StackRadar

CVE-2025-5278

Medium

Advisory

Published 27 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.003
21st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,511
of 17,790 indexed, latest versions
Container images
2,543
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: coreutils security update

Carried by container images the latest versions of 2,511 of 17,790 indexed charts deploy, on 2,543 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb8.21-1ubuntu5, 8.21-1ubuntu5.1, 8.21-1ubuntu5.4, 8.25-2ubuntu2+17 more8.32-4.1ubuntu1.4, 9.4-3ubuntu6.3, 9.7-3ubuntu2.12,376
coreutilsrpm8.29-lp151.3.3, 8.32-32.el9, 8.32-34.el9, 8.32-35.el9+6 more0:8.32-41.el9_8, 0:9.5-8.el10_2, 8.32-150400.9.9.1, 9.4-7+1 more155
coreutils-fromdeb9.5-1ubuntu2+0.0.0~ubuntu24, 9.5-1ubuntu2+0.0.0~ubuntu259.7-3ubuntu2.175
OSV records
DEBIAN-CVE-2025-5278RHSA-2026:28911RHSA-2026:33124RLSA-2026:28911UBUNTU-CVE-2025-5278AZL-93060openSUSE-SU-2025:15327-1SUSE-SU-2025:02362-1
Also known as
USN-8697-1

Charts affected

2,511 by stars
ChartLatestAffected imagesRadar Score
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
coreutils@9.1-1
no fix listed

Open the chart page →

6,416
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
coreutils@9.1-1
no fix listed

Open the chart page →

5,752
redismagefleet-redis0.1.01 of 1See more

redis magefleet-redis 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/redis:7.274566c6910d1
coreutils@9.1-1
no fix listed

Open the chart page →

1,072
magentomagento3.2.33 of 12See more

magento magento 3.2.3

3 of the 12 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
coreutils@8.30-3ubuntu2
no fix listed
library/rabbitmq:4.1.0-management935b3f84c1e4
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
library/redis:7.274566c6910d1
coreutils@9.1-1
no fix listed

Open the chart page →

13,643
plane-enterprisemakeplaneOfficialVerified publisher3.7.22 of 13See more

plane-enterprise makeplane 3.7.2

2 of the 13 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
coreutils@8.32-39.el9
0:8.32-41.el9_8
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
coreutils@8.32-39.el9
0:8.32-41.el9_8

Open the chart page →

4,973
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
coreutils@8.30-3ubuntu2
no fix listed

Open the chart page →

3,017
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
coreutils@8.28-1ubuntu1
no fix listed

Open the chart page →

19,195
mcpmcp-chartsVerified publisher0.0.233 of 7See more

mcp mcp-charts 0.0.23

3 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
coreutils@9.7-3
no fix listed
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
coreutils@9.7-3
no fix listed
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1

Open the chart page →

7,025
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
coreutils@9.7-3
no fix listed

Open the chart page →

2,775
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

4,197
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
coreutils@9.5-1ubuntu4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu24
no fix listed
no fix listed

Open the chart page →

11,109
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
coreutils@9.7-3
no fix listed

Open the chart page →

2,710
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
coreutils@9.1-1
no fix listed

Open the chart page →

13,812
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
coreutils@9.7-3
no fix listed
library/redmine:6.1.204ac44a2595b
coreutils@9.7-3
no fix listed

Open the chart page →

7,583
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,849
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,849
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
coreutils@9.7-3
no fix listed

Open the chart page →

1,907
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

3,732
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

1,649
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
coreutils@9.1-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
coreutils@9.1-1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
coreutils@9.1-1
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
coreutils@9.1-1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
coreutils@9.1-1
no fix listed

Open the chart page →

37,504
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
coreutils@8.32-40.el9
0:8.32-41.el9_8

Open the chart page →

347
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,849
helm-composenousefreakVerified publisher0.1.32 of 2See more

helm-compose nousefreak 0.1.3

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
coreutils@8.30-3ubuntu2
no fix listed
library/wordpress:latest5a93c470ae82
coreutils@9.7-3
no fix listed

Open the chart page →

14,363
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
coreutils@8.32-39.el9
0:8.32-41.el9_8

Open the chart page →

6,120
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
coreutils@9.1-1
no fix listed

Open the chart page →

5,062
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,849
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
coreutils@9.1-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
coreutils@9.1-1
no fix listed

Open the chart page →

14,884
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

4,208
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
coreutils@8.32-34.el9
0:8.32-41.el9_8

Open the chart page →

2,115
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
coreutils@9.1-1
no fix listed

Open the chart page →

5,849
opentelemetry-demoopentelemetry-helmVerified publisher0.41.27 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

