StackRadar

CVE-2026-16473

Medium

Advisory

Published 22 Jul 2026In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
4.3
base score, highest
EPSS
0.002
16th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
12
of 17,781 indexed, latest versions
Container images
12
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 12 of 17,781 indexed charts deploy, on 12 images.

Affected packageAffected versionsFixed inImages
sbcdeb1.4-1, 1.5-3build2, 2.0-1, 2.0-1build1+1 moreno fix listed12
OSV records
DEBIAN-CVE-2026-16473UBUNTU-CVE-2026-16473

Charts affected

12 by stars
ChartLatestAffected imagesRadar Score
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
sbc@1.4-1
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
sbc@1.4-1
no fix listed

Open the chart page →

45,832
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
sbc@1.4-1
no fix listed

Open the chart page →

64,489
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
sbc@2.0-1
no fix listed

Open the chart page →

12,958
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
sbc@1.4-1
no fix listed

Open the chart page →

18,066
intelowlintelowl-helm6.6.1-01-06-20261 of 5See more

intelowl intelowl-helm 6.6.1-01-06-2026

1 of the 5 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
intelowlproject/intelowl:v6.6.10b22e547ea6b
sbc@2.0-1
no fix listed

Open the chart page →

17,852
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
sbc@1.5-3build2
no fix listed

Open the chart page →

10,716
node-debug-dashboardnode-debug-dashboardVerified publisher0.3.21 of 1See more

node-debug-dashboard node-debug-dashboard 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
sbc@2.0-1
no fix listed

Open the chart page →

6,854
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
sbc@1.4-1
no fix listed

Open the chart page →

30,687
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
sbc@2.0-1build1
no fix listed

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
sbc@2.0-1build1
no fix listed

Open the chart page →

12,460
aih-scannerwallarmVerified publisher2.7.111 of 2See more

aih-scanner wallarm 2.7.11

1 of the 2 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
sbc@2.1-1
no fix listed

Open the chart page →

3,911
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-16473.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
sbc@1.5-3build2
no fix listed

Open the chart page →

14,100

Container images carrying it

12 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
kurento/kurento-media-server:latest03c0d34d0828
sbc@2.0-1build1
no fix listed
2
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
sbc@1.4-1
no fix listed
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
sbc@1.4-1
no fix listed
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
sbc@2.0-1
no fix listed
1
jaedb/iris:latest048cfbf58d57
sbc@2.0-1
no fix listed
1
livekit/ingress:v1.2.21ab01641b366
sbc@1.5-3build2
no fix listed
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
sbc@1.4-1
no fix listed
1
wallarm/aih-scanner:2.7.11f1cb26db1f5b
sbc@2.1-1
no fix listed
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
sbc@1.5-3build2
no fix listed
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
sbc@2.0-1
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
sbc@1.4-1
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
sbc@1.4-1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.