StackRadar

CVE-2026-97058

Medium

Advisory

Published 24 Sept 2026In the index since 25 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
574
of 18,026 indexed, latest versions
Container images
593
deployed by those charts
Fix available
None
affected packages

sprintf-js vulnerable to denial of service through unbounded precision specifiers

Carried by container images the latest versions of 574 of 18,026 indexed charts deploy, on 593 images.

Affected packageAffected versionsFixed inImages
sprintf-jsnpm1.0.3, 1.1.1, 1.1.2, 1.1.3no fix listed593
node-sprintf-jsdeb1.1.2+ds1+~1.1.2-1no fix listed2
OSV records
GHSA-hp3w-g68c-fv3cUBUNTU-CVE-2026-97058

Charts affected

574 by stars
ChartLatestAffected imagesRadar Score
webodmhelmforgeVerified publisher1.0.02 of 4See more

webodm helmforge 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
opendronemap/nodeodm:3.6.2fcd99eb23d8d
sprintf-js@1.0.3
no fix listed
webodm/webodm_webapp:3.3.0ed7b1aa0e40f
sprintf-js@1.0.3
no fix listed

Open the chart page →

22,394
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
openbas/caldera-server:5.1.0a277796d9724
sprintf-js@1.0.3
no fix listed

Open the chart page →

25,785
wikijshomeenterpriseinc1.4.01 of 1See more

wikijs homeenterpriseinc 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
requarks/wiki:canary-2.5.2438b5865a7386c
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,609
hoppscotchhoppscotch0.1.11 of 1See more

hoppscotch hoppscotch 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
hoppscotch/hoppscotch:2024.11.0538fe6ded4b6
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,376
townsquarehuscker-chartsVerified publisher1.0.41 of 2See more

townsquare huscker-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,082
ibm-app-navigatoribm-charts1.0.12 of 5See more

ibm-app-navigator ibm-charts 1.0.1

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibmcom/app-nav-init:1.0.1240ff499eb5b
sprintf-js@1.0.3
no fix listed
ibmcom/app-nav-ui:1.0.1e2a86997b36b
sprintf-js@1.0.3
no fix listed

Open the chart page →

33,453
ibm-business-automation-insights-devibm-charts3.2.01 of 6See more

ibm-business-automation-insights-dev ibm-charts 3.2.0

1 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibmcom/bai-admin-dev:19.0.202d882f2836e
sprintf-js@1.0.3
no fix listed

Open the chart page →

40,065
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibmcom/microclimate-portal:latested5505e5c7ec
sprintf-js@1.0.3
no fix listed

Open the chart page →

119,072
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,683
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
sprintf-js@1.1.3
no fix listed

Open the chart page →

12,896
indexer-chartindexer-application0.1.01 of 1See more

indexer-chart indexer-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibarreche/cloud-indexer-ci:latestb7a08274e69f
sprintf-js@1.1.2
no fix listed

Open the chart page →

3,662
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
infisical/infisical:latest3365445909be
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,361
dtlinfradao0.0.11 of 1See more

dtl infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ethereumoptimism/data-transport-layer:0.5.56e07968a0e686
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,783
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
sprintf-js@1.0.3
no fix listed

Open the chart page →

12,166
nocodbinseefrlab0.2.01 of 1See more

nocodb inseefrlab 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
nocodb/nocodb:latest4ccfc5114506
sprintf-js@1.1.3
no fix listed

Open the chart page →

873
interbtc-hydrainterlay0.1.151 of 4See more

interbtc-hydra interlay 0.1.15

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
interlayhq/interbtc-hydra-processor:master-2c6e16e-1637088364423d567d47aa
sprintf-js@1.0.3
no fix listed

Open the chart page →

7,783
backstageirembo-backstage-helmVerified publisher1.0.51 of 3See more

backstage irembo-backstage-helm 1.0.5

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
roadiehq/community-backstage-image:latestef355bf5b639
sprintf-js@1.0.3
no fix listed

Open the chart page →

8,604
keyoxide-webittrident-oss0.2.31 of 1See more

keyoxide-web ittrident-oss 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
keyoxide/keyoxide:stable96f27a71269d
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,517
n8njanip81-helm-chartsVerified publisher0.1.41 of 1See more

n8n janip81-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
n8nio/n8n:1.86.08b39ed5a2de9
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,063
hello-kubernetes-chartjhidalgo3-githubVerified publisher3.0.01 of 1See more

hello-kubernetes-chart jhidalgo3-github 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jhidalgo3/hello-kubernetes:1.0.0.1397bf5ddfa8628d79f5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,065
yapijoelee2012Verified publisher0.2.01 of 1See more

yapi joelee2012 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jayfong/yapi:1.10.2163e5d621910
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,924
annotation-tooljtektVerified publisher0.1.51 of 2See more

annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,752
image-storage-servicejtektVerified publisher0.5.11 of 4See more

image-storage-service jtekt 0.5.1

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
sprintf-js@1.1.3
no fix listed

