StackRadar

CVE-2022-26691

Medium

Advisory

Published 26 May 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.7
base score, highest
EPSS
0.006
46th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
134
of 17,781 indexed, latest versions
Container images
126
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: cups security update

Carried by container images the latest versions of 134 of 17,781 indexed charts deploy, on 126 images.

Affected packageAffected versionsFixed inImages
cupsdeb2.1.3-4ubuntu0.3, 2.1.3-4ubuntu0.4, 2.1.3-4ubuntu0.7, 2.1.3-4ubuntu0.10+17 more2.1.3-4ubuntu0.11+esm1, 2.2.1-8+deb9u8, 2.2.7-1ubuntu2.9, 2.2.10-6+deb10u6+2 more101
cupsapk2.3.3-r1, 2.3.3-r2, 2.3.3-r52.3.3-r2, 2.3.3-r3, 2.3.3-r613
cupsrpm1:2.2.6-33.el8, 1:2.2.6-38.el8, 1:2.2.6-40.el8, 1:2.2.6-44.el81:2.2.6-33.el8_2.1, 1:2.2.6-45.el8_6.212
OSV records
ALPINE-CVE-2022-26691RHSA-2022:5055RHSA-2022:5056UBUNTU-CVE-2022-26691DLA-3029-1DSA-5149-1
Also known as
RHSA-2022:5057, USN-5454-1, USN-5454-2

Charts affected

134 by stars
ChartLatestAffected imagesRadar Score
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
cups@2.2.7-1ubuntu2.7
2.2.7-1ubuntu2.9

Open the chart page →

27,633
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
cups@2.2.7-1ubuntu2.5
2.2.7-1ubuntu2.9
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
cups@2.1.3-4ubuntu0.7
2.1.3-4ubuntu0.11+esm1

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
cups@2.1.3-4ubuntu0.7
2.1.3-4ubuntu0.11+esm1

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
cups@2.1.3-4ubuntu0.7
2.1.3-4ubuntu0.11+esm1

Open the chart page →

29,124
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
library/cassandra:2.1.20cb079c0d7a57
cups@2.2.1-8+deb9u2
2.2.1-8+deb9u8

Open the chart page →

40,715
open-pdcopen-pdc0.1.01 of 3See more

open-pdc open-pdc 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
conduction/openwebconcept:4.8ee2121b569ac
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6

Open the chart page →

3,423
open-pubopen-pub0.1.01 of 3See more

open-pub open-pub 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
conduction/openwebconcept:4.8ee2121b569ac
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6

Open the chart page →

3,423
open-webconceptopen-webconcept0.1.01 of 3See more

open-webconcept open-webconcept 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
conduction/openwebconcept:4.8ee2121b569ac
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6

Open the chart page →

3,423
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
openwhisk/alarmprovider:2.2.0b695a6ceb406
cups@2.2.1-8+deb9u5
2.2.1-8+deb9u8

Open the chart page →

36,215
myappp4-helm0.1.02 of 6See more

myapp p4-helm 0.1.0

2 of the 6 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-external-service:1.0.1a8ebe5ca13fc
cups@2.2.1-8+deb9u5
2.2.1-8+deb9u8
fjvela/urjc-fjvela-server:1.0.53c840aebce22
cups@2.2.1-8+deb9u5
2.2.1-8+deb9u8

Open the chart page →

19,720
practica-helmpractica-helm0.1.01 of 7See more

practica-helm practica-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
slagattollas/server-practica:latest6dd8ead8e2b1
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8

Open the chart page →

28,484
dolibarrraphaelVerified publisher0.0.11 of 1See more

dolibarr raphael 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
monogramm/docker-dolibarr:13.0-alpine5afd99523984
cups@2.3.3-r1
2.3.3-r2

Open the chart page →

3,466
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2

Open the chart page →

15,520
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
cups@1:2.2.6-40.el8
1:2.2.6-45.el8_6.2

Open the chart page →

29,227
laravel-workerrenoki-co1.1.01 of 1See more

laravel-worker renoki-co 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
cups@2.3.3-r2
2.3.3-r3

Open the chart page →

5,687
bookstackschmitzis0.1.11 of 1See more

bookstack schmitzis 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
solidnerd/bookstack:21.12762ffd5c51d3
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6

Open the chart page →

2,751
parkingsikalabs0.1.01 of 1See more

parking sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
ondrejsika/parking:latestb1fd497416c8
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8

Open the chart page →

3,696
simple-db-app-chartsimple-db-app0.1.01 of 2See more

simple-db-app-chart simple-db-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
htmlprogrammer2001/simple-db-app:1.0a7e0a233a9bc
cups@2.2.1-8+deb9u7
2.2.1-8+deb9u8

