StackRadar

CVE-2026-102473

Medium

Advisory

Published 29 Sept 2026In the index since 1 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,660
of 18,035 indexed, latest versions
Container images
2,664
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,660 of 18,035 indexed charts deploy, on 2,664 images.

Affected packageAffected versionsFixed inImages
dashdeb0.5.7-4ubuntu1, 0.5.8-2.1ubuntu2, 0.5.8-2.10, 0.5.10.2-6+6 moreno fix listed2,664
OSV records
DEBIAN-CVE-2026-102473ECHO-f9f7-0739-3421UBUNTU-CVE-2026-102473
Trending
Rank 12 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,660 by stars
ChartLatestAffected imagesRadar Score
typesensehmphuVerified publisher0.1.61 of 1See more

typesense hmphu 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
typesense/typesense:0.23.03accb727cbe2
dash@0.5.8-2.1ubuntu2
no fix listed

Open the chart page →

4,079
infrahub-enterpriseinfrahub-enterpriseVerified publisher4.21.24 of 5See more

infrahub-enterprise infrahub-enterprise 4.21.2

4 of the 5 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
dash@0.5.12-2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
dash@0.5.12-2
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
dash@0.5.12-2
no fix listed
library/neo4j:2026.05.0-enterprise2caf944aa4a5
dash@0.5.12-12
no fix listed

Open the chart page →

12,342
dayz-dedicated-serverjespernohrVerified publisher0.1.21 of 3See more

dayz-dedicated-server jespernohr 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

4,909
calibre-webk8s-home-lab-repo9.1.11 of 1See more

calibre-web k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

6,150
wireguardk8s-home-lab-repo1.6.01 of 1See more

wireguard k8s-home-lab-repo 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
dash@0.5.10.2-6
no fix listed

Open the chart page →

8,346
webdavk8s-webdavVerified publisher0.0.71 of 1See more

webdav k8s-webdav 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/httpd:2.441163d514c02
dash@0.5.12-12
no fix listed

Open the chart page →

1,332
klancesklances0.1.41 of 1See more

klances klances 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
dash@0.5.12-12
no fix listed

Open the chart page →

2,070
kraken-cikraken-ciVerified publisher1.7.361 of 10See more

kraken-ci kraken-ci 1.7.36

1 of the 10 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/redis:6e7b96daa9a18
dash@0.5.12-2
no fix listed

Open the chart page →

3,292
radondb-mysqlkubesphere-testVerified publisher1.0.11 of 3See more

radondb-mysql kubesphere-test 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
xenondb/percona:5.7.330e26872a2b67
dash@0.5.10.2-6
no fix listed

Open the chart page →

7,622
kubevpnkubevpn-charts2.11.91 of 1See more

kubevpn kubevpn-charts 2.11.9

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/kubenetworks/kubevpn:v2.11.93feb9da85270
dash@0.5.12-2
no fix listed

Open the chart page →

1,862
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
dash@0.5.10.2-6
no fix listed

Open the chart page →

61,900
machinarislib42Verified publisher0.2.01 of 1See more

machinaris lib42 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/guydavis/machinaris:test50a71a30f18e
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

38,388
lightsteplightstepsatellite1.2.41 of 1See more

lightstep lightstepsatellite 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
dash@0.5.8-2.1ubuntu2
no fix listed

Open the chart page →

15,903
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
dash@0.5.10.2-6
no fix listed

Open the chart page →

8,334
mariadbmariadbVerified publisher0.4.01 of 1See more

mariadb mariadb 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/mariadb:10.117db29378d4fd
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

2,687
memgraph-high-availabilitymemgraphVerified publisher1.4.11 of 2See more

memgraph-high-availability memgraph 1.4.1

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.1bd3fe13228f4
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

1,600
kubecostmesosphere-stable0.37.52 of 9See more

kubecost mesosphere-stable 0.37.5

2 of the 9 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.30.5744f84cf7493
dash@0.5.12-2
no fix listed
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

21,831
mlflow-tracking-servermlflow-tracking-serverVerified publisher4.1.01 of 1See more

mlflow-tracking-server mlflow-tracking-server 4.1.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/mlflow-oidc/mlflow-tracking-server:3.16.1-9.0.2-20261001970ba1cc1e69
dash@0.5.12-12
no fix listed

Open the chart page →

647
mogenius-operatormogeniusOfficialVerified publisher2.30.01 of 2See more

mogenius-operator mogenius 2.30.0

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2418652cfb58e
dash@0.5.12-12
no fix listed

Open the chart page →

945
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
dash@0.5.12-2
no fix listed

Open the chart page →

4,819
mariadbnicholaswildeVerified publisher1.0.61 of 1See more

mariadb nicholaswilde 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/mariadb:version-110.4.21mariabionic7a94d7e89f52
dash@0.5.8-2.10
no fix listed

