StackRadar

GHSA-v3rj-xjv7-4jmq

Medium

Advisory

Published 25 Mar 2026In the index since 14 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1
of 17,781 indexed, latest versions
Container images
1
deployed by those charts
Fix available
1 of 1
affected package

smol-toml: Denial of Service via TOML documents containing thousands of consecutive commented lines

Carried by container images the latest versions of 1 of 17,781 indexed charts deploy, on 1 image.

Affected packageAffected versionsFixed inImages
smol-tomlnpm1.5.21.6.11
OSV records
GHSA-v3rj-xjv7-4jmq

Charts affected

1 by stars
ChartLatestAffected imagesRadar Score
rybbitrybbit-helm1.3.01 of 7See more

rybbit rybbit-helm 1.3.0

1 of the 7 container images this version deploys carry GHSA-v3rj-xjv7-4jmq.

Container imageDigestPackageFixed in
ghcr.io/rybbit-io/rybbit-backend:lateste0d1b397e33c
smol-toml@1.5.2
1.6.1

Open the chart page →

5,819

Container images carrying it

1 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/rybbit-io/rybbit-backend:lateste0d1b397e33c
smol-toml@1.5.2
1.6.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.