Open the chart page →

24,912
polygonal-annotation-tooljtektVerified publisher0.1.51 of 2See more

polygonal-annotation-tool jtekt 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
moreillon/api-proxy:a3e8b41e9e578c9653b6
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,652
shinsei-managerjtektVerified publisher0.2.04 of 8See more

shinsei-manager jtekt 0.2.0

4 of the 8 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
moreillon/api-proxy:latestd7d4a5463525
sprintf-js@1.1.3
no fix listed
moreillon/group-manager:latest3caa8f710ee0
sprintf-js@1.1.3
no fix listed
moreillon/user-manager:v5.0.2e1c9bfab5c16
sprintf-js@1.0.3
no fix listed
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
sprintf-js@1.1.3
no fix listed

Open the chart page →

68,829
time-series-storagejtektVerified publisher0.1.101 of 2See more

time-series-storage jtekt 0.1.10

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
sprintf-js@1.0.3
no fix listed

Open the chart page →

18,504
docker-hub-rssjuniorjpdj0.1.331 of 1See more

docker-hub-rss juniorjpdj 0.1.33

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/theconnman/docker-hub-rss:0.6.238eba84b2be8
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,166
todo-appjunktext-via-aws1.2.101 of 1See more

todo-app junktext-via-aws 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.34d44adf5a4da2
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,680
actual-budgetk8s-chartsVerified publisher0.2.31 of 1See more

actual-budget k8s-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
actualbudget/actual-server:25.3.158fecd9088b7
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,955
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
sprintf-js@1.1.3
no fix listed

Open the chart page →

73,425
audiobookshelfk8s-home-lab-repo2.0.11 of 1See more

audiobookshelf k8s-home-lab-repo 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.32.1a52dc5db694a
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,647
shinobik8s-home-lab-repo2.1.11 of 1See more

shinobi k8s-home-lab-repo 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
shinobisystems/shinobi:latestc2f5ce2e1067
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,012
youtubedl-materialk8s-home-lab-repo5.1.11 of 1See more

youtubedl-material k8s-home-lab-repo 5.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:4.3.22f943d584711
sprintf-js@1.1.2
no fix listed

Open the chart page →

10,814
zwave-js-uik8sonlabVerified publisher0.7.141 of 1See more

zwave-js-ui k8sonlab 0.7.14

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
zwavejs/zwave-js-ui:11.24.2717f9d260902
sprintf-js@1.1.3
no fix listed

Open the chart page →

825
kenerkener-chart0.0.71 of 1See more

kener kener-chart 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,173
keycloak-multi-client-notifierkeycloak-multi-client-notifier2.1.21 of 2See more

keycloak-multi-client-notifier keycloak-multi-client-notifier 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,973
statsdkeyporttech0.1.191 of 1See more

statsd keyporttech 0.1.19

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,503
redisinsightklicktippVerified publisher0.5.01 of 1See more

redisinsight klicktipp 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
redis/redisinsight:3.2.055542a762210
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,809
visual-regression-trackerkokuwa5.1.01 of 4See more

visual-regression-tracker kokuwa 5.1.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
visualregressiontracker/api:5.0.11941aeb8c8bf9
sprintf-js@1.1.3
no fix listed

Open the chart page →

9,922
deployment-servicekrateo1.2.591 of 1See more

deployment-service krateo 1.2.59

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/krateoplatformops/deployment-service:1.2.59da9f93f2f731
sprintf-js@1.1.3
no fix listed

Open the chart page →

10,241
terminal-clientkrateo0.1.31 of 1See more

terminal-client krateo 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/krateoplatformops/terminal-client:0.1.36c7c965e739c
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,302
terminal-serverkrateo0.1.61 of 1See more

terminal-server krateo 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/krateoplatformops/terminal-server:0.1.3f5fd8ba6fea3
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,241
sqlpadkronkltdVerified publisher0.1.01 of 1See more

sqlpad kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
sqlpad/sqlpad:6.7d3d2f430dffd
sprintf-js@1.1.2
no fix listed

Open the chart page →

3,611
tooljetkrzwiatrzyk1.1.11 of 2See more

tooljet krzwiatrzyk 1.1.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
tooljet/tooljet-ce:v1.18.0c85a4720e42e
sprintf-js@1.1.2
no fix listed

Open the chart page →

6,745
aperagkubeblocksVerified publisher0.0.0-nightly1 of 3See more

aperag kubeblocks 0.0.0-nightly

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
apecloud/aperag-frontend:v0.0.0-nightlyb3ae37840ace
sprintf-js@1.1.3
no fix listed

