StackRadar

CVE-2026-16118

High

Advisory

Published 17 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.002
16th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
813
of 17,781 indexed, latest versions
Container images
921
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: glib2 security update

Carried by container images the latest versions of 813 of 17,781 indexed charts deploy, on 921 images.

Affected packageAffected versionsFixed inImages
glib2.0deb2.40.2-0ubuntu1, 2.48.2-0ubuntu1, 2.48.2-0ubuntu4.1, 2.48.2-0ubuntu4.4+44 more2.84.4-3~deb13u5486
glib2rpm2.56.4-1.el8, 2.56.4-7.el8, 2.56.4-8.el8, 2.56.4-8.el8_2.1+33 more0:2.56.4-178.el8_10, 0:2.68.4-19.el9_8.10, 0:2.80.4-12.el10_2.22435
OSV records
DEBIAN-CVE-2026-16118RHSA-2026:64799RHSA-2026:64800RHSA-2026:66451RLSA-2026:64799RLSA-2026:64800RLSA-2026:66451UBUNTU-CVE-2026-16118

Charts affected

813 by stars
ChartLatestAffected imagesRadar Score
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

4,507
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
glib2.0@2.74.6-2+deb12u9
no fix listed

Open the chart page →

30,159
keycloakcodecentricVerified publisher18.10.01 of 3See more

keycloak codecentric 18.10.0

1 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
glib2@2.56.4-156.el8
0:2.56.4-178.el8_10

Open the chart page →

7,713
strimzi-kafka-operatorstrimzi-kafka-operator1.2.01 of 1See more

strimzi-kafka-operator strimzi-kafka-operator 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:1.2.077f8fa8121a6
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10

Open the chart page →

69
zabbixzabbix-communityVerified publisher7.1.01 of 5See more

zabbix zabbix-community 7.1.0

1 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
glib2.0@2.80.0-6ubuntu3.8
no fix listed

Open the chart page →

13,664
graylogkong-zVerified publisher3.0.322 of 5See more

graylog kong-z 3.0.32

2 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
graylog/graylog:7.2.0-beta.2-1e8431d59b84d
glib2.0@2.80.0-6ubuntu3.8
no fix listed
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
glib2@2.56.4-165.el8_10
0:2.56.4-178.el8_10

Open the chart page →

2,699
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

3,092
nexus3stevehipwellVerified publisher5.26.01 of 2See more

nexus3 stevehipwell 5.26.0

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
sonatype/nexus3:3.96.0-ubia1f2dbdc4c94
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10

Open the chart page →

15
strimzi-kafka-operatorstrimzi1.2.01 of 1See more

strimzi-kafka-operator strimzi 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:1.2.077f8fa8121a6
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10

Open the chart page →

69
openldap-stack-hahelm-openldapVerified publisher4.3.31 of 5See more

openldap-stack-ha helm-openldap 4.3.3

1 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
glib2.0@2.74.6-2+deb12u5
no fix listed

Open the chart page →

5,919
zammadzammadOfficialVerified publisher18.0.51 of 5See more

zammad zammad 18.0.5

1 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

6,887
k10kastenVerified publisher9.0.523 of 23See more

k10 kasten 9.0.5

23 of the 23 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
gcr.io/kasten-images/aggregatedapis:9.0.5e5acd40c5aa5
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/auth:9.0.5ed3cdf44ea5f
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/bloblifecyclemanager:9.0.5d481c617ba01
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/catalog:9.0.51903f72cca29
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/configmap-reload:9.0.51de689e621c5
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/controllermanager:9.0.503ab619db308
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/crypto:9.0.58c74d06d7f93
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/dashboardbff:9.0.5dbbec053774e
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/events:9.0.50b0cfdbfff16
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/executor:9.0.59388835ed097
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/frontend:9.0.54b36f413cabb
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/garbagecollector:9.0.5e352701f1045
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/gateway:9.0.54d9a4ec0379d
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/jobs:9.0.581882d4a2bed
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/kanister:9.0.547d015e7a487
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/kanister-tools:9.0.5efa6b7da835b
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/logging:9.0.5f012ae1e3b98
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/metering:9.0.53e38f505e436
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/prometheus:9.0.5da2bf307c353
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/repositories:9.0.526a17e00ee25
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/state:9.0.54d01763016e9
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/upgrade:9.0.543eb00af2fcd
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
gcr.io/kasten-images/vbrintegrationapi:9.0.54a2438d399ff
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10

Open the chart page →

1,880
chaos-meshchaos-meshVerified publisher2.8.41 of 4See more

chaos-mesh chaos-mesh 2.8.4

1 of the 4 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
glib2.0@2.74.6-2+deb12u9
no fix listed

Open the chart page →

6,342
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed
minio/minio:RELEASE.2023-03-20T20-16-18Z6d770d7f255c
glib2@2.56.4-159.el8
0:2.56.4-178.el8_10

