StackRadar

CVE-2026-8643

High

Advisory

Published 1 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,282
of 17,787 indexed, latest versions
Container images
1,231
deployed by those charts
Fix available
1 of 2
affected packages

pip: Path traversal in console_scripts/gui_scripts entry point names allows installing scripts outside of target directory

Carried by container images the latest versions of 1,282 of 17,787 indexed charts deploy, on 1,231 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+67 more26.1.21,224
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+25 moreno fix listed141
OSV records
GHSA-wf93-45jw-7689UBUNTU-CVE-2026-8643DEBIAN-CVE-2026-8643
Also known as
PYSEC-2026-196

Charts affected

1,282 by stars
ChartLatestAffected imagesRadar Score
galaxycloudve6.8.61 of 3See more

galaxy cloudve 6.8.6

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
pip@25.0.1
26.1.2

Open the chart page →

5,552
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed

Open the chart page →

16,117
galaxy-stablecloudve2.0.02 of 5See more

galaxy-stable cloudve 2.0.0

2 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
pip@10.0.1
python-pip@1.5.4-1ubuntu4
26.1.2
no fix listed
galaxy/galaxy-stable:v18.018e577a626dfd
pip@1.5.4
python-pip@1.5.4-1ubuntu4
26.1.2
no fix listed

Open the chart page →

70,968
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
pip@9.0.1
python-pip@9.0.1-2.3~ubuntu1.18.04.1
26.1.2
no fix listed

Open the chart page →

14,285
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed

Open the chart page →

5,994
terminalmancloudve0.3.41 of 1See more

terminalman cloudve 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
cloudve/ttyd:latestd79c1c5881c0
pip@20.0.2
26.1.2

Open the chart page →

13,170
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
pip@24.3.1
26.1.2

Open the chart page →

7,521
monitoringcluster-deploy0.3.01 of 11See more

monitoring cluster-deploy 0.3.0

1 of the 11 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1.2

Open the chart page →

8,185
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
pip@25.0.1
26.1.2

Open the chart page →

8,806
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1.2

Open the chart page →

7,136
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1.2

Open the chart page →

6,926
clamapicnieg2.0.51 of 2See more

clamapi cnieg 2.0.5

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/mailu/clamav:1.9.5001d30483e4a8
pip@23.0.1
26.1.2

Open the chart page →

4,672
pulsarcnieg1.0.81 of 2See more

pulsar cnieg 1.0.8

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.6.14db6ff0b4045
pip@20.2.2
26.1.2

Open the chart page →

16,860
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed

Open the chart page →

13,286
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
pip@23.0.1
26.1.2

Open the chart page →

3,236
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1.2

Open the chart page →

5,370
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
conduction/cgrc-varnish:deve154d5781c8a
pip@9.0.1
26.1.2

Open the chart page →

7,572
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
conduction/conduction-ui-varnish:dev5f5add2c12e0
pip@9.0.1
26.1.2

Open the chart page →

12,906
sumoconsensys0.4.1451 of 4See more

sumo consensys 0.4.145

1 of the 4 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
pip@21.3.1
26.1.2

Open the chart page →

5,958
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
conduction/contactmoment-component-varnish:deve3546b97faea
pip@9.0.1
26.1.2

Open the chart page →

8,408
bitcoincosmicrocks2.0.31 of 2See more

bitcoin cosmicrocks 2.0.3

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
pip@25.0.1
26.1.2

Open the chart page →

926
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
pip@24.2
26.1.2

Open the chart page →

14,587
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kfserving/models-web-app:v0.6.1f322d6ffdfa3
pip@21.2.4
26.1.2

Open the chart page →

3,830
cp-helm-chartscp-helm-charts0.6.17 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

7 of the 8 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
pip@9.0.3
26.1.2
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
pip@9.0.3
26.1.2
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
pip@9.0.3
26.1.2
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
pip@9.0.3
26.1.2
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
pip@9.0.3
26.1.2
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
pip@9.0.3
26.1.2
confluentinc/cp-zookeeper:6.1.078c190f4472c
pip@9.0.3
26.1.2

Open the chart page →

58,856
couchpotatocronce0.0.11 of 1See more

couchpotato cronce 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
linuxserver/couchpotato:75e576ee-ls389cd8d5fb1ac
pip@19.0.1
26.1.2

