StackRadar

CVE-2026-97058

Medium

Advisory

Published 24 Sept 2026In the index since 25 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
574
of 18,026 indexed, latest versions
Container images
593
deployed by those charts
Fix available
None
affected packages

sprintf-js vulnerable to denial of service through unbounded precision specifiers

Carried by container images the latest versions of 574 of 18,026 indexed charts deploy, on 593 images.

Affected packageAffected versionsFixed inImages
sprintf-jsnpm1.0.3, 1.1.1, 1.1.2, 1.1.3no fix listed593
node-sprintf-jsdeb1.1.2+ds1+~1.1.2-1no fix listed2
OSV records
GHSA-hp3w-g68c-fv3cUBUNTU-CVE-2026-97058

Charts affected

574 by stars
ChartLatestAffected imagesRadar Score
activepiecesadnoctemVerified publisher0.6.01 of 1See more

activepieces adnoctem 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
activepieces/activepieces:0.91.058414dfc94c4
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,893
lhciadnoctemVerified publisher0.1.01 of 1See more

lhci adnoctem 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/adnoctem/lhci:1.0.119553e4b4033
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,596
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,804
outlineadnoctemVerified publisher0.1.21 of 1See more

outline adnoctem 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
outlinewiki/outline:1.10.1832051f039b4
sprintf-js@1.0.3
no fix listed

Open the chart page →

1,993
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
sprintf-js@1.1.3
no fix listed

Open the chart page →

34,025
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,053
cross-seedalekcVerified publisher7.19.01 of 1See more

cross-seed alekc 7.19.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.7a1fed512261f
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,502
excalidashalekcVerified publisher1.4.31 of 2See more

excalidash alekc 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
zimengxiong/excalidash-backend:0.6.529937c62fbed
sprintf-js@1.1.3
no fix listed

Open the chart page →

485
jellyseerralexmorbo-jellyseerrVerified publisher1.0.31 of 1See more

jellyseerr alexmorbo-jellyseerr 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
fallenbagel/jellyseerr:2.2.3a324fa4d81cc
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,744
openhab-cloudandibraeuVerified publisher1.2.61 of 1See more

openhab-cloud andibraeu 1.2.6

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
openhab/openhab-cloud:a8138a329dd2bac8c4b
sprintf-js@1.1.2
no fix listed

Open the chart page →

3,667
angular-chartangular-application0.1.01 of 1See more

angular-chart angular-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ibarreche/cloud-front-ci:latestc8970ac1c8dc
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,446
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,208
trifidappuio2.0.21 of 1See more

trifid appuio 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
zazuko/trifid:2.3.7054be137de70
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,932
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:api-latest7473d77448e1
sprintf-js@1.0.3
no fix listed

Open the chart page →

10,593
openapiassist-iot-open-api-management0.2.22 of 6See more

openapi assist-iot-open-api-management 0.2.2

2 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
assistiot/open_api_frontend:1.0.1f11d82defc70
sprintf-js@1.0.3
no fix listed
pantsel/konga:latestc8172b75607d
sprintf-js@1.0.3
no fix listed

Open the chart page →

92,801
astrotrekastria0.0.21 of 4See more

astrotrek astria 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
sprintf-js@1.1.3
no fix listed

Open the chart page →

36,223
nas-appsawesomeVerified publisher2.0.02 of 8See more

nas-apps awesome 2.0.0

2 of the 8 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ltdstudio/terraforming-mars:latest0e76c6f4eac0
sprintf-js@1.0.3
no fix listed
wettyoss/wetty:latestc52dac712353
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,524
audiobookshelfbdclark-helm-chartsVerified publisher0.1.41 of 1See more

audiobookshelf bdclark-helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,989
bluesky-pdsbear0.4.2081 of 1See more

bluesky-pds bear 0.4.208

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,619
opendistro-esbeeinventor1.15.11 of 3See more

opendistro-es beeinventor 1.15.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,098
mx-apibicarus-labs0.1.01 of 4See more

mx-api bicarus-labs 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,435
bluerange-mosquittobluerangeOfficialVerified publisher1.1.01 of 1See more

bluerange-mosquitto bluerange 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
bluerange/bluerange-mosquitto:2690a4e5b92cc6
sprintf-js@1.0.3
no fix listed

Open the chart page →

268
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
sprintf-js@1.0.3
no fix listed
sysnet4admin/colosseum-prm:log5802bfcd7fed
sprintf-js@1.0.3
no fix listed

