StackRadar

CVE-2025-5278

Medium

Advisory

Published 27 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,531
of 17,828 indexed, latest versions
Container images
2,577
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: coreutils security update

Carried by container images the latest versions of 2,531 of 17,828 indexed charts deploy, on 2,577 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb8.21-1ubuntu5, 8.21-1ubuntu5.1, 8.21-1ubuntu5.4, 8.25-2ubuntu2+17 more8.32-4.1ubuntu1.4, 9.4-3ubuntu6.3, 9.7-3ubuntu2.12,409
coreutilsrpm8.29-lp151.3.3, 8.29-lp152.4.7, 8.32-32.el9, 8.32-34.el9+7 more0:8.32-41.el9_8, 0:9.5-8.el10_2, 8.32-150400.9.9.1, 9.4-7+1 more154
coreutils-fromdeb9.5-1ubuntu2+0.0.0~ubuntu24, 9.5-1ubuntu2+0.0.0~ubuntu259.7-3ubuntu2.173
OSV records
DEBIAN-CVE-2025-5278RHSA-2026:28911RHSA-2026:33124RLSA-2026:28911UBUNTU-CVE-2025-5278AZL-93060openSUSE-SU-2025:15327-1SUSE-SU-2025:02362-1
Also known as
USN-8697-1

Charts affected

2,531 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.21 of 3See more

argo-cd argo 10.9.2

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

3,043
gitlabgitlabVerified publisher10.4.08 of 21See more

gitlab gitlab 10.4.0

8 of the 21 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
coreutils@9.1-1
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
coreutils@9.7-3
no fix listed
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
coreutils@9.7-3
no fix listed

Open the chart page →

16,478
jenkinsjenkinsciOfficialVerified publisher5.9.631 of 2See more

jenkins jenkinsci 5.9.63

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
coreutils@9.7-3
no fix listed

Open the chart page →

2,491
ciliumciliumOfficialVerified publisher1.20.21 of 3See more

cilium cilium 1.20.2

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.22939231d0d3e
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

1,018
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm0637954999d0
coreutils@9.1-1
no fix listed

Open the chart page →

3,197
nextcloudnextcloud9.3.01 of 1See more

nextcloud nextcloud 9.3.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nextcloud:34.0.4-apachea5ace30c695a
coreutils@9.7-3
no fix listed

Open the chart page →

3,960
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
coreutils@9.1-1
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
coreutils@9.1-1
no fix listed
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
coreutils@9.1-1
no fix listed

Open the chart page →

8,751
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

6,725
authentikgoauthentikOfficialVerified publisher2026.8.31 of 1See more

authentik goauthentik 2026.8.3

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.8.3ab9b4e8cc4ab
coreutils@9.7-3
no fix listed

Open the chart page →

1,000
nginx-ingressnginxVerified publisher2.7.31 of 1See more

nginx-ingress nginx 2.7.3

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
nginx/nginx-ingress:5.6.33e97f06dce1c
coreutils@9.7-3
no fix listed

Open the chart page →

1,144
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
coreutils@9.7-3
no fix listed
artifacthub/tracker:v1.23.05368d21a6e5c
coreutils@9.7-3
no fix listed

Open the chart page →

10,881
alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

1,191
argo-cdargo-cd-oci10.9.21 of 3See more

argo-cd argo-cd-oci 10.9.2

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

3,043
jupyterhubjupyterhubOfficialVerified publisher4.4.22 of 7See more

jupyterhub jupyterhub 4.4.2

2 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
coreutils@9.1-1
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
coreutils@9.1-1
no fix listed

Open the chart page →

8,003
mimir-distributedgrafana6.2.02 of 6See more

mimir-distributed grafana 6.2.0

2 of the 6 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

4,699
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
coreutils@9.1-1
no fix listed

Open the chart page →

30,740
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
coreutils@9.1-1
no fix listed

Open the chart page →

11,379
openebsopenebsOfficialVerified publisher4.6.14 of 35See more

openebs openebs 4.6.1

4 of the 35 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
coreutils@9.1-1
no fix listed
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

24,290
backstagebackstageOfficialVerified publisher2.10.11 of 1See more

backstage backstage 2.10.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/backstage/backstage:latest792e262ea504
coreutils@9.7-3
no fix listed

Open the chart page →

1,254
rediscloudpirates-redisVerified publisher0.35.21See more

redis cloudpirates-redis 0.35.2

1 container image this version deploys carries CVE-2025-5278.

