StackRadar

CVE-2026-103111

High

Advisory

Published 30 Sept 2026In the index since 1 Oct 2026
Severity
High
worst across findings
CVSS
7.6
base score, highest
EPSS
0.002
10th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,665
of 17,985 indexed, latest versions
Container images
2,621
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-103111 affecting package pcre2 10.48-1

Carried by container images the latest versions of 2,665 of 17,985 indexed charts deploy, on 2,621 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+13 more10.46-1~deb13u32,423
pcre2apk10.47-r0, 10.47-r1, 10.48-r010.49-r0191
pcre2rpm10.42-3.azl3no fix listed7
OSV records
ALPINE-CVE-2026-103111AZL-105119DEBIAN-CVE-2026-103111ECHO-bf42-43c6-45fdUBUNTU-CVE-2026-103111
Trending
Rank 1 in indexed charts, since 1 Oct 2026. See the ranking →

Charts affected

2,665 by stars
ChartLatestAffected imagesRadar Score
dingtalk-botxxl-job-adminVerified publisher0.1.31 of 2See more

dingtalk-bot xxl-job-admin 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
dellnoantechnp/dingtalk-bot:v1.0.1034000bbcad5
pcre2@10.46-1~deb13u1
10.46-1~deb13u3

Open the chart page →

3,743
nightingalexxl-job-adminVerified publisher0.2.113 of 6See more

nightingale xxl-job-admin 0.2.11

3 of the 6 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
pcre2@10.42-4ubuntu2.1
no fix listed
flashcatcloud/nightingale:8.0.0-beta.11ea1b0aaabe09
pcre2@10.42-1
no fix listed
library/redis:6.2d2ad7b21cafa
pcre2@10.42-1+deb12u1
no fix listed

Open the chart page →

11,841
pgcatxxl-job-adminVerified publisher0.3.31 of 1See more

pgcat xxl-job-admin 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
pcre2@10.42-1
no fix listed

Open the chart page →

3,394
nginx-chartxxoznge-nginx0.1.01 of 1See more

nginx-chart xxoznge-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
pcre2@10.46-1~deb13u2
10.46-1~deb13u3

Open the chart page →

1,859
helm-demoyahoon-helm-demoVerified publisher1.0.01 of 1See more

helm-demo yahoon-helm-demo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
pcre2@10.46-1~deb13u1
10.46-1~deb13u3

Open the chart page →

1,564
my-nginx-appyasser-nginx-app0.1.01 of 1See more

my-nginx-app yasser-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
pcre2@10.46-1~deb13u2
10.46-1~deb13u3

Open the chart page →

1,859
ceph-exporterygqygq2Verified publisher1.0.01 of 1See more

ceph-exporter ygqygq2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
digitalocean/ceph_exporter:latest3ba058e9a48d
pcre2@10.34-7ubuntu0.1
no fix listed

Open the chart page →

6,696
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
pcre2@10.42-1
no fix listed

Open the chart page →

2,900
jenkinszanise-jenkins-helm-chart0.1.01 of 1See more

jenkins zanise-jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
pcre2@10.46-1~deb13u1
10.46-1~deb13u3

Open the chart page →

3,140
changedetection-iozekker6Verified publisher1.103.01 of 1See more

changedetection-io zekker6 1.103.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.834df3680db1c
pcre2@10.42-1+deb12u1
no fix listed

Open the chart page →

2,932
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
pcre2@10.46-1~deb13u2
10.46-1~deb13u3

Open the chart page →

1,859
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
pcre2@10.42-1
no fix listed

Open the chart page →

5,018
zimagizimagi2.7.171 of 6See more

zimagi zimagi 2.7.17

1 of the 6 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.15.331407c0e8e32
pcre2@10.42-1
no fix listed

Open the chart page →

2,135
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
yandex/clickhouse-server:21.3.204eccfffb01d7
pcre2@10.34-7
no fix listed

Open the chart page →

9,696
zoo-project-druzoo-projectOfficialVerified publisher0.10.81 of 6See more

zoo-project-dru zoo-project 0.10.8

1 of the 6 container images this version deploys carry CVE-2026-103111.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-51e7d55383f24594959b69e58518961c6aa66740da112e8d03f1
pcre2@10.39-3ubuntu0.1
no fix listed

