StackRadar

CVE-2024-28182

Medium

Advisory

Published 4 Apr 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.850
100th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,125
of 17,781 indexed, latest versions
Container images
1,134
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,125 of 17,781 indexed charts deploy, on 1,134 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.36.0-2, 1.36.0-2+deb10u1, 1.36.0-2+deb10u2+9 more1.30.0-1ubuntu1+esm2, 1.36.0-2+deb10u3, 1.40.0-1ubuntu0.3, 1.43.0-1+deb11u2+2 more935
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+9 more0:1.33.0-4.el8_6.2, 0:1.33.0-5.el8_8.1, 0:1.33.0-6.el8_10.1, 0:1.43.0-5.el9_4.3+2 more199
OSV records
DEBIAN-CVE-2024-28182RHSA-2024:3501RHSA-2024:3701RHSA-2024:3763RHSA-2024:4252RLSA-2024:4252UBUNTU-CVE-2024-28182DLA-3804-1DLA-3898-1openSUSE-SU-2024:13825-1RLSA-2024:3501SUSE-SU-2024:1167-1
Also known as
RHSA-2024:3665, RHSA-2024:4576, RHSA-2024:4732, USN-6754-1

Charts affected

1,125 by stars
ChartLatestAffected imagesRadar Score
elasticinseefrlab2.2.02 of 2See more

elastic inseefrlab 2.2.0

2 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
library/kibana:7.17.3e2e2031c15be
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

17,284
supersetinseefrlab1.4.01 of 4See more

superset inseefrlab 1.4.0

1 of the 4 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

7,129
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

10,400
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

10,475
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

10,421
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

10,421
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2

Open the chart page →

10,701
jessejesse-chartVerified publisher0.0.461 of 6See more

jesse jesse-chart 0.0.46

1 of the 6 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
salehmir/jesse:1.10.101afa95f979e9
nghttp2@1.43.0-1+deb11u1
1.43.0-1+deb11u2

Open the chart page →

3,421
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-4.el8_6.2

Open the chart page →

9,318
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2

Open the chart page →

7,387
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.2
kafkakraft/kafka-controller:3.7.0f261ad288fce
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.2
kafkakraft/kafkakraft:3.7.02e4b593b878b
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.2

Open the chart page →

14,130
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3

Open the chart page →

5,264
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2

Open the chart page →

20,403
juicefskubesphere-stable0.16.21 of 4See more

juicefs kubesphere-stable 0.16.2

1 of the 4 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.20.043978fc60798
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

2,489
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

7,710
radondb-postgresqlkubesphere-testVerified publisher1.0.22 of 2See more

radondb-postgresql kubesphere-test 1.0.2

2 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
radondb/pgpool:4.2.2-debian-10-r1801ef77b5b87
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
radondb/postgresql-repmgr:11.11.0-debian-r1bcfb7f67c6f5
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

2,062
kubmeta-libkubmeta3.1.121 of 1See more

kubmeta-lib kubmeta 3.1.12

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/nginx:1.212bcabc23b454
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

1,126
laravelkubmeta4.2.71 of 2See more

laravel kubmeta 4.2.7

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/nginx:1.19df13abe416e3
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

1,244
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

12,422
linstorkvaps1.14.01 of 11See more

linstor kvaps 1.14.0

1 of the 11 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-satellite:v1.14.0a573fb9bc809
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

15,547
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

113,791
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-nginx:lateste7076242888a
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

7,510
voice-biometricslumenvox2.0.11 of 26See more

voice-biometrics lumenvox 2.0.1

1 of the 26 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
lumenvox/cloud-binary-storage:2.0.053decadc102d
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

70,741
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.12 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

2 of the 6 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
torrespro/mca-worker:2.0.06d3bd305a1ba
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

19,187
pulsemezmo0.3.11 of 1See more

pulse mezmo 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
mezmohq/vector:1.17.3ad5794b112af
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

689
nginx-staticmidokura-communityVerified publisher0.1.61 of 1See more

nginx-static midokura-community 0.1.6

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/nginx:1.23.03536d368b898
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

1,126
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.1

Open the chart page →

6,915
mlflow-controllermlflow-deployment-controller0.1.82 of 2See more

mlflow-controller mlflow-deployment-controller 0.1.8

2 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
tachyongroup/mlflow-deployment-controller:mlflow-controller-0.1.87e79b9000856
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
tachyongroup/mlflow-deployment-controller-ui:mlflow-controller-0.1.8f4f7fabe1037
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

8,957
mlflow-servermlflowserver0.1.91 of 3See more

mlflow-server mlflowserver 0.1.9

1 of the 3 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
buntha/mlflow:2.1.1154542cc3083
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

5,804
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:6.0.10-debian-11-r842319decb591
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

13,738
clowder2ncsaVerified publisher1.9.76 of 12See more

clowder2 ncsa 1.9.7

6 of the 12 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
nghttp2@1.43.0-1
1.43.0-1+deb11u2
bitnamilegacy/minio:2023.12.230b60b6565ab2
nghttp2@1.43.0-1+deb11u1
1.43.0-1+deb11u2
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
nghttp2@1.43.0-1
1.43.0-1+deb11u2
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

