StackRadar

CVE-2026-0861

High

Advisory

Published 14 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,384
of 17,781 indexed, latest versions
Container images
1,493
deployed by those charts
Fix available
3 of 3
affected packages

CVE-2026-0861 affecting package glibc for versions less than 2.38-18

Carried by container images the latest versions of 1,384 of 17,781 indexed charts deploy, on 1,493 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.31-0ubuntu9, 2.31-0ubuntu9.1, 2.31-0ubuntu9.2, 2.31-0ubuntu9.7+37 more2.31-0ubuntu9.18+esm1, 2.35-0ubuntu3.13, 2.36-9+deb12u14, 2.39-0ubuntu8.7+2 more1,473
glibcapk2.37-r6, 2.38-r6, 2.39-r7, 2.40-r1+6 more2.42-r619
glibcrpm2.38-16.azl32.38-181
OSV records
CGA-2mgg-q5mj-634rDEBIAN-CVE-2026-0861UBUNTU-CVE-2026-0861AZL-74547
Also known as
CGA-r49j-3wwm-c7g6, USN-8005-1

Charts affected

1,384 by stars
ChartLatestAffected imagesRadar Score
codefreshcodefresh-onpremOfficialVerified publisher2.12.134 of 42See more

codefresh codefresh-onprem 2.12.13

4 of the 42 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
glibc@2.36-9+deb12u8
2.36-9+deb12u14
bitnamilegacy/rabbitmq:4.1.39e635efba431
glibc@2.36-9+deb12u10
2.36-9+deb12u14
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

14,956
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2api:3.86f56d239d280
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2auth:3.833ecfda16608
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2notifier:3.8f190a6212195
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2rulesengine:3.8259503496ff9
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2scheduler:3.8b1de2055c362
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2sensorcontainer:3.8b1a338f64773
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2stream:3.81c8904a3bf67
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2timersengine:3.81bf35bfaf00c
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2web:3.809989a26c8b7
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1
stackstorm/st2workflowengine:3.819fdfffdbba8
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.18+esm1

Open the chart page →

96,419
supabasetokens-studioVerified publisher1.0.05 of 14See more

supabase tokens-studio 1.0.0

5 of the 14 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
supabase/edge-runtime:v1.59.0eff9c554d649
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/postgres-meta:v0.84.2d0a96973e9f1
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/realtime:v2.33.8d207e6e23ad3
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/studio:20241021-9f9b08326d8070c55e9
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
glibc@2.36-9+deb12u7
2.36-9+deb12u14
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

8,493
budibasebudibase0.0.0-master1 of 7See more

budibase budibase 0.0.0-master

1 of the 7 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

10,775
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,812
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

3,454
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,025
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

7,857
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.7

Open the chart page →

1,240
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

3,480
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

11,405
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.13

Open the chart page →

4,244
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,012
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
2.36-9+deb12u14
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.7

Open the chart page →

5,357
envoy-gatewayhelmforgeVerified publisher2.1.01 of 3See more

envoy-gateway helmforge 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.15.024528cf5229d
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

2,379
ilumilumOfficialVerified publisher6.7.33 of 19See more

ilum ilum 6.7.3

3 of the 19 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14
ilum/marquez:0.54.06e1d709d41f8
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

23,228
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.7

Open the chart page →

3,395
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

7,007
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
glibc@2.41-12
2.41-12+deb13u2

Open the chart page →

5,634
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
netrisai/controller-telescope:4.6.0.00414d82948a8b2
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.18+esm1
netrisai/controller-web-session-generator:0.2.0a030a31289f4
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1

Open the chart page →

30,326
syftopenmined0.9.53 of 6See more

syft openmined 0.9.5

3 of the 6 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
glibc@2.36-9+deb12u4
2.36-9+deb12u14
openmined/syft-backend:0.9.5b72f74a68b32
glibc@2.40-r8
2.42-r6
openmined/syft-frontend:0.9.5d11524a3854a
glibc@2.40-r8
2.42-r6

Open the chart page →

17,245
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,489
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1

Open the chart page →

11,782
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1

Open the chart page →

7,268
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

6,348
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

5,630
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1

Open the chart page →

30,668
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

6,457
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
glibc@2.31-0ubuntu9.14
2.31-0ubuntu9.18+esm1

Open the chart page →

12,111
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

3,033
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,896
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13

