StackRadar

CVE-2026-97058

Medium

Advisory

Published 24 Sept 2026In the index since 25 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
577
of 18,035 indexed, latest versions
Container images
597
deployed by those charts
Fix available
None
affected packages

sprintf-js vulnerable to denial of service through unbounded precision specifiers

Carried by container images the latest versions of 577 of 18,035 indexed charts deploy, on 597 images.

Affected packageAffected versionsFixed inImages
sprintf-jsnpm1.0.3, 1.1.1, 1.1.2, 1.1.3no fix listed597
node-sprintf-jsdeb1.1.2+ds1+~1.1.2-1no fix listed2
OSV records
GHSA-hp3w-g68c-fv3cUBUNTU-CVE-2026-97058

Charts affected

577 by stars
ChartLatestAffected imagesRadar Score
joplin-serverschoenwald1.0.31 of 1See more

joplin-server schoenwald 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
joplin/server:3.7.23f7b852959aa
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,964
uptime-kumaschoenwald1.0.101 of 1See more

uptime-kuma schoenwald 1.0.10

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
sprintf-js@1.1.3
no fix listed

Open the chart page →

34,025
secret-managersecret-managerVerified publisher1.0.01 of 4See more

secret-manager secret-manager 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
leonardomulticloud/svc-vault-frontend:v1.0.0e42a341e0299
sprintf-js@1.0.3
no fix listed

Open the chart page →

7,177
seerr-chartseerr-chartVerified publisher3.10.01 of 1See more

seerr-chart seerr-chart 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/seerr-team/seerr:v3.5.027602401178d
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,243
dashysergiotocaliniVerified publisher1.0.01 of 1See more

dashy sergiotocalini 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,377
shopsyncshopsyncVerified publisher1.0.01 of 1See more

shopsync shopsync 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
shyamkrishna21/shopsync:latest3998b83def53
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,554
hedgedocsi-gitops0.12.31 of 2See more

hedgedoc si-gitops 0.12.3

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.12.089bd85d7817f
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,645
parkingsikalabs0.1.01 of 1See more

parking sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ondrejsika/parking:latestb1fd497416c8
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,428
simple-node-expresssimple-node-express1.0.01 of 1See more

simple-node-express simple-node-express 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
devravinder/node-express-app:1.0.05325a96967b5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,123
infisicalsinextraVerified publisher0.6.11 of 1See more

infisical sinextra 0.6.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.166b911e3938ac
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,361
logsmo-helm-chart6.0.01 of 6See more

log smo-helm-chart 6.0.0

1 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
taskrabbit/elasticsearch-dump:latestc967fe68b9c7
sprintf-js@1.1.2
no fix listed

Open the chart page →

88,337
pombasmo-helm-chart6.0.01 of 17See more

pomba smo-helm-chart 6.0.0

1 of the 17 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
taskrabbit/elasticsearch-dump:latestc967fe68b9c7
sprintf-js@1.1.2
no fix listed

Open the chart page →

88,337
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
helga09/shoes_ukr:v1.1.17999bc8b77c0
sprintf-js@1.0.3
no fix listed

Open the chart page →

9,977
speedtest-trackersoblivionscall3.0.41 of 1See more

speedtest-tracker soblivionscall 3.0.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
henrywhitaker3/speedtest-tracker:latest47159a940229
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,632
sorry-cypresssoftonic1.20.01 of 4See more

sorry-cypress softonic 1.20.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
agoldis/sorry-cypress-director:2.5.1110228ecd353b
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,536
k8soketisoketi1.0.11 of 1See more

k8soketi soketi 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/soketi/k8soketi:0.1-18-debian4cd9ea9434c4
sprintf-js@1.1.2
no fix listed

Open the chart page →

2,560
pwssoketi0.2.41 of 1See more

pws soketi 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,360
speckle-preview-service-branch-testing6speckleVerified publisher2.23.14-branch.testing6.334655-b4e04ee1 of 1See more

speckle-preview-service-branch-testing6 speckle 2.23.14-branch.testing6.334655-b4e04ee

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,554
speckle-server-branch-hotfix-2.19.1speckleVerified publisher2.19.2-branch.hotfix-2.19.1.124125-665e7e12 of 5See more

speckle-server-branch-hotfix-2.19.1 speckle 2.19.2-branch.hotfix-2.19.1.124125-665e7e1

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.19.2-branch.hotfix-2.19.1.124125-665e7e14b6a0750d5aa
sprintf-js@1.1.3
no fix listed

Open the chart page →

18,109
speckle-server-branch-hotfix-2.20.2speckleVerified publisher2.20.3-branch.hotfix-2.20.2.149555-37ea0cb2 of 5See more

speckle-server-branch-hotfix-2.20.2 speckle 2.20.3-branch.hotfix-2.20.2.149555-37ea0cb

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb52f8eabf5cea
sprintf-js@1.1.3
no fix listed

