StackRadar

CVE-2026-102473

Medium

Advisory

Published 29 Sept 2026In the index since 1 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,656
of 18,026 indexed, latest versions
Container images
2,652
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,656 of 18,026 indexed charts deploy, on 2,652 images.

Affected packageAffected versionsFixed inImages
dashdeb0.5.7-4ubuntu1, 0.5.8-2.1ubuntu2, 0.5.8-2.10, 0.5.10.2-6+6 moreno fix listed2,652
OSV records
DEBIAN-CVE-2026-102473ECHO-f9f7-0739-3421UBUNTU-CVE-2026-102473
Trending
Rank 8 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,656 by stars
ChartLatestAffected imagesRadar Score
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
dash@0.5.12-2
no fix listed

Open the chart page →

2,932
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:latestf9ea18bfa4fa
dash@0.5.12-12
no fix listed

Open the chart page →

1,655
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
dash@0.5.12-2
no fix listed

Open the chart page →

5,028
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
dash@0.5.12-2
no fix listed

Open the chart page →

2,139
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
dash@0.5.8-2.10
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
dash@0.5.10.2-6
no fix listed

Open the chart page →

9,700
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

6,746

Container images carrying it

2,652 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
dash@0.5.8-2.10
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
dash@0.5.12-12
no fix listed
1
quay.io/go-skynet/local-ai:latestf1bc435659b9
dash@0.5.12-6ubuntu5
no fix listed
1
quay.io/groundcover/tools:20260929e8a79ea4cf39
dash@0.5.12-12
no fix listed
1
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
dash@0.5.12-12ubuntu3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
dash@0.5.12-2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
dash@0.5.12-2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
dash@0.5.12-2
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
dash@0.5.12-2
no fix listed
1
quay.io/maxiv/pieeat:0.9.3099715479210
dash@0.5.12-12
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
dash@0.5.12-2
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
dash@0.5.12-2
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
dash@0.5.8-2.1ubuntu2
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
dash@0.5.12-12
no fix listed
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
dash@0.5.12-6ubuntu5
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
dash@0.5.8-2.1ubuntu2
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
dash@0.5.12-12
no fix listed
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
dash@0.5.12-12ubuntu3
no fix listed
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
dash@0.5.12-2
no fix listed
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
dash@0.5.12-2
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
dash@0.5.12-6ubuntu5
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.100dd4553fcf08
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.12ce790a4023b6
dash@0.5.12-12ubuntu3
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.4001e589acf2e
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestc5faeae6b5d0
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.104019bb2e325
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.198d46dc7e071
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.19df7d5aa03fe
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabb21661438ee9
dash@0.5.12-2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.25b0d50fcd5ea
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.6.2-gitlab1a80159109e74
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3180688274b2c
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.17419aa33eb17
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.1a072f0a41f28
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
dash@0.5.10.2-6
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
dash@0.5.12-2
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
dash@0.5.12-2
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
dash@0.5.12-12
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
dash@0.5.12-2
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
dash@0.5.12-2
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
dash@0.5.12-2
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.