StackRadar

CVE-2026-19548

Medium

Advisory

Published 12 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
419
of 17,781 indexed, latest versions
Container images
403
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 419 of 17,781 indexed charts deploy, on 403 images.

Affected packageAffected versionsFixed inImages
binutilsdeb2.24-5ubuntu3.1, 2.24-5ubuntu14.2, 2.26.1-1ubuntu1~16.04.5, 2.26.1-1ubuntu1~16.04.6+40 moreno fix listed403
OSV records
DEBIAN-CVE-2026-19548UBUNTU-CVE-2026-19548

Charts affected

419 by stars
ChartLatestAffected imagesRadar Score
nagvissvtech-public-helm-charts1.0.01 of 1See more

nagvis svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
binutils@2.40-2
no fix listed

Open the chart page →

9,102
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
binutils@2.34-6ubuntu1.9
no fix listed

Open the chart page →

18,756
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
binutils@2.40-2
no fix listed

Open the chart page →

11,199
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
binutils@2.38-3ubuntu1
no fix listed

Open the chart page →

17,461
supabaseteochenglim0.1.21 of 13See more

supabase teochenglim 0.1.2

1 of the 13 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
supabase/studio:latest94a2a9d2906e
binutils@2.40-2
no fix listed

Open the chart page →

9,556
flask-contactstest-configmap1.0.11 of 3See more

flask-contacts test-configmap 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
binutils@2.44-3
no fix listed

Open the chart page →

5,704
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
binutils@2.40-2
no fix listed

Open the chart page →

11,648
codegentest-opea1.0.01 of 5See more

codegen test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
opea/codegen-ui:1.02bee4eb66f3e
binutils@2.40-2
no fix listed

Open the chart page →

28,814
codetranstest-opea1.0.01 of 5See more

codetrans test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
opea/codetrans-ui:1.03ef121f34610
binutils@2.40-2
no fix listed

Open the chart page →

28,385
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
binutils@2.40-2
no fix listed

Open the chart page →

28,858
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
binutils@2.40-2
no fix listed

Open the chart page →

10,086
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
binutils@2.40-2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
binutils@2.40-2
no fix listed

Open the chart page →

14,358
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
binutils@2.38-4ubuntu2.6
no fix listed

Open the chart page →

9,347
aih-scannerwallarmVerified publisher2.7.111 of 2See more

aih-scanner wallarm 2.7.11

1 of the 2 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
binutils@2.44-3
no fix listed

Open the chart page →

3,911
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
binutils@2.40-2
no fix listed

Open the chart page →

7,085
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
binutils@2.40-2
no fix listed

Open the chart page →

10,001
Wordpresswordpress-mariadb1.0.21 of 2See more

Wordpress wordpress-mariadb 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
binutils@2.44-3
no fix listed

Open the chart page →

5,560
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-19548.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
binutils@2.38-4ubuntu2.12
no fix listed

Open the chart page →

7,849

Container images carrying it

403 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
apache/camel-k:2.11.0d173e7efe258
binutils@2.46-3ubuntu2
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
binutils@2.38-4ubuntu2.8
no fix listed
1
apache/hertzbeat:1.8.075d48a62748f
binutils@2.42-4ubuntu2.8
no fix listed
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
binutils@2.42-4ubuntu2.8
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
binutils@2.34-6ubuntu1.3
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
binutils@2.34-6ubuntu1.3
no fix listed
1
apache/superset:4.0.1ab9467fd712c
binutils@2.40-2
no fix listed
1
aristidetm/basic-notebook:3.6.5469dbc951224
binutils@2.40-2
no fix listed
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
binutils@2.40-2
no fix listed
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
binutils@2.40-2
no fix listed
1
assistiot/location_processing:lateste9bae124095f
binutils@2.38-4ubuntu2
no fix listed
1
assistiot/open_api_backend:1.1.230812ba93555
binutils@2.38-4ubuntu2.4
no fix listed
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
binutils@2.40-2
no fix listed
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
binutils@2.40-2
no fix listed
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
binutils@2.40-2
no fix listed
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
binutils@2.34-6ubuntu1.4
no fix listed
1
atlassian/bamboo:12.1.114af4bb6c8d46
binutils@2.42-4ubuntu2.10
no fix listed
1
atlassian/bamboo-agent-base:12.1.1151c2d7274eef
binutils@2.42-4ubuntu2.10
no fix listed
1
atlassian/bitbucket:10.2.705933f2b1cfd
binutils@2.42-4ubuntu2.10
no fix listed
1
atlassian/crowd:7.2.3c81cc7d6bc9e
binutils@2.42-4ubuntu2.10
no fix listed
1
atlassian/jira-software:11.3.11e5548cd4eea8
binutils@2.42-4ubuntu2.10
no fix listed
1
avinash263/pyredis263:latestaa2b8727f1a6
binutils@2.40-2
no fix listed
1
baserow/backend:1.31.1e0b3c8130b91
binutils@2.40-2
no fix listed
1
baserow/baserow:1.30.1df0c42eb67e8
binutils@2.40-2
no fix listed
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
binutils@2.34-6ubuntu1.3
no fix listed
1
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
binutils@2.44-3
no fix listed
1
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
binutils@2.44-3
no fix listed
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
binutils@2.40-2
no fix listed
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
binutils@2.34-6ubuntu1.4
no fix listed
1
bitnamilegacy/mysql:8.4.5-debian-12-r07089d796fc9b
binutils@2.40-2
no fix listed
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
binutils@2.40-2
no fix listed
1
bmeares/meerschaum:2.8.48e9c5bacaa82
binutils@2.40-2
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
binutils@2.40-2
no fix listed
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
binutils@2.34-6ubuntu1.1
no fix listed
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
binutils@2.40-2
no fix listed
1
castlemock/castlemock:latestb7f3f1527ba9
binutils@2.42-4ubuntu2.3
no fix listed
1
castopod/castopod:1.12.101fd37280cbb2
binutils@2.40-2
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
binutils@2.44-3
no fix listed
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
binutils@2.42-4ubuntu2.5
no fix listed
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
binutils@2.38-4ubuntu2.12
no fix listed
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
binutils@2.24-5ubuntu14.2
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
binutils@2.34-6ubuntu1
no fix listed
1
cheyang/distributed-tf:1.6.046cc34755493
binutils@2.26.1-1ubuntu1~16.04.6
no fix listed
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
binutils@2.44-3
no fix listed
1
chocobozzz/peertube:v8.1.5052712130691
binutils@2.44-3
no fix listed
1
cloudve/janis-terminal:latestaf56e77ca587
binutils@2.30-21ubuntu1~18.04.3
no fix listed
1
countly/countly-server:25.05.4e3c238248f99
binutils@2.34-6ubuntu1.9
no fix listed
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
binutils@2.40-2
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
binutils@2.44-3
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
binutils@2.38-4ubuntu2.8
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.