StackRadar

CVE-2026-102473

Medium

Advisory

Published 29 Sept 2026In the index since 1 Oct 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,639
of 17,985 indexed, latest versions
Container images
2,601
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,639 of 17,985 indexed charts deploy, on 2,601 images.

Affected packageAffected versionsFixed inImages
dashdeb0.5.7-4ubuntu1, 0.5.8-2.1ubuntu2, 0.5.8-2.10, 0.5.10.2-6+6 moreno fix listed2,601
OSV records
DEBIAN-CVE-2026-102473UBUNTU-CVE-2026-102473ECHO-f9f7-0739-3421
Trending
Rank 5 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,639 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,601 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
aktosecurity/akto-threat-detection-backend:latestdffb8c3676ef
dash@0.5.12-12ubuntu3
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
dash@0.5.12-6ubuntu5
no fix listed
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
dash@0.5.12-12ubuntu3
no fix listed
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
dash@0.5.12-12ubuntu3
no fix listed
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
dash@0.5.12-12ubuntu3
no fix listed
1
alazidis/stornx:1.1.1602d4f7f090c
dash@0.5.12-2
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
dash@0.5.12-2
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
dash@0.5.8-2.10
no fix listed
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
dash@0.5.12-6ubuntu5
no fix listed
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
dash@0.5.12-6ubuntu5
no fix listed
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
anguda/ant-media:2.5c435285fc241
dash@0.5.10.2-6
no fix listed
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
dash@0.5.12-2
no fix listed
1
anthonyraymond/joal:2.1.37fc942567c564
dash@0.5.10.2-6
no fix listed
1
antiantiops/vscode-browser-docker:1.140.081c3bb6895b1
dash@0.5.12-6ubuntu5
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
dash@0.5.12-6ubuntu5
no fix listed
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
dash@0.5.12-6ubuntu5
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
dash@0.5.12-12
no fix listed
1
antrea/flow-aggregator:v2.7.0065193e7572f
dash@0.5.12-6ubuntu5
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
dash@0.5.12-2
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
dash@0.5.12-6ubuntu5
no fix listed
1
apache/activemq-artemis:2.37.0bae523439ee3
dash@0.5.12-6ubuntu5
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
dash@0.5.12-2
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
dash@0.5.12-2
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
dash@0.5.12-2
no fix listed
1
apache/apisix:3.16.0-ubuntu5e47692cac00
dash@0.5.12-6ubuntu5
no fix listed
1
apache/camel-k:2.11.0d173e7efe258
dash@0.5.12-12ubuntu3
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apache/hertzbeat:1.8.075d48a62748f
dash@0.5.12-6ubuntu5
no fix listed
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
dash@0.5.12-6ubuntu5
no fix listed
1
apache/james:distributed-3.7.2660c0fa12ec2
dash@0.5.10.2-6
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
dash@0.5.10.2-6
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
dash@0.5.10.2-6
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
dash@0.5.10.2-6
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apache/rocketmq:5.3.0434d8398f996
dash@0.5.12-6ubuntu5
no fix listed
1
apache/rocketmq-exporter:0.0.2c8fb51195444
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apache/skywalking-oap-server:9.2.0133d35d2c263
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
dash@0.5.10.2-6
no fix listed
1
apache/skywalking-ui:9.2.0295f1dc87d98
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
apache/skywalking-ui:8.9.180530f0308a5
dash@0.5.10.2-6
no fix listed
1
apache/superset:4.0.1ab9467fd712c
dash@0.5.12-2
no fix listed
1
apache/tika:latest-full80072bb73dd3
dash@0.5.12-12ubuntu3
no fix listed
1
apache/tika:3.3.1.090b7fa1dc018
dash@0.5.12-12ubuntu3
no fix listed
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
dash@0.5.12-12
no fix listed
1

syft 1.42.1 · advisories as of 2 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.