Container imageDigestPackageFixed in
library/redis:8.10.18a1efc5f4795
coreutils@9.7-3
no fix listed

Open the chart page →

mlflowcommunity-chartsVerified publisher1.11.71 of 1See more

mlflow community-charts 1.11.7

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
burakince/mlflow:3.16.0ab4b566644b9
coreutils@9.7-3
no fix listed

Open the chart page →

670
qdrantqdrantOfficialVerified publisher1.19.11 of 1See more

qdrant qdrant 1.19.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
coreutils@9.7-3
no fix listed

Open the chart page →

780
apisixapisix2.17.02 of 3See more

apisix apisix 2.17.0

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
bitnamilegacy/etcd:latest99b408c15272
coreutils@9.1-1
no fix listed

Open the chart page →

3,107
zabbixzabbix-communityVerified publisher7.1.05 of 5See more

zabbix zabbix-community 7.1.0

5 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:16a3b7f434b2dc
coreutils@9.7-3
no fix listed
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3

Open the chart page →

13,636
keycloakcloudpirates-keycloakVerified publisher0.21.402See more

keycloak cloudpirates-keycloak 0.21.40

2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
coreutils@9.7-3
no fix listed
library/postgres:18.64ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

fluentdfluent0.6.01 of 1See more

fluentd fluent 0.6.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
coreutils@9.7-3
no fix listed

Open the chart page →

973
netdatanetdataVerified publisher3.7.1741 of 1See more

netdata netdata 3.7.174

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.121970e176031
coreutils@9.7-3
no fix listed

Open the chart page →

2,414
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
coreutils@9.1-1
no fix listed

Open the chart page →

2,017
miniominio-official5.4.02 of 2See more

minio minio-official 5.4.0

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

2,614
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
boky/postfix:v5.1.0aafc77238423
coreutils@9.7-3
no fix listed

Open the chart page →

5,531
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
coreutils@9.7-3
no fix listed

Open the chart page →

1,711
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
coreutils@8.28-1ubuntu1
no fix listed

Open the chart page →

5,579
netboxnetboxOfficialVerified publisher8.3.841See more

netbox netbox 8.3.84

1 container image this version deploys carries CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/netbox-community/netbox:v4.7.159e3e5954d02
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1

Open the chart page →

valkeyvalkeyVerified publisher0.12.01 of 1See more

valkey valkey 0.12.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2c123e3715db6
coreutils@9.7-3
no fix listed

Open the chart page →

862
postgrescloudpirates-postgresVerified publisher0.20.51 of 1See more

postgres cloudpirates-postgres 0.20.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

1,618
openldap-stack-hahelm-openldapVerified publisher4.3.32 of 5See more

openldap-stack-ha helm-openldap 4.3.3

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
coreutils@9.1-1
no fix listed
library/debian:latest9cc080028c43
coreutils@9.7-3
no fix listed

Open the chart page →

5,528
zammadzammadOfficialVerified publisher19.0.04 of 5See more

zammad zammad 19.0.0

4 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
coreutils@9.7-3
no fix listed
library/postgres:18.4a02db8cac496
coreutils@9.7-3
no fix listed
library/redis:8.10.1298e5b3bc566
coreutils@9.7-3
no fix listed
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
coreutils@9.7-3
no fix listed

Open the chart page →

6,450
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
coreutils@9.1-1
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
coreutils@9.1-1
no fix listed

Open the chart page →

6,545
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
coreutils@9.1-1
no fix listed

Open the chart page →

3,350
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

723
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

9,236
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
coreutils@8.30-3ubuntu2
no fix listed
milvusdb/milvus:v2.2.13a3a55e1c1497
coreutils@8.30-3ubuntu2
no fix listed

Open the chart page →

171,935
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

3,561
mesherymesheryOfficialVerified publisher1.0.701 of 1See more

meshery meshery 1.0.70

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest44b64ee128fb
coreutils@9.1-1
no fix listed

Open the chart page →

1,504
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
coreutils@9.1-1
no fix listed

Open the chart page →

10,750
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
penpotapp/mcp:2.17.284f3f07ead11
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1

Open the chart page →

4,482
signozsignoz0.142.11 of 5See more

signoz signoz 0.142.1

1 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.1034ecb436b687
coreutils@9.1-1
no fix listed

Open the chart page →

7,636
weblateweblateOfficialVerified publisher0.5.382See more

weblate weblate 0.5.38

2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
coreutils@9.1-1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
coreutils@9.1-1
no fix listed

Open the chart page →

locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
coreutils@9.1-1
no fix listed

Open the chart page →

2,853
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.686c951e05bf5
coreutils@9.7-3
no fix listed

Open the chart page →

1,272

Container images carrying it

2,577 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
coreutils@8.30-3ubuntu2
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
coreutils@8.32-39.el9
0:8.32-41.el9_8
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
coreutils@8.32-39.el9
0:8.32-41.el9_8
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
coreutils@9.1-1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
coreutils@9.7-3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
coreutils@9.1-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
coreutils@9.1-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
coreutils@9.1-1
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.