js-yaml@4.1.0
4.3.2

Open the chart page →

7,315
kubevismario-fVerified publisher2.0.11 of 1See more

kubevis mario-f 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
js-yaml@3.14.1
3.15.2

Open the chart page →

5,287
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
js-yaml@4.1.1
4.3.2

Open the chart page →

8,303
maxcrm-chartsmaxcrm-chartsVerified publisher1.1.2011 of 4See more

maxcrm-charts maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
js-yaml@3.14.1
3.15.2

Open the chart page →

5,940
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
js-yaml@3.14.1
3.15.2

Open the chart page →

9,668
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
js-yaml@3.13.1
3.15.2

Open the chart page →

68,284
opsportalmesosphere-stable0.9.51 of 3See more

opsportal mesosphere-stable 0.9.5

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mesosphere/kommander:6.100.13917e82333a9
js-yaml@3.13.1
3.15.2

Open the chart page →

7,027
middleware-odigosmiddleware-labsVerified publisher0.2.411 of 6See more

middleware-odigos middleware-labs 0.2.41

1 of the 6 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/odigos-ui:middleware-test-0.0.787120a4561a9
js-yaml@4.1.0
4.3.2

Open the chart page →

8,370
middleware-visionmiddleware-labsVerified publisher0.2.651 of 6See more

middleware-vision middleware-labs 0.2.65

1 of the 6 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/vision-ui:middleware-test-0.0.853772b7b42c7
js-yaml@4.1.0
4.3.2

Open the chart page →

8,361
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mintproject/ensemble-manager:d5656dbc01623e291564d2894c72f0e7cb2408f4222e3b941a36
js-yaml@4.1.0
4.3.2

Open the chart page →

43,341
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
js-yaml@3.14.1
3.15.2

Open the chart page →

10,603
standard-application-stackmintel11.4.01 of 12See more

standard-application-stack mintel 11.4.0

1 of the 12 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
opensearchproject/opensearch-dashboards:1.0.039695180364b
js-yaml@3.14.1
3.15.2

Open the chart page →

10,603
helmmirasys-chart0.1.01 of 4See more

helm mirasys-chart 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
js-yaml@3.13.1
3.15.2

Open the chart page →

4,292
account-lookup-servicemojaloop13.0.02 of 4See more

account-lookup-service mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
js-yaml@4.1.0
4.3.2
mojaloop/event-sidecar:v11.0.189b8ab71b74b
js-yaml@3.13.1
3.15.2

Open the chart page →

11,695
account-lookup-service-adminmojaloop13.0.02 of 4See more

account-lookup-service-admin mojaloop 13.0.0

2 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
js-yaml@4.1.0
4.3.2
mojaloop/event-sidecar:v11.0.189b8ab71b74b
js-yaml@3.13.1
3.15.2

Open the chart page →

11,695
admin-api-svcmojaloop12.0.02 of 4See more

admin-api-svc mojaloop 12.0.0

2 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/central-ledger:v13.14.01abc8a7aa71c
js-yaml@4.1.0
4.3.2
mojaloop/event-sidecar:v11.0.189b8ab71b74b
js-yaml@3.13.1
3.15.2

Open the chart page →

12,108
bofmojaloop5.1.61 of 1See more

bof mojaloop 5.1.6

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
js-yaml@4.1.0
4.3.2

Open the chart page →

2,457
finance-portalmojaloop5.1.45 of 11See more

finance-portal mojaloop 5.1.4

5 of the 11 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
js-yaml@4.1.0
4.3.2
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
js-yaml@4.1.0
4.3.2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
js-yaml@4.1.0
4.3.2
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
js-yaml@4.1.0
4.3.2
mojaloop/role-assignment-service:v2.1.0def4bf273721
js-yaml@4.1.0
4.3.2

Open the chart page →

14,809
fspiop-transfer-api-svcmojaloop12.0.12 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

2 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/event-sidecar:v11.0.189b8ab71b74b
js-yaml@3.13.1
3.15.2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
js-yaml@4.1.0
4.3.2

Open the chart page →

11,479
mojaloopmojaloop14.0.04 of 6See more

mojaloop mojaloop 14.0.0

4 of the 6 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
js-yaml@4.1.0
4.3.2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
js-yaml@4.1.0
4.3.2
mojaloop/event-sidecar:v11.0.189b8ab71b74b
js-yaml@3.13.1
3.15.2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
js-yaml@4.1.0
4.3.2

