StackRadar

CVE-2026-8643

High

Advisory

Published 1 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,282
of 17,787 indexed, latest versions
Container images
1,231
deployed by those charts
Fix available
1 of 2
affected packages

pip: Path traversal in console_scripts/gui_scripts entry point names allows installing scripts outside of target directory

Carried by container images the latest versions of 1,282 of 17,787 indexed charts deploy, on 1,231 images.

Affected packageAffected versionsFixed inImages
pippypi1.5.4, 8.1.1, 8.1.2, 9.0.0+67 more26.1.21,224
python-pipdeb1.5.4-1ubuntu4, 8.1.1-2ubuntu0.4, 9.0.1-2.3~ubuntu1, 9.0.1-2.3~ubuntu1.18.04.1+25 moreno fix listed141
OSV records
GHSA-wf93-45jw-7689UBUNTU-CVE-2026-8643DEBIAN-CVE-2026-8643
Also known as
PYSEC-2026-196

Charts affected

1,282 by stars
ChartLatestAffected imagesRadar Score
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
pip@23.3.1
python-pip@22.0.2+dfsg-1ubuntu0.4
26.1.2
no fix listed

Open the chart page →

18,331
resource-provisioningassist-iot-resource-provisioning1.0.04 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

4 of the 7 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
pip@23.0.1
26.1.2
assistiot/resource-provisioning_im:1.0.0a942dc14030a
pip@23.0.1
26.1.2
assistiot/resource-provisioning_prc:1.0.08b5d118bdf0e
pip@20.3.4
26.1.2
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1.2

Open the chart page →

8,042
smartorchestratorassist-iot-smart-orchestrator4.0.04 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

4 of the 14 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
pip@23.0.1
26.1.2
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
pip@23.0.1
26.1.2
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1.2

Open the chart page →

42,460
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
pip@23.0.1
26.1.2

Open the chart page →

1,165
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
pip@23.0.1
python-pip@20.0.2-5ubuntu1.8
26.1.2
no fix listed

Open the chart page →

13,986
phonebook-chartasumankamberoglu0.1.53 of 3See more

phonebook-chart asumankamberoglu 0.1.5

3 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:5.74bc6bc963e6d
pip@23.0.1
26.1.2
paulkellerman/resultserver-app:1.0381eeccb0618
pip@22.3
26.1.2
paulkellerman/webserver-app:latest5a37b74f61b9
pip@22.3
26.1.2

Open the chart page →

3,176
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
pip@23.3.2
26.1.2

Open the chart page →

8,555
shynetatrox0.1.11 of 1See more

shynet atrox 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
milesmcc/shynet:v0.12.0e821e31140f7
pip@21.2.4
26.1.2

Open the chart page →

5,507
botkubeaveshaVerified publisher1.0.01 of 2See more

botkube avesha 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
pip@22.2.2
26.1.2

Open the chart page →

5,074
aws-ecr-credentialaws-ecr-credentialVerified publisher1.5.21 of 1See more

aws-ecr-credential aws-ecr-credential 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
architectminds/aws-kubectl:1.19735e59a1085
pip@19.2.1
26.1.2

Open the chart page →

1,437
ecr-exporteraws-exportersVerified publisher0.2.41 of 1See more

ecr-exporter aws-exporters 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
pip@20.3.4
26.1.2

Open the chart page →

1,622
inspector-exporteraws-exportersVerified publisher0.0.21 of 1See more

inspector-exporter aws-exporters 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
pip@20.3.4
26.1.2

Open the chart page →

1,622
aws-secrets-synchronizeraws-secrets-synchronizer0.2.11 of 1See more

aws-secrets-synchronizer aws-secrets-synchronizer 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
pip@23.2.1
26.1.2

Open the chart page →

955
axosyslog-collectoraxosyslogVerified publisher0.8.11 of 1See more

axosyslog-collector axosyslog 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
pip@23.3.1
26.1.2

Open the chart page →

1,515
azure-advanced-backupazure-advanced-backup0.4.11 of 1See more

azure-advanced-backup azure-advanced-backup 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
pip@22.0.4
26.1.2

Open the chart page →

4,568
azure-app-exporterazure-app-exporterVerified publisher0.4.21 of 2See more

azure-app-exporter azure-app-exporter 0.4.2

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
pip@21.2.4
26.1.2

Open the chart page →

1,790
ambassadorazureorkestra6.7.91 of 2See more

ambassador azureorkestra 6.7.9

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
datawire/aes:1.13.62beb65062c8b
pip@20.2.4
26.1.2

Open the chart page →

5,521
aks-helloworldazure-sample0.1.11 of 1See more

aks-helloworld azure-sample 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/aks-helloworld:v1fb47732ef36b
pip@9.0.1
26.1.2

Open the chart page →

4,270
azure-voteazure-sample0.1.11 of 2See more

azure-vote azure-sample 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
26.1.2

