CVE-2026-1489
MediumAdvisory
Published 27 Jan 2026In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.4
- base score, highest
- EPSS
- 0.003
- 26th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 333
- of 17,781 indexed, latest versions
- Container images
- 344
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 333 of 17,781 indexed charts deploy, on 344 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| glib2.0deb | 2.40.2-0ubuntu1, 2.48.2-0ubuntu1, 2.48.2-0ubuntu4.1, 2.48.2-0ubuntu4.4+40 more | 2.72.4-0ubuntu2.9, 2.74.6-2+deb12u9, 2.80.0-6ubuntu3.8, 2.84.4-3~deb13u3+1 more | 344 |
- OSV records
- DEBIAN-CVE-2026-1489UBUNTU-CVE-2026-1489
- Also known as
- USN-8017-1
Charts affected
333 by stars
Container images carrying it
344 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| aristidetm/ | 469dbc951224 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| assistiot/ | b1dbe4d62a03 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| assistiot/ | e5ae539ce2cb | glib2.0 | no fix listed | 1 |
| avinash263/ | aa2b8727f1a6 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| beyzkaya/ | 12a6a3d1c5f9 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| bitnamilegacy/ | f02c000c54b1 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| bitnamilegacy/ | 6e412c178ef9 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| bnjbvr/ | 37e216b182c8 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| browserless/ | c81ae5585b47 | glib2.0 | no fix listed | 1 |
| carlosmz87/ | 8ffa63aa995d | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| castopod/ | 1fd37280cbb2 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| castopod/ | 4e4f0440520f | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| chetangautamm/ | e7f7049e1544 | glib2.0 | no fix listed | 1 |
| cheyang/ | 46cc34755493 | glib2.0 | no fix listed | 1 |
| chiefonboarding/ | 59bc7aa60fe7 | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| chriseaton/ | 54c3384ce701 | glib2.0 | 2.72.4-0ubuntu2.9 | 1 |
| ckulka/ | 434bdd162247 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| cloudve/ | af56e77ca587 | glib2.0 | no fix listed | 1 |
| countly/ | e3c238248f99 | glib2.0 | no fix listed | 1 |
| daskdev/ | 052630f5ca04 | glib2.0 | no fix listed | 1 |
| datamate/ | 2dd66b722464 | glib2.0 | 2.72.4-0ubuntu2.9 | 1 |
| deconzcommunity/ | 062de2362641 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| dgraziotin/ | 38f2de42bed0 | glib2.0 | no fix listed | 1 |
| dokuwiki/ | f08ecfdda239 | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| dongjiang1989/ | 4bf9ae391948 | glib2.0 | no fix listed | 1 |
| dragonflyoss/ | edf3e921f4e0 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| eclipseaerios/ | e7f5ba0bc64d | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| elastictranscoder/ | b4a0327029e6 | glib2.0 | no fix listed | 1 |
| elastictranscoder/ | 5b75d19e2733 | glib2.0 | no fix listed | 1 |
| falcosecurity/ | 932956d86c99 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| felipecs8/ | 29e06c9c6385 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| firefart/ | 0d6249906d8c | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| fiware/ | 29456835bb2c | glib2.0 | no fix listed | 1 |
| fiware/ | d551a13e8278 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| fluent/ | e76397ef3983 | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| gethue/ | 5702b2c37ff9 | glib2.0 | no fix listed | 1 |
| gethue/ | 7d5c1b9f8a79 | glib2.0 | 2.72.4-0ubuntu2.9 | 1 |
| gotenberg/ | 206a6c708fc6 | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| graylog/ | 19de1aff48c2 | glib2.0 | 2.72.4-0ubuntu2.9 | 1 |
| haveagitgat/ | 1256348872ce | glib2.0 | no fix listed | 1 |
| haveagitgat/ | 1e3f9328327d | glib2.0 | no fix listed | 1 |
| haveagitgat/ | 3ff0913202dd | glib2.0 | no fix listed | 1 |
| helicone/ | 4a913936c97b | glib2.0 | 2.74.6-2+deb12u9 | 1 |
| huginn/ | c794eddc7b47 | glib2.0 | no fix listed | 1 |
| hyperledger/ | c65891b6c237 | glib2.0 | no fix listed | 1 |
| inseefrlab/ | 31f04ca7436b | glib2.0 | 2.72.4-0ubuntu2.9 | 1 |
| instill/ | c4a393e601ed | glib2.0 | 2.84.4-3~deb13u3 | 1 |
| intel/ | aa8f5483a2ef | glib2.0 | no fix listed | 1 |
| intel/ | 1a89327e499b | glib2.0 | no fix listed | 1 |
| intelowlproject/ | 0b22e547ea6b | glib2.0 | 2.74.6-2+deb12u9 | 1 |