StackRadar

CVE-2026-102473

Medium

Advisory

Published 29 Sept 2026In the index since 1 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,656
of 18,026 indexed, latest versions
Container images
2,652
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,656 of 18,026 indexed charts deploy, on 2,652 images.

Affected packageAffected versionsFixed inImages
dashdeb0.5.7-4ubuntu1, 0.5.8-2.1ubuntu2, 0.5.8-2.10, 0.5.10.2-6+6 moreno fix listed2,652
OSV records
DEBIAN-CVE-2026-102473ECHO-f9f7-0739-3421UBUNTU-CVE-2026-102473
Trending
Rank 8 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,656 by stars
ChartLatestAffected imagesRadar Score
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
dash@0.5.12-2
no fix listed

Open the chart page →

2,932
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:latestf9ea18bfa4fa
dash@0.5.12-12
no fix listed

Open the chart page →

1,655
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
dash@0.5.12-2
no fix listed

Open the chart page →

5,028
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
dash@0.5.12-2
no fix listed

Open the chart page →

2,139
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
dash@0.5.8-2.10
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
dash@0.5.10.2-6
no fix listed

Open the chart page →

9,700
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

6,746

Container images carrying it

2,652 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
vcnngr/telegram-rebot:latest30f1f05e57a6
dash@0.5.12-2
no fix listed
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
dash@0.5.12-2
no fix listed
1
venturenox/redis:latest83b471c193ba
dash@0.5.12-2
no fix listed
1
vexorian/dizquetv:1.4.37e2b99844a5c
dash@0.5.8-2.10
no fix listed
1
vibhuvioio/ldap-manager:1.1.08a340fb8c9c9
dash@0.5.12-12
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
dash@0.5.8-2.10
no fix listed
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
dash@0.5.8-2.10
no fix listed
1
visualregressiontracker/api:5.0.11941aeb8c8bf9
dash@0.5.12-2
no fix listed
1
vlebediantsev/notes-admin-front:latest007c6670ff48
dash@0.5.12-2
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
dash@0.5.12-2
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
dash@0.5.12-2
no fix listed
1
voltha/bbsim:1.16.7d90403d58016
dash@0.5.8-2.10
no fix listed
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
dash@0.5.8-2.10
no fix listed
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
dash@0.5.8-2.10
no fix listed
1
voltha/voltha-cli:1.6.0c4e41e92f046
dash@0.5.8-2.1ubuntu2
no fix listed
1
voltha/voltha-envoy:1.6.059ab2a00f712
dash@0.5.7-4ubuntu1
no fix listed
1
voltha/voltha-netconf:1.6.037f80524c207
dash@0.5.8-2.1ubuntu2
no fix listed
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
dash@0.5.8-2.1ubuntu2
no fix listed
1
voltha/voltha-onos:5.1.8e038acb950d3
dash@0.5.8-2.10
no fix listed
1
voltha/voltha-tester:1.7.0655c3048a602
dash@0.5.8-2.1ubuntu2
no fix listed
1
voltha/voltha-voltha:1.6.0ff596b62de59
dash@0.5.8-2.1ubuntu2
no fix listed
1
voska/hass-mcp:latest7142a431e2c5
dash@0.5.12-2
no fix listed
1
wallarm/aih-scanner:2.9.0b39795d50e83
dash@0.5.12-12
no fix listed
1
wallarm/api-gateway:0.2.0a3d4d2f780e8
dash@0.5.12-2
no fix listed
1
wallarm/gateway-controller:0.4.09c6ed23e2f0e
dash@0.5.12-12
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
dash@0.5.10.2-6
no fix listed
1
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
dash@0.5.12-2
no fix listed
1
wateim/lighthouse-launch:latest2520149ee574
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
wavefronthq/proxy:9.2d1064d28f6eb
dash@0.5.8-2.10
no fix listed
1
wazuh/wazuh-dashboard:4.4.11787550d2358
dash@0.5.10.2-6
no fix listed
1
wazuh/wazuh-manager:4.4.121994f40e0da
dash@0.5.10.2-6
no fix listed
1
weblate/weblate:2026.10.0.16084353e0b28
dash@0.5.12-12ubuntu3
no fix listed
1
webodm/webodm_webapp:3.3.0ed7b1aa0e40f
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
wekanteam/wekan:v4.2268a51f0327df
dash@0.5.10.2-6
no fix listed
1
wger/server:2.71c5789b93bfe
dash@0.5.12-6ubuntu5
no fix listed
1
wiktorn/overpass-api:latest9bb5f4a9b54c
dash@0.5.12-2
no fix listed
1
wistefan/mvf:lateste0887302b2d8
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
wolveix/satisfactory-server:v1.9.1199be1064b18
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
woojoong/wowza:latestec230db19652
dash@0.5.8-2.10
no fix listed
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
worthnl/notifynl-omc:2.3.05c395b128a63
dash@0.5.12-6ubuntu5
no fix listed
1
wso2/wso2am:2.6.0fbe0f4059b74
dash@0.5.10.2-6
no fix listed
1
wso2/wso2am-analytics-worker:2.6.005fa15b3d927
dash@0.5.8-2.10
no fix listed
1
wso2/wso2ei-analytics-dashboard:6.6.0526a1ccae902
dash@0.5.8-2.10
no fix listed
1
wso2/wso2ei-analytics-worker:6.6.021e6b03449ac
dash@0.5.8-2.10
no fix listed
1
wso2/wso2ei-integrator:6.6.0790cd8c3a5a2
dash@0.5.8-2.10
no fix listed
1
xeladock/mysql_dns:latest4baf531453f1
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
xeladock/nginx2:latestc259a67b1dff
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
xeotek/kadeck:6.3.439a3b37a17c5
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.