Open the chart page →

3,871
pagescrypticcode-helmchart1.0.01 of 3See more

pages crypticcode-helmchart 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
wopiservercs3orgOfficialVerified publisher0.9.21 of 1See more

wopiserver cs3org 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
pip@23.0.1
26.1.2

Open the chart page →

2,348
csghubcsghubVerified publisher2.4.34 of 34See more

csghub csghub 2.4.3

4 of the 34 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
pip@24.3.1
26.1.2
opencsghq/agenticflow:ee-v0.6-52f03fead54db
pip@25.0.1
26.1.2
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
pip@24.2
26.1.2
opencsghq/label-studio:v2.4.0b4e849fcf94a
pip@25.1.1
26.1.2

Open the chart page →

59,131
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
opencsghq/csgship-agentic:v0.4.02cd29671a03e
pip@25.2
26.1.2
opencsghq/csgship-web:v0.4.0c36a5bac3cf0
pip@25.2
26.1.2

Open the chart page →

11,402
dataflowcsghubVerified publisher2.5.01 of 7See more

dataflow csghub 2.5.0

1 of the 7 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
pip@25.1.1
26.1.2

Open the chart page →

6,532
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
pip@23.0.1
26.1.2

Open the chart page →

13,937
cspconsolecspconsole1.3.112 of 5See more

cspconsole cspconsole 1.3.11

2 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
pip@26.0.1
26.1.2
cspconsole/report-collector:1.0.15839750248193b
pip@24.0
26.1.2

Open the chart page →

11,891
jupyterhubd4nVerified publisher3.3.72 of 7See more

jupyterhub d4n 3.3.7

2 of the 7 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
pip@24.1.2
26.1.2
aristidetm/k8s-hub:3.3.7ccb516cb8474
pip@24.0
26.1.2

Open the chart page →

16,632
daejeon_2-3daejeon2-30.1.01 of 2See more

daejeon_2-3 daejeon2-3 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
clsen2024/daejeon_2-3:latest1156cd87c8fb
pip@23.0.1
26.1.2

Open the chart page →

1,140
pagesdalston-pages1.0.01 of 3See more

pages dalston-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
pagesdaman-dell-kuber1.0.01 of 3See more

pages daman-dell-kuber 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
pip@23.3.1
26.1.2

Open the chart page →

6,178
proxmox-exporterdamounVerified publisher1.10.01 of 1See more

proxmox-exporter damoun 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
prompve/prometheus-pve-exporter:3.4.2fcf041f0c24d
pip@23.3.1
26.1.2

Open the chart page →

1,140
dapr-agentsdapr-agents-devVerified publisher0.1.52 of 31See more

dapr-agents dapr-agents-dev 0.1.5

2 of the 31 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
pip@25.2
26.1.2
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
pip@25.3
26.1.2

Open the chart page →

22,223
dask-gatewaydask2026.3.01 of 2See more

dask-gateway dask 2026.3.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-gateway-server:2026.3.0afa5a729114e
pip@25.2
26.1.2

Open the chart page →

1,994
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
pip@19.0.3
26.1.2

Open the chart page →

2,806
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
pip@25.3
26.1.2

Open the chart page →

4,914
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
pip@19.3.1
python-pip@9.0.1-2.3~ubuntu1
26.1.2
no fix listed

Open the chart page →

27,749
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
pip@20.2.3
python-pip@9.0.1-2.3~ubuntu1.18.04.2
26.1.2
no fix listed

Open the chart page →

18,884
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
pip@19.0.3
python-pip@9.0.1-2.3~ubuntu1
26.1.2
no fix listed

Open the chart page →

22,425
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
pip@19.3.1
python-pip@9.0.1-2.3~ubuntu1
26.1.2
no fix listed

Open the chart page →

24,356
pagesdavid-pages1.0.01 of 3See more

pages david-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed

Open the chart page →

10,116
pagesdebasish-pages1.0.01 of 3See more

pages debasish-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
kube-web-viewdecayofmind0.0.41 of 1See more

kube-web-view decayofmind 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
pip@20.2.3
26.1.2

