StackRadar

CVE-2025-5278

Medium

Advisory

Published 27 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.003
21st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,492
of 17,787 indexed, latest versions
Container images
2,511
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: coreutils security update

Carried by container images the latest versions of 2,492 of 17,787 indexed charts deploy, on 2,511 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb8.21-1ubuntu5, 8.21-1ubuntu5.1, 8.21-1ubuntu5.4, 8.25-2ubuntu2+17 more8.32-4.1ubuntu1.4, 9.4-3ubuntu6.3, 9.7-3ubuntu2.12,347
coreutilsrpm8.29-lp151.3.3, 8.32-32.el9, 8.32-34.el9, 8.32-35.el9+6 more0:8.32-41.el9_8, 0:9.5-8.el10_2, 8.32-150400.9.9.1, 9.4-7+1 more156
coreutils-fromdeb9.5-1ubuntu2+0.0.0~ubuntu24, 9.5-1ubuntu2+0.0.0~ubuntu259.7-3ubuntu2.172
OSV records
DEBIAN-CVE-2025-5278RHSA-2026:28911RHSA-2026:33124RLSA-2026:28911UBUNTU-CVE-2025-5278AZL-93060openSUSE-SU-2025:15327-1SUSE-SU-2025:02362-1
Also known as
USN-8697-1

Charts affected

2,492 by stars
ChartLatestAffected imagesRadar Score
mcpmcp-chartsVerified publisher0.0.233 of 7See more

mcp mcp-charts 0.0.23

3 of the 7 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
coreutils@9.7-3
no fix listed
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
coreutils@9.7-3
no fix listed
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1

Open the chart page →

6,929
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
coreutils@9.7-3
no fix listed

Open the chart page →

2,753
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

4,137
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
coreutils@9.5-1ubuntu4
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu24
no fix listed
no fix listed

Open the chart page →

11,103
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
coreutils@9.7-3
no fix listed

Open the chart page →

2,680
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
coreutils@9.1-1
no fix listed

Open the chart page →

13,738
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
coreutils@9.7-3
no fix listed
library/redmine:6.1.204ac44a2595b
coreutils@9.7-3
no fix listed

Open the chart page →

7,527
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,827
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,827
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
coreutils@9.7-3
no fix listed

Open the chart page →

1,879
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

3,689
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

1,626
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
coreutils@9.1-1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
coreutils@9.1-1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
coreutils@9.1-1
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
coreutils@9.1-1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
coreutils@9.1-1
no fix listed

Open the chart page →

37,373
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
coreutils@8.32-40.el9
0:8.32-41.el9_8

Open the chart page →

322
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,827
helm-composenousefreakVerified publisher0.1.32 of 2See more

helm-compose nousefreak 0.1.3

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
coreutils@8.30-3ubuntu2
no fix listed
library/wordpress:latest5a93c470ae82
coreutils@9.7-3
no fix listed

Open the chart page →

14,250
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
coreutils@8.32-39.el9
0:8.32-41.el9_8

Open the chart page →

6,091
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
coreutils@9.1-1
no fix listed

Open the chart page →

5,039
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,827
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
coreutils@9.1-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
coreutils@9.1-1
no fix listed

Open the chart page →

14,838
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

4,166
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
coreutils@8.32-34.el9
0:8.32-41.el9_8

Open the chart page →

2,097
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
coreutils@9.1-1
no fix listed

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.17 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

7 of the 34 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
coreutils@9.7-3
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3

Open the chart page →

22,420
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
coreutils@9.1-1
no fix listed

Open the chart page →

6,873
opikopikOfficialVerified publisher2.2.612See more

opik opik 2.2.61

2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
redis/redis-stack-server:7.2.0-v10e44b2b49d059
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
coreutils@8.32-4.1ubuntu1.3
8.32-4.1ubuntu1.4
shaowenchen/ops-server:latest315444f703f4
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

8,939
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
coreutils@9.7-3
no fix listed

Open the chart page →

3,681
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
coreutils@9.1-1
no fix listed
valkey/valkey:9.0.54c64dfeae602
coreutils@9.7-3
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
coreutils@9.7-3
no fix listed

Open the chart page →

8,489
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
coreutils@9.1-1
no fix listed

Open the chart page →

6,883
patch-operatorpatch-operator0.1.111 of 2See more

patch-operator patch-operator 0.1.11

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
coreutils@8.32-35.el9
0:8.32-41.el9_8