Open the chart page →

1,925
simple-db-app-chart-with-dependencysimple-db-app0.1.01 of 3See more

simple-db-app-chart-with-dependency simple-db-app 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
htmlprogrammer2001/simple-db-app:1.0a7e0a233a9bc
cups@2.2.1-8+deb9u7
2.2.1-8+deb9u8

Open the chart page →

1,925
first-appsimple-helm-chart0.1.01 of 1See more

first-app simple-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
leeyoongti/first-app:1.0.021d66cb76352
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8

Open the chart page →

2,154
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
cups@1:2.2.6-38.el8
1:2.2.6-45.el8_6.2

Open the chart page →

28,165
sonarqubestakaterVerified publisher0.10.31 of 2See more

sonarqube stakater 0.10.3

1 of the 2 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
library/sonarqube:6.7.6-community0ae5169e3d0f
cups@2.2.1-8+deb9u3
2.2.1-8+deb9u8

Open the chart page →

11,841
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.9

Open the chart page →

14,493
pachydermstatcan0.5.11 of 4See more

pachyderm statcan 0.5.1

1 of the 4 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
pachyderm/grpc-proxy:0.4.92b27f41d4d02
cups@2.2.1-8+deb9u4
2.2.1-8+deb9u8

Open the chart page →

4,967
temporaltemporal0.28.91 of 13See more

temporal temporal 0.28.9

1 of the 13 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
cups@2.2.1-8+deb9u2
2.2.1-8+deb9u8

Open the chart page →

21,005
krokiteochenglim1.0.13 of 5See more

kroki teochenglim 1.0.1

3 of the 5 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
yuzutech/kroki-bpmn:0.16.0bd629239a64e
cups@2.3.3-r2
2.3.3-r3
yuzutech/kroki-excalidraw:0.16.015c9eef47a62
cups@2.3.3-r2
2.3.3-r3
yuzutech/kroki-mermaid:0.16.07acc8fe7caba
cups@2.3.3-r2
2.3.3-r3

Open the chart page →

8,715
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
cups@1:2.2.6-38.el8
1:2.2.6-45.el8_6.2

Open the chart page →

12,455
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8

Open the chart page →

2,559
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2

Open the chart page →

14,364
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
cups@1:2.2.6-38.el8
1:2.2.6-45.el8_6.2

Open the chart page →

28,605
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
cups@2.2.1-8+deb9u2
2.2.1-8+deb9u8

Open the chart page →

10,127
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
cups@2.3.3-r1
2.3.3-r2

Open the chart page →

2,555
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
cups@2.2.1-8+deb9u2
2.2.1-8+deb9u8

Open the chart page →

22,665
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-26691.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
cups@1:2.2.6-40.el8
1:2.2.6-45.el8_6.2

Open the chart page →

11,577

Container images carrying it

126 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
cups@2.3.3-r2
2.3.3-r3
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
cups@1:2.2.6-33.el8
1:2.2.6-33.el8_2.1
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6
1
ghcr.io/kvaps/linstor-satellite:v1.14.0a573fb9bc809
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
cups@2.3.1-9ubuntu1.1
2.3.1-9ubuntu1.2
1
ghcr.io/leoquote/mergeable:latest451706815103
cups@2.2.1-8+deb9u4
2.2.1-8+deb9u8
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
cups@2.2.7-1ubuntu2.8
2.2.7-1ubuntu2.9
1
ghcr.io/mario-f/kubevis:v1.4.0763daf9caf8e
cups@2.2.1-8+deb9u4
2.2.1-8+deb9u8
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
cups@1:2.2.6-38.el8
1:2.2.6-45.el8_6.2
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
cups@2.2.10-6+deb10u4
2.2.10-6+deb10u6
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
cups@1:2.2.6-40.el8
1:2.2.6-45.el8_6.2
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
cups@1:2.2.6-44.el8
1:2.2.6-45.el8_6.2
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
cups@2.2.1-8+deb9u6
2.2.1-8+deb9u8
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
cups@1:2.2.6-38.el8
1:2.2.6-45.el8_6.2
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
cups@1:2.2.6-40.el8
1:2.2.6-45.el8_6.2
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
cups@2.1.3-4ubuntu0.10
2.1.3-4ubuntu0.11+esm1
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
cups@2.3.3-r2
2.3.3-r3
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
cups@2.3.3-r2
2.3.3-r3
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
cups@1:2.2.6-40.el8
1:2.2.6-45.el8_6.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.