StackRadar

CVE-2025-5278

Medium

Advisory

Published 27 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.003
21st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,518
of 17,787 indexed, latest versions
Container images
2,545
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: coreutils security update

Carried by container images the latest versions of 2,518 of 17,787 indexed charts deploy, on 2,545 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb8.21-1ubuntu5, 8.21-1ubuntu5.1, 8.21-1ubuntu5.4, 8.25-2ubuntu2+17 more8.32-4.1ubuntu1.4, 9.4-3ubuntu6.3, 9.7-3ubuntu2.12,379
coreutilsrpm8.29-lp151.3.3, 8.32-32.el9, 8.32-34.el9, 8.32-35.el9+6 more0:8.32-41.el9_8, 0:9.5-8.el10_2, 8.32-150400.9.9.1, 9.4-7+1 more156
coreutils-fromdeb9.5-1ubuntu2+0.0.0~ubuntu24, 9.5-1ubuntu2+0.0.0~ubuntu259.7-3ubuntu2.174
OSV records
DEBIAN-CVE-2025-5278RHSA-2026:28911RHSA-2026:33124RLSA-2026:28911UBUNTU-CVE-2025-5278AZL-93060openSUSE-SU-2025:15327-1SUSE-SU-2025:02362-1
Also known as
USN-8697-1

Charts affected

2,518 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.11 of 3See more

argo-cd argo 10.9.1

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

2,989
jenkinsjenkinsciOfficialVerified publisher5.9.621 of 2See more

jenkins jenkinsci 5.9.62

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
coreutils@9.7-3
no fix listed

Open the chart page →

2,527
ciliumciliumOfficialVerified publisher1.20.12 of 3See more

cilium cilium 1.20.1

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

1,786
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm74566c6910d1
coreutils@9.1-1
no fix listed

Open the chart page →

3,207
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
coreutils@9.7-3
no fix listed

Open the chart page →

4,538
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
coreutils@9.1-1
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
coreutils@9.1-1
no fix listed
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
coreutils@9.1-1
no fix listed

Open the chart page →

8,842
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

6,597
authentikgoauthentikOfficialVerified publisher2026.8.21 of 1See more

authentik goauthentik 2026.8.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
coreutils@9.7-3
no fix listed

Open the chart page →

1,232
nginx-ingressnginxVerified publisher2.7.11 of 1See more

nginx-ingress nginx 2.7.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
nginx/nginx-ingress:5.6.18ca7b42ae702
coreutils@9.7-3
no fix listed

Open the chart page →

1,297
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
coreutils@9.7-3
no fix listed
artifacthub/tracker:v1.23.05368d21a6e5c
coreutils@9.7-3
no fix listed

Open the chart page →

10,782
alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

1,139
jupyterhubjupyterhubOfficialVerified publisher4.4.22 of 7See more

jupyterhub jupyterhub 4.4.2

2 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
coreutils@9.1-1
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
coreutils@9.1-1
no fix listed

Open the chart page →

7,909
argo-cdargo-cd-oci10.9.11 of 3See more

argo-cd argo-cd-oci 10.9.1

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

2,989
mimir-distributedgrafana6.2.02 of 6See more

mimir-distributed grafana 6.2.0

2 of the 6 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

4,519
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
coreutils@9.1-1
no fix listed

Open the chart page →

30,167
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
coreutils@9.1-1
no fix listed

Open the chart page →

11,372
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
coreutils@9.1-1
no fix listed

Open the chart page →

5,309
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

1,174
openebsopenebsOfficialVerified publisher4.6.14 of 35See more

openebs openebs 4.6.1

4 of the 35 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
coreutils@9.1-1
no fix listed
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

24,009
backstagebackstageOfficialVerified publisher2.10.11 of 1See more

backstage backstage 2.10.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/backstage/backstage:latest792e262ea504
coreutils@9.7-3
no fix listed

Open the chart page →

1,192
rediscloudpirates-redisVerified publisher0.35.01 of 1See more

redis cloudpirates-redis 0.35.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
coreutils@9.7-3
no fix listed

Open the chart page →

968
mlflowcommunity-chartsVerified publisher1.11.71 of 1See more

mlflow community-charts 1.11.7

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
burakince/mlflow:3.16.0ab4b566644b9
coreutils@9.7-3
no fix listed

Open the chart page →

631
qdrantqdrantOfficialVerified publisher1.19.11 of 1See more

qdrant qdrant 1.19.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
coreutils@9.7-3
no fix listed

Open the chart page →

818
apisixapisix2.17.02 of 3See more

apisix apisix 2.17.0

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
bitnamilegacy/etcd:latest99b408c15272
coreutils@9.1-1
no fix listed

Open the chart page →

3,096
dagsterdagsterVerified publisher1.13.222 of 5See more

dagster dagster 1.13.22

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
dagster/dagster-celery-k8s:1.13.22e29a64392e12
coreutils@9.7-3
no fix listed
dagster/user-code-example:1.13.225947f9ae481c
coreutils@9.7-3
no fix listed

Open the chart page →

3,459
zabbixzabbix-communityVerified publisher7.1.05 of 5See more

zabbix zabbix-community 7.1.0

5 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
coreutils@9.7-3
no fix listed
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3

Open the chart page →

13,875
keycloakcloudpirates-keycloakVerified publisher0.21.372 of 3See more

keycloak cloudpirates-keycloak 0.21.37

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
coreutils@9.7-3
no fix listed
library/postgres:18.64ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