Open the chart page →

18,193
speckle-server-branch-testing1speckleVerified publisher2.20.6-branch.testing1.154030-9b091142 of 5See more

speckle-server-branch-testing1 speckle 2.20.6-branch.testing1.154030-9b09114

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
sprintf-js@1.1.3
no fix listed

Open the chart page →

18,193
speckle-server-branch-testing2speckleVerified publisher2.18.11-branch.testing2.88634-335d4692 of 5See more

speckle-server-branch-testing2 speckle 2.18.11-branch.testing2.88634-335d469

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d4694bd113093583
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
sprintf-js@1.1.3
no fix listed

Open the chart page →

15,833
speckle-server-branch-testing3speckleVerified publisher2.18.12-branch.testing3.88744-f55b3412 of 5See more

speckle-server-branch-testing3 speckle 2.18.12-branch.testing3.88744-f55b341

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.18.12-branch.testing3.88744-f55b3414bd113093583
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
sprintf-js@1.1.3
no fix listed

Open the chart page →

15,833
speckle-server-branch-testing4speckleVerified publisher2.20.2-branch.testing4.134160-9fad4b22 of 5See more

speckle-server-branch-testing4 speckle 2.20.2-branch.testing4.134160-9fad4b2

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
sprintf-js@1.1.3
no fix listed

Open the chart page →

17,762
speckle-server-branch-testing5speckleVerified publisher2.21.3-branch.testing5.219631-2153bef2 of 5See more

speckle-server-branch-testing5 speckle 2.21.3-branch.testing5.219631-2153bef

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.21.3-branch.testing5.219631-2153bef8fd157733393
sprintf-js@1.1.3
no fix listed

Open the chart page →

17,437
speckle-server-branch-testing6speckleVerified publisher2.25.10-branch.testing6.645-b125c1e2 of 4See more

speckle-server-branch-testing6 speckle 2.25.10-branch.testing6.645-b125c1e

2 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.25.10-branch.testing6.645-b125c1e75cdf256067b
sprintf-js@1.1.3
no fix listed

Open the chart page →

12,574
retail-store-sample-checkout-chartstacksimplifyVerified publisher1.0.01 of 1See more

retail-store-sample-checkout-chart stacksimplify 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-checkout:1.3.0687aa68dd490
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,589
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
sprintf-js@1.0.3
no fix listed

Open the chart page →

12,637
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
sprintf-js@1.0.3
no fix listed

Open the chart page →

12,637
lodestar-validatorstakewise1.2.01 of 1See more

lodestar-validator stakewise 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
chainsafe/lodestar:v1.27.07b9fe4aa8073
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,942
fdi-dotstatsuite-dlmstatcan0.3.11 of 1See more

fdi-dotstatsuite-dlm statcan 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,151
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
siscc/dotstatsuite-sdmx-faceted-search:master12c5048f7402
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,994
fdi-dotstatsuite-sfs-solr-statefulstatcan1.0.21 of 2See more

fdi-dotstatsuite-sfs-solr-stateful statcan 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
siscc/dotstatsuite-sdmx-faceted-search:master12c5048f7402
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,319
strapistrapi-xmv0.1.21 of 1See more

strapi strapi-xmv 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/xmv-solutions-gmbh/strapi:latest978cda40de67
sprintf-js@1.0.3
no fix listed

Open the chart page →

923
slack-emoji-makersuminhong0.1.01 of 1See more

slack-emoji-maker suminhong 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
honglab/slack-emoji-maker:v0.0.1ca075a926fe1
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,451
uptime-kumasupporttools2.6.01 of 3See more

uptime-kuma supporttools 2.6.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
supporttools/uptime-kuma:v2.6f8a49ed65809
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,249
dashkioskt3n2.0.01 of 1See more

dashkiosk t3n 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/t3n/dashkiosk:v2.7.8c973e166a5dc
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,913
stateful-data-generatortalhajuikar-helm-charts0.1.21 of 2See more

stateful-data-generator talhajuikar-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/talhajuikar/stateful-data-generator:v1.1.1dfd7ea7303a2
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,529
trudesktechpreta1.0.01 of 3See more

trudesk techpreta 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
polonel/trudesk:1.2.60cf6513f6fe3
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,361
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
sprintf-js@1.1.3
no fix listed

Open the chart page →

12,557
chatqnatest-opea1.0.01 of 11See more

chatqna test-opea 1.0.0

1 of the 11 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
redis/redis-stack:7.2.0-v91c5f43fddcdd
sprintf-js@1.1.3
no fix listed

Open the chart page →

42,605
redis-vector-dbtest-opea1.0.01 of 1See more

redis-vector-db test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
redis/redis-stack:7.2.0-v91c5f43fddcdd
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,281
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
sprintf-js@1.0.3
no fix listed
samajh/alprfrontend:latest05ef4fddbb75
sprintf-js@1.0.3
no fix listed

