StackRadar

CVE-2026-11822

High

Advisory

Published 9 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,807
of 17,790 indexed, latest versions
Container images
1,558
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,807 of 17,790 indexed charts deploy, on 1,558 images.

Affected packageAffected versionsFixed inImages
sqlite3deb3.8.2-1ubuntu2, 3.8.2-1ubuntu2.1, 3.8.2-1ubuntu2.2, 3.11.0-1ubuntu1+37 more3.37.2-2ubuntu0.6, 3.45.1-1ubuntu2.6, 3.46.1-7+deb13u2, 3.46.1-7+e3+2 more1,483
sqliteapk3.41.2-r4, 3.51.1-r0, 3.51.2-r03.53.4-r075
OSV records
ALPINE-CVE-2026-11822DEBIAN-CVE-2026-11822UBUNTU-CVE-2026-11822ECHO-acfd-ccab-2f14
Also known as
USN-8480-1

Charts affected

1,807 by stars
ChartLatestAffected imagesRadar Score
chronoreaperjfwenischVerified publisher1.1.101 of 1See more

chronoreaper jfwenisch 1.1.10

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/wenisch-tech/chronoreaper:1.1.10447726cec07b
sqlite@3.51.2-r0
3.53.4-r0

Open the chart page →

1,022
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
sqlite3@3.40.1-2
no fix listed

Open the chart page →

7,393
jupyterhub-outpostjupyter-jscVerified publisher2.4.11 of 1See more

jupyterhub-outpost jupyter-jsc 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
jupyterjsc/jupyterhub-outpost:2.3.1aea53b13f235
sqlite@3.51.2-r0
3.53.4-r0

Open the chart page →

1,678
qbittorrentk8s-chartsVerified publisher3.1.01 of 2See more

qbittorrent k8s-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/hotio/qbittorrent:release-5.2.007198d49e5b4
sqlite@3.51.2-r0
3.53.4-r0

Open the chart page →

1,271
ombik8s-home-lab-repo12.2.11 of 1See more

ombi k8s-home-lab-repo 12.2.1

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
sqlite3@3.45.1-1ubuntu2.5
3.45.1-1ubuntu2.6

Open the chart page →

1,460
tautullik8s-home-lab-repo12.3.01 of 1See more

tautulli k8s-home-lab-repo 12.3.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
sqlite@3.51.2-r0
3.53.4-r0

Open the chart page →

1,130
web-chartkbt-ktcloudlab0.1.01 of 1See more

web-chart kbt-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,839
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

5,515
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,795
app-componentkeltio-helm-chartsVerified publisher3.14.01 of 1See more

app-component keltio-helm-charts 3.14.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,839
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,234
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
sqlite3@3.31.1-4ubuntu0.5
no fix listed

Open the chart page →

5,302
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

2,783
glpikitsune-itopsVerified publisher1.0.71 of 3See more

glpi kitsune-itops 1.0.7

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
glpi/glpi:latest4b681082a79e
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

4,878
powerdns-recursorklicktippVerified publisher0.4.101 of 1See more

powerdns-recursor klicktipp 0.4.10

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,886
knot-resolverknot-resolverVerified publisher1.0.51 of 1See more

knot-resolver knot-resolver 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
cznic/knot-resolver:v6.4.2fe71c5214fdc
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

2,061
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
sqlite3@3.40.1-2
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
sqlite3@3.40.1-2
no fix listed

Open the chart page →

20,424
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
owncloud/server:10.16.274c53d341076
sqlite3@3.37.2-2ubuntu0.5
3.37.2-2ubuntu0.6

Open the chart page →

9,975
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

4,101
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
sqlite3@3.31.1-4ubuntu0.4
no fix listed

Open the chart page →

7,749
kuma-ingress-watcherkuma-ingress-watcherVerified publisher1.4.01 of 1See more

kuma-ingress-watcher kuma-ingress-watcher 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

2,668
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
sqlite3@3.31.1-4ubuntu0.2
no fix listed

