StackRadar

CVE-2026-97058

Medium

Advisory

Published 24 Sept 2026In the index since 25 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
574
of 18,026 indexed, latest versions
Container images
593
deployed by those charts
Fix available
None
affected packages

sprintf-js vulnerable to denial of service through unbounded precision specifiers

Carried by container images the latest versions of 574 of 18,026 indexed charts deploy, on 593 images.

Affected packageAffected versionsFixed inImages
sprintf-jsnpm1.0.3, 1.1.1, 1.1.2, 1.1.3no fix listed593
node-sprintf-jsdeb1.1.2+ds1+~1.1.2-1no fix listed2
OSV records
GHSA-hp3w-g68c-fv3cUBUNTU-CVE-2026-97058

Charts affected

574 by stars
ChartLatestAffected imagesRadar Score
activepiecesadnoctemVerified publisher0.6.01 of 1See more

activepieces adnoctem 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
activepieces/activepieces:0.91.058414dfc94c4
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,893
lhciadnoctemVerified publisher0.1.01 of 1See more

lhci adnoctem 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/adnoctem/lhci:1.0.119553e4b4033
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,596
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,804
outlineadnoctemVerified publisher0.1.21 of 1See more

outline adnoctem 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
outlinewiki/outline:1.10.1832051f039b4
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,993
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
sprintf-js@1.1.3
no fix listed

Open the chart page →

34,025
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,053
cross-seedalekcVerified publisher7.19.01 of 1See more

cross-seed alekc 7.19.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,502
excalidashalekcVerified publisher1.4.31 of 2See more

excalidash alekc 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
zimengxiong/excalidash-backend:0.6.529937c62fbed
sprintf-js@1.1.3
no fix listed

Open the chart page →

485
jellyseerralexmorbo-jellyseerrVerified publisher1.0.31 of 1See more

jellyseerr alexmorbo-jellyseerr 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
fallenbagel/jellyseerr:2.2.3a324fa4d81cc
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,744
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
sprintf-js@1.1.2
no fix listed

Open the chart page →

3,667
angular-chartangular-application0.1.01 of 1See more

angular-chart angular-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibarreche/cloud-front-ci:latestc8970ac1c8dc
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,446
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,208
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,932
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:api-latest7473d77448e1
sprintf-js@1.0.3
no fix listed

Open the chart page →

10,593
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
sprintf-js@1.0.3
no fix listed
pantsel/konga:latestc8172b75607d
sprintf-js@1.0.3
no fix listed

Open the chart page →

92,801
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
sprintf-js@1.1.3
no fix listed

Open the chart page →

36,223
nas-appsawesomeVerified publisher2.0.02 of 8See more

nas-apps awesome 2.0.0

2 of the 8 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
sprintf-js@1.0.3
no fix listed
wettyoss/wetty:latestc52dac712353
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,524
audiobookshelfbdclark-helm-chartsVerified publisher0.1.41 of 1See more

audiobookshelf bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,989
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,619
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,098
mx-apibicarus-labs0.1.01 of 4See more

mx-api bicarus-labs 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,435
bluerange-mosquittobluerangeOfficialVerified publisher1.1.01 of 1See more

bluerange-mosquitto bluerange 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
bluerange/bluerange-mosquitto:2690a4e5b92cc6
sprintf-js@1.0.3
no fix listed

Open the chart page →

268
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
sprintf-js@1.0.3
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
sprintf-js@1.0.3
no fix listed

Open the chart page →

30,100
overseerrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

overseerr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
linuxserver/overseerr:1.35.06108ed066d4a
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,325
registry-uibryanalves0.2.01 of 1See more

registry-ui bryanalves 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
konradkleine/docker-registry-frontend:v2181aad54ee64
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,629
rtorrent-floodbryanalves0.5.01 of 1See more

rtorrent-flood bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jesec/flood:4.7.03d1d0bec117a
sprintf-js@1.1.2
no fix listed

Open the chart page →

1,578
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
sprintf-js@1.1.3
no fix listed

