StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,541
of 17,828 indexed, latest versions
Container images
2,543
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,541 of 17,828 indexed charts deploy, on 2,543 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,543
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,541 by stars
ChartLatestAffected imagesRadar Score
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

3,488
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,448
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
tar@1.29b-2ubuntu0.1
no fix listed

Open the chart page →

78,680
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

7,974
camel-kcamel-kVerified publisher2.11.01 of 1See more

camel-k camel-k 2.11.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
apache/camel-k:2.11.0d173e7efe258
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,401
glasskube-operatorglasskubeOfficialVerified publisher0.12.21 of 3See more

glasskube-operator glasskube 0.12.2

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed

Open the chart page →

12,242
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,419
milvusmilvus-helm5.0.282 of 4See more

milvus milvus-helm 5.0.28

2 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
milvusdb/etcd:3.5.25-r1fededb2f2d63
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

11,237
prefect-serverprefectVerified publisher2026.9.141419102 of 2See more

prefect-server prefect 2026.9.14141910

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
prefecthq/prefect:3.8.6-python3.11f518ebb9c353
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,638
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

6,471
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

84,720
bitbucketatlassian-data-centerVerified publisher2.0.151 of 1See more

bitbucket atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
atlassian/bitbucket:10.2.705933f2b1cfd
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

32,049
zookeepercloudpirates-zookeeperVerified publisher0.15.01 of 1See more

zookeeper cloudpirates-zookeeper 0.15.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/zookeeper:3.9.57d0f24ebb67b
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed

Open the chart page →

3,023
codefreshcodefresh-onpremOfficialVerified publisher2.12.164 of 42See more

codefresh codefresh-onprem 2.12.16

4 of the 42 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/rabbitmq:4.1.39e635efba431
tar@1.34+dfsg-1.2+deb12u1
no fix listed
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

15,553
contourcontour0.8.01 of 2See more

contour contour 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.38.4447f857a0146
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed

Open the chart page →

1,566
apim3graviteeioVerified publisher4.12.202 of 4See more

apim3 graviteeio 4.12.20

2 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.20-debian8f1a14449381
tar@1.35+dfsg-3.1
no fix listed
graviteeio/apim-management-api:4.12.20-debiand30d085395ca
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,290
redisgroundhog2k2.4.71 of 1See more

redis groundhog2k 2.4.7

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/redis:8.10.18a1efc5f4795
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

579
wordpressgroundhog2k0.16.41 of 1See more

wordpress groundhog2k 0.16.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apacheedeeae67330a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,031
memcachedkubelauncherVerified publisher0.1.321 of 1See more

memcached kubelauncher 0.1.32

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/memcacheddigest-pinnedb599ca6b3ff3
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

693
mysqlkubelauncherVerified publisher0.4.41 of 1See more

mysql kubelauncher 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mysqldigest-pinnede9609bd50416
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,036
postgresqlkubelauncherVerified publisher0.4.31 of 1See more

postgresql kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/postgresqldigest-pinned1a27e11e5925
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,220
memgraphmemgraphVerified publisher1.0.71 of 2See more

memgraph memgraph 1.0.7

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.1bd3fe13228f4
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,292
velero-uiotwldVerified publisher0.16.01 of 1See more

velero-ui otwld 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
otwld/velero-ui:0.10.31c228d9ef71b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,387
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2api:3.86f56d239d280
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2auth:3.833ecfda16608
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2notifier:3.8f190a6212195
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2web:3.809989a26c8b7
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed

Open the chart page →

713,390
supabasetokens-studioVerified publisher1.0.06 of 14See more

supabase tokens-studio 1.0.0

6 of the 14 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
tar@1.35+dfsg-3build1
no fix listed
library/kong:3.8.0fd78090e9e77
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
supabase/edge-runtime:v1.59.0eff9c554d649
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/postgres-meta:v0.84.2d0a96973e9f1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/realtime:v2.33.8d207e6e23ad3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