Open the chart page →

32,259
cockroachdbcockroachdbVerified publisher22.0.32 of 3See more

cockroachdb cockroachdb 22.0.3

2 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
cockroachdb/cockroach:v26.3.1204f131510c7
glib2@2.80.4-12.el10_2.21
0:2.80.4-12.el10_2.22
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
glib2@2.56.4-168.el8_10
0:2.56.4-178.el8_10

Open the chart page →

744
penpotpenpotOfficialVerified publisher1.9.01 of 4See more

penpot penpot 1.9.0

1 of the 4 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
glib2.0@2.88.0-1
no fix listed

Open the chart page →

4,314
community-operatormongodb-helm-charts0.13.01 of 1See more

community-operator mongodb-helm-charts 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
glib2@2.56.4-165.el8_10
0:2.56.4-178.el8_10

Open the chart page →

1,127
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
glib2.0@2.80.0-6ubuntu3.5
no fix listed

Open the chart page →

19,391
stackgres-operatorstackgres-chartsOfficialVerified publisher1.19.11 of 2See more

stackgres-operator stackgres-charts 1.19.1

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
glib2@2.56.4-169.el8_10
0:2.56.4-178.el8_10

Open the chart page →

2,119
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
glib2@2.68.4-19.el9_8.1
0:2.68.4-19.el9_8.10

Open the chart page →

392
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
glib2.0@2.80.0-6ubuntu3.8
no fix listed

Open the chart page →

22,002
eclipse-cheeclipse-cheVerified publisher7.122.01 of 1See more

eclipse-che eclipse-che 7.122.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
glib2@2.56.4-165.el8_10
0:2.56.4-178.el8_10

Open the chart page →

925
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
glib2@2.68.4-19.el9_8.1
0:2.68.4-19.el9_8.10

Open the chart page →

1,346
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.02 of 5See more

openproject openproject-helm-charts 13.11.0

2 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
openproject/hocuspocus:release-338001b288dc1359dfb5
glib2.0@2.74.6-2+deb12u6
no fix listed
openproject/openproject:17.8.0-slim48952034215d
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

19,926
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
glib2.0@2.74.6-2+deb12u7
no fix listed

Open the chart page →

11,384
zabbixcetic3.1.31 of 5See more

zabbix cetic 3.1.3

1 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
glib2.0@2.72.1-1
no fix listed

Open the chart page →

33,725
hpe-csi-driverhpe-storageVerified publisher3.3.01 of 14See more

hpe-csi-driver hpe-storage 3.3.0

1 of the 14 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.3.0e58e22427b38
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10

Open the chart page →

1,615
daskdask2024.1.11 of 2See more

dask dask 2024.1.1

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
glib2.0@2.72.4-0ubuntu2.2
no fix listed

Open the chart page →

12,746
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

9,683
oneuptimeoneuptimeOfficialVerified publisher13.0.41 of 7See more

oneuptime oneuptime 13.0.4

1 of the 7 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
oneuptime/probe:release6b2d98713711
glib2.0@2.74.6-2+deb12u9
no fix listed

Open the chart page →

11,192
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed

Open the chart page →

7,880
scribebackube-helm-chartsVerified publisher0.2.01 of 2See more

scribe backube-helm-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/backube/scribe:0.2.0cdefc81c6b2e
glib2@2.56.4-9.el8
0:2.56.4-178.el8_10

Open the chart page →

6,854
glasskube-operatorglasskubeOfficialVerified publisher0.12.22 of 3See more

glasskube-operator glasskube 0.12.2

2 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10

Open the chart page →

11,933
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
glib2@2.68.4-16.el9_6.2
0:2.68.4-19.el9_8.10

Open the chart page →

6,328
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed

Open the chart page →

18,509
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10

Open the chart page →

6,675
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

3,685
stackstorm-hastackstormVerified publisher1.1.011 of 17See more

stackstorm-ha stackstorm 1.1.0

11 of the 17 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2api:3.86f56d239d280
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2auth:3.833ecfda16608
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2notifier:3.8f190a6212195
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed

Open the chart page →

96,419
polarisapache-polarisOfficialVerified publisher1.3.0-incubating1 of 1See more

polaris apache-polaris 1.3.0-incubating

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
apache/polaris:lateste66366e783f1
glib2@2.68.4-19.el9_8.1
0:2.68.4-19.el9_8.10

Open the chart page →

455
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
glib2.0@2.74.6-2+deb12u8
no fix listed

Open the chart page →

3,812
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
itzg/bungeecord:latest1c59f9631f3b
glib2.0@2.88.0-1
no fix listed

Open the chart page →

3,074
openclawopenclawVerified publisher1.91.31 of 2See more

openclaw openclaw 1.91.3

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
glib2.0@2.80.0-6ubuntu3.8
no fix listed

Open the chart page →

2,977
purelbpurelb0.0.0-106-ipv6-lbip-052cedab1 of 2See more

purelb purelb 0.0.0-106-ipv6-lbip-052cedab

1 of the 2 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
glib2@2.56.4-156.el8
0:2.56.4-178.el8_10

Open the chart page →

4,413
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
glib2.0@2.72.4-0ubuntu2.2
no fix listed

