StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,451
of 17,790 indexed, latest versions
Container images
2,431
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,451 of 17,790 indexed charts deploy, on 2,431 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,431
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,451 by stars
ChartLatestAffected imagesRadar Score
weblateweblateOfficialVerified publisher0.5.363 of 3See more

weblate weblate 0.5.36

3 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
weblate/weblate:2026.9.1.0990720d1737a
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

6,787
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,817
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,649
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,728
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

4,819
mariadbcloudpirates-mariadbVerified publisher0.16.141 of 1See more

mariadb cloudpirates-mariadb 0.16.14

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:12.3.3ab1c3dd38194
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,666
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

19,544
dragonflydragonflyVerified publisher1.8.41 of 3See more

dragonfly dragonfly 1.8.4

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,830
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,802
mongodbcloudpirates-mongodbVerified publisher0.18.131 of 1See more

mongodb cloudpirates-mongodb 0.18.13

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mongo:8.3.981a1c8842a09
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

965
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,592
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

3,675
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,960
difydify-helmVerified publisher0.38.06 of 11See more

dify dify-helm 0.38.0

6 of the 11 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
tar@1.35+dfsg-3build1
no fix listed
langgenius/dify-sandbox:0.2.15750e1111426e
tar@1.35+dfsg-3.1
no fix listed
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

22,214
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

3,214
plantumlstevehipwellVerified publisher3.49.01 of 1See more

plantuml stevehipwell 3.49.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

1,926
rabbitmqgroundhog2k2.3.81 of 2See more

rabbitmq groundhog2k 2.3.8

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/rabbitmq:4.3.51773ab33af6a
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,045
stacks-blockchainhirosystemsVerified publisher2.2.21 of 1See more

stacks-blockchain hirosystems 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,396
ingresskongOfficialVerified publisher0.24.01 of 2See more

ingress kong 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,186
oktetooktetoOfficialVerified publisher0.0.0-2026-08-171 of 10See more

okteto okteto 0.0.0-2026-08-17

1 of the 10 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-173e56bdd1b90d
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,532
yourlsyourlsOfficialVerified publisher8.9.111 of 2See more

yourls yourls 8.9.11

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/yourls/yourls:1.10.69b220ea83329
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,269
apisix-ingress-controllerapisix1.3.11 of 2See more

apisix-ingress-controller apisix 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/api7/adc:0.27.1f65f53dd9668
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,661
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
tar@1.28-2.1ubuntu0.1
no fix listed
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
tar@1.28-2.1ubuntu0.1
no fix listed

Open the chart page →

23,984
actualbudgetcommunity-chartsVerified publisher1.9.41 of 1See more

actualbudget community-charts 1.9.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,112
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,054
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

4,168
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.04 of 5See more

openproject openproject-helm-charts 13.11.0

4 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
tar@1.34+dfsg-1.2+deb12u1
no fix listed
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
openproject/hocuspocus:release-338001b288dc1359dfb5
tar@1.34+dfsg-1.2+deb12u1
no fix listed
openproject/openproject:17.8.0-slim48952034215d
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

20,067
sftpgosftpgoOfficialVerified publisher0.47.01 of 1See more

sftpgo sftpgo 0.47.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,262
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

11,431
lemmyananace-chartsVerified publisher0.6.152 of 5See more

lemmy ananace-charts 0.6.15

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
dessalines/lemmy-ui:0.19.20ee4c620d8e93
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,255
zabbixcetic3.1.35 of 5See more

zabbix cetic 3.1.3

5 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
tar@1.34+dfsg-1build3
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
tar@1.34+dfsg-1build3
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
tar@1.34+dfsg-1build3
no fix listed
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

33,928
csi-driver-smbcsi-driver-smbVerified publisher1.20.31 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

1 of the 6 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,005
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

4,310
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,562
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
tar@1.34+dfsg-1.2+deb12u1
no fix listed
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

8,409
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,373
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,049
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

12,838
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

3,044
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
factoriotools/factorio:lateste9227748c507
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,459
netbirdjaconiVerified publisher0.15.12 of 4See more

netbird jaconi 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/golang:latest512690a56605
tar@1.35+dfsg-3.1
no fix listed
netbirdio/management:0.45.10c9994b393ea
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

8,567
litellm-helmlitellm1.101.01 of 2See more

litellm-helm litellm 1.101.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,991
localstacklocalstack0.7.01 of 1See more

localstack localstack 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,228
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,747
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

5,293
oneuptimeoneuptimeOfficialVerified publisher13.0.54 of 7See more

oneuptime oneuptime 13.0.5

4 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.73b94aa2f02cd
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
library/postgres:latest4ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed
oneuptime/probe:release1069c9458fe7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
oneuptime/runner:releasef6f2c1c536bc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

11,432
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,710
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

3,428
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,425
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

15,602

Container images carrying it

2,431 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
1
ghcr.io/spidernet-io/egressgateway-agent:v0.6.9a8ec2f74c9d0
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/spidernet-io/egressgateway-controller:v0.6.99deda7b68c34
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/stac-utils/stac-fastapi-pgstac:6.4.0fa35b9519abb
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/stac-utils/titiler-pgstac:3.1.0788173c5876d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
1
ghcr.io/steadybit/agent:2.4.52bc7b260e44e
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/substra/substra-backend:1.0.121967f54ec86
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
tar@1.35+dfsg-3ubuntu0.4
no fix listed
1
ghcr.io/tarampampam/video-dl-bot:1.4.36daa2dc7556b
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/theduffman85/crowdsec-web-ui:2026.8.3bfadbab9a72c
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/toeverything/affine:0.27.4b649f5ce2384
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/topolvm/pie:0.18.0aa467443e407
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.41.170548dbe0c6a
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
1
ghcr.io/topolvm/topolvm-with-sidecar:0.35.0b354978c440d
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
1
ghcr.io/trow-registry/trow:0.10.075b7d2dcdb91
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
tar@1.35+dfsg-3build1
no fix listed
1
ghcr.io/twigex/cospace:lateste5ecfd607e42
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/unique-ag/ai/search-proxy:2026.38.0aa6699b027bb
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
tar@1.35+dfsg-4
no fix listed
1
ghcr.io/vinny1892/octantis:latest45459c0910fc
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.