StackRadar

CVE-2026-23865

Medium

Advisory

Published 2 Mar 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
148
of 17,787 indexed, latest versions
Container images
134
deployed by those charts
Fix available
8 of 8
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 148 of 17,787 indexed charts deploy, on 134 images.

Affected packageAffected versionsFixed inImages
freetypedeb2.13.2+dfsg-1build3, 2.13.3+dfsg-1, 2.13.3+dfsg-1build12.13.2+dfsg-1ubuntu0.1, 2.13.3+dfsg-1+deb13u1, 2.13.3+dfsg-1ubuntu0.174
openjdk-8deb8u151-b12-0ubuntu0.16.04.2, 8u171-b11-0ubuntu0.16.04.1, 8u191-b12-2ubuntu0.16.04.1, 8u212-b03-0ubuntu1.18.04.1+11 more8u492-ga~us2-0ubuntu1~16.04.1, 8u492-ga~us2-0ubuntu1~18.04.1, 8u492-ga~us2-0ubuntu1~20.04.1, 8u492-ga~us2-0ubuntu1~22.04.1+1 more22
javabitnami11.0.15-150, 11.0.18-10-1, 11.0.18-10-2, 11.0.20-8-3+12 more11.0.3116
openjdk-ltsdeb11.0.3+7-1ubuntu2~18.04.1, 11.0.8+10-0ubuntu1~18.04.1, 11.0.11+9-0ubuntu2~20.04, 11.0.13+8-0ubuntu1~20.04+6 more11.0.31+11-1ubuntu1~18.04.2, 11.0.31+11-1ubuntu1~20.04.2, 11.0.31+11-1ubuntu1~24.04.216
openjdk-17deb17.0.3+7-0ubuntu0.20.04.1, 17.0.8+7-1~22.04, 17.0.9+9-1~20.04, 17.0.10+7-1~22.04.1+3 more17.0.19+10-1~20.04.2, 17.0.19+10-1~22.04.2, 17.0.19+10-1~24.04.28
Javabitnami11.0.20-8, 11.0.21-10, 17.0.8-7, 17.0.10-13-1+2 more11.0.317
jrebitnami17.0.16-12-0, 17.0.19-11-2, 21.0.8-12-0, 21.0.9-15-011.0.314
openjdk-21deb21.0.5+11-1ubuntu1~24.04, 21.0.7+6~us1-0ubuntu1~24.04, 21.0.11~8ea-121.0.11+10-1~24.04.2, 21.0.11+10-1~26.04.24
OSV records
BIT-java-2026-23865BIT-jre-2026-23865DEBIAN-CVE-2026-23865UBUNTU-CVE-2026-23865
Also known as
BIT-java-min-2026-23865, DSA-6168-1, USN-8086-1, USN-8327-1, USN-8328-1, USN-8330-1, USN-8331-1

Charts affected

148 by stars
ChartLatestAffected imagesRadar Score
paperlesshpVerified publisher0.1.11 of 5See more

paperless hp 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/tika:3.3.1.090b7fa1dc018
openjdk-21@21.0.11~8ea-1
21.0.11+10-1~26.04.2

Open the chart page →

26,579
daveit-at-mOfficialVerified publisher0.2.151 of 11See more

dave it-at-m 0.2.15

1 of the 11 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
java@21.0.8-12-0
11.0.31

Open the chart page →

15,245
opencloudjacobcolvinVerified publisher0.2.31 of 13See more

opencloud jacobcolvin 0.2.3

1 of the 13 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
freetype@2.13.2+dfsg-1build3
openjdk-17@17.0.11+9-1
2.13.2+dfsg-1ubuntu0.1
17.0.19+10-1~24.04.2

Open the chart page →

45,392
discord-experiencebotjfwenischVerified publisher0.7.41 of 1See more

discord-experiencebot jfwenisch 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
8u492-ga~us2-0ubuntu1~18.04.1

Open the chart page →

7,842
steamcmd-managerjfwenischVerified publisher0.4.51 of 1See more

steamcmd-manager jfwenisch 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
freetype@2.13.2+dfsg-1build3
openjdk-21@21.0.5+11-1ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
21.0.11+10-1~24.04.2

Open the chart page →

6,648
webtoolsjfwenischVerified publisher0.1.41 of 1See more

webtools jfwenisch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
freetype@2.13.2+dfsg-1build3
openjdk-21@21.0.5+11-1ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
21.0.11+10-1~24.04.2

Open the chart page →

6,629
jupyter-nginxjupyter-jscVerified publisher0.1.31 of 1See more

jupyter-nginx jupyter-jsc 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

3,520
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
freetype@2.13.2+dfsg-1build3
openjdk-21@21.0.7+6~us1-0ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
21.0.11+10-1~24.04.2

Open the chart page →

8,879
unifik8sonlabVerified publisher0.3.71 of 1See more

unifi k8sonlab 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
openjdk-17@17.0.15+6~us1-0ubuntu1~20.04
17.0.19+10-1~20.04.2

Open the chart page →

7,333
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
library/wordpress:php8.1-apachef73396626d2f
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

8,634
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,143
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,373
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

9,707
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

7,760
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

11,254
backendmojaloop0.1.02 of 6See more

backend mojaloop 0.1.0

2 of the 6 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
java@11.0.15-150
11.0.31
bitnamilegacy/zookeeper:3.7.2-debian-11-r5cbf54314c401
java@11.0.21-10-6
Java@11.0.21-10
11.0.31
11.0.31