Open the chart page →

30,100
overseerrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

overseerr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
linuxserver/overseerr:1.35.06108ed066d4a
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,325
registry-uibryanalves0.2.01 of 1See more

registry-ui bryanalves 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
konradkleine/docker-registry-frontend:v2181aad54ee64
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,629
rtorrent-floodbryanalves0.5.01 of 1See more

rtorrent-flood bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jesec/flood:4.7.03d1d0bec117a
sprintf-js@1.1.2
no fix listed

Open the chart page →

1,578
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
sprintf-js@1.1.3
no fix listed

Open the chart page →

79,315
openmctbryopsida0.1.11 of 1See more

openmct bryopsida 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/openmct:main38b6a50a62b2
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,489
syslog-portalbryopsida0.3.11 of 1See more

syslog-portal bryopsida 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/syslog-portal:main3947bfd04f49
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,476
cross-seedcfi20176.13.61 of 1See more

cross-seed cfi2017 6.13.6

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,487
qbittorrentcfi20176.13.31 of 1See more

qbittorrent cfi2017 6.13.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/cross-seed/cross-seed:6.13.381afafdd96a5
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,487
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
obolnetwork/charon-dkg-sidecar:maine263be0a7440
sprintf-js@1.0.3
no fix listed

Open the chart page →

8,815
chatgpt-next-webchatgpt-next-web0.1.11 of 1See more

chatgpt-next-web chatgpt-next-web 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
yidadaa/chatgpt-next-web:latesteaaa469ddeeb
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,676
countlychristianhuthVerified publisher5.3.32 of 3See more

countly christianhuth 5.3.3

2 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
countly/api:25.05.4f4cc7447c4f5
sprintf-js@1.0.3
no fix listed
countly/frontend:25.05.42acbc11499b6
sprintf-js@1.0.3
no fix listed

Open the chart page →

10,074
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,268
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
sprintf-js@1.0.3
no fix listed

Open the chart page →

31,543
ethereumcloudnativeapp1.0.01 of 3See more

ethereum cloudnativeapp 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
sprintf-js@1.1.1
no fix listed

Open the chart page →

86,633
kube-slackcloudnativeapp1.0.01 of 1See more

kube-slack cloudnativeapp 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
willwill/kube-slack:v4.1.1d443017aae98
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,017
node-redcloudnativeapp1.2.21 of 1See more

node-red cloudnativeapp 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
nodered/node-red-docker:0.19.6-v8070643219ea2
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,253
developer-dashboardcloud-native-toolkit1.4.11 of 1See more

developer-dashboard cloud-native-toolkit 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
sprintf-js@1.0.3
no fix listed

Open the chart page →

26,458
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad3 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

3 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
sprintf-js@1.1.3
no fix listed
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
sprintf-js@1.1.3
no fix listed
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
sprintf-js@1.1.3
no fix listed

Open the chart page →

22,248
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
shyamkrishna21/cloudvault:latestaf2785f5bb71
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,577
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
sprintf-js@1.1.3
no fix listed

Open the chart page →

3,937
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
jupyterhub/jupyterhub:5.4.63974ba945e65
node-sprintf-js@1.1.2+ds1+~1.1.2-1
sprintf-js@1.1.2
no fix listed
no fix listed

Open the chart page →

14,892
coderstudio-strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

coderstudio-strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
docker-composecoderstudio-strapi-devVerified publisher0.0.11 of 3See more

docker-compose coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,761
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
conduction/conduction-ui-app:devd591f5e6f2a9
sprintf-js@1.0.3
no fix listed

Open the chart page →

15,492
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
coldatom/containers-security-front:latest7c2fbbb41bcf
sprintf-js@1.0.3
no fix listed

Open the chart page →

11,917
conversor-temperaturaconversor-temperaturaVerified publisher0.1.01 of 1See more

conversor-temperatura conversor-temperatura 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
felipecs8/conversor-temperatura:b416c3cf83a20d7c006b46a10673b0e571e5398918b68a5fcab4
sprintf-js@1.0.3
no fix listed

