StackRadar

CVE-2026-97058

Medium

Advisory

Published 24 Sept 2026In the index since 25 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
574
of 18,026 indexed, latest versions
Container images
593
deployed by those charts
Fix available
None
affected packages

sprintf-js vulnerable to denial of service through unbounded precision specifiers

Carried by container images the latest versions of 574 of 18,026 indexed charts deploy, on 593 images.

Affected packageAffected versionsFixed inImages
sprintf-jsnpm1.0.3, 1.1.1, 1.1.2, 1.1.3no fix listed593
node-sprintf-jsdeb1.1.2+ds1+~1.1.2-1no fix listed2
OSV records
GHSA-hp3w-g68c-fv3cUBUNTU-CVE-2026-97058

Charts affected

574 by stars
ChartLatestAffected imagesRadar Score
growthbookgrowthbook5.1.01 of 2See more

growthbook growthbook 5.1.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
growthbook/growthbook:5.1.0c8a124f55dca
sprintf-js@1.1.3
no fix listed

Open the chart page →

926
uptime-kumahelmforgeVerified publisher1.5.151 of 1See more

uptime-kuma helmforge 1.5.15

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.5c74379ac4509
sprintf-js@1.1.3
no fix listed

Open the chart page →

34,014
uptimekumahelm-l3st86Verified publisher0.1.101 of 1See more

uptimekuma helm-l3st86 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:1.23.1396510915e6be
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,249
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
sprintf-js@1.1.3
no fix listed

Open the chart page →

18,204
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
sprintf-js@1.0.3
no fix listed

Open the chart page →

18,226
todo-appjunktext-direct1.1.41 of 1See more

todo-app junktext-direct 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
junktext/getting-started:1.0.5a70936c04aed
sprintf-js@1.0.3
no fix listed

Open the chart page →

4,181
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,173
dashykrzwiatrzyk1.0.01 of 1See more

dashy krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,377
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
langgenius/dify-web:0.6.11a2a294743634
sprintf-js@1.1.3
no fix listed

Open the chart page →

22,462
chibisafel4gVerified publisher0.1.12 of 3See more

chibisafe l4g 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
chibisafe/chibisafe:latest836467a50792
sprintf-js@1.1.3
no fix listed
chibisafe/chibisafe-server:latest3da4fcbc1a18
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,701
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,813
litlyxlitlyx0.2.03 of 5See more

litlyx litlyx 0.2.0

3 of the 5 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
litlyx/litlyx-consumer:latest02225e77d316
sprintf-js@1.1.3
no fix listed
litlyx/litlyx-dashboard:lateste64ff2d52385
sprintf-js@1.1.3
no fix listed
litlyx/litlyx-producer:latest10407f36613f
sprintf-js@1.1.3
no fix listed

Open the chart page →

9,613
chatwootmaxcrm-chartsVerified publisher1.1.2011 of 4See more

chatwoot maxcrm-charts 1.1.201

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
chatwoot/chatwoot:v3.1.0d530ab8c1753
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,120
mend-renovate-enterprise-editionmend-renovateVerified publisher10.6.01 of 2See more

mend-renovate-enterprise-edition mend-renovate 10.6.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/mend/renovate-ee-server:15.6.087b77989f48d
sprintf-js@1.1.3
no fix listed

Open the chart page →

37,524
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
sprintf-js@1.1.3
no fix listed

Open the chart page →

15,429
n8nn8n-helm2.25.71 of 1See more

n8n n8n-helm 2.25.7

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
n8nio/n8n:2.25.7761374d4eb84
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,835
pixapopnicholaswildeVerified publisher1.0.01 of 1See more

pixapop nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/pixapop:v1.2-ls15605ebc091fa1
sprintf-js@1.1.2
no fix listed

