StackRadar

CVE-2026-107822

Medium

Advisory

Published 9 Oct 2026In the index since 10 Oct 2026
Severity
Medium
worst across findings
CVSS
6.4
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
157
of 18,087 indexed, latest versions
Container images
153
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 157 of 18,087 indexed charts deploy, on 153 images.

Affected packageAffected versionsFixed inImages
mariadbdeb1:10.11.3-1, 1:10.11.4-1~deb12u1, 1:10.11.6-0+deb12u1, 1:10.11.7+maria~deb12+7 moreno fix listed153
OSV records
DEBIAN-CVE-2026-107822

Charts affected

157 by stars
ChartLatestAffected imagesRadar Score
codegentest-opea1.0.01 of 5See more

codegen test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
opea/codegen-ui:1.02bee4eb66f3e
mariadb@1:10.11.6-0+deb12u1
no fix listed

Open the chart page →

32,015
codetranstest-opea1.0.01 of 5See more

codetrans test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
opea/codetrans-ui:1.03ef121f34610
mariadb@1:10.11.6-0+deb12u1
no fix listed

Open the chart page →

31,509
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
mariadb@1:10.11.6-0+deb12u1
no fix listed

Open the chart page →

32,011
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
mariadb@1:10.11.4-1~deb12u1
no fix listed

Open the chart page →

20,072
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
mariadb@1:10.11.3-1
no fix listed

Open the chart page →

15,519
bugsinkvictorlane0.3.71 of 2See more

bugsink victorlane 0.3.7

1 of the 2 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
bugsink/bugsink:2c5e3657451f4
mariadb@1:11.8.6-0+deb13u1
no fix listed

Open the chart page →

4,527
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-107822.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
mariadb@1:10.11.6-0+deb12u1
no fix listed

Open the chart page →

7,725

Container images carrying it

153 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/paperless-ngx/paperless-ngx:3.3.06b94799bc769
mariadb@1:11.8.6-0+deb13u1
no fix listed
5
vaultwarden/server:1.37.3:latest1587c45feaa4
mariadb@1:11.8.6-0+deb13u1
no fix listed
3
vaultwarden/server:1.37.1ebdfe70701c6
mariadb@1:11.8.6-0+deb13u1
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
mariadb@1:10.11.14-0+deb12u2
no fix listed
3
gjeanmart/safe-ganache-node:latest926264c8f2d1
mariadb@1:10.11.3-1
no fix listed
2
library/node:lts64af3819f927
mariadb@1:10.11.18-0+deb12u1
no fix listed
2
library/python:3.7eedf63967cdb
mariadb@1:10.11.3-1
no fix listed
2
library/redmine:6.1.3-trixief474a901faec
mariadb@1:11.8.6-0+deb13u1
no fix listed
2
louislam/uptime-kuma:2.3.29aeb4e51d038
mariadb@1:10.11.14-0+deb12u2
no fix listed
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
mariadb@1:10.11.14-0+deb12u2
no fix listed
2
louislam/uptime-kuma:2.5.5c74379ac4509
mariadb@1:10.11.14-0+deb12u2
no fix listed
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
mariadb@1:10.11.4-1~deb12u1
no fix listed
2
proxysql/proxysql:3.0.110e95d1b7cc32
mariadb@1:11.8.6-0+deb13u1
no fix listed
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
mariadb@1:10.11.6-0+deb12u1
no fix listed
2
vaultwarden/server:1.37.2:latest094b5689ed81
mariadb@1:11.8.6-0+deb13u1
no fix listed
2
ghcr.io/dani-garcia/vaultwarden:1.37.4:latestefb3cde96201
mariadb@1:11.8.6-0+deb13u1
no fix listed
2
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
mariadb@1:11.8.6-0+deb13u1
no fix listed
2
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
mariadb@1:10.11.7+maria~deb12
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
mariadb@1:10.11.9+maria~deb12
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
mariadb@1:10.11.7+maria~deb12
no fix listed
1
apache/superset:4.0.1ab9467fd712c
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
mariadb@1:10.11.3-1
no fix listed
1
avinash263/pyredis263:latestaa2b8727f1a6
mariadb@1:10.11.3-1
no fix listed
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
mariadb@1:10.11.11-0+deb12u1
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
boky/postfix:5.1.0:v5.1.0aafc77238423
mariadb@1:11.8.3-0+deb13u1
no fix listed
1
buall/postgres-stack:18.6881a785642cb
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
bugsink/bugsink:2c5e3657451f4
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
chiefonboarding/chiefonboarding:v2.5.0d0964135ea82
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
coturn/coturn:latestbbefd3e1fdfd
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
dolibarr/dolibarr:24.0.069ec52e3b7ef
mariadb@1:10.11.18-0+deb12u1
no fix listed
1
dolibarr/dolibarr:22.0.47ad88fc9b13c
mariadb@1:10.11.14-0+deb12u2
no fix listed
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
mariadb@1:11.8.3-0+deb13u1
no fix listed
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
mariadb@1:10.11.11-0+deb12u1
no fix listed
1
glpi/glpi:latest8888c5d8aa46
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
healthchecks/healthchecks:latestaa08a61b0dcf
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
mariadb@1:10.11.3-1
no fix listed
1
improwised/proxysql:master-6b26e59-171765063828940522e8b7
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
mariadb@1:10.11.4-1~deb12u1
no fix listed
1
inventree/inventree:1.5.6b61e6a7534bf
mariadb@1:11.8.6-0+deb13u1
no fix listed
1
jbtronics/part-db1:latestec7d16cf30b9
mariadb@1:10.11.18-0+deb12u1
no fix listed
1
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
mariadb@1:10.11.14-0+deb12u2
no fix listed
1
knspar/phronetis-operator:0.1.60c4f0543ee58
mariadb@1:10.11.6-0+deb12u1
no fix listed
1
laly9999/node-app:1dd0e503913e1
mariadb@1:10.11.11-0+deb12u1
no fix listed
1
library/node:lts3d27e5c11e57
mariadb@1:10.11.18-0+deb12u1
no fix listed
1
library/node:208f693eaa7e0a
mariadb@1:10.11.14-0+deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.