StackRadar

CVE-2026-8643

High

Advisory

Published 1 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,270
of 17,787 indexed, latest versions
Container images
1,220
deployed by those charts
Fix available
1 of 2
affected packages

pip: Path traversal in console_scripts/gui_scripts entry point names allows installing scripts outside of target directory

Carried by container images the latest versions of 1,270 of 17,787 indexed charts deploy, on 1,220 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+67 more26.1.21,213
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+24 moreno fix listed139
OSV records
GHSA-wf93-45jw-7689UBUNTU-CVE-2026-8643DEBIAN-CVE-2026-8643
Also known as
PYSEC-2026-196

Charts affected

1,270 by stars
ChartLatestAffected imagesRadar Score
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
pip@25.1.1
python-pip@25.1.1+dfsg-1
26.1.2
no fix listed

Open the chart page →

7,035
phonebook-chartphonebook-chart0.1.03 of 3See more

phonebook-chart phonebook-chart 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ahmetgrbzz/result_server:2.035c37ae2bafd
pip@24.0
26.1.2
ahmetgrbzz/web_server:2.0f018bafd2b0c
pip@24.0
26.1.2
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1.2

Open the chart page →

3,034
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
pip@24.3.1
26.1.2

Open the chart page →

31,844
home-assistantpree-helm-chartsVerified publisher1.80.01 of 1See more

home-assistant pree-helm-charts 1.80.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
pip@26.0.1
26.1.2

Open the chart page →

2,133
pritunl-slack-apppritunl-slack-appVerified publisher0.1.71 of 1See more

pritunl-slack-app pritunl-slack-app 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
pip@22.2.2
26.1.2

Open the chart page →

2,871
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
gpappsoft/privacyidea-docker:3.12.2af7841adad26
pip@25.3
26.1.2

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
pip@25.0.1
26.1.2

Open the chart page →

8,158
pvc-exporterpvc-exporter0.1.31 of 1See more

pvc-exporter pvc-exporter 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
dockerid31415926/pvc-exporter:v0.1.35a1dd17e0e07
pip@21.2.4
26.1.2

Open the chart page →

1,762
kube-resource-reportrlex0.10.11 of 2See more

kube-resource-report rlex 0.10.1

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
hjacobs/kube-resource-report:22.11.0c173cd02f5af
pip@22.2.2
26.1.2

Open the chart page →

1,266
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg16d7db8f1085a3
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.7
26.1.2
no fix listed

Open the chart page →

12,930
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
pip@25.0.1
26.1.2

Open the chart page →

3,929
kyoorubxkubeVerified publisher0.1.102 of 9See more

kyoo rubxkube 0.1.10

2 of the 9 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
pip@24.3.1
26.1.2
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
pip@24.3.1
26.1.2

Open the chart page →

30,234
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
pip@25.3
26.1.2

Open the chart page →

920
iopsciencemeshVerified publisher0.4.01 of 2See more

iop sciencemesh 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
cs3org/wopiserver:v9.4.202a9e78757b4
pip@23.0.1
26.1.2

Open the chart page →

4,052
viya4-home-dir-builderselerityVerified publisher1.1.01 of 2See more

viya4-home-dir-builder selerity 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/python:3.12-slim78387bc3881b
pip@25.0.1
26.1.2

Open the chart page →

852
sentry-k8ssentry-k8sVerified publisher1.4.13 of 11See more

sentry-k8s sentry-k8s 1.4.1

3 of the 11 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
pip@20.2.4
26.1.2
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
pip@24.3.1
26.1.2
ghcr.io/getsentry/snuba:26.7.210f8d164109b
pip@25.3
26.1.2

Open the chart page →

16,449
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
pip@25.1.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
pip@23.0.1
26.1.2

Open the chart page →

11,532
k8s-appliershlomibendavidOfficialVerified publisher1.0.11 of 1See more

k8s-applier shlomibendavid 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
shlomibendavid/k8s-applier:0311240529a22ffbe0f04e
pip@24.0
26.1.2

Open the chart page →

1,206
kube-resource-reportslamdev0.1.31 of 2See more

kube-resource-report slamdev 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
hjacobs/kube-resource-report:21.2.145f93491c434
pip@21.0.1
26.1.2

Open the chart page →

1,534
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
pip@24.3.1
26.1.2

Open the chart page →

2,928
smallest-self-hostsmallest-self-hostVerified publisher0.2.21 of 12See more

smallest-self-host smallest-self-host 0.2.2

1 of the 12 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
pip@24.0
26.1.2

Open the chart page →

7,685
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed

Open the chart page →

45,832
snappasssnappassVerified publisher0.4.31 of 3See more

snappass snappass 0.4.3

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
lmacka/snappass:2.1.293f5c048b7d4
pip@25.0.1
26.1.2

Open the chart page →

2,995
mysql-backupsoftonic2.2.31 of 1See more

mysql-backup softonic 2.2.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
softonic/mysql-backup:0.4.0d9487a8dd70f
pip@18.1
26.1.2