37,373
marge-botnetpositiveVerified publisher1.1.01 of 1See more

marge-bot netpositive 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.12.1a96c10b61a59
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

1,253
glowrootnovum-rgi-charts1.0.101 of 2See more

glowroot novum-rgi-charts 1.0.10

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

2,308
Helm-nginxnrr-test-app0.2.01 of 1See more

Helm-nginx nrr-test-app 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
nrrrus/nginx-test:latest5f55cd4ef557
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

915
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2

Open the chart page →

5,039
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

5,300
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
nghttp2@1.52.0-1
1.52.0-1+deb12u2
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2

Open the chart page →

14,838
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-5.el9_4.3

Open the chart page →

2,097
hlf-couchdbowkin2.1.01 of 1See more

hlf-couchdb owkin 2.1.0

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/couchdb:3.1.1b422509b1648
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

833
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-5.el9_4.3

Open the chart page →

7,807
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.2

Open the chart page →

7,576
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
nghttp2@1.43.0-1
1.43.0-1+deb11u2
library/elasticsearch:7.17.0332c6d416808
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3

Open the chart page →

31,844
rethinkdbpozetron1.1.91 of 1See more

rethinkdb pozetron 1.1.9

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
pozetroninc/rethinkdb-cluster:v2.4.16b06a098f994
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

2,912
pritunl-slack-apppritunl-slack-appVerified publisher0.1.71 of 1See more

pritunl-slack-app pritunl-slack-app 0.1.7

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

2,871
nifi-registryprofyu1.14.0-r0011 of 1See more

nifi-registry profyu 1.14.0-r001

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
apache/nifi-registry:1.14.0090b7f87ec7f
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

4,621
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.2

Open the chart page →

6,796
shinyproxyremche0.6.61 of 2See more

shinyproxy remche 0.6.6

1 of the 2 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
remche/shinyproxy:2.6.18bcda8a04d3b
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

3,958
repmanrepman-helmchartVerified publisher1.0.121 of 3See more

repman repman-helmchart 1.0.12

1 of the 3 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/nginx:1.21.62bcabc23b454
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

3,596
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
zbalogh/reservation-api-server:1.0.97c247e399a1f
nghttp2@1.43.0-1
1.43.0-1+deb11u2

Open the chart page →

6,639
sni-routerriotkit-org1.0.61 of 1See more

sni-router riotkit-org 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-28182.

Container imageDigestPackageFixed in
library/nginx:1.19df13abe416e3
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3

Open the chart page →

1,244

Container images carrying it

1,134 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/influxdb:2.6.1-debian-11-r18d17df1f9d745
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
bitnamilegacy/kubectl:1.23.59ae933929409
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
bitnamilegacy/kubectl:1.26.4a0a972324d93
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
bitnamilegacy/os-shell:11-debian-11-r722cb5982dcbf4
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2
2
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-5.el8_8.1
2
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-5.el8_8.1
2
eqalpha/keydb:latest6537505c4235
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3
2
falcosecurity/falco-driver-loader:0.33.11fe583eee4af
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
nghttp2@1.52.0-1
1.52.0-1+deb12u2
2
ilum/mongodb:6.0.542b6d774c37d
nghttp2@1.43.0-1+deb11u1
1.43.0-1+deb11u2
2
istio/kubectl:1.5.10dbb7726d1bf0
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
2
istio/proxyv2:1.18.0757d28c24100
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.2
2
istio/proxyv2:1.10.3a78b7a165744
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
nghttp2@1.52.0-1
1.52.0-1+deb12u2
2
kodekloud/examplevotingapp_vote:v13a856afb02a3
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
ldapaccountmanager/lam:8.0.1d46cf25d1dda
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
library/cassandra:3.11.65aa8400b4b3b
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
2
library/cassandra:4.1.37cbcec0086ac
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.2
2
library/couchdb:3.1.1b422509b1648
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
library/elasticsearch:7.17.35e6ac15bf6a5
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
library/mongo:4.2.358b25d51baa1
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm2
2
library/nginx:1.27.098f8ec75657d
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2
2
library/nginx:1.24.0f6daac2445b0
nghttp2@1.43.0-1+deb11u1
1.43.0-1+deb11u2
2
library/python:3.7eedf63967cdb
nghttp2@1.52.0-1
1.52.0-1+deb12u2
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
martinaif/backstage-k8s-demo-frontend:test1f07fbe15e5b5
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
minio/operator:v4.3.754393e03f3b2
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.1
2
moreillon/group-manager:v4.9.0d5a0ec8394c0
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
moreillon/group-manager-front:v3.3.1c9f85db3baa5
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u2
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
nghttp2@1.52.0-1
1.52.0-1+deb12u2
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
nghttp2@1.52.0-1
1.52.0-1+deb12u2
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3
2
openmf/community-app:latest496b60a51f28
nghttp2@1.36.0-2+deb10u1
1.36.0-2+deb10u3
2
passbolt/passbolt:3.4.0-ce-non-root655547e17263
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
pecan/bety:5.4.1f825d480cd62
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.2
2
postgis/postgis:15-3.3a2fc46b52819
nghttp2@1.43.0-1
1.43.0-1+deb11u2
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.