StackRadar

CVE-2026-18508

Medium

Advisory

Published 3 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,442
of 17,781 indexed, latest versions
Container images
2,414
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,442 of 17,781 indexed charts deploy, on 2,414 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+31 more1.35+dfsg-3.1+e52,414
OSV records
DEBIAN-CVE-2026-18508UBUNTU-CVE-2026-18508ECHO-94ec-2dbe-8b73

Charts affected

2,442 by stars
ChartLatestAffected imagesRadar Score
lightsteplightstepsatellite1.2.41 of 1See more

lightstep lightstepsatellite 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
tar@1.28-2.1ubuntu0.1
no fix listed

Open the chart page →

15,330
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed

Open the chart page →

7,901
mariadbmariadbVerified publisher0.4.01 of 1See more

mariadb mariadb 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/mariadb:10.11ce66c7be32a0
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed

Open the chart page →

2,410
memgraph-high-availabilitymemgraphVerified publisher1.4.01 of 2See more

memgraph-high-availability memgraph 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.0a1dc375774ed
tar@1.35+dfsg-3ubuntu0.4
no fix listed

Open the chart page →

1,373
kubecostmesosphere-stable0.37.52 of 9See more

kubecost mesosphere-stable 0.37.5

2 of the 9 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.30.5744f84cf7493
tar@1.34+dfsg-1.2+deb12u1
no fix listed
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

17,693
mogenius-operatormogeniusOfficialVerified publisher2.29.01 of 2See more

mogenius-operator mogenius 2.29.0

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
valkey/valkey:9.1.164e361b630ec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

934
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,060
observalobservalVerified publisher1.13.13 of 8See more

observal observal 1.13.1

3 of the 8 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3810861a2e2d0
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/observal/observal-api:1.13.1153b8b893232
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,828
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.671 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,218
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
tar@1.35+dfsg-3build1
no fix listed
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tar@1.28-2.1ubuntu0.1
no fix listed
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

107,811
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,327
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,846
phpmyadminphpmyadminVerified publisher1.0.31 of 1See more

phpmyadmin phpmyadmin 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,582
prometheus-prefect-exporterprefectVerified publisher2026.8.71410241 of 1See more

prometheus-prefect-exporter prefect 2026.8.7141024

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
prefecthq/prometheus-prefect-exporter:4.0.050d527a190ae
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,000
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,435
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
library/elasticsearch:8.15.0310b9fc03b06
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
library/postgres:16.24aea012537ed
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,521
nominatimrobjuz6.4.12 of 4See more

nominatim robjuz 6.4.1

2 of the 4 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
mediagis/nominatim:5.3.27923a8e67197
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

8,690
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

6,328
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

24,488
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

3,427
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,400
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,852
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,355
spartanspartan0.9.11 of 1See more

spartan spartan 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,827
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

5,751
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed

Open the chart page →

15,477
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,052
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
pretix/standalone:2026.7.05df3b7aa852e
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:9.1.08e8d64b405ce
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,770
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,804
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

28,534
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed

Open the chart page →

10,315
crossplaneupbound-stable2.4.0-up.11 of 5See more

crossplane upbound-stable 2.4.0-up.1

1 of the 5 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,626
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
tar@1.29b-2ubuntu0.2
no fix listed

Open the chart page →

18,137
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

4,378
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,811
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

3,456
argo-cdwenerme10.9.01 of 3See more

argo-cd wenerme 10.9.0

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
tar@1.35+dfsg-4ubuntu0.4
no fix listed

Open the chart page →

3,218
wgerwgerOfficialVerified publisher1.0.05 of 8See more

wger wger 1.0.0

5 of the 8 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
journeyapps/powersync-service:latestbf46f66e5dcc
tar@1.35+dfsg-3.1
no fix listed
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed
library/postgres:15.186eb0add3b77c
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.8.0234c902a2db4
tar@1.35+dfsg-3.1
no fix listed
wger/server:2.6997ead43aabd
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

8,491
windmillwindmill4.0.2621 of 3See more

windmill windmill 4.0.262

1 of the 3 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,626
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,626
paperless-ngxadnoctemVerified publisher0.4.23 of 5See more

paperless-ngx adnoctem 0.4.2

3 of the 5 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
gotenberg/gotenberg:8.36.087c16b9f3642
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

19,691
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed

Open the chart page →

13,635
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
agentarea/agentarea-api:latest9e15e16fa758
tar@1.35+dfsg-3.1
no fix listed
agentarea/agentarea-mcp-runner:latestd3c209a5d531
tar@1.34+dfsg-1.2+deb12u1
no fix listed
agentarea/agentarea-worker:latest1e5cb68ee77a
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:9.0.1546304417fea
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,914
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.221 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.22

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
tar@1.35+dfsg-3build1
no fix listed

Open the chart page →

2,358
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed

Open the chart page →

3,697
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,604
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

12,037
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
tar@1.29b-2ubuntu0.3
no fix listed

Open the chart page →

12,046
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
tar@1.34+dfsg-1build3
no fix listed

Open the chart page →

8,341
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-18508.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,880

Container images carrying it

2,414 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.12d7747f308042
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
tar@1.35+dfsg-4ubuntu0.4
no fix listed
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
tar@1.35+dfsg-4ubuntu0.4
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
tar@1.34+dfsg-1build3
no fix listed
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
tar@1.30+dfsg-7ubuntu0.20.04.2
no fix listed
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
tar@1.28-2.1ubuntu0.2
no fix listed
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
tar@1.34+dfsg-1ubuntu0.1.22.04.1
no fix listed
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
tar@1.35+dfsg-3build1
no fix listed
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
actualbudget/actual-server:26.9.0552beab3dec8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
no fix listed
2
apache/apisix:3.18.0-ubuntu9ee5df1611f9
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
apache/nifi-registry:1.26.07cdfd8deec92
tar@1.34+dfsg-1ubuntu0.1.22.04.2
no fix listed
2
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
no fix listed
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
tar@1.35+dfsg-3build1
no fix listed
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/etcd:latest99b408c15272
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
bitnami/minideb:latestab4d5b45116e
tar@1.35+dfsg-3.1
no fix listed
2
blockstack/stacks-core:3.2.0.0.0f79944317326
tar@1.34+dfsg-1.2+deb12u1
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
tar@1.35+dfsg-3.1
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
tar@1.34+dfsg-1.2
no fix listed
2
chromedp/headless-shell:148.0.7778.97313ed7255ae1
tar@1.35+dfsg-3.1
no fix listed
2
clickhouse/clickhouse-server:24.2ed9640bfff07
tar@1.30+dfsg-7ubuntu0.20.04.4
no fix listed
2
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
2
cribl/cribl:4.19.2044f9a5fac9a
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
dagster/user-code-example:1.13.225947f9ae481c
tar@1.35+dfsg-3.1
no fix listed
2
datagrok/grok_connect:latestf5876d3aebb8
tar@1.34+dfsg-1ubuntu0.1.22.04.6
no fix listed
2
emberstack/kubernetes-reflector:10.0.6551dbd5880929
tar@1.35+dfsg-3ubuntu0.4
no fix listed
2
eqalpha/keydb:latest6537505c4235
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
tar@1.30+dfsg-7ubuntu0.20.04.3
no fix listed
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
tar@1.35+dfsg-3.1
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
tar@1.35+dfsg-3.1
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
tar@1.29b-2ubuntu0.1
no fix listed
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
tar@1.30+dfsg-7ubuntu0.20.04.1
no fix listed
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.