Open the chart page →

79,315
openmctbryopsida0.1.11 of 1See more

openmct bryopsida 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/openmct:main38b6a50a62b2
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,489
syslog-portalbryopsida0.3.11 of 1See more

syslog-portal bryopsida 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,476
cross-seedcfi20176.13.61 of 1See more

cross-seed cfi2017 6.13.6

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,487
qbittorrentcfi20176.13.31 of 1See more

qbittorrent cfi2017 6.13.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,487
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
obolnetwork/charon-dkg-sidecar:maine263be0a7440
sprintf-js@1.0.3
no fix listed

Open the chart page →

8,815
chatgpt-next-webchatgpt-next-web0.1.11 of 1See more

chatgpt-next-web chatgpt-next-web 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
yidadaa/chatgpt-next-web:latesteaaa469ddeeb
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,676
countlychristianhuthVerified publisher5.3.32 of 3See more

countly christianhuth 5.3.3

2 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
countly/api:25.05.4f4cc7447c4f5
sprintf-js@1.0.3
no fix listed
countly/frontend:25.05.42acbc11499b6
sprintf-js@1.0.3
no fix listed

Open the chart page →

10,074
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,268
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
sprintf-js@1.0.3
no fix listed

Open the chart page →

31,543
ethereumcloudnativeapp1.0.01 of 3See more

ethereum cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
sprintf-js@1.1.1
no fix listed

Open the chart page →

86,633
kube-slackcloudnativeapp1.0.01 of 1See more

kube-slack cloudnativeapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
willwill/kube-slack:v4.1.1d443017aae98
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,017
node-redcloudnativeapp1.2.21 of 1See more

node-red cloudnativeapp 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
nodered/node-red-docker:0.19.6-v8070643219ea2
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,253
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
sprintf-js@1.0.3
no fix listed

Open the chart page →

26,458
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad3 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

3 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
sprintf-js@1.1.3
no fix listed
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
sprintf-js@1.1.3
no fix listed
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
sprintf-js@1.1.3
no fix listed

Open the chart page →

22,248
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
shyamkrishna21/cloudvault:latestaf2785f5bb71
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,577
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,937
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
node-sprintf-js@1.1.2+ds1+~1.1.2-1
sprintf-js@1.1.2
no fix listed
no fix listed

Open the chart page →

14,892
coderstudio-strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

coderstudio-strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
docker-composecoderstudio-strapi-devVerified publisher0.0.11 of 3See more

docker-compose coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
conduction/conduction-ui-app:devd591f5e6f2a9
sprintf-js@1.0.3
no fix listed

Open the chart page →

15,492
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
coldatom/containers-security-front:latest7c2fbbb41bcf
sprintf-js@1.0.3
no fix listed

Open the chart page →

11,917
conversor-temperaturaconversor-temperaturaVerified publisher0.1.01 of 1See more

conversor-temperatura conversor-temperatura 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
felipecs8/conversor-temperatura:b416c3cf83a20d7c006b46a10673b0e571e5398918b68a5fcab4
sprintf-js@1.0.3
no fix listed