Open the chart page →

3,599
oadaoadaVerified publisher5.0.610 of 11See more

oada oada 5.0.6

10 of the 11 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
oada/auth:4.0.0c0d077e79ef4
sprintf-js@1.1.3
no fix listed
oada/http-handler:4.0.0d87efe8ba4b0
sprintf-js@1.1.3
no fix listed
oada/rev-graph-update:4.0.0ebc8343f05ff
sprintf-js@1.1.3
no fix listed
oada/shares:4.0.0c6ffb4e8ed63
sprintf-js@1.1.3
no fix listed
oada/startup:4.0.0fc09495e2f3c
sprintf-js@1.1.3
no fix listed
oada/sync-handler:4.0.0b7a2cfc137cf
sprintf-js@1.1.3
no fix listed
oada/users:4.0.0b6c562fa5b1b
sprintf-js@1.1.3
no fix listed
oada/webhooks:4.0.06590c60de347
sprintf-js@1.1.3
no fix listed
oada/well-known:4.0.07943fde43b19
sprintf-js@1.1.3
no fix listed
oada/write-handler:4.0.08464c7f48aae
sprintf-js@1.1.3
no fix listed

Open the chart page →

15,302
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,675
growthbookone-acre-fundVerified publisher0.3.01 of 3See more

growthbook one-acre-fund 0.3.0

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
growthbook/growthbook:latest67b7cd7d12a1
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,550
openvaultopenvaultVerified publisher0.9.01 of 2See more

openvault openvault 0.9.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-frontend:v1.1.0bfc3118f6565
sprintf-js@1.1.3
no fix listed

Open the chart page →

7,957
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
sprintf-js@1.1.3
no fix listed

Open the chart page →

8,241
patchworkpatchworkVerified publisher0.8.61 of 2See more

patchwork patchwork 0.8.6

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/patchwork:mainc01e018bced4
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,295
pdf-editor-helmpdf-editor-web1.0.01 of 4See more

pdf-editor-helm pdf-editor-web 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
dipugodocker/pdf-editor:1.0-frontendd431c37fe1cd
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,426
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
sprintf-js@1.1.3
no fix listed

Open the chart page →

8,388
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
treskon/portrait-ui:DEV-lateste7970783bc8d
sprintf-js@1.0.3
no fix listed

Open the chart page →

36,111
psa-restricted-patcherpsa-restricted-patcherVerified publisher0.10.11 of 1See more

psa-restricted-patcher psa-restricted-patcher 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/psa-restricted-patcher:maina53ef16b024a
sprintf-js@1.1.3
no fix listed

Open the chart page →

1,637
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
sprintf-js@1.0.3
no fix listed

Open the chart page →

6,430
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
sprintf-js@1.0.3
no fix listed

Open the chart page →

7,375
jellyseerrrtomik-helm-chartsVerified publisher0.0.11 of 1See more

jellyseerr rtomik-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/fallenbagel/jellyseerr:2.5.22a611369ad1d
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,389
kyoorubxkubeVerified publisher0.1.101 of 9See more

kyoo rubxkube 0.1.10

1 of the 9 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_front:4.7.1d7f76c9c65d9
sprintf-js@1.1.3
no fix listed

Open the chart page →

33,120
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
sprintf-js@1.1.3
no fix listed

Open the chart page →

42,559
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
sprintf-js@1.1.3
no fix listed

Open the chart page →

6,068
speckle-serverspeckleVerified publisher2.26.32 of 4See more

speckle-server speckle 2.26.3

2 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
sprintf-js@1.1.3
no fix listed
speckle/speckle-server:2.26.379f14a2bf931
sprintf-js@1.1.3
no fix listed

Open the chart page →

11,845
statsdstatsd-airflow-smd0.1.191 of 1See more

statsd statsd-airflow-smd 0.1.19

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
statsd/statsd:v0.8.6dab129e74c25
sprintf-js@1.0.3
no fix listed

Open the chart page →

5,503
stornxstornxVerified publisher1.1.11 of 9See more

stornx stornx 1.1.1

1 of the 9 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
alazidis/stornx:1.1.1602d4f7f090c
sprintf-js@1.1.3
no fix listed