Open the chart page →

4,244
grayloggroundhog2k0.13.101 of 1See more

graylog groundhog2k 0.13.10

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
graylog/graylog:7.1.9598bd41fefd5
glib2.0@2.80.0-6ubuntu3.8
no fix listed

Open the chart page →

1,074
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

4,507
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5

Open the chart page →

8,489
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
glib2.0@2.72.4-0ubuntu2.2
no fix listed
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
glib2.0@2.72.4-0ubuntu2.2
no fix listed

Open the chart page →

14,184
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
glib2.0@2.64.6-1~ubuntu20.04.9
no fix listed

Open the chart page →

7,268
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-16118.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
glib2.0@2.74.6-2+deb12u6
no fix listed

Open the chart page →

6,457

Container images carrying it

921 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
opendatacube/ows:latest668cbb41473c
glib2.0@2.80.0-6ubuntu3.2
no fix listed
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
glib2.0@2.74.6-2+deb12u2
no fix listed
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
glib2.0@2.72.4-0ubuntu2.2
no fix listed
2
sonatype/nexus3:3.96.0-ubia1f2dbdc4c94
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
glib2.0@2.74.6-2
no fix listed
2
stakater/stakater-nordmart-review:1.0.35954d2be66e95
glib2@2.56.4-158.el8
0:2.56.4-178.el8_10
2
wurstmeister/zookeeper:latest7a7fd44a7210
glib2.0@2.40.2-0ubuntu1
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
glib2.0@2.80.0-6ubuntu3.8
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
glib2.0@2.80.0-6ubuntu3.4
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
glib2.0@2.72.1-1
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
glib2.0@2.72.1-1
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
glib2.0@2.74.6-2+deb12u9
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
glib2.0@2.74.6-2+deb12u9
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
glib2.0@2.74.6-2+deb12u7
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
glib2.0@2.74.6-2+deb12u9
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
glib2.0@2.64.6-1~ubuntu20.04.4
no fix listed
2
ghcr.io/it-at-m/refarch/refarch-gateway:1.10.0d74e6a31e2fe
glib2@2.80.4-12.el10_2.21
0:2.80.4-12.el10_2.22
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
glib2.0@2.74.6-2+deb12u9
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
glib2.0@2.80.0-6ubuntu3.8
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.11f4feb3323a29
glib2.0@2.80.0-6ubuntu3.8
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
glib2.0@2.74.6-2+deb12u8
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
2
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
glib2@2.68.4-18.el9_7
0:2.68.4-19.el9_8.10
2
quay.io/flomesh/curl-ubi8:7.84.0bef31fa5f5f3
glib2@2.56.4-162.el8
0:2.56.4-178.el8_10
2
quay.io/keycloak/keycloak:20.0054ef67eb7da
glib2@2.56.4-159.el8
0:2.56.4-178.el8_10
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
glib2@2.56.4-156.el8
0:2.56.4-178.el8_10
2
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10
2
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
glib2@2.56.4-159.el8
0:2.56.4-178.el8_10
2
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10
2
quay.io/minio/minio:RELEASE.2023-07-21T21-12-44Z8e5e9490cd50
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10
2
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
glib2@2.56.4-159.el8
0:2.56.4-178.el8_10
2
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
glib2@2.56.4-165.el8_10
0:2.56.4-178.el8_10
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
glib2@2.56.4-10.el8_4
0:2.56.4-178.el8_10
2
quay.io/open-cluster-management/registration-operator:v1.3.1df6c926a2b54
glib2@2.68.4-18.el9_7.2
0:2.68.4-19.el9_8.10
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
glib2@2.56.4-10.el8_4.1
0:2.56.4-178.el8_10
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
glib2@2.56.4-10.el8_4.1
0:2.56.4-178.el8_10
2
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
glib2@2.68.4-19.el9_8.1
0:2.68.4-19.el9_8.10
2
quay.io/strimzi/operator:0.39.002f6f143fc6d
glib2@2.56.4-161.el8
0:2.56.4-178.el8_10
2
quay.io/strimzi/operator:1.2.077f8fa8121a6
glib2@2.68.4-19.el9_8.9
0:2.68.4-19.el9_8.10
2
quay.io/strimzi/operator:0.46.0ac434a48ac2b
glib2@2.68.4-14.el9_4.1
0:2.68.4-19.el9_8.10
2
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
glib2@2.68.4-16.el9_6.3
0:2.68.4-19.el9_8.10
2
1dev/server:11.9.0cd5b12fe5471
glib2.0@2.80.0-6ubuntu3.2
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
glib2.0@2.74.6-2+deb12u8
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
glib2.0@2.64.6-1~ubuntu20.04.6
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
glib2.0@2.56.4-0ubuntu0.18.04.6
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
glib2.0@2.84.4-3~deb13u3
2.84.4-3~deb13u5
1
adeptiainc/adeptia-connect-migration:4.8.1f1087da3da0b
glib2@2.68.4-19.el9_8.2
0:2.68.4-19.el9_8.10
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
glib2.0@2.64.3-1~ubuntu20.04.1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.