Open the chart page →

5,238
azure-vote-osbaazure-sample0.1.01 of 1See more

azure-vote-osba azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/azure-vote-front:v384062718347c
pip@9.0.1
26.1.2

Open the chart page →

4,270
osba-container-instances-demoazure-sample0.1.01 of 1See more

osba-container-instances-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/osba-container-instances-demo:latest6527b05d5d03
pip@9.0.1
26.1.2

Open the chart page →

3,212
osba-cosmos-mongodb-demoazure-sample0.1.01 of 1See more

osba-cosmos-mongodb-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/osba-cosmos-mongodb-demo:latestf4940e84ed05
pip@9.0.1
26.1.2

Open the chart page →

2,904
osba-mysql-demoazure-sample0.1.01 of 1See more

osba-mysql-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/osba-mysql-demo:latest5859d68a6c9f
pip@9.0.2
26.1.2

Open the chart page →

2,895
osba-storage-demoazure-sample0.1.01 of 1See more

osba-storage-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/osba-storage-demo:latest29d229ab446e
pip@9.0.1
26.1.2

Open the chart page →

3,425
osba-text-analytics-demoazure-sample0.1.01 of 1See more

osba-text-analytics-demo azure-sample 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/osba-text-analytics-demo:latest969af3cb8466
pip@10.0.1
26.1.2

Open the chart page →

3,089
twitter-sentimentazure-sample0.1.03 of 3See more

twitter-sentiment azure-sample 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
neilpeterson/chart-tweet:latest64fd8dab075f
pip@9.0.1
26.1.2
neilpeterson/get-tweet:v28b645ac1a23e
pip@10.0.1
26.1.2
neilpeterson/process-tweet:latest39ce9f92e899
pip@10.0.1
26.1.2

Open the chart page →

11,833
backstage-pyactionsbackstage-pyactionsVerified publisher0.1.01 of 1See more

backstage-pyactions backstage-pyactions 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
mawad98/backstage-pyactions:demo99422c56a274
pip@24.0
26.1.2

Open the chart page →

2,750
balance-registrationbalance-registration0.1.01 of 4See more

balance-registration balance-registration 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
conduction/balance-registration-varnish:dev07c44005da9d
pip@9.0.1
26.1.2

Open the chart page →

8,408
pvc-exporterbalihb-pvc-exporterVerified publisher0.2.42 of 2See more

pvc-exporter balihb-pvc-exporter 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
balihb/block-pvc-scanner:0.2.45b95e1cf1158
pip@21.2.4
26.1.2
balihb/pod-pvc-mapping:0.2.4ee48e79f5d76
pip@21.2.4
26.1.2

Open the chart page →

2,765
bookinfobasictechno0.1.01 of 6See more

bookinfo basictechno 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.17.06668bcf42ef0
pip@20.1.1
26.1.2

Open the chart page →

20,785
mealiebdclark-helm-chartsVerified publisher0.1.151 of 1See more

mealie bdclark-helm-charts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
pip@26.0.1
26.1.2

Open the chart page →

4,042
wyoming-piperbdclark-helm-chartsVerified publisher0.1.41 of 1See more

wyoming-piper bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
rhasspy/wyoming-piper:2.5.27d39aafac409
pip@25.1.1
python-pip@25.1.1+dfsg-1
26.1.2
no fix listed

Open the chart page →

1,176
helm-samplebehnambm-helm-chart1.0.12 of 3See more

helm-sample behnambm-helm-chart 1.0.1

2 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
behnambm/docker-sample:v1bd3ad88afff9
pip@23.0.1
26.1.2
library/mysql:8b3b90af2a655
pip@25.3
26.1.2

Open the chart page →

2,738
pagesberrutig-pages1.0.01 of 3See more

pages berrutig-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
pip@20.0.2
python-pip@20.0.2-5ubuntu1.6
26.1.2
no fix listed

Open the chart page →

8,004
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
pip@21.1.2
python-pip@9.0.1-2.3~ubuntu1.18.04.5
26.1.2
no fix listed

Open the chart page →

22,916
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed

Open the chart page →

10,171
istio-bookinfobookinfo1.2.21 of 6See more

istio-bookinfo bookinfo 1.2.2

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
istio/examples-bookinfo-productpage-v1:1.15.00a5eb4795952
pip@19.1.1
26.1.2

Open the chart page →

18,998
colosseumbook-k8sinfra-v21.0.181 of 5See more

colosseum book-k8sinfra-v2 1.0.18

1 of the 5 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-rwd:log74ded2d92f07
pip@23.0.1
26.1.2

Open the chart page →

26,266
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.26.2e271016441af
pip@24.0
26.1.2

Open the chart page →

7,627
kube-prometheus-stackbook-k8sinfra-v265.5.11 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