Open the chart page →

7,807
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
coreutils@8.28-1ubuntu1
no fix listed

Open the chart page →

4,727
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
coreutils@9.7-3
no fix listed

Open the chart page →

7,035
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

7,576
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

1,827
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
library/redis:8.10.1298e5b3bc566
coreutils@9.7-3
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
coreutils@9.7-3
no fix listed

Open the chart page →

5,047
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
coreutils@8.30-3ubuntu2
no fix listed
treskon/portrait:DEV-latest88e813f22347
coreutils@9.7-3ubuntu2
coreutils-from@9.5-1ubuntu2+0.0.0~ubuntu25
9.7-3ubuntu2.1
9.7-3ubuntu2.1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
coreutils@9.1-1
no fix listed

Open the chart page →

31,844
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
coreutils@9.7-3
no fix listed

Open the chart page →

1,626
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
coreutils@9.7-3
no fix listed

Open the chart page →

2,476
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
coreutils@9.7-3
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
coreutils@9.1-1
no fix listed

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
coreutils@9.1-1
no fix listed

Open the chart page →

3,201
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

23,964
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4

Open the chart page →

6,796
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3

Open the chart page →

2,762
velero-s3-deploymentradar-baseVerified publisher0.4.21 of 4See more

velero-s3-deployment radar-base 0.4.2

1 of the 4 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-11-21T17-21-54Z993e8c454a7e
coreutils@8.32-36.el9
0:8.32-41.el9_8

Open the chart page →

4,798
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4

Open the chart page →

7,405
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
coreutils@9.1-1
no fix listed

Open the chart page →

2,652
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
coreutils@9.7-3
no fix listed

Open the chart page →

4,240
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2025-5278.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
coreutils@9.1-1
no fix listed
library/postgres:18.4a02db8cac496
coreutils@9.7-3
no fix listed
library/rabbitmq:4.3.4-managementeb5295d08332
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3

Open the chart page →

11,869

Container images carrying it

2,511 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/api7/adc:0.27.1f65f53dd9668
coreutils@9.1-1
no fix listed
2
ghcr.io/appscode/inbox-server:latest:postgres-latest536358d7b17e
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
2
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
coreutils@9.1-1
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
2
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
coreutils@9.7-3
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
coreutils@9.1-1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
coreutils@9.1-1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
coreutils@9.1-1
no fix listed
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
coreutils@9.1-1
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
coreutils@8.30-3ubuntu2
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
coreutils@8.30-3ubuntu2
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
coreutils@8.30-3ubuntu2
no fix listed
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
coreutils@9.1-1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
coreutils@9.1-1
no fix listed
2
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
coreutils@9.7-3
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
coreutils@8.28-1ubuntu1
no fix listed
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
coreutils@9.1-1
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
coreutils@9.1-1
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
coreutils@9.1-1
no fix listed
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
coreutils@9.1-1
no fix listed
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
coreutils@9.1-1
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
coreutils@9.1-1
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
coreutils@8.32-4.1ubuntu1
8.32-4.1ubuntu1.4
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
coreutils@9.1-1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
coreutils@9.1-1
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
coreutils@8.30-3ubuntu2
no fix listed
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
2
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
coreutils@8.32-39.el9
0:8.32-41.el9_8
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
coreutils@9.7-3
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
2
quay.io/keycloak/keycloak:26.1.4044a457e0498
coreutils@8.32-36.el9
0:8.32-41.el9_8
2
quay.io/kubevirt/kubevirt-cloud-controller-manager:v0.6.037ad4c475941
coreutils@8.32-39.el9
0:8.32-41.el9_8
2
quay.io/open-cluster-management/registration-operator:v1.3.1df6c926a2b54
coreutils@8.32-39.el9
0:8.32-41.el9_8
2
quay.io/strimzi/operator:0.46.0ac434a48ac2b
coreutils@8.32-36.el9
0:8.32-41.el9_8
2
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
coreutils@8.32-39.el9
0:8.32-41.el9_8
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
coreutils@9.1-1
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
coreutils@9.1-1
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
coreutils@8.30-3ubuntu2
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
coreutils@8.28-1ubuntu1
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
coreutils@9.7-3
no fix listed
1
aboogie/login_test_backend:new9c41a4483ac8
coreutils@9.1-1
no fix listed
1
actualbudget/actual-server:25.3.158fecd9088b7
coreutils@9.1-1
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
coreutils@8.30-3ubuntu2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.