Open the chart page →

14,649
supabasesupabse0.8.01 of 11See more

supabase supabse 0.8.0

1 of the 11 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
supabase/postgres-meta:v0.96.6a84cc713585e
sprintf-js@1.1.3
no fix listed

Open the chart page →

21,495
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
sprintf-js@1.0.3
no fix listed

Open the chart page →

3,223
testhubteshubVerified publisher0.1.41 of 3See more

testhub teshub 0.1.4

1 of the 3 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
testhubio/testhub-frontend:on-preme86c2db53be8
sprintf-js@1.0.3
no fix listed

Open the chart page →

8,751
u-storeunifieVerified publisher1.2.01 of 1See more

u-store unifie 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
public.ecr.aws/g4a0y2u8/unifie-store:staging-19925a2057fabc948
sprintf-js@1.1.3
no fix listed

Open the chart page →

16,602
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
sprintf-js@1.0.3
no fix listed

Open the chart page →

13,666
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,531
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,975
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
requarks/wiki:latestfffff288a52f
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,599
scrapoxywiremindVerified publisher0.3.41 of 1See more

scrapoxy wiremind 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
wiremind/scrapoxy:lateste7048929a676
sprintf-js@1.0.3
no fix listed

Open the chart page →

2,288
wraftwraft0.1.121 of 9See more

wraft wraft 0.1.12

1 of the 9 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
quay.io/wraft/wraft-frontend:latestf1bbbd5e9bb9
sprintf-js@1.1.3
no fix listed

Open the chart page →

5,812
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
sprintf-js@1.1.2
no fix listed

Open the chart page →

10,814
qleverzazukoVerified publisher0.7.21 of 2See more

qlever zazuko 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/zazukoians/qlever-ui:v0.10.3c27e20f7a2ca
sprintf-js@1.1.3
no fix listed

Open the chart page →

2,645
trifidzazukoOfficialVerified publisher0.2.11 of 1See more

trifid zazuko 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
ghcr.io/zazuko/trifid:v6.0.159bda2bf65d4
sprintf-js@1.0.3
no fix listed

Open the chart page →

614
adeptia-automate-mcpadeptia-automate-mcp1.0.02 of 2See more

adeptia-automate-mcp adeptia-automate-mcp 1.0.0

2 of the 2 container images this version deploys carry CVE-2026-97058.

Container imageDigestPackageFixed in
adeptiainc/adeptia-automate-mcp-server:1.0.0283001e83739
sprintf-js@1.1.3
no fix listed
adeptiainc/adeptia-automate-observe:1.0.031f295e948e6
sprintf-js@1.1.3
no fix listed