1 of the 6 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
pip@24.2
26.1.2

Open the chart page →

6,035
puppetboardbootcVerified publisher0.1.41 of 1See more

puppetboard bootc 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
bootc/puppetboard:1.1.0f1383295e7be
pip@19.2.3
26.1.2

Open the chart page →

1,292
flaresolverrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

flaresolverr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
pip@24.0
26.1.2

Open the chart page →

27,282
pagesbrian-pages1.0.01 of 3See more

pages brian-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
pagesbrixton-mayuribhavsar23-pages1.0.01 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
pagesbrixton-pages1.0.01 of 3See more

pages brixton-pages 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
library/mysql:8.07dcddc01f13b
pip@25.3
26.1.2

Open the chart page →

20,233
couchpotatobryanalves0.3.01 of 1See more

couchpotato bryanalves 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
linuxserver/couchpotato:75e576ee-ls32c4d2766b9eb7
pip@19.3.1
26.1.2

Open the chart page →

2,018
medusabryanalves0.1.01 of 1See more

medusa bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
linuxserver/medusa:v0.3.9-ls340a5f5114128b
pip@19.2.3
26.1.2

Open the chart page →

147
sickchillbryanalves0.3.01 of 1See more

sickchill bryanalves 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
linuxserver/sickchill:v2020.08.07-1-ls40e48b479c1891
pip@19.3.1
26.1.2

Open the chart page →

2,505
sickragebryanalves0.1.01 of 1See more

sickrage bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-8643.

Container imageDigestPackageFixed in
bryanalves/sickrage:latest42f0a130001d
pip@9.0.0
26.1.2

Open the chart page →

923

Container images carrying it

1,231 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
pip@25.0.1
26.1.2
1
ghcr.io/akpw/mktxp:1.2.17bd6f22f7db0a
pip@25.3
26.1.2
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
pip@26.0
26.1.2
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
pip@23.0.1
26.1.2
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
pip@9.0.3
26.1.2
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
pip@20.3.4
26.1.2
1
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
pip@20.3.4
26.1.2
1
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
pip@23.3.1
26.1.2
1
ghcr.io/bensoer/external-secrets-reloader:v0.1.38e31b5a81853
pip@24.0
26.1.2
1
ghcr.io/bensoer/sibyl:v0.2.06dca4455fde3
pip@24.0
26.1.2
1
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
pip@25.2
26.1.2
1
ghcr.io/b-it-projects-gmbh/nvme_exporter:lateste70307b193c6
pip@23.0.1
26.1.2
1
ghcr.io/blakeblackshear/frigate:0.14.122e3d0b486df
pip@24.2
26.1.2
1
ghcr.io/blakeblackshear/frigate:0.13.07a5244e4c8dc
pip@20.3.4
26.1.2
1
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
pip@20.3.4
26.1.2
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
pip@25.0
26.1.2
1
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
ghcr.io/caas-team/py-kube-downscaler:26.4.0af05a098b0d2
pip@25.0.1
26.1.2
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
pip@24.3.1
26.1.2
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
pip@24.3.1
26.1.2
1
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
pip@25.0.1
26.1.2
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
pip@23.0.1
python-pip@23.0.1+dfsg-1
26.1.2
no fix listed
1
ghcr.io/cleanuparr/cleanuparr:2.10.5c7cd53ad559a
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.3
26.1.2
no fix listed
1
ghcr.io/cloudnative-pg/postgresql:18899d3ed526b6
pip@20.3.4
26.1.2
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
pip@20.3.4
26.1.2
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
pip@24.3.1
26.1.2
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
pip@23.0.1
26.1.2
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
pip@24.2
26.1.2
1
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
pip@24.0
26.1.2
1
ghcr.io/cunningpike/fediblockhole:0.4.22abc5f0350dc
pip@22.3.1
26.1.2
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
pip@24.3.1
26.1.2
1
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
pip@25.0.1
26.1.2
1
ghcr.io/dask/dask:2024.1.0080150de7d86
pip@23.2.1
26.1.2
1
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
pip@23.2.1
26.1.2
1
ghcr.io/dask/dask-gateway-server:2026.3.0afa5a729114e
pip@25.2
26.1.2
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
pip@25.0.1
26.1.2
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
pip@23.3.2
26.1.2
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
pip@25.1.1
26.1.2
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
pip@23.0.1
26.1.2
1
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
pip@24.0
26.1.2
1
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
pip@24.0
26.1.2
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
pip@21.2.4
26.1.2
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
pip@24.0
python-pip@24.0+dfsg-1ubuntu1.1
26.1.2
no fix listed
1
ghcr.io/dmunozv04/isponsorblocktv:v2.9.05b8cfa805cb6
pip@25.3
26.1.2
1
ghcr.io/dodevops/azure-advanced-backup:0.4.01041d4449e49
pip@22.0.4
26.1.2
1
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
pip@21.2.4
26.1.2
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
pip@23.2.1
26.1.2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.