7 of the 34 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3

Open the chart page →

22,916
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
coreutils@9.1-1
no fix listed

Open the chart page →

6,936
opikopikOfficialVerified publisher2.2.642 of 13See more

opik opik 2.2.64

2 of the 13 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
redis/redis-stack-server:7.2.0-v10e44b2b49d059
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

14,444
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
shaowenchen/ops-server:latest315444f703f4
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

9,101
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
coreutils@9.7-3
no fix listed

Open the chart page →

3,715
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
coreutils@9.1-1
no fix listed
valkey/valkey:9.0.54c64dfeae602
coreutils@9.7-3
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
coreutils@9.7-3
no fix listed

Open the chart page →

8,553
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
coreutils@9.1-1
no fix listed

Open the chart page →

6,918
patch-operatorpatch-operator0.1.111 of 2See more

patch-operator patch-operator 0.1.11

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
coreutils@8.32-35.el9
0:8.32-41.el9_8

Open the chart page →

7,840
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
coreutils@8.28-1ubuntu1
no fix listed

Open the chart page →

4,735
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
coreutils@9.7-3
no fix listed

Open the chart page →

7,128
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

7,622
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,849
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
library/redis:8.10.1298e5b3bc566
coreutils@9.7-3
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
coreutils@9.7-3
no fix listed

Open the chart page →

5,204
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
coreutils@8.30-3ubuntu2
no fix listed
treskon/portrait:DEV-latest88e813f22347
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
coreutils@9.1-1
no fix listed

Open the chart page →

32,033
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
coreutils@9.7-3
no fix listed

Open the chart page →

1,649
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
coreutils@9.7-3
no fix listed

Open the chart page →

2,498
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

5,490
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
coreutils@9.7-3
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
coreutils@9.1-1
no fix listed

Open the chart page →

8,269
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
coreutils@9.1-1
no fix listed

Open the chart page →

3,224
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

24,027

Container images carrying it

2,543 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
coreutils@8.30-3ubuntu2
no fix listed
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
coreutils@9.1-1
no fix listed
1
ghcr.io/stac-utils/stac-fastapi-pgstac:6.4.0fa35b9519abb
coreutils@9.7-3
no fix listed
1
ghcr.io/stac-utils/titiler-pgstac:3.1.0788173c5876d
coreutils@9.7-3
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
coreutils@8.30-3ubuntu2
no fix listed
1
ghcr.io/steadybit/agent:2.4.52bc7b260e44e
coreutils@9.7-3
no fix listed
1
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
coreutils@9.7-3
no fix listed
1
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
coreutils@9.7-3
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
coreutils@8.30-3ubuntu2
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
coreutils@8.30-3ubuntu2
no fix listed
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
coreutils@9.1-1
no fix listed
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
coreutils@9.1-1
no fix listed
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
coreutils@9.1-1
no fix listed
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
coreutils@9.1-1
no fix listed
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
coreutils@9.1-1
no fix listed
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
coreutils@9.1-1
no fix listed
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
coreutils@9.1-1
no fix listed
1
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/tarampampam/video-dl-bot:1.4.36daa2dc7556b
coreutils@9.7-3
no fix listed
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
coreutils@9.1-1
no fix listed
1
ghcr.io/theduffman85/crowdsec-web-ui:2026.8.3bfadbab9a72c
coreutils@9.7-3
no fix listed
1
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
coreutils@9.1-1
no fix listed
1
ghcr.io/topolvm/pie:0.18.0aa467443e407
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
1
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
1
ghcr.io/trow-registry/trow:0.10.075b7d2dcdb91
coreutils@9.7-3
no fix listed
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
ghcr.io/twigex/cospace:lateste5ecfd607e42
coreutils@9.1-1
no fix listed
1
ghcr.io/unique-ag/ai/search-proxy:2026.38.0aa6699b027bb
coreutils@9.7-3
no fix listed
1
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
1
ghcr.io/vinny1892/octantis:latest45459c0910fc
coreutils@9.7-3
no fix listed
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
coreutils@9.1-1
no fix listed
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
coreutils@8.32-4.1ubuntu1.1
8.32-4.1ubuntu1.4
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
coreutils@8.32-4.1ubuntu1.1
8.32-4.1ubuntu1.4
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
coreutils@9.1-1
no fix listed
1
ghcr.io/wearefrank/frank-gateway:1.0.05ccf797ccdf1
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
ghcr.io/wekan/ferretdb:latest6cb94aa01999
coreutils@9.7-3
no fix listed
1
ghcr.io/wekan/wekan:v11.83137951e3fb40
coreutils@9.7-3
no fix listed
1
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
coreutils@9.7-3
no fix listed
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
coreutils@9.1-1
no fix listed
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
coreutils@9.1-1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.