23,212
wekanwekanVerified publisher11.90.02 of 3See more

wekan wekan 11.90.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/wekan/ferretdb:latestebed9a5eaae0
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/wekan/wekan:v11.90078ca230c0df
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,677
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

8,637
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
tar@1.35+dfsg-3ubuntu0.1
no fix listed

Open the chart page →

1,871
budibasebudibase0.0.0-master3 of 7See more

budibase budibase 0.0.0-master

3 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
budibase/proxy:3.41.38d780b6ee602
tar@1.35+dfsg-3.1
no fix listed
library/redis:latest8a1efc5f4795
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,696
paperless-ngxfmjstudios0.2.83 of 5See more

paperless-ngx fmjstudios 0.2.8

3 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
gotenberg/gotenberg:8.0.1cf0b9a7ca3cf
tar@1.34+dfsg-1.2
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.10.1a132c2ac7c57
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

31,340
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

3,541
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,073
gopaddlegopaddle-liteVerified publisher5.0.01 of 1See more

gopaddle gopaddle-lite 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
gopaddle/gopaddle:5.0435359250b63
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

5,140
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed

Open the chart page →

8,048
cassandrakubelauncherVerified publisher0.1.271 of 1See more

cassandra kubelauncher 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/cassandradigest-pinnedb66aba320083
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,608
etcdkubelauncherVerified publisher0.4.31 of 1See more

etcd kubelauncher 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/etcddigest-pinned8ab954711fb9
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

878
kafkakubelauncherVerified publisher0.1.261 of 1See more

kafka kubelauncher 0.1.26

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/kafkadigest-pinned43e1085cd0a8
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,492
keycloakkubelauncherVerified publisher0.4.41 of 1See more

keycloak kubelauncher 0.4.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/keycloakdigest-pinnedafe3bd73d7cf
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,413
kubectlkubelauncherVerified publisher0.2.111 of 1See more

kubectl kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/kubectldigest-pinned7280594a2f18
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,327
mariadbkubelauncherVerified publisher0.5.71 of 1See more

mariadb kubelauncher 0.5.7

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mariadbdigest-pinnede25056a6ec52
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,173
mongodbkubelauncherVerified publisher0.4.51 of 1See more

mongodb kubelauncher 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mongodbdigest-pinned9bc37ed78a8b
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,439
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

1,331
rabbitmqkubelauncherVerified publisher0.2.111 of 1See more

rabbitmq kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/rabbitmqdigest-pinnedff5a36a457f1
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,169
rediskubelauncherVerified publisher0.5.11 of 1See more

redis kubelauncher 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/redisdigest-pinnedbcd8e9a6224f
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

867
zookeeperkubelauncherVerified publisher0.2.111 of 1See more

zookeeper kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/zookeeperdigest-pinned7826e9caa461
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

1,120
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
itzg/bungeecord:latestde76286c0e73
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

2,784
openclawopenclawVerified publisher1.93.01 of 2See more

openclaw openclaw 1.93.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

3,100
quickwitquickwit0.8.171 of 1See more

quickwit quickwit 0.8.17

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,524
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

11,672
zillazillaOfficialVerified publisher2.4.31 of 1See more

zilla zilla 2.4.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/aklivity/zilla:2.4.3e33d59dbb606
tar@1.34+dfsg-1ubuntu0.1.22.04.3
no fix listed

Open the chart page →

1,782

Container images carrying it

2,543 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/maxiv/pieeat:0.9.3099715479210
tar@1.35+dfsg-3.1
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
tar@1.28-2.1ubuntu0.1
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
tar@1.35+dfsg-3.1
no fix listed
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
tar@1.35+dfsg-3build1
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tar@1.28-2.1ubuntu0.1
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
tar@1.35+dfsg-3.1
no fix listed
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
tar@1.35+dfsg-4ubuntu0.4
no fix listed
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
tar@1.34+dfsg-1.2
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
tar@1.35+dfsg-3ubuntu0.4
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
tar@1.35+dfsg-4ubuntu0.4
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
tar@1.35+dfsg-3.1
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
tar@1.35+dfsg-3.1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.