Open the chart page →

547
alertasomeblackmagic0.2.31 of 2See more

alerta someblackmagic 0.2.3

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
alerta/alerta-web:8.5.04786b9eaa606
pip@20.1.1
26.1.2

Open the chart page →

3,162
healthchecksstackhelmVerified publisher0.1.01 of 2See more

healthchecks stackhelm 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
healthchecks/healthchecks:v2.8.1e82bb0836e30
pip@23.0.1
26.1.2

Open the chart page →

2,236
deschedulerstakaterVerified publisher1.0.101 of 1See more

descheduler stakater 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
stakater/descheduler:v0.3.0a47e96ebb285
pip@9.0.1
26.1.2

Open the chart page →

170
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
pip@21.1.2
python-pip@20.0.2-5ubuntu1.5
26.1.2
no fix listed

Open the chart page →

24,930
prometheus-pve-exporterstenicVerified publisher0.1.11 of 1See more

prometheus-pve-exporter stenic 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
prompve/prometheus-pve-exporter:2.0.1ff6749eb03b0
pip@20.1.1
26.1.2

Open the chart page →

2,469
streamlit-appstreamlit-appVerified publisher0.2.01 of 1See more

streamlit-app streamlit-app 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
sruthitanneru/pi-sample:ui-lateste565ea454ffd
pip@24.3.1
26.1.2

Open the chart page →

1,696
synapsesudermanjr1.1.51 of 1See more

synapse sudermanjr 1.1.5

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.53.0cb89c0f17ba1
pip@21.2.4
26.1.2

Open the chart page →

3,332
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.24.44138bea678f0
pip@23.1.2
26.1.2

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.24.44138bea678f0
pip@23.1.2
26.1.2

Open the chart page →

9,102
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
pip@24.0
26.1.2

Open the chart page →

12,907
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
pip@24.0
26.1.2
taigaio/taiga-protected:latestfd4568a97a59
pip@26.1.1
26.1.2

Open the chart page →

9,148
upbot-operatorupbot-operator0.0.201 of 2See more

upbot-operator upbot-operator 0.0.20

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
alpine/k8s:1.28.13e5c0b053fed7
pip@24.2
26.1.2

Open the chart page →

4,460
urunnerurunnerOfficialVerified publisher0.7.01 of 1See more

urunner urunner 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/texano00/urunner:0.6.07c8be1dae3cd
pip@25.0.1
26.1.2

Open the chart page →

501
phonebook-chartusuladamsVerified publisher0.1.53 of 3See more

phonebook-chart usuladams 0.1.5

3 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1.2
paulkellerman/resultserver-app:1.0381eeccb0618
pip@22.3
26.1.2
paulkellerman/webserver-app:latest5a37b74f61b9
pip@22.3
26.1.2

Open the chart page →

3,176
verbacapverbacapVerified publisher1.0.71 of 1See more

verbacap verbacap 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/mirio/verbacap:v1.5.084928e2fc4f2
pip@23.3.1
26.1.2

Open the chart page →

2,233
sysbindingswallarmOfficialVerified publisher0.9.91 of 1See more

sysbindings wallarm 0.9.9

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
wallarm/sysbindings:v0.9.9c527865df85d
pip@22.2.1
26.1.2

Open the chart page →

657
yugabytewenerme2026.1.11 of 1See more

yugabyte wenerme 2026.1.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
yugabytedb/yugabyte:2026.1.1.0-b91de2e00278645
pip@9.0.3
26.1.2

Open the chart page →

351
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
pip@20.0.2
python-pip@20.0.2-5ubuntu1.11
26.1.2
no fix listed

Open the chart page →

7,835
pghoardwiremindVerified publisher0.8.11 of 1See more

pghoard wiremind 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
wiremind/pghoard:12-2019-11-264dea42c8166c
pip@19.3.1
26.1.2

Open the chart page →

2,952
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

7,696
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:885b9bf2e29cf
pip@25.3
26.1.2

Open the chart page →

8,217
workflows-sinkworkflows-sinkVerified publisher0.16.31 of 1See more

workflows-sink workflows-sink 0.16.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
pip@25.0.1
26.1.2

Open the chart page →

1,397
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
pip@25.0.1
26.1.2

Open the chart page →

1,697
raponchiygdrassilOfficialVerified publisher0.4.01 of 1See more

raponchi ygdrassil 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
elautoestopista/raponchi:0.3.0b6f74db9fc81
pip@24.0
26.1.2

Open the chart page →

1,315
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.2
26.1.2
no fix listed

Open the chart page →

9,783
qleverzazukoVerified publisher0.7.02 of 2See more

qlever zazuko 0.7.0

2 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
python-pip@24.0+dfsg-1ubuntu1.3
no fix listed
ghcr.io/zazukoians/qlever-ui:v0.10.034c7b540a095
pip@24.0
26.1.2