Open the chart page →

6,744

Container images carrying it

2,621 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
helmforge/fastmcp-server:0.11.2fcb7017327d6
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
helmforge/opencut:v0.3.0bf11156e0ab5
pcre2@10.47-r1
10.49-r0
1
helmforge/strapi-base:5.52.270e9143d6d92
pcre2@10.47-r1
10.49-r0
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
pcre2@10.42-1
no fix listed
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
pcre2@10.42-1
no fix listed
1
hivemq/hivemq-edge:2026.14d8250a233cea
pcre2@10.42-4ubuntu2.1
no fix listed
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
pcre2@10.39-3ubuntu0.1
no fix listed
1
hivemq/hivemq-platform-operator:2.2.2a919f990141b
pcre2@10.46-1build1
no fix listed
1
hivemq/hivemq-swarm:4.56.08d5f6a6f48b0
pcre2@10.46-1build1
no fix listed
1
hiversh/antigravity:0.1.45-microvm0e36d98402bc
pcre2@10.42-1
no fix listed
1
hiversh/browser:0.1.45-microvmb5048c6342ce
pcre2@10.42-1
no fix listed
1
hiversh/claude:0.1.45-microvm2fbf9f264498
pcre2@10.42-1
no fix listed
1
hiversh/codex:0.1.45-microvm4f43130f51e5
pcre2@10.42-1
no fix listed
1
hiversh/controller:0.1.45b0b85f8942c7
pcre2@10.42-1
no fix listed
1
hiversh/copilot:0.1.45-microvm50c07b84f298
pcre2@10.42-1
no fix listed
1
hiversh/gateway:0.1.45839226cc6e41
pcre2@10.39-3ubuntu0.1
no fix listed
1
hiversh/node:0.1.45-alpine-microvm836a37641941
pcre2@10.42-1
no fix listed
1
hiversh/openclaw:0.1.45-microvm958b7ebb4eb4
pcre2@10.42-1
no fix listed
1
hiversh/python:0.1.45-3.13-alpine-microvm63a5ae179a9f
pcre2@10.42-1
no fix listed
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
pcre2@10.42-1
no fix listed
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
pcre2@10.42-1
no fix listed
1
hmediade/printserver:latest481a552c8e1c
pcre2@10.39-3ubuntu0.1
no fix listed
1
hmediade/printserver-init:latest7f005eb6c718
pcre2@10.39-3ubuntu0.1
no fix listed
1
homeassistant/home-assistant:2026.75a531753cea9
pcre2@10.47-r1
10.49-r0
1
housewrecker/gaps:latestf417dd0a7547
pcre2@10.34-7
no fix listed
1
huacnlee/gobackup:v3.1.1560be93229a5
pcre2@10.47-r1
10.49-r0
1
hugohg34/toposervice:0.0.2812a03b3f274
pcre2@10.34-7
no fix listed
1
hyperglance/init:wildfly467ad8491bc3
pcre2@10.39-3ubuntu0.1
no fix listed
1
hyperglance/init:postgres9fd5faf1fe80
pcre2@10.39-3ubuntu0.1
no fix listed
1
hyperglance/init:apacheb2f8c6d52623
pcre2@10.39-3ubuntu0.1
no fix listed
1
hyperglance/postgresql-v2:10.0.12ef5c0547a131
pcre2@10.39-3ubuntu0.1
no fix listed
1
hyperledger/besu:latest6f3f21ce5333
pcre2@10.42-4ubuntu2.1
no fix listed
1
ibmcom/microclimate-theia:lateste17bdccc5030
pcre2@10.21-1
no fix listed
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
pcre2@10.42-1
no fix listed
1
ilum/streamlit-example:1.0.0ce5dcdeb22ba
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
improwised/proxysql:master-6b26e59-171765063828940522e8b7
pcre2@10.42-1
no fix listed
1
infiniflow/infinity:v0.7.0992c87a68612
pcre2@10.39-3ubuntu0.1
no fix listed
1
infisical/infisical:latest:v0.165.602082bf13163
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
infisical/infisical:latest3365445909be
pcre2@10.46-1~deb13u2
10.46-1~deb13u3
1
inseefrlab/onyxia-api:v4.12.0b377aec3ead1
pcre2@10.42-4ubuntu2.1
no fix listed
1
inseefrlab/shelly:cloudshell31f04ca7436b
pcre2@10.39-3ubuntu0.1
no fix listed
1
instill/artifact-backend:b28766ac4a393e601ed
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
instill/model-backend:611f0f2e980125e5ba5
pcre2@10.46-1~deb13u1
10.46-1~deb13u3
1
instructure/kinesalite:latest34400d82f28f
pcre2@10.34-7ubuntu0.1
no fix listed
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
pcre2@10.34-7
no fix listed
1
intel/multimodal-data-visualization-streaming:3.01a89327e499b
pcre2@10.34-7
no fix listed
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
pcre2@10.42-1
no fix listed
1
intel/trusted-certificate-issuer:0.5.0591a9db4a427
pcre2@10.34-7ubuntu0.1
no fix listed
1

syft 1.42.1 · advisories as of 3 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.