StackRadar

CVE-2026-16615

Medium

Advisory

Published 22 Jul 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.8
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
16
of 17,781 indexed, latest versions
Container images
15
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 16 of 17,781 indexed charts deploy, on 15 images.

Affected packageAffected versionsFixed inImages
librestdeb0.7.93-1, 0.8.0-2, 0.8.1-1, 0.8.1-1.1no fix listed15
OSV records
UBUNTU-CVE-2026-16615

Charts affected

16 by stars
ChartLatestAffected imagesRadar Score
zabbixzabbix-communityVerified publisher7.1.01 of 5See more

zabbix zabbix-community 7.1.0

1 of the 5 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
librest@0.8.1-1.1
no fix listed

Open the chart page →

13,664
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
librest@0.8.0-2
no fix listed

Open the chart page →

22,773
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
librest@0.8.1-1
no fix listed

Open the chart page →

24,488
games-on-whalesgeek-cookbookVerified publisher1.8.22 of 7See more

games-on-whales geek-cookbook 1.8.2

2 of the 7 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
librest@0.8.1-1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
librest@0.8.1-1
no fix listed

Open the chart page →

35,305
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
librest@0.8.1-1
no fix listed

Open the chart page →

15,653
smarter-demosmarterOfficialVerified publisher0.1.51 of 7See more

smarter-demo smarter 0.1.5

1 of the 7 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
librest@0.8.1-1
no fix listed

Open the chart page →

45,832
games-on-whalesangelnu2.0.02 of 7See more

games-on-whales angelnu 2.0.0

2 of the 7 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
librest@0.8.1-1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
librest@0.8.1-1
no fix listed

Open the chart page →

42,126
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
librest@0.7.93-1
no fix listed

Open the chart page →

77,758
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
librest@0.8.1-1
no fix listed

Open the chart page →

64,489
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
librest@0.8.1-1
no fix listed

Open the chart page →

27,949
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
librest@0.8.1-1
no fix listed

Open the chart page →

15,730
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
librest@0.8.1-1
no fix listed

Open the chart page →

18,813
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
librest@0.8.0-2
no fix listed
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
librest@0.7.93-1
no fix listed

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
librest@0.7.93-1
no fix listed

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
librest@0.7.93-1
no fix listed

Open the chart page →

29,124
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-16615.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
librest@0.8.1-1
no fix listed

Open the chart page →

15,520

Container images carrying it

15 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
librest@0.7.93-1
no fix listed
3
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
librest@0.8.1-1
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
librest@0.8.1-1
no fix listed
2
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
librest@0.8.1-1
no fix listed
1
countly/countly-server:25.05.4e3c238248f99
librest@0.8.1-1
no fix listed
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
librest@0.8.1-1
no fix listed
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
librest@0.8.0-2
no fix listed
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
librest@0.8.0-2
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
librest@0.8.1-1
no fix listed
1
project2team4/react:latest3ff031a08887
librest@0.8.1-1
no fix listed
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
librest@0.7.93-1
no fix listed
1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
librest@0.8.1-1.1
no fix listed
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
librest@0.8.1-1
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
librest@0.8.1-1
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
librest@0.8.1-1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.