StackRadar

CVE-2026-14672

Medium

Advisory

Published 13 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
152
of 17,781 indexed, latest versions
Container images
130
deployed by those charts
Fix available
7 of 8
affected packages

PostgreSQL observable response discrepancy with non-default scram_iterations provides user existence oracle

Carried by container images the latest versions of 152 of 17,781 indexed charts deploy, on 130 images.

Affected packageAffected versionsFixed inImages
postgresql-17deb17.5-1, 17.5-1.pgdg130+1, 17.6-0+deb13u1, 17.6-2.pgdg13+1+7 more17.11, 17.11-0+deb13u155
postgresql18apk18.1-r0, 18.2-r0, 18.3-r0, 18.4-r018.5-r026
postgresqlbitnami16.1.0-14, 16.1.0-34, 16.2.0-2, 16.2.0-4+15 more16.15.020
postgresql17apk17.2-r0, 17.4-r0, 17.5-r0, 17.6-r0+3 more17.11-r012
postgresql-16deb16.2-1ubuntu4, 16.6-0ubuntu0.24.04.1, 16.9-0ubuntu0.24.04.1, 16.10-0ubuntu0.24.04.1+2 more16.15-0ubuntu0.24.04.111
PostgreSQLbitnami16.0.0, 16.1.0, 16.1.0-34, 16.2.0-2+3 more16.15.07
postgresql-18deb18.4-0ubuntu0.26.04.1, 18.4-1.pgdg26.04+118.6-0ubuntu0.26.04.14
postgresql-9.3deb9.3.22-0ubuntu0.14.04no fix listed1
OSV records
ALPINE-CVE-2026-14672BIT-postgresql-2026-14672DEBIAN-CVE-2026-14672UBUNTU-CVE-2026-14672ECHO-1137-4f23-2f4e
Also known as
USN-8653-1

Charts affected

152 by stars
ChartLatestAffected imagesRadar Score
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

9,148
gobackupadnoctemVerified publisher0.4.01 of 1See more

gobackup adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
huacnlee/gobackup:v3.1.1560be93229a5
postgresql18@18.4-r0
18.5-r0

Open the chart page →

1,828
linkstackadnoctemVerified publisher0.4.01 of 1See more

linkstack adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
linkstackorg/linkstack:latest1c8b05399ee4
postgresql17@17.8-r0
17.11-r0

Open the chart page →

2,092
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
postgresql18@18.3-r0
18.5-r0

Open the chart page →

2,766
appwriteappwrite-helmVerified publisher1.3.21 of 8See more

appwrite appwrite-helm 1.3.2

1 of the 8 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
postgresql18@18.2-r0
18.5-r0

Open the chart page →

9,847
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
postgresql@17.6.0-0
16.15.0

Open the chart page →

40,238
bdbablackduck2026.6.31 of 9See more

bdba blackduck 2026.6.3

1 of the 9 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.2.6a52221a2a3eb
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

9,521
blackduck-alertblackduck8.4.01 of 4See more

blackduck-alert blackduck 8.4.0

1 of the 4 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
postgresql18@18.3-r0
18.5-r0

Open the chart page →

4,292
galaxy-stablecloudve2.0.01 of 5See more

galaxy-stable cloudve 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
galaxy/galaxy-stable:v18.018e577a626dfd
postgresql-9.3@9.3.22-0ubuntu0.14.04
no fix listed

Open the chart page →

70,895
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

2,481
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
postgresql@17.5.0-14
16.15.0

Open the chart page →

13,220
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
postgresql@16.3.0-11
PostgreSQL@16.3.0-11
16.15.0
16.15.0

Open the chart page →

4,770
csghubcsghubVerified publisher2.4.31 of 34See more

csghub csghub 2.4.3

1 of the 34 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.11-r0

Open the chart page →

58,897
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.11-r0

Open the chart page →

11,335
dataflowcsghubVerified publisher2.5.01 of 7See more

dataflow csghub 2.5.0

1 of the 7 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.11-r0

Open the chart page →

6,632
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1

Open the chart page →

6,123
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1

Open the chart page →

5,974
cloudpremdatadogVerified publisher0.5.21 of 1See more

cloudprem datadog 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
postgresql-16@16.14-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1

Open the chart page →

1,125
private-action-runnerdatadogVerified publisher1.28.11 of 1See more

private-action-runner datadog 1.28.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
postgresql-16@16.13-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1

Open the chart page →

2,125
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
postgresql@17.5.0-9
16.15.0

Open the chart page →

4,046
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

7,459
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

5,966
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
postgresql-17@17.6-0+deb13u1
17.11-0+deb13u1

