StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,450
of 17,787 indexed, latest versions
Container images
2,424
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,450 of 17,787 indexed charts deploy, on 2,424 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,424
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,450 by stars
ChartLatestAffected imagesRadar Score
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

20,233
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

7,329
geoservercamptocamp20.0.37 of 12See more

geoserver camptocamp2 0.0.3

7 of the 12 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
library/postgres:122f2a8c2a7d10
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

88,377
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,165
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,051
pgbouncer-tlscamptocamp32.3.02 of 2See more

pgbouncer-tls camptocamp3 2.3.0

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,856
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

6,158
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

5,932
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,318
apachecamptocamp-apache0.4.01 of 2See more

apache camptocamp-apache 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
camptocamp/mapserver:latestbf2e8e118c9b
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,485
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,363
pagescarina-pages1.0.02 of 3See more

pages carina-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

20,233
pagescarmel-pages-dell1.0.02 of 3See more

pages carmel-pages-dell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

20,233
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

9,521
castai-hibernatecastaiVerified publisher0.2.121 of 1See more

castai-hibernate castai 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
castai/hibernate:v0.14da62858c8381
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,158
catalyst-agentscatalyst-agents0.1.301 of 18See more

catalyst-agents catalyst-agents 0.1.30

1 of the 18 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

14,865
getoutlinecfi20171.2.02 of 4See more

getoutline cfi2017 1.2.0

2 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.2.3d31852005202
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,329
opencvecfi20170.1.25 of 7See more

opencve cfi2017 0.1.2

5 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:trixie05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:7.2-bookworm74566c6910d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,964
nginx-chartchanhk10.1.01 of 1See more

nginx-chart chanhk1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
clechaosnative0.2.71 of 6See more

cle chaosnative 0.2.7

1 of the 6 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
litmuschaos/mongo:4.2.899961210d467
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

16,395
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,409
dv-podcharonOfficialVerified publisher0.19.12 of 5See more

dv-pod charon 0.19.1

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed
sigp/lighthouse:v8.1.344aa773dcf27
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

7,457
helioscharonVerified publisher0.1.51 of 1See more

helios charon 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
obolnetwork/helios:e10e753cb7e97d39d46
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,127
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,528
kitchenowlchart-kitchenowl0.1.121 of 2See more

kitchenowl chart-kitchenowl 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,783
calibre-webcharts-derwitt-devVerified publisher1.1.21 of 1See more

calibre-web charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,919
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.31 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.31b53b0b3488e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,358
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
tar@1.29b-2ubuntu0.4
no fix listed

Open the chart page →

12,804
paperless-ngxcharts-derwitt-devVerified publisher2.1.41 of 1See more

paperless-ngx charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,644
chat-searchchat-searchVerified publisher0.1.71 of 1See more

chat-search chat-search 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/hemslo/chat-search:latest39d48995a5bd
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,048
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
tar@1.27.1-1ubuntu0.1
no fix listed

Open the chart page →

30,163
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

12,531
mysqld-exporterchoerodon0.1.01 of 1See more

mysqld-exporter choerodon 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,958
polrchristianhuthVerified publisher4.3.01 of 2See more

polr christianhuth 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,936
proxysqlchristianhuthVerified publisher3.1.11 of 1See more

proxysql christianhuth 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.110e95d1b7cc32
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,277
timetaggerchristianhuthVerified publisher2.2.01 of 1See more

timetagger christianhuth 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,902
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,006
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

4,858
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed

Open the chart page →

6,487
tor-proxychronicleVerified publisher0.1.01 of 1See more

tor-proxy chronicle 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
btcpayserver/tor:0.4.8.10e9585b68dc6b
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

3,051
zksyncchronicleVerified publisher0.1.02 of 2See more

zksync chronicle 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed
matterlabs/external-node:v24.0.06cbfea4c694a
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,550
ciliumcilium21.20.12 of 3See more

cilium cilium2 1.20.1

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
tar@1.35+dfsg-4ubuntu0.4
no fix listed
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,786
kamaji-etcdclastixVerified publisher0.17.01 of 4See more

kamaji-etcd clastix 0.17.0

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
cfssl/cfssl:latestc9018c2ddf0b
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

12,021
cronjobclouddrove1.0.11 of 1See more

cronjob clouddrove 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

733
helmchartclouddrove1.4.01 of 1See more

helmchart clouddrove 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
kube-acp-stackcloudentity2.28.02 of 7See more

kube-acp-stack cloudentity 2.28.0

2 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/redis-cluster:7.4.3-debian-12-r0a53d023fdfaf
tar@1.34+dfsg-1.2+deb12u1
no fix listed
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

20,936
bitcoindcloudnativeapp0.2.11 of 2See more

bitcoind cloudnativeapp 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
tar@1.28-2.1ubuntu0.1
no fix listed

Open the chart page →

5,057
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
tar@1.29b-2
no fix listed

Open the chart page →

29,922
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
tar@1.28-2.1ubuntu0.1
no fix listed

Open the chart page →

36,132

Container images carrying it

2,424 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.13a89736c586ba
tar@1.35+dfsg-3ubuntu0.4
no fix listed
3
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
tar@1.35+dfsg-4ubuntu0.4
no fix listed
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
tar@1.35+dfsg-4ubuntu0.4
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
tar@1.34+dfsg-1build3
no fix listed
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
tar@1.28-2.1ubuntu0.2
no fix listed
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
actualbudget/actual-server:26.9.0552beab3dec8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
no fix listed
2
apache/apisix:3.18.0-ubuntu9ee5df1611f9
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
apache/nifi-registry:1.26.07cdfd8deec92
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
2
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
no fix listed
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
tar@1.35+dfsg-3build1
no fix listed
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/etcd:latest99b408c15272
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnami/minideb:latestab4d5b45116e
tar@1.35+dfsg-3.1
no fix listed
2
blockstack/stacks-core:3.2.0.0.0f79944317326
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
tar@1.35+dfsg-3.1
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
tar@1.34+dfsg-1.2
no fix listed
2
chromedp/headless-shell:148.0.7778.97313ed7255ae1
tar@1.35+dfsg-3.1
no fix listed
2
clickhouse/clickhouse-server:24.2ed9640bfff07
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
2
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
2
cribl/cribl:4.19.2044f9a5fac9a
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
dagster/user-code-example:1.13.225947f9ae481c
tar@1.35+dfsg-3.1
no fix listed
2
datagrok/grok_connect:latestf5876d3aebb8
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
2
emberstack/kubernetes-reflector:10.0.6551dbd5880929
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
eqalpha/keydb:latest6537505c4235
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
tar@1.35+dfsg-3.1
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
tar@1.35+dfsg-3.1
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
tar@1.29b-2ubuntu0.1
no fix listed
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.