Open the chart page →

4,903
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7

Open the chart page →

8,636
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

13,350
thehivestrangebee-helmOfficialVerified publisher1.0.63 of 7See more

thehive strangebee-helm 1.0.6

3 of the 7 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

16,210
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

14,240
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

7,930
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u2

Open the chart page →

2,984
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
glibc@2.36-9+deb12u7
2.36-9+deb12u14
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
glibc@2.36-9+deb12u8
2.36-9+deb12u14
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

17,263
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1

Open the chart page →

52,919
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,870
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

1,663
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
dolibarr/dolibarr:22.0.47ad88fc9b13c
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

9,106
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.13

Open the chart page →

14,094
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
glibc@2.36-9+deb12u7
2.36-9+deb12u14
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
glibc@2.36-9+deb12u7
2.36-9+deb12u14
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
glibc@2.36-9+deb12u7
2.36-9+deb12u14
datamate/seafile-professional:11.0.202dd66b722464
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.13

Open the chart page →

27,267
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-0861.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
glibc@2.41-12+deb13u1
2.41-12+deb13u2

Open the chart page →

2,163

Container images carrying it

1,493 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1
79
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14
11
library/mongo:5.0.6-focal8e70544b6c76
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.18+esm1
10
library/rabbitmq:3.9-management8a279e9396a8
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13
10
library/rabbitmq:3.13-management:3-managemente582c0bc7766
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.7
8
library/kong:3.6a42d2b4503e7
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.13
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
glibc@2.36-9+deb12u10
2.36-9+deb12u14
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
2.36-9+deb12u14
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
2.36-9+deb12u14
6
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
2.36-9+deb12u14
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
glibc@2.36-9+deb12u4
2.36-9+deb12u14
5
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
glibc@2.36-9+deb12u10
2.36-9+deb12u14
5
library/mongo:4.44be76f674fc4
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
5
library/postgres:122f2a8c2a7d10
glibc@2.36-9+deb12u9
2.36-9+deb12u14
5
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1
5
artifacthub/postgres:latest4fd34fa635cc
glibc@2.41-12
2.41-12+deb13u2
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
4
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
glibc@2.36-9+deb12u10
2.36-9+deb12u14
4
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
glibc@2.36-9+deb12u10
2.36-9+deb12u14
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
glibc@2.36-9+deb12u10
2.36-9+deb12u14
4
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u2
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.13
4
library/mongo:5.0-focal5e15a3f014ed
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
4
library/nginx:1.27.1287ff321f9e3
glibc@2.36-9+deb12u8
2.36-9+deb12u14
4
library/postgres:134689940c6838
glibc@2.41-12
2.41-12+deb13u2
4
library/rabbitmq:3.11-managementc3f70098e01d
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.13
4
mastercloudapps/planner:v1.2340a950b311b2
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13
4
opea/llm-tgi:1.00c25aab3f106
glibc@2.36-9+deb12u8
2.36-9+deb12u14
4
shashkist/flask-contacts-app:latest581de1fd6084
glibc@2.36-9+deb12u9
2.36-9+deb12u14
4
valkey/valkey:9.0.2930b41430fb7
glibc@2.41-12+deb13u1
2.41-12+deb13u2
4
bitnamilegacy/kubectl:latestcd354d5b2556
glibc@2.36-9+deb12u10
2.36-9+deb12u14
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
glibc@2.36-9+deb12u9
2.36-9+deb12u14
3
ciscolabs/rtsp-client:latesta7b60ec88285
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1
3
ciscolabs/rtsp-server:latestb59fc10bb821
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.18+esm1
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
3
codeurjc/planner:v1.0800cf520c245
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.13
3
dgraph/dgraph:v21.12.03b55ea83fffe
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
glibc@2.36-9+deb12u8
2.36-9+deb12u14
3
envoyproxy/envoy:v1.31.02bf7f042e396
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.13
3
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.7
3
guacamole/guacamole:1.6.0f344085e618b
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.7
3
jacobalberty/unifi:v10.0.162896c0ab82d33
glibc@2.31-0ubuntu9.17
2.31-0ubuntu9.18+esm1
3
library/nginx:1.25:1.25.5a484819eb602
glibc@2.36-9+deb12u7
2.36-9+deb12u14
3
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.18+esm1
3
xenondb/percona:5.7.330e26872a2b67
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18+esm1
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
glibc@2.36-9+deb12u9
2.36-9+deb12u14
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u14
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
glibc@2.36-9+deb12u7
2.36-9+deb12u14
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.