Open the chart page →

13,391
vaultwardenedudip0.11.01 of 1See more

vaultwarden edudip 0.11.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1ebdfe70701c6
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

2,035
rommernail-romm1.0.11 of 1See more

romm ernail-romm 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
rommapp/romm:4.4.1b909e95d1aab
postgresql17@17.7-r0
17.11-r0

Open the chart page →

2,896
espocrmespocrmVerified publisher1.0.11 of 2See more

espocrm espocrm 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
espocrm/espocrm:9.3.101b5a24504ed9
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1

Open the chart page →

6,431
fairwinds-insightsfairwinds-stableVerified publisher10.1.101 of 13See more

fairwinds-insights fairwinds-stable 10.1.10

1 of the 13 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
alpine/psql:18.339824ef2b7fc
postgresql18@18.3-r0
18.5-r0

Open the chart page →

3,797
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.11-0+deb13u1

Open the chart page →

5,039
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.11-0+deb13u1
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1

Open the chart page →

10,260
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1

Open the chart page →

4,829
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
postgresql17@17.2-r0
17.11-r0

Open the chart page →

2,438
monicagabe565Verified publisher0.10.01 of 2See more

monica gabe565 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
library/monica:4.1.2-fpm-alpine6d1b2bd0947e
postgresql18@18.4-r0
18.5-r0

Open the chart page →

1,173
temporalgroundcover1.12.3571 of 2See more

temporal groundcover 1.12.357

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
postgresql-17@17.10-1.pgdg13+1+e1
17.11

Open the chart page →

2,013
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
postgresql18@18.1-r0
18.5-r0

Open the chart page →

3,255
hatchet-hahatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-ha hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
16.15.0

Open the chart page →

7,344
hatchet-stackhatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-stack hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
16.15.0

Open the chart page →

7,344
appwritehelmforgeVerified publisher1.3.41 of 5See more

appwrite helmforge 1.3.4

1 of the 5 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.6adc7d0e7ec23
postgresql18@18.4-r0
18.5-r0

Open the chart page →

6,952
castopodhelmforgeVerified publisher1.2.71 of 3See more

castopod helmforge 1.2.7

1 of the 3 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
postgresql-17@17.8-0+deb13u1
17.11-0+deb13u1

Open the chart page →

9,342
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1

Open the chart page →

10,849
immichhelmforgeVerified publisher1.2.81 of 5See more

immich helmforge 1.2.8

1 of the 5 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
postgresql-17@17.10-1.pgdg13+1
17.11-0+deb13u1

Open the chart page →

11,042
netboxhelmforgeVerified publisher2.0.11 of 4See more

netbox helmforge 2.0.1

1 of the 4 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
postgresql-18@18.4-0ubuntu0.26.04.1
18.6-0ubuntu0.26.04.1

Open the chart page →

4,243
openaevhelm-openbasVerified publisher2.0.51 of 7See more

openaev helm-openbas 2.0.5

1 of the 7 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
16.15.0

Open the chart page →

7,437
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
16.15.0

Open the chart page →

25,017
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
postgresql-16@16.9-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1

Open the chart page →

8,967
ilum-hive-metastoreilumVerified publisher1.2.01 of 2See more

ilum-hive-metastore ilum 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
postgresql@16.6.0-1
16.15.0

Open the chart page →

3,571
ilum-marquezilumVerified publisher6.7.01 of 3See more

ilum-marquez ilum 6.7.0

1 of the 3 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
postgresql@16.6.0-1
16.15.0

Open the chart page →

6,254
plausible-analyticsimioVerified publisher0.4.21 of 5See more

plausible-analytics imio 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
postgresql@17.6.0-0
16.15.0

Open the chart page →

10,418
daveit-at-mOfficialVerified publisher0.2.152 of 11See more

dave it-at-m 0.2.15

2 of the 11 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
postgresql@17.5.0-14
16.15.0
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
postgresql@17.6.0-0
16.15.0

Open the chart page →

15,089
opencloudjacobcolvinVerified publisher0.2.31 of 13See more

opencloud jacobcolvin 0.2.3

1 of the 13 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
postgresql-16@16.2-1ubuntu4
16.15-0ubuntu0.24.04.1

Open the chart page →

45,239
ja-shortenerja-shortenerVerified publisher0.1.01 of 2See more

ja-shortener ja-shortener 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-14672.

