StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,450
of 17,787 indexed, latest versions
Container images
2,424
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,450 of 17,787 indexed charts deploy, on 2,424 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,424
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,450 by stars
ChartLatestAffected imagesRadar Score
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,763
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed
library/redmine:6.1.204ac44a2595b
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,552
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,896
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

3,729
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

37,441
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
helm-composenousefreakVerified publisher0.1.32 of 2See more

helm-compose nousefreak 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
library/wordpress:latest5a93c470ae82
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,324
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,051
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
tar@1.34+dfsg-1.2
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

14,862
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

4,205
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
tar@1.35+dfsg-3build1
no fix listed
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,833
opentelemetry-demoopentelemetry-helmVerified publisher0.41.17 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

7 of the 34 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
tar@1.34+dfsg-1ubuntu0.1.22.04.4
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
tar@1.35+dfsg-3build1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

22,678
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,899
opikopikOfficialVerified publisher2.2.612 of 13See more

opik opik 2.2.61

2 of the 13 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
redis/redis-stack-server:7.2.0-v10e44b2b49d059
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

14,422
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
tar@1.34+dfsg-1ubuntu0.1.22.04.3
no fix listed
shaowenchen/ops-server:latest315444f703f4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

9,049
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,694
paperless-ngxpaperlessVerified publisher0.4.03 of 3See more

paperless-ngx paperless 0.4.0

3 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
tar@1.34+dfsg-1.2+deb12u1
no fix listed
valkey/valkey:9.0.54c64dfeae602
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,510
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,890
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

4,732
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,075
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

7,616
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
matomopockostVerified publisher1.3.03 of 3See more

matomo pockost 1.3.0

3 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
tar@1.35+dfsg-3ubuntu0.4
no fix listed
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,102
portraitportraitVerified publisher0.2.133 of 8See more

portrait portrait 0.2.13

3 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
treskon/portrait:DEV-latest88e813f22347
tar@1.35+dfsg-4ubuntu0.4
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

31,949
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,487
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

5,483
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
tar@1.35+dfsg-3.1
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

8,203
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,022
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
tar@1.35+dfsg-3ubuntu0.3
no fix listed

Open the chart page →

24,038
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

6,835
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,809
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

7,466
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,665
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,252
reportportalreportportal-ioOfficialVerified publisher26.8.123 of 15See more

reportportal reportportal-io 26.8.12

3 of the 15 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
library/rabbitmq:4.3.4-managementeb5295d08332
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

11,943
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

7,487
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,306
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,548
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,885
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

10,159
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,508
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,508
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

6,085
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,767
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

6,918

Container images carrying it

2,424 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
tar@1.35+dfsg-3build1
no fix listed
2
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
tar@1.28-2.1ubuntu0.1
no fix listed
2
ghcr.io/api7/adc:0.27.1f65f53dd9668
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/appscode/inbox-server:latest:postgres-latest536358d7b17e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
2
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
tar@1.35+dfsg-3build1
no fix listed
2
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
tar@1.35+dfsg-3.1
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
tar@1.35+dfsg-3.1
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
tar@1.29b-2ubuntu0.1
no fix listed
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
tar@1.35+dfsg-3build1
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
tar@1.34+dfsg-1.2
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
tar@1.35+dfsg-3.1
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
tar@1.35+dfsg-3build1
no fix listed
2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
tar@1.35+dfsg-3build1
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
tar@1.34+dfsg-1.2
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
tar@1.29b-2ubuntu0.1
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
tar@1.35+dfsg-3.1
no fix listed
1
aboogie/login_test_backend:new9c41a4483ac8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
actualbudget/actual-server:25.3.158fecd9088b7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
adamzammit/limesurvey:7.1.0f48962e1528c
tar@1.35+dfsg-3.1
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
tar@1.35+dfsg-3build1
no fix listed
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
tar@1.35+dfsg-3build1
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
1
agentarea/agentarea-api:latest9e15e16fa758
tar@1.35+dfsg-3.1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.