Open the chart page →

2,900

Container images carrying it

1,220 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
lsstdm/alert-stream-simulator:v1.2.1973df082d006
pip@21.2.4
26.1.2
1
lsstdm/lsst_alert_packet:tickets-DM-3274374c97a490940
pip@21.2.4
26.1.2
1
lsstsqre/exposurelog:0.8.079b00fb67a65
pip@22.0.3
26.1.2
1
lsstsqre/kafkaaggregator:masterbe1b21060854
pip@21.0.1
26.1.2
1
lsstsqre/kafkaconnect:0.9.34143c7cd705e
pip@21.3.1
26.1.2
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
1
lsstsqre/prepuller:latest19c2dfc4e4ff
pip@21.0.1
26.1.2
1
lsstsqre/sciplat-hub:latest5e0ade6bed1c
pip@21.0.1
26.1.2
1
lsstsqre/squash-api:0.5.34879415ec6ac
pip@20.3.2
26.1.2
1
lsstsqre/strimzi-registry-operator:0.4.1e139fde946d7
pip@21.2.4
26.1.2
1
lsstsqre/wfdispatcher:lateste9feb99f524d
pip@21.0.1
26.1.2
1
makeplane/backend-commercial:v3.2.0aab6a29da5fe
pip@26.0
26.1.2
1
makeplane/plane-mcp-server:v0.3.071b7252adef0
pip@24.0
26.1.2
1
makersquad/harp-proxy:0.8.1a40dd258c527
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
1
marcinkujawski/flask-app:2.0.1a455017b9d0e
pip@21.2.4
26.1.2
1
marcoimme/oidcmock:latestb6035c0721a8
pip@25.3
26.1.2
1
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
pip@24.3.1
26.1.2
1
matrixdotorg/synapse:v1.53.0cb89c0f17ba1
pip@21.2.4
26.1.2
1
matrixdotorg/synapse:v1.78.0def97fd537d8
pip@22.3.1
26.1.2
1
mawad98/backstage-pyactions:demo99422c56a274
pip@24.0
26.1.2
1
mediagis/nominatim:5.3.27923a8e67197
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
mediagis/nominatim:3.7c15e941485ef
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
1
mediagis/nominatim:4.2d0eae7b51374
pip@22.0.2
python-pip@22.0.2+dfsg-1ubuntu0.4
26.1.2
no fix listed
1
memgraph/mcp-memgraph:0.1.13ecdf7faea3f7
pip@26.1.1
26.1.2
1
mher/flower:2.051c3c3db5be3
pip@23.1.2
26.1.2
1
middlewareeng/middleware:0.3.1747d880812f1
pip@23.0.1
26.1.2
1
milesmcc/shynet:v0.13.1ba54f7797a6b
pip@22.0.4
26.1.2
1
milesmcc/shynet:v0.12.0e821e31140f7
pip@21.2.4
26.1.2
1
miltex/python-api:1.0.0dab12a7748d5
pip@20.0.2
26.1.2
1
mindsdb/mindsdb:latest163011c09299
pip@23.0.1
26.1.2
1
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
pip@9.0.3
26.1.2
1
mintproject/data-catalog:9be70359feabe03ed55bfdbf92c20a7e43ab928b67d2f2103085
pip@22.0.4
26.1.2
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
pip@25.1.1
26.1.2
1
mirrorgitlabcontainers/gitlab-sidekiq-ce:v13.2.294d1431683fa
pip@20.1.1
26.1.2
1
mirrorgitlabcontainers/gitlab-task-runner-ce:v13.2.29efd73993c34
pip@20.1.1
26.1.2
1
mirrorgitlabcontainers/gitlab-webservice-ce:v13.2.230393f990f5c
pip@20.1.1
26.1.2
1
mnaggar3396/python-app:latest371d8ed84b15
pip@22.0.4
26.1.2
1
mohameddev006/web-app:v50fbc7360ecf4
pip@22.0.4
26.1.2
1
mondata/mlflow:v2.3.0.s3.gc6f94c6caf8bf
pip@23.0.1
26.1.2
1
moonrailgun/tianji:1.11.2b528c8f8fcc4
pip@24.0
26.1.2
1
moreillon/face-recognition-fastapi:x86bacb2ddd8394
pip@22.2
26.1.2
1
mozilla/syncserver:latest016162bf39d8
pip@20.3.4
26.1.2
1
mozilla/syncstorage-rs:0.15.893752877dced
pip@20.3.4
26.1.2
1
mshanley80/httpbin2022:latest5b189a70c0fb
pip@22.3.1
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
pip@23.0.1
26.1.2
1
murtazashah46/helmfile:latest4d11726cf803
pip@23.0.1
26.1.2
1
mvitale1989/docker-taiga:20191031-4.2.141504ccda06df
pip@19.3.1
26.1.2
1
mysql/mysql-cluster:8.0.20e4ea36622cdd
pip@19.0.3
26.1.2
1
nabinchhetri/flask-app:v2.0be189fbf3411
pip@23.0.1
26.1.2
1
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
pip@22.2.2
26.1.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.