Open the chart page →

4,283

Container images carrying it

593 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
mojaloop/event-sidecar:v11.0.189b8ab71b74b
sprintf-js@1.0.3
no fix listed
5
decisionrules/server:latestbb3a93224b5a
sprintf-js@1.1.3
no fix listed
4
redis/redisinsight:3.8:latestb5e19ee240ab
sprintf-js@1.1.3
no fix listed
4
joplin/server:3.7.2:latest3f7b852959aa
sprintf-js@1.1.3
no fix listed
3
mojaloop/account-lookup-service:v11.8.0b06d3287ea82
sprintf-js@1.0.3
no fix listed
3
pantsel/konga:latestc8172b75607d
sprintf-js@1.0.3
no fix listed
3
rcdelacruz/my-strapi-app:js-amd6438007f358355
sprintf-js@1.0.3
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
sprintf-js@1.0.3
no fix listed
3
quay.io/hedgedoc/hedgedoc:1.12.089bd85d7817f
sprintf-js@1.0.3
no fix listed
3
agoldis/sorry-cypress-director:2.5.1110228ecd353b
sprintf-js@1.0.3
no fix listed
2
amazon/opendistro-for-elasticsearch-kibana:1.13.2c740d7a89475
sprintf-js@1.0.3
no fix listed
2
chatwoot/chatwoot:v3.1.0d530ab8c1753
sprintf-js@1.0.3
no fix listed
2
epamedp/krci-portal:0.8.0687acf641097
sprintf-js@1.1.3
no fix listed
2
etherpad/etherpad:3.3.6:latest98d395769b3b
sprintf-js@1.0.3
no fix listed
2
ethersphere/bee-localchain:latest0558799ca992
sprintf-js@1.0.3
no fix listed
2
freikin/dawarich:1.15.2e58334ca5697
sprintf-js@1.1.2
no fix listed
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
sprintf-js@1.0.3
no fix listed
2
governify/assets-manager:v1.4.12987672448c7
sprintf-js@1.0.3
no fix listed
2
governify/director:v1.4.0608c6940bb98
sprintf-js@1.0.3
no fix listed
2
governify/registry:v3.4.0d3f37f4f8168
sprintf-js@1.0.3
no fix listed
2
governify/render:v2.2.0daeca1ce28e6
sprintf-js@1.0.3
no fix listed
2
governify/reporter:v2.2.038595913458f
sprintf-js@1.0.3
no fix listed
2
hookiesolutions/webhookie:latest0629694246ba
sprintf-js@1.0.3
no fix listed
2
hoppscotch/hoppscotch:2024.8.2f1da831950b7
sprintf-js@1.1.3
no fix listed
2
koenkk/zigbee2mqtt:1.19.15f9129b1ffbc
sprintf-js@1.0.3
no fix listed
2
library/arangodb:3.11.81e75d74954a4
sprintf-js@1.0.3
no fix listed
2
library/mongo-express:1.0.2:latest1b23d7976f02
sprintf-js@1.1.3
no fix listed
2
louislam/uptime-kuma:2.5.4917318f9d7be
sprintf-js@1.1.3
no fix listed
2
louislam/uptime-kuma:1.23.1396510915e6be
sprintf-js@1.1.3
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
sprintf-js@1.1.3
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
sprintf-js@1.1.3
no fix listed
2
louislam/uptime-kuma:2.5.5c74379ac4509
sprintf-js@1.1.3
no fix listed
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
sprintf-js@1.0.3
no fix listed
2
mesosphere/kommander:6.100.13917e82333a9
sprintf-js@1.0.3
no fix listed
2
mojaloop/central-ledger:v13.14.01abc8a7aa71c
sprintf-js@1.0.3
no fix listed
2
mojaloop/ml-api-adapter:v11.1.6fb71d233c742
sprintf-js@1.0.3
no fix listed
2
mojaloop/reporting:v12.1.0d480a62103d6
sprintf-js@1.1.3
no fix listed
2
mojaloop/reporting-aggregator-svc:v0.0.92635baf23298
sprintf-js@1.1.3
no fix listed
2
mojaloop/reporting-events-processor-svc:v3.5.11e0d24d28512
sprintf-js@1.0.3
no fix listed
2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
sprintf-js@1.1.3
no fix listed
2
mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4265102a049d6
sprintf-js@1.0.3
no fix listed
2
mojaloop/role-assignment-service:v2.1.0def4bf273721
sprintf-js@1.0.3
no fix listed
2
moreillon/api-proxy:a3e8b41e9e578c9653b6
sprintf-js@1.0.3
no fix listed
2
moreillon/group-manager:v4.9.0d5a0ec8394c0
sprintf-js@1.0.3
no fix listed
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
sprintf-js@1.0.3
no fix listed
2
n8nio/n8n:2.36.714c4285bc303
sprintf-js@1.0.3
no fix listed
2
opensearchproject/opensearch-dashboards:1.0.039695180364b
sprintf-js@1.0.3
no fix listed
2
outlinewiki/outline:0.69.1d060dcd8f9aa
sprintf-js@1.0.3
no fix listed
2
rajnandan1/kener:3.2.1930407afca731
sprintf-js@1.1.3
no fix listed
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
sprintf-js@1.1.3
no fix listed
2

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.