Open the chart page →

2,264

Container images carrying it

1,231 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hjacobs/kube-janitor:23.7.0fbb303ed463c
pip@23.0.1
26.1.2
1
hjacobs/kube-ops-view:23.5.0a4fae38f93d7
pip@22.3.1
26.1.2
1
hjacobs/kube-resource-report:21.2.145f93491c434
pip@21.0.1
26.1.2
1
hjacobs/kube-resource-report:22.11.0c173cd02f5af
pip@22.2.2
26.1.2
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
pip@23.0.1
26.1.2
1
hjacobs/kube-web-view:20.10.0b44a9cf81a2f
pip@20.2.3
26.1.2
1
hkotel/mealie:api-v1.0.0beta-2a7e6b6abe087
pip@22.1.1
26.1.2
1
hmdmph/mongo-pod-labeler:1.0.1-alpine79e4a170f3dc
pip@19.0.3
26.1.2
1
hmdmph/redis-pod-labeler:1.0.0-alpine7f1381fe0f3b
pip@20.1.1
26.1.2
1
homeassistant/home-assistant:2023.10.3021e2afc6e57
pip@23.2.1
26.1.2
1
homeassistant/home-assistant:2026.75a531753cea9
pip@26.0.1
26.1.2
1
homeassistant/home-assistant:2023.12.48d000332b09b
pip@23.3.1
26.1.2
1
i4trust/activation-service:2.2.09f3719176893
pip@23.0.1
26.1.2
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
pip@9.0.3
26.1.2
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
pip@19.1.1
26.1.2
1
ihatemoney/ihatemoney:5.2.0457fda1feb32
pip@22.0.4
26.1.2
1
ilum/streamlit-example:1.0.0ce5dcdeb22ba
pip@25.2
26.1.2
1
improwised/erpnext-worker:v13.4.197280b55cbd4
pip@21.1.2
26.1.2
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
pip@26.0.1
26.1.2
1
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
pip@21.1.3
26.1.2
1
irakli/ms-hello-python:latest9e7a91ba9ae0
pip@22.2.2
26.1.2
1
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
pip@20.1.1
26.1.2
1
istio/examples-helloworld-v1:latest328b237e4fb1
pip@23.2.1
26.1.2
1
istio/examples-helloworld-v2:latest0a7f02b2c7c9
pip@23.2.1
26.1.2
1
jaedb/iris:latest048cfbf58d57
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
1
jakuboskera/guestbook:v0.3.04989afa06e74
pip@21.2.4
26.1.2
1
jakuboskera/todo:v0.2.3714b1adbbc2d
pip@21.2.4
26.1.2
1
jamoos/kweather:history163e2e8a6e87
pip@23.0.1
26.1.2
1
jertel/elastalert2:2.31.03cbf63f9b7dc
pip@26.1.1
26.1.2
1
jertel/elastalert2:2.2.34dcc0ef93efc
pip@21.2.4
26.1.2
1
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
pip@23.0.1
26.1.2
1
jmferrer/azure-devops-agent:latest030f68ec6998
pip@9.0.3
26.1.2
1
john19968010/fastapi-template:latest31a90f6bd69c
pip@22.3.1
26.1.2
1
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
pip@25.3
26.1.2
1
josh5/unmanic:0.2.64d49c4816260
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.4
26.1.2
no fix listed
1
juicedata/juicefs-csi-driver:v0.20.043978fc60798
pip@23.0.1
26.1.2
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
pip@23.0.1
26.1.2
1
juicedata/juicefs-csi-driver:v0.23.0d915e899e322
pip@23.0.1
26.1.2
1
julb/alertmanager-gchat-integration:1.0.5837c4038a0dd
pip@21.0.1
26.1.2
1
julb/http-reqtrace:1.1.00806409af397
pip@20.2.4
26.1.2
1
julb/kubernetes-configmap-sync:1.1.0d7d8836366ad
pip@20.2.4
26.1.2
1
jupyterhub/jupyterhub:5.4.63974ba945e65
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
jupyterhub/k8s-hub:3.0.1-0.dev.git.6287.hbfb05cd65a0ceed1300a
pip@23.1.2
26.1.2
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pip@20.3.3
python-pip@20.0.2-5ubuntu1.1
26.1.2
no fix listed
1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
pip@21.3.1
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
1
jupyterhub/k8s-singleuser-sample:3.0.1-0.dev.git.6287.hbfb05cd68e4778efec8e
pip@23.1.2
26.1.2
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
pip@20.2.4
26.1.2
1
jvstein/bitcoin-prometheus-exporter:v0.5.07cc385d038b1
pip@20.0.2
26.1.2
1
keitaro/ckan-datapusher:0.0.175bf1a45f45c1
pip@20.2.3
26.1.2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.