Open the chart page →

24,015
node-redth0ths-helm-charts0.2.11 of 2See more

node-red th0ths-helm-charts 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
th0th/node-red:4.0.3-debiand06fa39f7406
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,903
thanhvt27-lab-k8sthanh-vtVerified publisher0.1.41 of 5See more

thanhvt27-lab-k8s thanh-vt 0.1.4

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
redis/redisinsight:latestb5e19ee240ab
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,939
csmmth-chartsVerified publisher0.1.01 of 3See more

csmm th-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
catalysm/csmm:lateste8e3d06f1d70
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,793
joplintobiassackmann0.1.71 of 2See more

joplin tobiassackmann 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
joplin/server:latest3f7b852959aa
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,295
saleor-appstrieb-work0.6.03 of 5See more

saleor-apps trieb-work 0.6.0

3 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
sprintf-js@1.1.3
no fix listed
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
sprintf-js@1.1.3
no fix listed
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
sprintf-js@1.1.3
no fix listed

Open the chart page →

9,037
kubernetes-external-secretstrozz6.3.01 of 1See more

kubernetes-external-secrets trozz 6.3.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,959
learning-fluentdtungntt0.1.01 of 4See more

learning-fluentd tungntt 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
library/kibana:7.9.1b1bbcaa57738
sprintf-js@1.0.3
no fix listed

Open the chart page →

8,494

Container images carrying it

597 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bryopsida/openmct:main38b6a50a62b2
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bryopsida/patchwork:mainc01e018bced4
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
sprintf-js@1.1.3
no fix listed
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
sprintf-js@1.1.3
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
sprintf-js@1.1.3
no fix listed
1
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
sprintf-js@1.1.3
no fix listed
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
sprintf-js@1.0.3
no fix listed
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
sprintf-js@1.0.3
no fix listed
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
sprintf-js@1.0.3
no fix listed
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
sprintf-js@1.0.3
no fix listed
1
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
sprintf-js@1.1.3
no fix listed
1
ghcr.io/danny-avila/librechat:v0.7.78c68abbe1cff
sprintf-js@1.1.3
no fix listed
1
ghcr.io/data-fair/data-fair:3cc9498b64b5b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/data-fair/metrics:0a8d40779eeae
sprintf-js@1.0.3
no fix listed
1
ghcr.io/data-fair/notify:3c739b74dabb0
sprintf-js@1.0.3
no fix listed
1
ghcr.io/data-fair/portals:18b621866ceb2
sprintf-js@1.0.3
no fix listed
1
ghcr.io/data-fair/processings:15a9216989707
sprintf-js@1.0.3
no fix listed
1
ghcr.io/data-fair/simple-directory:438a4f32fad82
sprintf-js@1.0.3
no fix listed
1
ghcr.io/external-secrets/kubernetes-external-secrets:6.3.0eab9bd0b6986
sprintf-js@1.0.3
no fix listed
1
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
sprintf-js@1.0.3
no fix listed
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
sprintf-js@1.1.3
no fix listed
1
ghcr.io/flanksource/facet:0.1.73a0323f4283e5
sprintf-js@1.0.3
no fix listed
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
sprintf-js@1.1.3
no fix listed
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
sprintf-js@1.1.3
no fix listed
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
sprintf-js@1.1.3
no fix listed
1
ghcr.io/gethomepage/homepage:v1.11.0b129cb0f674b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/glassflow/glassflow-etl-fe:v3.2.05eaad43bd6c5
sprintf-js@1.1.3
no fix listed
1
ghcr.io/hiteshnayak305/cors-proxy:1.2.0e6ff0a131556
sprintf-js@1.1.3
no fix listed
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
sprintf-js@1.1.3
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
sprintf-js@1.1.3
no fix listed
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
sprintf-js@1.1.3
no fix listed
1
ghcr.io/jeboehm/fetchmailmgr:0.3.2126c4691b28a4
sprintf-js@1.1.3
no fix listed
1
ghcr.io/jens-maus/raspberrymatic:3.83.6.202508244b22b4f407c4
sprintf-js@1.1.3
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
sprintf-js@1.0.3
no fix listed
1
ghcr.io/kadajett/podscope:0.2.3eeedf17112d7
sprintf-js@1.1.3
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
sprintf-js@1.1.3
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
sprintf-js@1.1.3
no fix listed
1
ghcr.io/krateoplatformops/deployment-service:1.2.59da9f93f2f731
sprintf-js@1.1.3
no fix listed
1
ghcr.io/krateoplatformops/terminal-client:0.1.36c7c965e739c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/krateoplatformops/terminal-server:0.1.3f5fd8ba6fea3
sprintf-js@1.1.3
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
sprintf-js@1.1.3
no fix listed
1
ghcr.io/leoquote/mergeable:latest451706815103
sprintf-js@1.0.3
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.