StackRadar

CVE-2026-23865

Medium

Advisory

Published 2 Mar 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
147
of 17,781 indexed, latest versions
Container images
133
deployed by those charts
Fix available
8 of 8
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 147 of 17,781 indexed charts deploy, on 133 images.

Affected packageAffected versionsFixed inImages
freetypedeb2.13.2+dfsg-1build3, 2.13.3+dfsg-1, 2.13.3+dfsg-1build12.13.2+dfsg-1ubuntu0.1, 2.13.3+dfsg-1+deb13u1, 2.13.3+dfsg-1ubuntu0.173
openjdk-8deb8u151-b12-0ubuntu0.16.04.2, 8u171-b11-0ubuntu0.16.04.1, 8u191-b12-2ubuntu0.16.04.1, 8u212-b03-0ubuntu1.18.04.1+11 more8u492-ga~us2-0ubuntu1~16.04.1, 8u492-ga~us2-0ubuntu1~18.04.1, 8u492-ga~us2-0ubuntu1~20.04.1, 8u492-ga~us2-0ubuntu1~22.04.1+1 more22
javabitnami11.0.15-150, 11.0.18-10-1, 11.0.18-10-2, 11.0.20-8-3+12 more11.0.3116
openjdk-ltsdeb11.0.3+7-1ubuntu2~18.04.1, 11.0.8+10-0ubuntu1~18.04.1, 11.0.11+9-0ubuntu2~20.04, 11.0.13+8-0ubuntu1~20.04+6 more11.0.31+11-1ubuntu1~18.04.2, 11.0.31+11-1ubuntu1~20.04.2, 11.0.31+11-1ubuntu1~24.04.216
openjdk-17deb17.0.3+7-0ubuntu0.20.04.1, 17.0.8+7-1~22.04, 17.0.9+9-1~20.04, 17.0.10+7-1~22.04.1+3 more17.0.19+10-1~20.04.2, 17.0.19+10-1~22.04.2, 17.0.19+10-1~24.04.28
Javabitnami11.0.20-8, 11.0.21-10, 17.0.8-7, 17.0.10-13-1+2 more11.0.317
jrebitnami17.0.16-12-0, 17.0.19-11-2, 21.0.8-12-0, 21.0.9-15-011.0.314
openjdk-21deb21.0.5+11-1ubuntu1~24.04, 21.0.7+6~us1-0ubuntu1~24.04, 21.0.11~8ea-121.0.11+10-1~24.04.2, 21.0.11+10-1~26.04.24
OSV records
BIT-java-2026-23865BIT-jre-2026-23865DEBIAN-CVE-2026-23865UBUNTU-CVE-2026-23865
Also known as
BIT-java-min-2026-23865, DSA-6168-1, USN-8086-1, USN-8327-1, USN-8328-1, USN-8330-1, USN-8331-1

Charts affected

147 by stars
ChartLatestAffected imagesRadar Score
zabbixzabbix-communityVerified publisher7.1.02 of 5See more

zabbix zabbix-community 7.1.0

2 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

13,664
milvusmilvus4.0.311 of 5See more

milvus milvus 4.0.31

1 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

32,259
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
java@11.0.20-8-5
Java@11.0.20-8
11.0.31
11.0.31

Open the chart page →

7,568
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

19,391
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,606
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,382
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

6,328
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
freetype@2.13.2+dfsg-1build3
openjdk-8@8u442-b06~us1-0ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
8u492-ga~us2-0ubuntu1~24.04.1

Open the chart page →

5,357
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,395
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

5,634
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
openjdk-17@17.0.10+7-1~22.04.1
openjdk-8@8u402-ga-2ubuntu1~22.04
17.0.19+10-1~22.04.2
8u492-ga~us2-0ubuntu1~22.04.1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
openjdk-17@17.0.10+7-1~22.04.1
openjdk-8@8u402-ga-2ubuntu1~22.04
17.0.19+10-1~22.04.2
8u492-ga~us2-0ubuntu1~22.04.1