Open the chart page →

22

Container images carrying it

593 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
vabene1111/recipes:2.3.50f8d061895e9
sprintf-js@1.1.3
no fix listed
1
vabene1111/recipes:1.0.5.2ec4e9e2905b0
sprintf-js@1.0.3
no fix listed
1
vcnngr/pnbackend:latesteaf44ad0ad1f
sprintf-js@1.1.3
no fix listed
1
veecode/devportal881f936ff4a3
sprintf-js@1.1.3
no fix listed
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
sprintf-js@1.1.3
no fix listed
1
visualregressiontracker/api:5.0.11941aeb8c8bf9
sprintf-js@1.1.3
no fix listed
1
vlebediantsev/notes-admin-front:latest007c6670ff48
sprintf-js@1.0.3
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
sprintf-js@1.0.3
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
sprintf-js@1.0.3
no fix listed
1
wazuh/wazuh-dashboard:4.11.10c58e7b47bb6
sprintf-js@1.1.2
no fix listed
1
wazuh/wazuh-dashboard:4.4.11787550d2358
sprintf-js@1.1.2
no fix listed
1
wazuh/wazuh-dashboard:4.14.491c8d793746f
sprintf-js@1.1.2
no fix listed
1
wazuh/wazuh-dashboard:4.14.391e4f0a7feed
sprintf-js@1.1.2
no fix listed
1
webodm/webodm_webapp:3.3.0ed7b1aa0e40f
sprintf-js@1.0.3
no fix listed
1
wekanteam/wekan:v4.2268a51f0327df
sprintf-js@1.0.3
no fix listed
1
wettyoss/wetty:latestc52dac712353
sprintf-js@1.1.3
no fix listed
1
willwill/kube-slack:v4.1.1d443017aae98
sprintf-js@1.0.3
no fix listed
1
winfred008/amazon:910a68de5b398
sprintf-js@1.0.3
no fix listed
1
wiremind/scrapoxy:lateste7048929a676
sprintf-js@1.0.3
no fix listed
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
sprintf-js@1.1.3
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
sprintf-js@1.1.3
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
sprintf-js@1.1.3
no fix listed
1
yidadaa/chatgpt-next-web:latesteaaa469ddeeb
sprintf-js@1.1.3
no fix listed
1
yuzutech/kroki-bpmn:0.29.1444805c4b917
sprintf-js@1.1.3
no fix listed
1
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
sprintf-js@1.1.3
no fix listed
1
yuzutech/kroki-excalidraw:0.29.157917319ea70
sprintf-js@1.1.3
no fix listed
1
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
sprintf-js@1.1.3
no fix listed
1
zazuko/trifid:2.3.7054be137de70
sprintf-js@1.0.3
no fix listed
1
zimengxiong/excalidash-backend:0.4.271273af713c91
sprintf-js@1.1.3
no fix listed
1
zimengxiong/excalidash-backend:0.6.529937c62fbed
sprintf-js@1.1.3
no fix listed
1
zooz/predator:1.6f491d1f7a865
sprintf-js@1.1.2
no fix listed
1
zwavejs/zwavejs2mqtt:5.0.215a6040fb468
sprintf-js@1.0.3
no fix listed
1
zwavejs/zwave-js-ui:11.24.2717f9d260902
sprintf-js@1.1.3
no fix listed
1
ghcr.io/absmach/magistrala/ui-smq:latestea7e7f0e293e
sprintf-js@1.1.3
no fix listed
1
ghcr.io/adnoctem/lhci:1.0.119553e4b4033
sprintf-js@1.0.3
no fix listed
1
ghcr.io/advplyr/audiobookshelf:2.32.1a52dc5db694a
sprintf-js@1.1.3
no fix listed
1
ghcr.io/akash-network/console-api:2.64.0ba359097329d
sprintf-js@1.0.3
no fix listed
1
ghcr.io/akash-network/deploy-web:2.46.0ac540172c120
sprintf-js@1.1.3
no fix listed
1
ghcr.io/akash-network/provider-console:1.0.04d4c19a8d3ff
sprintf-js@1.1.3
no fix listed
1
ghcr.io/akash-network/provider-console-security:1.0.0b87a48ec51dd
sprintf-js@1.1.3
no fix listed
1
ghcr.io/akash-network/provider-proxy:1.4.353f533d7c6f8
sprintf-js@1.0.3
no fix listed
1
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
sprintf-js@1.1.3
no fix listed
1
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
sprintf-js@1.1.3
no fix listed
1
ghcr.io/ashvinbambhaniya/nexus-tasks-frontend:2.0.0fcbab3a24880
sprintf-js@1.1.3
no fix listed
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
sprintf-js@1.1.3
no fix listed
1
ghcr.io/backstage/backstage:lateste2a48bb6ab55
sprintf-js@1.0.3
no fix listed
1
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
sprintf-js@1.1.3
no fix listed
1
ghcr.io/blessingnator/keycloak-mcn-backend:2.0.5967470f05472
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bluesky-social/pds:0.4.208637083d9369d
sprintf-js@1.1.3
no fix listed
1
ghcr.io/bluesky-social/pds:0.4.204cbc6e3ea157d
sprintf-js@1.1.3
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.