Open the chart page →

19,226
reporting-events-processor-svcmojaloop3.5.31 of 1See more

reporting-events-processor-svc mojaloop 3.5.3

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
js-yaml@4.1.0
4.3.2

Open the chart page →

2,631
reporting-hub-bop-api-svcmojaloop4.1.31 of 1See more

reporting-hub-bop-api-svc mojaloop 4.1.3

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
js-yaml@4.1.0
4.3.2

Open the chart page →

1,661
reporting-hub-bop-experience-api-svcmojaloop1.0.31 of 1See more

reporting-hub-bop-experience-api-svc mojaloop 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
js-yaml@4.1.0
4.3.2

Open the chart page →

2,318
reporting-legacy-apimojaloop2.2.01 of 1See more

reporting-legacy-api mojaloop 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/reporting:v12.1.0d480a62103d6
js-yaml@4.1.0
4.3.2

Open the chart page →

1,948
role-assignment-servicemojaloop3.1.01 of 1See more

role-assignment-service mojaloop 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/role-assignment-service:v2.1.0def4bf273721
js-yaml@4.1.0
4.3.2

Open the chart page →

2,316
security-role-perm-operator-svcmojaloop3.0.01 of 1See more

security-role-perm-operator-svc mojaloop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mojaloop/security-role-perm-operator-svc:v3.0.212af60892c75
js-yaml@4.1.0
4.3.2

Open the chart page →

2,457
mongo-compassmongo-compass-web-helm1.1.01 of 1See more

mongo-compass mongo-compass-web-helm 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.054f2112602ee
js-yaml@4.2.0
4.3.2

Open the chart page →

2,396
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.02 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
js-yaml@3.13.1
3.15.2
library/mongo-express:latest1b23d7976f02
js-yaml@3.14.1
3.15.2

Open the chart page →

5,179
sample-appmongodb-helm-charts0.1.01 of 2See more

sample-app mongodb-helm-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
js-yaml@3.14.0
3.15.2

Open the chart page →

6,438
monocularmonocular1.4.151 of 5See more

monocular monocular 1.4.15

1 of the 5 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
quay.io/helmpack/monocular-ui:v1.10.086b71e90319f
js-yaml@3.9.1
3.15.2

Open the chart page →

7,048
api-proxymoreillonVerified publisher0.1.41 of 1See more

api-proxy moreillon 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moreillon/api-proxy:2373c1953739ef6956b5
js-yaml@3.14.1
3.15.2

Open the chart page →

1,712
face-recognitionmoreillonVerified publisher0.2.41 of 3See more

face-recognition moreillon 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moreillon/face-recognition-fastapi-front:latestc1072f4ab6aa
js-yaml@3.14.1
3.15.2

Open the chart page →

8,556
group-managermoreillonVerified publisher0.4.41 of 3See more

group-manager moreillon 0.4.4

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moreillon/group-manager:v4.9.0d5a0ec8394c0
js-yaml@3.14.1
3.15.2

Open the chart page →

9,835
user-manager-mongodbmoreillonVerified publisher0.6.21 of 4See more

user-manager-mongodb moreillon 0.6.2

1 of the 4 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
js-yaml@3.14.1
3.15.2

Open the chart page →

25,704
user-manager-neo4jmoreillonVerified publisher0.9.72 of 6See more

user-manager-neo4j moreillon 0.9.7

2 of the 6 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moreillon/group-manager:v4.9.0d5a0ec8394c0
js-yaml@3.14.1
3.15.2
moreillon/user-manager:v5.0.2e1c9bfab5c16
js-yaml@3.14.1
3.15.2

Open the chart page →

30,363
sentence-collectormozilla0.1.21 of 2See more

sentence-collector mozilla 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
mozilla/sentencecollector:2.0.91da6ff5c4895
js-yaml@3.13.1
3.15.2

Open the chart page →

6,684
tianjimsgbyte0.1.171 of 2See more

tianji msgbyte 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
moonrailgun/tianji:1.11.2b528c8f8fcc4
js-yaml@4.1.0
4.3.2

Open the chart page →

4,560
ghostmt1905028.25.11 of 3See more

ghost mt190502 8.25.1

1 of the 3 container images this version deploys carry CVE-2026-84375.

