StackRadar

CVE-2026-102474

Medium

Advisory

Published 29 Sept 2026In the index since 1 Oct 2026
Severity
Medium
worst across findings
CVSS
4.0
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,656
of 17,985 indexed, latest versions
Container images
2,632
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,656 of 17,985 indexed charts deploy, on 2,632 images.

Affected packageAffected versionsFixed inImages
dashdeb0.5.7-4ubuntu1, 0.5.8-2.1ubuntu2, 0.5.8-2.10, 0.5.10.2-6+6 moreno fix listed2,632
OSV records
DEBIAN-CVE-2026-102474ECHO-a40f-fcbc-6816UBUNTU-CVE-2026-102474
Trending
Rank 12 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,656 by stars
ChartLatestAffected imagesRadar Score
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
dash@0.5.12-2
no fix listed

Open the chart page →

2,932
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
dash@0.5.12-12
no fix listed

Open the chart page →

1,859
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
dash@0.5.12-2
no fix listed

Open the chart page →

5,018
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
dash@0.5.12-2
no fix listed

Open the chart page →

2,135
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
dash@0.5.8-2.10
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
dash@0.5.10.2-6
no fix listed

Open the chart page →

9,696
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-102474.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed

Open the chart page →

6,744

Container images carrying it

2,632 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/redis:8.6.34d25e2fe601f
dash@0.5.12-12
no fix listed
1
library/redis:8.2.15fa2edb1e408
dash@0.5.12-2
no fix listed
1
library/redis83edc2b8e9ff
dash@0.5.12-2
no fix listed
1
library/redis:8.4a17e6c4fec82
dash@0.5.12-12
no fix listed
1
library/redis:8.8.3b2ba68d56e7e
dash@0.5.12-12
no fix listed
1
library/redis:8.0.2b43d2dcbbdb1
dash@0.5.12-2
no fix listed
1
library/redis:7.4.1bb142a9c18ac
dash@0.5.12-2
no fix listed
1
library/redis:8.0.3be0a135f1955
dash@0.5.12-2
no fix listed
1
library/redis:6.2d2ad7b21cafa
dash@0.5.12-2
no fix listed
1
library/redis:8.2.3d31852005202
dash@0.5.12-2
no fix listed
1
library/redmine:6.1.204ac44a2595b
dash@0.5.12-12
no fix listed
1
library/sonarqube:10.7.0-community0842dcd4c8f8
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
library/sonarqube:10.0.0-communityef9723cf4fe4
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
library/telegraf:1.27507a3eecf809
dash@0.5.12-2
no fix listed
1
library/tomcat:11.0.26-jdk17-temurin-noble333c23b95c94
dash@0.5.12-6ubuntu5
no fix listed
1
library/ubuntu:bionic152dc042452c
dash@0.5.8-2.10
no fix listed
1
library/ubuntu:latest3595d7fc4286
dash@0.5.12-12ubuntu3
no fix listed
1
library/ubuntu:22.04b8b6ee6aa931
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
library/varnish:7.5.04d0bb287d87b
dash@0.5.12-2
no fix listed
1
library/wordpress:6.4.3-apache8ae66efb09a2
dash@0.5.12-2
no fix listed
1
library/wordpress:7.1.2-apache8ae73d594a15
dash@0.5.12-12
no fix listed
1
library/wordpress:6.9.4-fpmad4a8bae2eb4
dash@0.5.12-12
no fix listed
1
library/wordpress:7.1.2-apachebb209c8ab111
dash@0.5.12-12
no fix listed
1
library/wordpress:php8.1-apachef73396626d2f
dash@0.5.12-12
no fix listed
1
library/xwiki:lts-postgres-tomcat9b8142bce157
dash@0.5.12-6ubuntu5
no fix listed
1
library/zookeeper:3.8-temurin55d1e5b2e601
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
library/zookeeper:3.9.4dfa9ba46d14b
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
libretranslate/libretranslate:v1.9.61de2d7056bb8
dash@0.5.12-2
no fix listed
1
lightbend/curl:7.47.0b0c9894ac8dd
dash@0.5.8-2.1ubuntu2
no fix listed
1
linuxchina/alibaba-rsocket-broker:1.1.3-k8sf758e2e567ee
dash@0.5.8-2.10
no fix listed
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
dash@0.5.8-2.10
no fix listed
1
linuxserver/calibre-web:0.6.24241009026e6f
dash@0.5.12-6ubuntu5
no fix listed
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
dash@0.5.10.2-6
no fix listed
1
linuxserver/code-server:4.10.1a5e43a05ae79
dash@0.5.11+git20210903+057cd650a4ed-3build1
no fix listed
1
linuxserver/codimd:latestb801bbcf6386
dash@0.5.8-2.10
no fix listed
1
linuxserver/deluge:18.04.10ac871624394
dash@0.5.8-2.10
no fix listed
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
dash@0.5.8-2.10
no fix listed
1
linuxserver/foldingathome:7.6.219a997426d71e
dash@0.5.12-6ubuntu5
no fix listed
1
linuxserver/foldingathome:8.5.6ebb32940e4bb
dash@0.5.12-6ubuntu5
no fix listed
1
linuxserver/jackett:0.20.39922b8bfdee1ae
dash@0.5.8-2.10
no fix listed
1
linuxserver/jellyfin:10.7.72427dde159a2
dash@0.5.10.2-6
no fix listed
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
dash@0.5.8-2.10
no fix listed
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
dash@0.5.8-2.10
no fix listed
1
linuxserver/plex:1.43.22785a6ad64d3
dash@0.5.12-6ubuntu5
no fix listed
1
linuxserver/plex:1.25.24a13ced2326c
dash@0.5.10.2-6
no fix listed
1
linuxserver/radarr:3.2.25965bbb2f90d
dash@0.5.10.2-6
no fix listed
1
linuxserver/sonarr:3.0.6b5a31ff4fdf3
dash@0.5.8-2.10
no fix listed
1
linuxserver/unifi-controller:8.0.240ae315a3a456
dash@0.5.10.2-6
no fix listed
1
linuxserver/unifi-controller:7.3.83ab105cc50322
dash@0.5.10.2-6
no fix listed
1
linuxserver/unifi-network-application:10.6.106-ls1467f15f34937ce
dash@0.5.12-12ubuntu3
no fix listed
1

syft 1.42.1 · advisories as of 3 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.