StackRadar

CVE-2026-18477

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
0th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,450
of 17,787 indexed, latest versions
Container images
2,424
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,450 of 17,787 indexed charts deploy, on 2,424 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,424
OSV records
DEBIAN-CVE-2026-18477UBUNTU-CVE-2026-18477ECHO-b8d2-238f-d46b

Charts affected

2,450 by stars
ChartLatestAffected imagesRadar Score
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,667
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

7,567
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
routehub-client-hubroutehub-helm1.0.02 of 3See more

routehub-client-hub routehub-helm 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
timescale/timescaledb-ha:pg16d7db8f1085a3
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed

Open the chart page →

13,028
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,061
rstudio-pmrstudioVerified publisher0.20.51 of 1See more

rstudio-pm rstudio 0.20.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
posit/package-manager:2026.09.0-ubuntu-24.04527493ef621b
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,368
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,942
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,321
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

30,310
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed

Open the chart page →

11,022
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

38,115
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
sceptresceptreai0.1.122 of 5See more

sceptre sceptreai 0.1.12

2 of the 5 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
tar@1.35+dfsg-3.1
no fix listed
maponyacharles/sceptreai:api-0.1.127b37b092130a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,368
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,178
searxngsearxngVerified publisher0.1.111 of 3See more

searxng searxng 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

818
securosecuroVerified publisher0.15.12 of 4See more

securo securo 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
pgvector/pgvector:pg16ccc6e83d6e35
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,350
immichsecustorVerified publisher2.0.51 of 1See more

immich secustor 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,011
viya4-home-dir-builderselerityVerified publisher1.1.01 of 2See more

viya4-home-dir-builder selerity 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/python:3.12-slim78387bc3881b
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

864
sentry-k8ssentry-k8sVerified publisher1.4.15 of 11See more

sentry-k8s sentry-k8s 1.4.1

5 of the 11 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

16,194
seq-input-gelfseq-input-gelfVerified publisher0.3.11 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

3,552
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

11,545
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,185
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,185
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

6,864
clickhousesinextraVerified publisher0.22.01 of 1See more

clickhouse sinextra 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3.1092098d3b31dd
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

2,013
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,250
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,920
gitlab-omnibusslamdev0.1.61 of 2See more

gitlab-omnibus slamdev 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
daedalusproject/base_kubectl:latest6f72b5119eda
tar@1.30+dfsg-7
no fix listed

Open the chart page →

2,849
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,934
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

46,028
snappasssnappassVerified publisher0.4.32 of 3See more

snappass snappass 0.4.3

2 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
lmacka/snappass:2.1.293f5c048b7d4
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:8.1.61f84517eca8e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,019
artifact-hubsoftonic1.19.01 of 8See more

artifact-hub softonic 1.19.0

1 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,504
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,320
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,157
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.42 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

2 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
tar@1.34+dfsg-1.2+deb12u1
no fix listed
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,390
rabbitmqsolidchartsVerified publisher0.7.51 of 2See more

rabbitmq solidcharts 0.7.5

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/rabbitmq:4.3.5-managementffd1b50c522a
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,040
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,688
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,405
squidsquid-helmVerified publisher0.1.01 of 1See more

squid squid-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ubuntu/squid:5.2-22.04_beta723891b5bc74
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

2,622
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
graphprotocol/graph-node:v0.37.0f4452cdedd68
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,673
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

13,532
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

24,984
stornxstornxVerified publisher1.1.13 of 9See more

stornx stornx 1.1.1

3 of the 9 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
no fix listed
alazidis/stornx:1.1.1602d4f7f090c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

11,683
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,874
supabasesupabse0.8.06 of 11See more

supabase supabse 0.8.0

6 of the 11 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
tar@1.35+dfsg-3build1
no fix listed
kong/kong:3.9.16addf50e6bd8
tar@1.35+dfsg-3build1
no fix listed
supabase/edge-runtime:v1.74.02781daf92394
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/postgres-meta:v0.96.6a84cc713585e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/realtime:v2.102.3aa1c92c0cf32
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

18,213
supersonicsupersonicVerified publisher0.3.11 of 2See more

supersonic supersonic 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.30.92956bd9de830
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

2,139
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,253
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,138
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-18477.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839

Container images carrying it

2,424 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
tar@1.35+dfsg-3build1
no fix listed
2
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
tar@1.28-2.1ubuntu0.1
no fix listed
2
ghcr.io/api7/adc:0.27.1f65f53dd9668
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/appscode/inbox-server:latest:postgres-latest536358d7b17e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
2
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
tar@1.35+dfsg-3build1
no fix listed
2
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
tar@1.35+dfsg-3.1
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
tar@1.35+dfsg-3.1
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
tar@1.29b-2ubuntu0.1
no fix listed
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
tar@1.35+dfsg-3build1
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
tar@1.34+dfsg-1.2
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
tar@1.34+dfsg-1build3
no fix listed
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
tar@1.35+dfsg-3.1
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
tar@1.35+dfsg-3build1
no fix listed
2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
tar@1.35+dfsg-3build1
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
tar@1.34+dfsg-1.2
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
tar@1.29b-2ubuntu0.1
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
tar@1.35+dfsg-3.1
no fix listed
1
aboogie/login_test_backend:new9c41a4483ac8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
actualbudget/actual-server:25.3.158fecd9088b7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
adamzammit/limesurvey:7.1.0f48962e1528c
tar@1.35+dfsg-3.1
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
tar@1.35+dfsg-3build1
no fix listed
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
tar@1.35+dfsg-3build1
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
1
agentarea/agentarea-api:latest9e15e16fa758
tar@1.35+dfsg-3.1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.