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u492-ga~us2-0ubuntu1~20.04.1

Open the chart page →

11,782
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
openjdk-17@17.0.15+6~us1-0ubuntu1~20.04
17.0.19+10-1~20.04.2

Open the chart page →

7,268
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
openjdk-8@8u392-ga-1~20.04
8u492-ga~us2-0ubuntu1~20.04.1

Open the chart page →

12,111
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

8,636
thehivestrangebee-helmOfficialVerified publisher1.0.62 of 7See more

thehive strangebee-helm 1.0.6

2 of the 7 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
java@11.0.25-11-1
11.0.31
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
java@21.0.8-12-0
11.0.31

Open the chart page →

16,210
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
java@17.0.10-13-1
Java@17.0.10-13-1
11.0.31
11.0.31

Open the chart page →

27,267
hertzbeathertzbeatOfficialVerified publisher1.8.12 of 4See more

hertzbeat hertzbeat 1.8.1

2 of the 4 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
apache/hertzbeat-collector:1.8.0a2bab1be574c
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

14,000
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
openjdk-17@17.0.9+9-1~20.04
17.0.19+10-1~20.04.2

Open the chart page →

10,469
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,957
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

9,316
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
openjdk-lts@11.0.19+7~us1-0ubuntu1~18.04.1
11.0.31+11-1ubuntu1~18.04.2

Open the chart page →

11,839
oesopsmxVerified publisher4.0.321 of 25See more

oes opsmx 4.0.32

1 of the 25 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
openjdk-8@8u222-b10-1ubuntu1~16.04.1
8u492-ga~us2-0ubuntu1~16.04.1

Open the chart page →

107,811
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

6,328
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

24,488
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
jre@17.0.16-12-0
11.0.31

Open the chart page →

2,355
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.262 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

2 of the 6 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.5.0-debian-11-r08657bb93a581
java@17.0.7-7-2
11.0.31
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
java@11.0.20-8-3
Java@11.0.20-8
11.0.31
11.0.31

Open the chart page →

14,566
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

4,378
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
openjdk-17@17.0.8+7-1~22.04
17.0.19+10-1~22.04.2

Open the chart page →

19,691
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

12,037
clearml-servingallegroaiVerified publisher1.6.22 of 9See more

clearml-serving allegroai 1.6.2

2 of the 9 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
java@11.0.18-10-2
11.0.31
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
java@11.0.18-10-1
11.0.31

Open the chart page →

17,877
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1

Open the chart page →

77,687
cbioportalcbioportalOfficialVerified publisher1.1.01 of 1See more

cbioportal cbioportal 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,674
cert-vaultcert-vaultOfficialVerified publisher2.12.01 of 7See more

cert-vault cert-vault 2.12.0

1 of the 7 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

15,863
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u492-ga~us2-0ubuntu1~16.04.1

Open the chart page →

36,094
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

11,205
datacube-explorerdatacube-charts0.5.321 of 1See more

datacube-explorer datacube-charts 0.5.32

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
opendatacube/explorer:latest120457ffcd69
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

4,854
dbrepodbrepo1.13.31 of 25See more

dbrepo dbrepo 1.13.3

1 of the 25 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
java@17.0.13-12-1
11.0.31

Open the chart page →

52,635
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

5,670
zabbix-server-mysqlfermosit3.0.21 of 4See more

zabbix-server-mysql fermosit 3.0.2

1 of the 4 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

12,840
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
8u492-ga~us2-0ubuntu1~18.04.1

Open the chart page →

11,553
guacamolehelmforgeVerified publisher1.5.21 of 5See more

guacamole helmforge 1.5.2

1 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

8,716
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

15,712
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

11,764
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
freetype@2.13.3+dfsg-1build1
2.13.3+dfsg-1ubuntu0.1

Open the chart page →

11,103
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
java@17.0.10-13-2
Java@17.0.10-13-2
11.0.31
11.0.31
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
java@17.0.6-10-4
11.0.31