Open the chart page →

9,950
observalobservalVerified publisher1.14.03 of 8See more

observal observal 1.14.0

3 of the 8 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.32966c582a9e9
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
library/postgres:161a6ab3f5345e
dash@0.5.12-12
no fix listed
ghcr.io/observal/observal-api:1.14.05a20125eafd4
dash@0.5.12-12
no fix listed

Open the chart page →

6,257
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
dash@0.5.12-6ubuntu5
no fix listed
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
dash@0.5.8-2.1ubuntu2
no fix listed
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
dash@0.5.12-12
no fix listed

Open the chart page →

110,657
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
jbtronics/part-db1:latestec7d16cf30b9
dash@0.5.12-2
no fix listed

Open the chart page →

3,609
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
dash@0.5.12-2
no fix listed

Open the chart page →

2,087
phpmyadminphpmyadminVerified publisher1.0.31 of 1See more

phpmyadmin phpmyadmin 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache0b38dba8580a
dash@0.5.12-12
no fix listed

Open the chart page →

2,735
prometheus-prefect-exporterprefectVerified publisher2026.9.162012261 of 1See more

prometheus-prefect-exporter prefect 2026.9.16201226

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
prefecthq/prometheus-prefect-exporter:4.1.06e0e79cabdc2
dash@0.5.12-12
no fix listed

Open the chart page →

1,092
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
dash@0.5.12-2
no fix listed

Open the chart page →

6,154
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
library/elasticsearch:8.15.0310b9fc03b06
dash@0.5.10.2-6
no fix listed
library/postgres:16.24aea012537ed
dash@0.5.12-2
no fix listed

Open the chart page →

14,322
nominatimrobjuz6.4.22 of 4See more

nominatim robjuz 6.4.2

2 of the 4 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
dash@0.5.12-2
no fix listed
mediagis/nominatim:5.3.27923a8e67197
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

56,354
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

6,955
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
dash@0.5.10.2-6
no fix listed

Open the chart page →

102,325
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

4,395
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
dash@0.5.12-12
no fix listed

Open the chart page →

4,665
skypilotskypilotOfficialVerified publisher0.14.01 of 3See more

skypilot skypilot 0.14.0

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.14.0a8362d205365
dash@0.5.12-12
no fix listed

Open the chart page →

5,467
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
dash@0.5.12-2
no fix listed

Open the chart page →

2,695
spartanspartan0.9.11 of 1See more

spartan spartan 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
dash@0.5.12-12
no fix listed

Open the chart page →

1,856
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

6,460
sn-platformstreamnative1.11.461 of 9See more

sn-platform streamnative 1.11.46

1 of the 9 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
dash@0.5.10.2-6
no fix listed

Open the chart page →

76,931
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
dash@0.5.12-2
no fix listed

Open the chart page →

7,526
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
dash@0.5.12-12
no fix listed
pretix/standalone:2026.7.05df3b7aa852e
dash@0.5.12-12
no fix listed
valkey/valkey:9.1.08e8d64b405ce
dash@0.5.12-12
no fix listed

Open the chart page →

11,837
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
dash@0.5.12-12
no fix listed

Open the chart page →

4,621
feedbacksystemthm-mni-iiVerified publisher0.48.22 of 14See more

feedbacksystem thm-mni-ii 0.48.2

2 of the 14 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
ghcr.io/thm-mni-ii/fbs-core:v2.0.734fd2032724c
dash@0.5.12-12ubuntu3
no fix listed
ghcr.io/thm-mni-ii/fbs-identity-service:v2.0.711b619dcd155
dash@0.5.12-12ubuntu3
no fix listed

Open the chart page →

27,940
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

12,153
crossplaneupbound-stable2.4.2-up.11 of 5See more

crossplane upbound-stable 2.4.2-up.1

1 of the 5 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/postgres:14c2427de38f99
dash@0.5.12-12
no fix listed

Open the chart page →

1,689
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
dash@0.5.8-2.10
no fix listed

Open the chart page →

83,340
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
dash@0.5.12-6ubuntu5
no fix listed

Open the chart page →

4,997
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
dash@0.5.12-12
no fix listed

Open the chart page →

8,975
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
dash@0.5.12-2
no fix listed

Open the chart page →

4,017
argo-cdwenerme10.9.61 of 3See more

argo-cd wenerme 10.9.6

1 of the 3 container images this version deploys carry CVE-2026-102473.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
dash@0.5.12-12ubuntu3
no fix listed

Open the chart page →

3,900

Container images carrying it

2,664 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3180688274b2c
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.17419aa33eb17
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.1a072f0a41f28
dash@0.5.12-12
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
dash@0.5.10.2-6
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
dash@0.5.12-2
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
dash@0.5.12-2
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
dash@0.5.12-12
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
dash@0.5.12-2
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
dash@0.5.12-2
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
dash@0.5.12-2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
dash@0.5.12-2
no fix listed
1

syft 1.42.1 · advisories as of 7 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.