Container imageDigestPackageFixed in
cr0hn/ja-shortener:v0.1.414482d0bc4a1
postgresql17@17.5-r0
17.11-r0

Open the chart page →

2,089

Container images carrying it

130 by charts deploying them

A fixed version is listed for 7 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
16.15.0
11
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
postgresql@17.5.0-14
16.15.0
5
bitnamilegacy/postgresql:16233f361c5819
postgresql@16.6.0-1
16.15.0
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
postgresql@17.6.0-0
16.15.0
4
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.11-r0
3
vaultwarden/server:1.37.1ebdfe70701c6
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
postgresql@16.6.0-1
16.15.0
3
apache/tika:2.9.2.1-fullae0b86d3c4d0
postgresql-16@16.2-1ubuntu4
16.15-0ubuntu0.24.04.1
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
postgresql@16.4.0-12
16.15.0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.11-0+deb13u1
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1
2
kurento/kurento-media-server:latest03c0d34d0828
postgresql-16@16.10-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1
2
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1
2
taigaio/taiga-back:latest4beed8f62c9f
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
postgresql-16@16.14-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1
2
alpine/psql:18.339824ef2b7fc
postgresql18@18.3-r0
18.5-r0
1
appwrite/appwrite:1.9.01aaa70127114
postgresql18@18.2-r0
18.5-r0
1
appwrite/appwrite:1.9.6adc7d0e7ec23
postgresql18@18.4-r0
18.5-r0
1
arunvelsriram/utils:latest655ad18fd8d6
postgresql-16@16.9-0ubuntu0.24.04.1
16.15-0ubuntu0.24.04.1
1
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
postgresql@16.4.0-10
16.15.0
1
bitnamilegacy/postgresql:16.1.0-debian-11-r2504f3b0dfdb15
postgresql@16.1.0-34
PostgreSQL@16.1.0-34
16.15.0
16.15.0
1
bitnamilegacy/postgresql:16.1.0-debian-11-r1529e3dd0e7e7a
postgresql@16.1.0-14
PostgreSQL@16.1.0
16.15.0
16.15.0
1
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
postgresql@16.3.0-3
PostgreSQL@16.3.0-3
16.15.0
16.15.0
1
bitnamilegacy/postgresql:16.4.03ba6e6f11388
postgresql@16.4.0-20
16.15.0
1
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
postgresql@17.5.0-11
16.15.0
1
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
postgresql@17.5.0-9
16.15.0
1
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
postgresql@16.2.0-4
PostgreSQL@16.2.0-4
16.15.0
16.15.0
1
bitnamilegacy/postgresql:16.0.0-debian-11-r3b8a21df9b747
PostgreSQL@16.0.0
16.15.0
1
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
postgresql@16.3.0-11
PostgreSQL@16.3.0-11
16.15.0
16.15.0
1
bitnamilegacy/postgresql:17.2.0-debian-12-r5cf63048c9209
postgresql@17.2.0-4
16.15.0
1
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
postgresql@17.2.0-1
16.15.0
1
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
postgresql@16.2.0-2
PostgreSQL@16.2.0-2
16.15.0
16.15.0
1
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
postgresql@17.4.0-9
16.15.0
1
bitnamilegacy/postgresql:16.3.0-debian-12-r15fdc6979dbc53
postgresql@16.3.0-12
16.15.0
1
blackducksoftware/blackduck-alert:8.4.090cca32de2cc
postgresql18@18.3-r0
18.5-r0
1
boky/postfix:5.1.0aafc77238423
postgresql-17@17.6-0+deb13u1
17.11-0+deb13u1
1
budibase/apps:3.41.344fe6feab985
postgresql18@18.4-r0
18.5-r0
1
castopod/castopod:1.15.54e4f0440520f
postgresql-17@17.8-0+deb13u1
17.11-0+deb13u1
1
chatwoot/chatwoot:v4.15.167ebc751c171
postgresql17@17.10-r0
17.11-r0
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
postgresql-17@17.9-0+deb13u1
17.11-0+deb13u1
1
cr0hn/ja-shortener:v0.1.414482d0bc4a1
postgresql17@17.5-r0
17.11-r0
1
dalibo/explain.dalibo.com:2.20.12a0b749c2f7f
postgresql18@18.2-r0
18.5-r0
1
docuseal/docuseal:2.4.17493fd7f6728
postgresql18@18.3-r0
18.5-r0
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
postgresql-17@17.6-0+deb13u1
17.11-0+deb13u1
1
edoburu/pgbouncer:latest4c1ca296ef52
postgresql18@18.4-r0
18.5-r0
1
espocrm/espocrm:9.3.101b5a24504ed9
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1
1
fireflyiii/core:version-6.6.6ae69fdd95cde
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1
1
fluent/fluent-bit:4.2.6a52221a2a3eb
postgresql-17@17.10-0+deb13u1
17.11-0+deb13u1
1
galaxy/galaxy-stable:v18.018e577a626dfd
postgresql-9.3@9.3.22-0ubuntu0.14.04
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.