Open the chart page →

12,477
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
sqlite3@3.31.1-4ubuntu0.2
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
sqlite3@3.31.1-4ubuntu0.2
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
sqlite3@3.31.1-4ubuntu0.2
no fix listed
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
sqlite3@3.31.1-4ubuntu0.2
no fix listed
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
sqlite3@3.31.1-4ubuntu0.2
no fix listed

Open the chart page →

114,025
ohifkylesferrazzaVerified publisher0.1.01 of 2See more

ohif kylesferrazza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
jodogne/orthanc-plugins:latest6ff510aa29c2
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

3,524
overpass-apil4gVerified publisher0.1.21 of 1See more

overpass-api l4g 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
wiktorn/overpass-api:latest9bb5f4a9b54c
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

3,551
api-gatewaylabs64io-helm-chartsVerified publisher0.12.01 of 1See more

api-gateway labs64io-helm-charts 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
labs64/traefik-authproxy:0.0.3dfc6086dfbce
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,018
checkoutlabs64io-helm-chartsVerified publisher0.8.01 of 3See more

checkout labs64io-helm-charts 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,638
payment-gatewaylabs64io-helm-chartsVerified publisher0.8.01 of 2See more

payment-gateway labs64io-helm-charts 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

2,708
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

35,058
halitesql0.1.51 of 2See more

ha litesql 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/litesql/ha:latest4029479b8ea7
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,111
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
sqlite3@3.22.0-1ubuntu0.4
no fix listed

Open the chart page →

6,766
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

7,216
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

2,763
voice-biometricslumenvox2.0.11 of 26See more

voice-biometrics lumenvox 2.0.1

1 of the 26 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
lumenvox/cloud-binary-storage:2.0.053decadc102d
sqlite3@3.31.1-4ubuntu0.2
no fix listed

Open the chart page →

71,216
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

5,747
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

5,741
magentomagento3.2.32 of 12See more

magento magento 3.2.3

2 of the 12 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
sqlite3@3.31.1-4ubuntu0.6
no fix listed
library/rabbitmq:4.1.0-management935b3f84c1e4
sqlite3@3.45.1-1ubuntu2.3
3.45.1-1ubuntu2.6

Open the chart page →

13,582
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
sqlite3@3.22.0-1ubuntu0.3
no fix listed

Open the chart page →

19,192
mcpmcp-chartsVerified publisher0.0.232 of 7See more

mcp mcp-charts 0.0.23

2 of the 7 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
sqlite3@3.46.1-7
3.46.1-7+deb13u2
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
sqlite3@3.46.1-7
3.46.1-7+deb13u2

Open the chart page →

6,994
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

2,764
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
sqlite3@3.45.1-1ubuntu2
3.45.1-1ubuntu2.6

Open the chart page →

4,184
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
sqlite3@3.46.1-8
3.46.1-8ubuntu0.1

Open the chart page →

11,108
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
sqlite3@3.46.1-7
3.46.1-7+deb13u2

Open the chart page →

2,678
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
sqlite3@3.40.1-2+deb12u1
no fix listed

Open the chart page →

13,763
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2
library/redmine:6.1.204ac44a2595b
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

7,552
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,839
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,839
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,896
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2

Open the chart page →

1,638
clowder2ncsaVerified publisher1.9.73 of 12See more

clowder2 ncsa 1.9.7

3 of the 12 container images this version deploys carry CVE-2026-11822.

Container imageDigestPackageFixed in
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
sqlite3@3.40.1-2+deb12u2
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
sqlite3@3.40.1-2+deb12u2
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
sqlite3@3.40.1-2+deb12u2
no fix listed

Open the chart page →

37,441

Container images carrying it

1,558 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
sqlite3@3.46.1-7+deb13u1
3.46.1-7+deb13u2
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
sqlite3@3.31.1-4ubuntu0.2
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
sqlite@3.51.2-r0
3.53.4-r0
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
sqlite3@3.40.1-2+deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
sqlite3@3.40.1-2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.