Open the chart page →

22

Container images carrying it

593 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/linuxserver/pixapop:v1.2-ls15605ebc091fa1
sprintf-js@1.1.2
no fix listed
1
ghcr.io/linuxserver/projectsend:version-r129540b883bef0cf
sprintf-js@1.1.2
no fix listed
1
ghcr.io/linuxserver/raneto:version-0.16.6ef768f3df5d0
sprintf-js@1.1.2
no fix listed
1
ghcr.io/linuxserver/wikijs:version-2.5.20158d377933678
sprintf-js@1.0.3
no fix listed
1
ghcr.io/logtide-dev/logtide-backend:1.0.265463e02f887
sprintf-js@1.1.3
no fix listed
1
ghcr.io/logtide-dev/logtide-frontend:1.0.22a7da1451f86
sprintf-js@1.1.3
no fix listed
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
sprintf-js@1.1.3
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
sprintf-js@1.1.3
no fix listed
1
ghcr.io/manzil-infinity180/backend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b496c90cf82fdd
sprintf-js@1.1.3
no fix listed
1
ghcr.io/manzil-infinity180/frontend-dumpstore:226f28ca3efa6d3691044813cd09085e28d4a7b44e6394b715d9
sprintf-js@1.1.3
no fix listed
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
sprintf-js@1.0.3
no fix listed
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
sprintf-js@1.0.3
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
sprintf-js@1.0.3
no fix listed
1
ghcr.io/mend/renovate-ee-server:15.6.087b77989f48d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/nicholaswilde/cryptpad:version-4.10.0139d35a0275a
sprintf-js@1.0.3
no fix listed
1
ghcr.io/nicholaswilde/etherpad:version-1.8.1426bbd45110d5
sprintf-js@1.1.2
no fix listed
1
ghcr.io/nmshd/connector:7.5.39759ea1a9e9e
sprintf-js@1.0.3
no fix listed
1
ghcr.io/openlit/openlit:1.24.02434560e8f0e
sprintf-js@1.1.3
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-frontend8b348f00ca4c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-paymentserviceb0f13eef3abf
sprintf-js@1.1.3
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-flagduif6bdafaa9075
sprintf-js@1.1.3
no fix listed
1
ghcr.io/open-webui/mcpo:git-39b4867f06525afac6b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
sprintf-js@1.0.3
no fix listed
1
ghcr.io/platform-mesh/portal:v0.27.3966b1a9378b6
sprintf-js@1.0.3
no fix listed
1
ghcr.io/quenchworks/images/uptime-kuma438b24dc0ab9
sprintf-js@1.1.3
no fix listed
1
ghcr.io/radar-base/radar-self-enrolment-ui:0.1.0b9a7cd3cc099
sprintf-js@1.1.3
no fix listed
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
sprintf-js@1.1.3
no fix listed
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
sprintf-js@1.0.3
no fix listed
1
ghcr.io/rodg/nodecg-base:latest31be4bf87070
sprintf-js@1.0.3
no fix listed
1
ghcr.io/rybbit-io/rybbit-backend:lateste0d1b397e33c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/sct/overseerr:1.26.1254d16af8f71
sprintf-js@1.1.2
no fix listed
1
ghcr.io/sct/overseerr:1.35.06197516c9d7b
sprintf-js@1.1.3
no fix listed
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
sprintf-js@1.0.3
no fix listed
1
ghcr.io/seerr-team/seerr:v3.2.0c4cbd5121236
sprintf-js@1.1.3
no fix listed
1
ghcr.io/seerr-team/seerr:latest:v3.4.1f4768de5f616
sprintf-js@1.1.3
no fix listed
1
ghcr.io/solucteam/outscale-s3-explorer:v1.0.09665c3e71889
sprintf-js@1.1.3
no fix listed
1
ghcr.io/tale/headplane:0.5.50dbc52cffc19
sprintf-js@1.1.3
no fix listed
1
ghcr.io/talhajuikar/stateful-data-generator:v1.1.1dfd7ea7303a2
sprintf-js@1.1.3
no fix listed
1
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
sprintf-js@1.1.3
no fix listed
1
ghcr.io/thm-mni-ii/fbs-qcm-backend:v2.0.6f1a7afffedab
sprintf-js@1.1.3
no fix listed
1
ghcr.io/thm-mni-ii/fbs-qcm-frontend:v2.0.6fc8ab4ce0654
sprintf-js@1.1.3
no fix listed
1
ghcr.io/trieb-work/saleor-apps/saleor-app-products-feed:1.23.11d435b4ab372
sprintf-js@1.1.3
no fix listed
1
ghcr.io/trieb-work/saleor-apps/saleor-app-search:1.24.328edefb6c92d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/trieb-work/saleor-apps/saleor-app-smtp:1.4.357a06bfba327
sprintf-js@1.1.3
no fix listed
1
ghcr.io/umami-software/umami:3.0.328f263fe06f7
sprintf-js@1.1.3
no fix listed
1
ghcr.io/umami-software/umami:postgresql-v2.20.173ca19b41745
sprintf-js@1.1.3
no fix listed
1
ghcr.io/wei-shaw/claude-relay-service:v1.1.292398c34934453
sprintf-js@1.1.3
no fix listed
1
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
sprintf-js@1.1.3
no fix listed
1
ghcr.io/woodenmaiden/relfinderreformedapi:1.1.20708d30433d4
sprintf-js@1.1.3
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.