StackRadar

CVE-2026-16742

Medium

Advisory

Published 10 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.7
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,854
of 17,828 indexed, latest versions
Container images
1,832
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2026-16742 affecting package systemd for versions less than 255-34

Carried by container images the latest versions of 1,854 of 17,828 indexed charts deploy, on 1,832 images.

Affected packageAffected versionsFixed inImages
systemddeb249.11-0ubuntu3, 249.11-0ubuntu3.1, 249.11-0ubuntu3.3, 249.11-0ubuntu3.4+48 more249.11-0ubuntu3.22, 255.4-1ubuntu8.17, 257.13-1~deb13u1+e2, 259.5-0ubuntu3.41,829
systemdrpm255-33.azl3255-343
OSV records
DEBIAN-CVE-2026-16742UBUNTU-CVE-2026-16742AZL-95643ECHO-9f82-dc11-1360
Also known as
USN-8626-1

Charts affected

1,854 by stars
ChartLatestAffected imagesRadar Score
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-16742.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
systemd@252.22-1~deb12u1
no fix listed

Open the chart page →

2,638
changedetection-iozekker6Verified publisher1.102.01 of 1See more

changedetection-io zekker6 1.102.0

1 of the 1 container images this version deploys carry CVE-2026-16742.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.7096dae27b5d6
systemd@252.39-1~deb12u2
no fix listed

Open the chart page →

2,710
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-16742.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
systemd@257.13-1~deb13u1
no fix listed

Open the chart page →

1,593
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-16742.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
systemd@249.11-0ubuntu3.21
249.11-0ubuntu3.22

Open the chart page →

7,966

Container images carrying it

1,832 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quickwit/quickwit:v0.8.2363ff56ce456
systemd@252.22-1~deb12u1
no fix listed
2
rajnandan1/kener:3.2.1930407afca731
systemd@252.33-1~deb12u1
no fix listed
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
systemd@249.11-0ubuntu3.12
249.11-0ubuntu3.22
2
redis/redis-stack-server:7.4.0:7.4.0-v172035434f455
systemd@249.11-0ubuntu3.12
249.11-0ubuntu3.22
2
redis/redis-stack-server:7.2.0-v10e44b2b49d059
systemd@249.11-0ubuntu3.12
249.11-0ubuntu3.22
2
rotationalio/quarterdeck:0.16.00e7ad3a031dc
systemd@252.39-1~deb12u2
no fix listed
2
safeglobal/safe-config-service:latest09a5e495c219
systemd@257.13-1~deb13u1
no fix listed
2
safeglobal/safe-transaction-service:latest80db836cc5d5
systemd@257.13-1~deb13u1
no fix listed
2
sigp/lighthouse:v8.1.344aa773dcf27
systemd@249.11-0ubuntu3.17
249.11-0ubuntu3.22
2
sigp/lighthouse:latest9a62bb870545
systemd@249.11-0ubuntu3.21
249.11-0ubuntu3.22
2
sikalabs/hello-world-server:latest5f49bf889a64
systemd@257.13-1~deb13u1
no fix listed
2
speckle/speckle-preview-service:2.18.11-branch.testing2.88634-335d469:2.18.12-branch.testing3.88744-f55b3414bd113093583
systemd@252.22-1~deb12u1
no fix listed
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
systemd@249.11-0ubuntu3
249.11-0ubuntu3.22
2
taigaio/taiga-back:latest4beed8f62c9f
systemd@257.13-1~deb13u1
no fix listed
2
taigaio/taiga-protected:latestfd4568a97a59
systemd@257.9-1~deb13u1
no fix listed
2
testinprod/op-erigon:latest0a125bd77a2d
systemd@252.31-1~deb12u1
no fix listed
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
systemd@249.11-0ubuntu3.9
249.11-0ubuntu3.22
2
uffizzi/controller:latest0344805f267b
systemd@252.19-1~deb12u1
no fix listed
2
valkey/valkey:83fbd2e3e4b6e
systemd@257.13-1~deb13u1
no fix listed
2
valkey/valkey:9.0.1546304417fea
systemd@257.9-1~deb13u1
no fix listed
2
valkey/valkey:8.1.481db6d39e1bb
systemd@257.8-1~deb13u2
no fix listed
2
valkey/valkey:9.1.08e8d64b405ce
systemd@257.13-1~deb13u1
no fix listed
2
vaultwarden/server:1.37.31587c45feaa4
systemd@257.13-1~deb13u1
no fix listed
2
vdiogov/glpi-conteiner:latest6945f84f0058
systemd@252.26-1~deb12u2
no fix listed
2
wolveix/satisfactory-server:latest:v1.9.10e103700ae6ae
systemd@249.11-0ubuntu3.16
249.11-0ubuntu3.22
2
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
systemd@255.4-1ubuntu8.4
255.4-1ubuntu8.17
2
ghcr.io/appscode/inbox-server:latest:postgres-latest536358d7b17e
systemd@249.11-0ubuntu3.17
249.11-0ubuntu3.22
2
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
systemd@252.39-1~deb12u1
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
systemd@255.4-1ubuntu8.6
255.4-1ubuntu8.17
2
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
systemd@257.9-1~deb13u1
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
systemd@249.11-0ubuntu3.6
249.11-0ubuntu3.22
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
systemd@249.11-0ubuntu3.4
249.11-0ubuntu3.22
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
systemd@252.39-1~deb12u1
no fix listed
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
systemd@252.39-1~deb12u2
no fix listed
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
systemd@252.26-1~deb12u2
no fix listed
2
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
systemd@252.39-1~deb12u2
no fix listed
2
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
systemd@257.9-1~deb13u1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
systemd@252.38-1~deb12u1
no fix listed
2
ghcr.io/libredb/libredb-studio:0.16.2c398419c29a7
systemd@257.13-1~deb13u1
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
systemd@252.30-1~deb12u2
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
systemd@252.38-1~deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
systemd@252.38-1~deb12u1
no fix listed
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
systemd@252.19-1~deb12u1
no fix listed
2
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
systemd@252.26-1~deb12u2
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
systemd@252.33-1~deb12u1
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
systemd@249.11-0ubuntu3.1
249.11-0ubuntu3.22
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
systemd@252.36-1~deb12u1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
systemd@252.39-1~deb12u1
no fix listed
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
systemd@257.8-1~deb13u1
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
systemd@255.4-1ubuntu8.6
255.4-1ubuntu8.17
2

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.