Container imageDigestPackageFixed in
library/ghost:6.25.12654b1e90413
js-yaml@4.1.0
4.3.2

Open the chart page →

4,960

Container images carrying it

492 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
rajnandan1/kener:3.2.1930407afca731
js-yaml@4.1.0
4.3.2
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
js-yaml@4.1.0
4.3.2
2
requarks/wiki:2:latest68f0d1848261
js-yaml@3.14.0
3.15.2
2
siscc/dotstatsuite-sdmx-faceted-search:master12c5048f7402
js-yaml@3.14.2
3.15.2
2
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
js-yaml@3.14.1
3.15.2
2
statsd/statsd:v0.8.6dab129e74c25
js-yaml@3.13.1
3.15.2
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
js-yaml@3.14.0
3.15.2
2
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
js-yaml@3.14.1
3.15.2
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
js-yaml@4.3.0
4.3.2
2
ghcr.io/quenchworks/images/coolify-realtimef128e512c9c0
js-yaml@4.3.1
4.3.2
2
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
js-yaml@4.1.0
4.3.2
2
adeptiainc/adeptia-automate-mcp-server:1.0.0283001e83739
js-yaml@4.1.1
4.3.2
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
js-yaml@4.1.0
4.3.2
1
alazidis/stornx:1.1.1602d4f7f090c
js-yaml@4.1.0
4.3.2
1
amazon/opendistro-for-elasticsearch-kibana:1.4.05126e2e79a1f
js-yaml@3.13.1
3.15.2
1
amundsendev/amundsen-frontend:2.1.169e7915e61c1
js-yaml@3.13.1
3.15.2
1
anamskenneth/recipe_backend:2025-06-079b7d2cd389b7
js-yaml@3.14.1
3.15.2
1
anamskenneth/recipe_frontend:2025-06-079ecf04f42cc3
js-yaml@4.1.0
4.3.2
1
apecloud/aperag-frontend:v0.0.0-nightlyb3ae37840ace
js-yaml@4.1.1
4.3.2
1
arfath29/3-tier-app-frontend:latest384b3e377f47
js-yaml@3.14.1
3.15.2
1
assistiot/cybersecurity-monitoring_id-kbn:latest2297b4350211
js-yaml@3.14.0
3.15.2
1
assistiot/cybersecurity-monitoring_ir-kbn:latest0570b27bb7c2
js-yaml@3.14.0
3.15.2
1
assistiot/fl_orchestrator:api-latest7473d77448e1
js-yaml@3.14.1
3.15.2
1
assistiot/open_api_frontend:1.0.1f11d82defc70
js-yaml@4.1.0
4.3.2
1
assistiot/smart-orchestrator_cluster:latest4f41e1defe99
js-yaml@4.1.0
4.3.2
1
assistiot/smart-orchestrator_enabler:latest89f37e88c871
js-yaml@4.1.0
4.3.2
1
assistiot/smart-orchestrator_repository:latesta8b8dbed04a4
js-yaml@4.1.0
4.3.2
1
automatischio/automatisch:0.15.03bace7a12d5f
js-yaml@4.1.0
4.3.2
1
baserow/baserow:1.30.1df0c42eb67e8
js-yaml@3.14.1
3.15.2
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
js-yaml@3.14.1
3.15.2
1
belirta/beli-docker:v1.0.0f65ad0e23b4d
js-yaml@4.1.0
4.3.2
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
js-yaml@3.14.1
3.15.2
1
bluerange/bluerange-mosquitto:25f1bfbba84832
js-yaml@3.14.1
3.15.2
1
bnjbvr/kresus:0.22.137e216b182c8
js-yaml@4.1.0
4.3.2
1
bnwokoye/nodejswebapp:latest74de7dc7ebfb
js-yaml@4.1.0
4.3.2
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
js-yaml@3.13.1
3.15.2
1
budibase/apps:3.41.344fe6feab985
js-yaml@4.3.0
4.3.2
1
budibase/worker:3.41.3de5e2e560ce8
js-yaml@4.2.0
4.3.2
1
carbonetes/carbonetes-analyzer:1.0.31b9b93c9a37f
js-yaml@3.14.1
3.15.2
1
catalysm/csmm:latestf003b35f54d9
js-yaml@3.14.1
3.15.2
1
ccjacobs14/amazon:59a9b14a6f09e
js-yaml@3.14.1
3.15.2
1
chainsafe/lodestar:latest5593f6e97912
js-yaml@4.3.1
4.3.2
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
js-yaml@4.1.0
4.3.2
1
chatwoot/chatwoot:v4.15.167ebc751c171
js-yaml@3.14.1
3.15.2
1
chibisafe/chibisafe:latest836467a50792
js-yaml@4.1.0
4.3.2
1
chibisafe/chibisafe-server:latest3da4fcbc1a18
js-yaml@4.1.0
4.3.2
1
chocobozzz/peertube:v8.1.5052712130691
js-yaml@4.1.1
4.3.2
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
js-yaml@4.1.0
4.3.2
1
codercom/code-server:4.11.0-debian1e2cc688008e
js-yaml@4.1.0
4.3.2
1
codercom/code-server:3.10.247605610ad8d
js-yaml@4.1.0
4.3.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.