Open the chart page →

37,373
opentelemetry-demoopentelemetry-helmVerified publisher0.41.11 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

1 of the 34 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

22,420
clickhousesignoz24.1.181 of 3See more

clickhouse signoz 24.1.18

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
java@11.0.20-8-5
Java@11.0.20-8
11.0.31
11.0.31

Open the chart page →

4,695

Container images carrying it

133 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/zookeeper:3.7.2-debian-11-r5cbf54314c401
java@11.0.21-10-6
Java@11.0.21-10
11.0.31
11.0.31
1
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
java@11.0.18-10-1
11.0.31
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2
1
castlemock/castlemock:latestb7f3f1527ba9
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
castopod/castopod:1.15.54e4f0440520f
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
cheyang/distributed-tf:1.6.046cc34755493
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u492-ga~us2-0ubuntu1~16.04.1
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
dzikoysk/reposilite:3.5.264128c2d7a6ba
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
escaping/core-keeper-dedicated:latest87fa79255962
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
gchq/accumulo:2.0.1c460bb587d6d
freetype@2.13.2+dfsg-1build3
openjdk-8@8u442-b06~us1-0ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
8u492-ga~us2-0ubuntu1~24.04.1
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
1
jacobalberty/unifi:v7.1.664a3616625dda
openjdk-8@8u312-b07-0ubuntu1~18.04
8u492-ga~us2-0ubuntu1~18.04.1
1
jacobalberty/unifi:v7.4.162b3edc809a3ff
openjdk-lts@11.0.19+7~us1-0ubuntu1~18.04.1
11.0.31+11-1ubuntu1~18.04.2
1
jacobalberty/unifi:5.10.19c409924e2463
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
1
jellyfin/jellyfin:10.11.6333b64771663
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
library/nextcloud:31.0.10-apacheb7faa1653c39
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
library/python:3.9da5aee29682d
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
library/wordpress:php8.1-apachef73396626d2f
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
linuxserver/calibre-web:0.6.24241009026e6f
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
linuxserver/unifi-controller:8.0.240ae315a3a456
openjdk-17@17.0.9+9-1~20.04
17.0.19+10-1~20.04.2
1
linuxserver/unifi-controller:7.3.83ab105cc50322
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
11.0.31+11-1ubuntu1~20.04.2
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
8u492-ga~us2-0ubuntu1~18.04.1
11.0.31+11-1ubuntu1~18.04.2
1
openbas/platform:2.0.5d986d80b0a75
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
opendatacube/explorer:latest120457ffcd69
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
openkm/openkm-ce:6.3.113bc465a7461b
openjdk-8@8u342-b07-0ubuntu1~20.04
8u492-ga~us2-0ubuntu1~20.04.1
1
photoprism/photoprism:251130db16ee6b1ba3
freetype@2.13.3+dfsg-1build1
2.13.3+dfsg-1ubuntu0.1
1
photoprism/photoprism:240711-cefc6fd632ca74
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
java@17.0.8-7-5
Java@17.0.8-7
11.0.31
11.0.31
1
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
rrobetti/ojp:0.1.0-beta1141bd88232b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
rtuszik/photon-docker:2.4.021549c60f9e6
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
rundeck/rundeck:3.2.74d64fe56f767
openjdk-8@8u252-b09-1~16.04
8u492-ga~us2-0ubuntu1~16.04.1
1
rundeck/rundeck:3.0.16b13e8059ad72
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
1
sismics/docs:v1.10f4b0ef019cf1
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
11.0.31+11-1ubuntu1~18.04.2
1
snipe/snipe-it:v8.3.1141ebf2386fe
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openjdk-8@8u382-ga-1~20.04.1
8u492-ga~us2-0ubuntu1~20.04.1
1
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
jre@17.0.16-12-0
11.0.31
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
1
stashapp/stash-box:latesta534c8afdf39
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
structurizr/onpremises:2025.11.094b5ffb5119c8
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
11.0.31+11-1ubuntu1~20.04.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.