StackRadar

CVE-2026-22185

Medium

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.6
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,080
of 17,787 indexed, latest versions
Container images
877
deployed by those charts
Fix available
None
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,080 of 17,787 indexed charts deploy, on 877 images.

Affected packageAffected versionsFixed inImages
openldapdeb2.5.13+dfsg-5, 2.6.10+dfsg-1, 2.6.10+dfsg-1+b1, 2.6.10+dfsg-1+dhi1no fix listed753
lmdbdeb0.9.17-3, 0.9.21-1ubuntu0.1, 0.9.24-1, 0.9.24-1build2+3 moreno fix listed152
OSV records
DEBIAN-CVE-2026-22185UBUNTU-CVE-2026-22185

Charts affected

1,080 by stars
ChartLatestAffected imagesRadar Score
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
lmdb@0.9.31-1build1
no fix listed

Open the chart page →

2,138
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,839
apptaxmd-helm-chart0.0.21 of 1See more

app taxmd-helm-chart 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,839
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
openldap@2.6.10+dfsg-1+dhi1
no fix listed

Open the chart page →

2,553
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

9,108
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

12,910
typemilltypemill-helm-chart2.2.02 of 2See more

typemill typemill-helm-chart 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
kixote/typemilldigest-pinned4e9dff179519
openldap@2.6.10+dfsg-1
no fix listed
kixote/typemilldigest-pinned628f79a08cc7
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

5,402
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
lmdb@0.9.24-1build2
no fix listed

Open the chart page →

3,804
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
lmdb@0.9.24-1build2
no fix listed

Open the chart page →

3,804
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

12,137
taigaunxwaresVerified publisher2026.3.81 of 6See more

taiga unxwares 2026.3.8

1 of the 6 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

9,172
varnish-ingress-controllervarnish-ingress-controllerVerified publisher0.5.01 of 1See more

varnish-ingress-controller varnish-ingress-controller 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
mariusm/vingress:0.5.0b3db186c3d72
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

2,282
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

5,239
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
lmdb@0.9.24-1
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
lmdb@0.9.24-1
no fix listed

Open the chart page →

26,843
waldurwaldur-chartsVerified publisher8.1.22 of 3See more

waldur waldur-charts 8.1.2

2 of the 3 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
openldap@2.6.10+dfsg-1
no fix listed
opennode/waldur-mastermind:8.1.24c82b15d9042
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

4,870
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
lmdb@0.9.24-1
no fix listed

Open the chart page →

7,883
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

7,728
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

8,139
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/postgres:14.22eba8ddbdd837
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

2,622
zcash-stackzcashVerified publisher0.4.51 of 2See more

zcash-stack zcash 0.4.5

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
electriccoinco/lightwalletd:v0.5.42ae3a551e111
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

2,866
backendzymtraceOfficialVerified publisher26.9.11 of 6See more

backend zymtrace 26.9.1

1 of the 6 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/postgres:17.4304ab8135187
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

10,408
abstract-nodeabstract-nodeVerified publisher0.1.491 of 2See more

abstract-node abstract-node 0.1.49

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

4,566
jenkinsaditisingh-jenkins1.0.01 of 1See more

jenkins aditisingh-jenkins 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

2,487
gotenbergadnoctemVerified publisher0.5.01 of 1See more

gotenberg adnoctem 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.37.0f29984bd1e22
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

5,491
linkwardenadnoctemVerified publisher0.5.11 of 2See more

linkwarden adnoctem 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

3,577
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

29,687
ahnlich-dbahnlich-dbVerified publisher0.1.11 of 1See more

ahnlich-db ahnlich-db 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/deven96/ahnlich-db:latest45d8b5aab491
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,566
airbyte-keycloakairbyteVerified publisher0.1.21 of 2See more

airbyte-keycloak airbyte 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,638
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

4,685
airbyteairbyte-v2Verified publisher2.2.01 of 10See more

airbyte airbyte-v2 2.2.0

1 of the 10 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
airbyte/manifest-server:7.23.73b3a670af168
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

12,481
akto-mini-testingakto1.45.71 of 5See more

akto-mini-testing akto 1.45.7

1 of the 5 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

6,447
esphomealekcVerified publisher2.8.11 of 1See more

esphome alekc 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
esphome/esphome:2026.8.285abea33854b
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

3,143
komodoalekcVerified publisher3.1.01 of 1See more

komodo alekc 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,930
alertigatealertigate0.5.11 of 1See more

alertigate alertigate 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/feresberbeche/alertigate:1.2.1628d49e0e01b
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,505
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

5,898
flaresolverralexmorbo-flaresolverrVerified publisher0.2.01 of 1See more

flaresolverr alexmorbo-flaresolverr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

27,282
nginx-sni-proxyalexpressoVerified publisher1.0.21 of 1See more

nginx-sni-proxy alexpresso 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,839
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

7,559
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

5,838
stalwartandibraeuVerified publisher1.0.21 of 1See more

stalwart andibraeu 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.1425001929f36a
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

1,566
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

7,265
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

3,872
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

5,516
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
openldap@2.6.10+dfsg-1
no fix listed

Open the chart page →

3,201
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

2,605
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

2,907
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

3,239
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

3,239
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-22185.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
openldap@2.5.13+dfsg-5
no fix listed

Open the chart page →

2,605

Container images carrying it

877 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
openldap@2.5.13+dfsg-5
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
lmdb@0.9.24-1
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openldap@2.5.13+dfsg-5
no fix listed
1
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
openldap@2.6.10+dfsg-1
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
openldap@2.6.10+dfsg-1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
lmdb@0.9.24-1
openldap@2.5.13+dfsg-5
no fix listed
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
lmdb@0.9.24-1
openldap@2.5.13+dfsg-5
no fix listed
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
lmdb@0.9.24-1
openldap@2.5.13+dfsg-5
no fix listed
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
lmdb@0.9.24-1
openldap@2.5.13+dfsg-5
no fix listed
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
openldap@2.6.10+dfsg-1
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openldap@2.5.13+dfsg-5
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
openldap@2.6.10+dfsg-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
openldap@2.5.13+dfsg-5
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
openldap@2.6.10+dfsg-1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
openldap@2.5.13+dfsg-5
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
openldap@2.6.10+dfsg-1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
openldap@2.5.13+dfsg-5
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
openldap@2.5.13+dfsg-5
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
openldap@2.5.13+dfsg-5
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.