StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,451
of 17,792 indexed, latest versions
Container images
2,427
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,451 of 17,792 indexed charts deploy, on 2,427 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,427
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,451 by stars
ChartLatestAffected imagesRadar Score
model-manager-loadermodel-manager-loader1.27.01 of 1See more

model-manager-loader model-manager-loader 1.27.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,717
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,819
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed
library/redmine:6.1.204ac44a2595b
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,617
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,907
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

3,738
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,667
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

37,538
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
helm-composenousefreakVerified publisher0.1.32 of 2See more

helm-compose nousefreak 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
library/wordpress:latest5a93c470ae82
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,398
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,079
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
tar@1.34+dfsg-1.2
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

14,920
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

4,216
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
tar@1.35+dfsg-3build1
no fix listed
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,875
opentelemetry-demoopentelemetry-helmVerified publisher0.41.27 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

7 of the 34 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
tar@1.34+dfsg-1ubuntu0.1.22.04.4
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
tar@1.35+dfsg-3build1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

23,064
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,960
opikopikOfficialVerified publisher2.2.662 of 13See more

opik opik 2.2.66

2 of the 13 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
redis/redis-stack-server:7.2.0-v10e44b2b49d059
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

14,454
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
tar@1.34+dfsg-1ubuntu0.1.22.04.3
no fix listed
shaowenchen/ops-server:latest315444f703f4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

9,214
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,735
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
tar@1.34+dfsg-1.2+deb12u1
no fix listed
valkey/valkey:9.0.54c64dfeae602
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,591
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,897
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

4,743
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,160
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

7,632
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
tar@1.35+dfsg-3ubuntu0.4
no fix listed
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,230
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
treskon/portrait:DEV-latest88e813f22347
tar@1.35+dfsg-4ubuntu0.4
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

32,112
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,667
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,498
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

5,503
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
tar@1.35+dfsg-3.1
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

8,367
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,239
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
tar@1.35+dfsg-3ubuntu0.3
no fix listed

Open the chart page →

24,012
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

6,914
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,838
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

7,519
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,683
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,284
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
library/rabbitmq:4.3.4-managementeb5295d08332
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

12,026
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

7,510
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,380
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,595
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,932
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

10,175
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,721
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,562
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

6,097
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,909

Container images carrying it

2,427 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
tar@1.35+dfsg-4ubuntu0.4
no fix listed
1
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/mcp-hangar/mcp-hangar:2.20.04ff2ba28b8cf
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/microboxlabs/miot-harness:0.1.0d548e9ae4b84
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/mollyim/mollysocket:1.7.1c675622546a4
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/monicahq/monica-next:main8be69156acbb
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
1
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/netbox-community/netbox:v4.7.13f6ab3c93e4e
tar@1.35+dfsg-4ubuntu0.4
no fix listed
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/nmshd/backbone-admin-cli:7.2.1f7d095c04a75
tar@1.35+dfsg-3ubuntu0.4
no fix listed
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/nowakeai/svc-lb-mux:0.1.37d8fb8e996b6
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/observal/observal-api:1.13.1153b8b893232
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-03:0.0.0-2026-08-173e56bdd1b90d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/ondrejsika/counter-frontend:latestc4166d2eb8eb
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.