Open the chart page →

9,493
gptchat-api-feishubotkubegemsapp0.1.11 of 3See more

gptchat-api-feishubot kubegemsapp 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
kubegems/chatgpt-api:latestf3c492a938ad
sprintf-js@1.0.3
no fix listed

Open the chart page →

11,475
seerrkubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

seerr kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/seerr-team/seerr:v3.2.0c4cbd5121236
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,000
uptime-kumakubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

uptime-kuma kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.2.1-slim059b49d64739
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,668
kube-mailkubernetes-replicator0.11.11 of 3See more

kube-mail kubernetes-replicator 0.11.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/mittwald/kube-mail:latest04f1099241fc
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,904
kubevious-agentkubevious1.0.41 of 1See more

kubevious-agent kubevious 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
kubevious/parser:1.0.151acf1a1f0b47
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,087

Container images carrying it

593 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
sharanalwar/redchef-frontend:latest5e82950b16b7
sprintf-js@1.1.3
no fix listed
1
shinobisystems/shinobi:dev3ca746937856
sprintf-js@1.0.3
no fix listed
1
shinobisystems/shinobi:latestc2f5ce2e1067
sprintf-js@1.0.3
no fix listed
1
shyamkrishna21/cloudvault:latestaf2785f5bb71
sprintf-js@1.1.3
no fix listed
1
shyamkrishna21/shopsync:latest3998b83def53
sprintf-js@1.1.3
no fix listed
1
sigp/siren:v3.0.42c219b04758e
sprintf-js@1.1.3
no fix listed
1
siscc/dotstatsuite-data-lifecycle-manager:v14.0.0b6f9a7c888fc
sprintf-js@1.0.3
no fix listed
1
sissbruecker/linkding:1.41.0-plusa222fb777e1f
sprintf-js@1.1.3
no fix listed
1
skylenet/ethstats-server:pow-latestd757cc016198
sprintf-js@1.0.3
no fix listed
1
socialmediamacroscope/smile_graphql:0.3.1c5095e94bc65
sprintf-js@1.0.3
no fix listed
1
solidproject/community-server:6.0.2ccc4acb7e9a1
sprintf-js@1.0.3
no fix listed
1
soulteary/cronicle:0.9.80ac2512fa6e39
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.26.3092384dba45d
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.19.2-branch.hotfix-2.19.1.124125-665e7e14b6a0750d5aa
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb52f8eabf5cea
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.25.10-branch.testing6.645-b125c1e75cdf256067b
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.26.379f14a2bf931
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.21.3-branch.testing5.219631-2153bef8fd157733393
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
sprintf-js@1.1.3
no fix listed
1
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
sprintf-js@1.1.3
no fix listed
1
sqlpad/sqlpad:6.7d3d2f430dffd
sprintf-js@1.1.2
no fix listed
1
stanfordoval/almond-server:latest1a63cdccedaf
sprintf-js@1.0.3
no fix listed
1
supabase/postgres-meta:v0.96.6a84cc713585e
sprintf-js@1.1.3
no fix listed
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
sprintf-js@1.1.3
no fix listed
1
supabase/storage-api:v1.12.0f983fb50bd95
sprintf-js@1.1.3
no fix listed
1
supabase/studio:20241021-9f9b08326d8070c55e9
sprintf-js@1.1.3
no fix listed
1
supporttools/uptime-kuma:v2.6f8a49ed65809
sprintf-js@1.1.3
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
sprintf-js@1.0.3
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
sprintf-js@1.0.3
no fix listed
1
tenureai/tenure:v1.0.285f5b222df9a5
sprintf-js@1.0.3
no fix listed
1
testhubio/testhub-frontend:on-preme86c2db53be8
sprintf-js@1.0.3
no fix listed
1
th0th/node-red:4.0.3-debiand06fa39f7406
sprintf-js@1.1.3
no fix listed
1
thecloudspark/app-result:1.09a5302cb8312
sprintf-js@1.1.3
no fix listed
1
thecodingmachine/workadventure-map-storage:helm-chart519c31c6e7ec
sprintf-js@1.0.3
no fix listed
1
thecodingmachine/workadventure-map-storage:v1.17.75bdab56da2fa
sprintf-js@1.0.3
no fix listed
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
sprintf-js@1.1.2
no fix listed
1
treskon/portrait-ui:DEV-lateste7970783bc8d
sprintf-js@1.0.3
no fix listed
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
sprintf-js@1.1.3
no fix listed
1
unleashorg/unleash-enterprise:7.5.0245aeba40053
sprintf-js@1.1.3
no fix listed
1
unleashorg/unleash-proxy:v1.4.82538f89e2685
sprintf-js@1.1.3
no fix listed
1
unleashorg/unleash-server:7.5.09adb37e399ba
sprintf-js@1.1.3
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.