4,365
fluentdfluent0.6.01 of 1See more

fluentd fluent 0.6.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
coreutils@9.7-3
no fix listed

Open the chart page →

1,011
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
coreutils@9.7-3
no fix listed

Open the chart page →

3,104
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
coreutils@9.1-1
no fix listed

Open the chart page →

1,901
miniominio-official5.4.02 of 2See more

minio minio-official 5.4.0

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

2,483
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
coreutils@9.7-3
no fix listed

Open the chart page →

5,378
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
coreutils@9.7-3
no fix listed

Open the chart page →

1,756
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
coreutils@8.28-1ubuntu1
no fix listed

Open the chart page →

5,557
netboxnetboxOfficialVerified publisher8.3.751 of 5See more

netbox netbox 8.3.75

1 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/netbox-community/netbox:v4.7.01685e91c61bb
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

1,068
valkeyvalkeyVerified publisher0.12.01 of 1See more

valkey valkey 0.12.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
coreutils@9.7-3
no fix listed

Open the chart page →

818
postgrescloudpirates-postgresVerified publisher0.20.51 of 1See more

postgres cloudpirates-postgres 0.20.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

1,638
openldap-stack-hahelm-openldapVerified publisher4.3.32 of 5See more

openldap-stack-ha helm-openldap 4.3.3

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
coreutils@9.1-1
no fix listed
library/debian:latestf324c7ff5432
coreutils@9.7-3
no fix listed

Open the chart page →

5,948
zammadzammadOfficialVerified publisher18.2.04 of 5See more

zammad zammad 18.2.0

4 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
coreutils@9.7-3
no fix listed
library/postgres:18.4a02db8cac496
coreutils@9.7-3
no fix listed
library/redis:8.10.1298e5b3bc566
coreutils@9.7-3
no fix listed
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
coreutils@9.7-3
no fix listed

Open the chart page →

6,849
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
coreutils@9.1-1
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
coreutils@9.1-1
no fix listed

Open the chart page →

6,362
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
coreutils@9.1-1
no fix listed

Open the chart page →

3,331
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

9,194
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

695
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

3,514
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
coreutils@8.30-3ubuntu2
no fix listed
milvusdb/milvus:v2.2.13a3a55e1c1497
coreutils@8.30-3ubuntu2
no fix listed

Open the chart page →

32,353
mesherymesheryOfficialVerified publisher1.0.701 of 1See more

meshery meshery 1.0.70

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest44b64ee128fb
coreutils@9.1-1
no fix listed

Open the chart page →

1,356
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
coreutils@9.1-1
no fix listed

Open the chart page →

10,648
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
penpotapp/mcp:2.17.284f3f07ead11
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1

Open the chart page →

4,412
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
coreutils@9.1-1
no fix listed

Open the chart page →

7,582
weblateweblateOfficialVerified publisher0.5.363 of 3See more

weblate weblate 0.5.36

3 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
coreutils@9.1-1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
coreutils@9.1-1
no fix listed
weblate/weblate:2026.9.1.0990720d1737a
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

6,761

Container images carrying it

2,545 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/defguard/defguard-proxy:2.1.08765a28e383e
coreutils@9.7-3
no fix listed
1
ghcr.io/defguard/gateway:2.1.0738b2b6f413b
coreutils@9.7-3
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
coreutils@9.7-3
no fix listed
1
ghcr.io/developmentseed/titiler:latest0f31f8b0441b
coreutils@9.7-3
no fix listed
1
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
coreutils@9.1-1
no fix listed
1
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
coreutils@9.7-3
no fix listed
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
coreutils@8.32-39.el9
0:8.32-41.el9_8
1
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
coreutils@9.1-1
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
coreutils@9.7-3
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
coreutils@9.1-1
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
coreutils@9.1-1
no fix listed
1
ghcr.io/ding113/claude-code-hub:latest87f9e8a92bd7
coreutils@9.7-3
no fix listed
1
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/donkie/spoolman:0.24.042135965c42d
coreutils@9.1-1
no fix listed
1
ghcr.io/dragoangel/mcrouter:v2026.06.29.0042afcffe67d0
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
coreutils@9.7-3
no fix listed
1
ghcr.io/drewburr-labs/evobot:3.0.04ddbb244c82f
coreutils@9.1-1
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
coreutils@9.1-1
no fix listed
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
coreutils@8.32-32.el9
0:8.32-41.el9_8
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
coreutils@8.28-1ubuntu1
no fix listed
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
coreutils@8.30-3ubuntu2
no fix listed
1
ghcr.io/edgelesssys/marblerun/coordinator:v1.9.2e589db0d0a2c
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
1
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
coreutils@9.7-3
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
coreutils@9.1-1
no fix listed
1
ghcr.io/enderdash-com/enderdash-agent:latest8525a1a67958
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
coreutils@9.7-3
no fix listed
1
ghcr.io/epinio/epinio-ui:v1.7.1-0.0.1d3de52dfb0b4
coreutils@8.32-150400.7.5
8.32-150400.9.9.1
1
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
coreutils@9.7-3
no fix listed
1
ghcr.io/eslupmi/impulse:v3.7.03ded1b7ebca0
coreutils@9.7-3
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
coreutils@9.7-3
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
coreutils@9.1-1
no fix listed
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
coreutils@9.1-1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.