Open the chart page →

16,111
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

15,731
incorencsaVerified publisher1.38.01 of 29See more

incore ncsa 1.38.0

1 of the 29 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
java@17.0.11-12-0
Java@17.0.11-12-0
11.0.31
11.0.31

Open the chart page →

15,408
smilencsaVerified publisher1.1.01 of 23See more

smile ncsa 1.1.0

1 of the 23 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openjdk-8@8u382-ga-1~20.04.1
8u492-ga~us2-0ubuntu1~20.04.1

Open the chart page →

109,485
core-keeper-dedicatednerkho-helm-charts0.1.11 of 1See more

core-keeper-dedicated nerkho-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
escaping/core-keeper-dedicated:latest87fa79255962
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

3,804
ojp-serverojp0.1.51 of 1See more

ojp-server ojp 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
rrobetti/ojp:0.1.0-beta1141bd88232b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,626
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
freetype@2.13.2+dfsg-1build3
openjdk-lts@11.0.26+4-1ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
11.0.31+11-1ubuntu1~24.04.2

Open the chart page →

6,083
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
8u492-ga~us2-0ubuntu1~18.04.1
11.0.31+11-1ubuntu1~18.04.2

Open the chart page →

63,277
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

4,273
radar-integrationradar-baseVerified publisher0.9.01 of 1See more

radar-integration radar-base 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,893
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

3,057
radar-upload-connect-backendradar-baseVerified publisher0.9.11 of 1See more

radar-upload-connect-backend radar-base 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,571
s3-proxyradar-baseVerified publisher0.6.01 of 1See more

s3-proxy radar-base 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,776
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

15,583
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

10,492
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

9,421
nextcloudsb-helm-charts0.4.01 of 2See more

nextcloud sb-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
library/nextcloud:31.0.10-apacheb7faa1653c39
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

9,687
photonschichtelVerified publisher0.2.01 of 1See more

photon schichtel 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
rtuszik/photon-docker:2.4.021549c60f9e6
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

2,865
snipeitschmitzis6.1.01 of 2See more

snipeit schmitzis 6.1.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
snipe/snipe-it:v8.3.1141ebf2386fe
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

6,154
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
java@11.0.20-8-5
Java@11.0.20-8
11.0.31
11.0.31

Open the chart page →

2,919
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
openjdk-8@8u312-b07-0ubuntu1~18.04
8u492-ga~us2-0ubuntu1~18.04.1

Open the chart page →

14,519
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

12,524
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

12,524
jellyfinsudo-kraken-jellyfinVerified publisher2.1.31 of 1See more

jellyfin sudo-kraken-jellyfin 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.6333b64771663
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1

Open the chart page →

3,355
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

18,828
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

8,251
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
freetype@2.13.2+dfsg-1build3
openjdk-17@17.0.11+9-1
2.13.2+dfsg-1ubuntu0.1
17.0.19+10-1~24.04.2

Open the chart page →

45,392
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1

Open the chart page →

7,696
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
java@11.0.20-8-3
Java@11.0.20-8
11.0.31
11.0.31

Open the chart page →

9,399
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

14,420
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2

Open the chart page →

28,699
keycloakwiremindVerified publisher25.3.11 of 2See more

keycloak wiremind 25.3.1

1 of the 2 container images this version deploys carry CVE-2026-23865.

Container imageDigestPackageFixed in
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
jre@21.0.9-15-0
11.0.31

Open the chart page →

7,643

Container images carrying it

134 by charts deploying them

A fixed version is listed for 8 of the 8 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u492-ga~us2-0ubuntu1~16.04.1
4
gchq/hdfs:3.3.35ec58edbb2db
freetype@2.13.2+dfsg-1build3
openjdk-8@8u442-b06~us1-0ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
8u492-ga~us2-0ubuntu1~24.04.1
3
guacamole/guacamole:1.6.0f344085e618b
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
3
jacobalberty/unifi:v10.0.162896c0ab82d33
openjdk-17@17.0.15+6~us1-0ubuntu1~20.04
17.0.19+10-1~20.04.2
3
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u492-ga~us2-0ubuntu1~20.04.1
3
signoz/zookeeper:3.7.1fcc4a3288154
java@11.0.20-8-5
Java@11.0.20-8
11.0.31
11.0.31
3
apache/rocketmq:5.4.0319cd8a81ed1
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
freetype@2.13.2+dfsg-1build3
openjdk-17@17.0.11+9-1
2.13.2+dfsg-1ubuntu0.1
17.0.19+10-1~24.04.2
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
java@21.0.8-12-0
11.0.31
2
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
java@11.0.20-8-3
Java@11.0.20-8
11.0.31
11.0.31
2
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openjdk-17@17.0.3+7-0ubuntu0.20.04.1
17.0.19+10-1~20.04.2
2
jenkins/jenkins:2.541.3-jdk21c4098086090c
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
2
kurento/kurento-media-server:latest03c0d34d0828
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
2
library/nginx:1.29.49dd288848f44
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
2
library/wordpress:6.8.3-apache:6.8-apache30bff39330d1
freetype@2.13.3+dfsg-1
2.13.3+dfsg-1+deb13u1
2
mbentley/omada-controller:4.3f4e682274bed
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
8u492-ga~us2-0ubuntu1~18.04.1
2
opendatacube/ows:latest668cbb41473c
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
freetype@2.13.2+dfsg-1build3
openjdk-21@21.0.7+6~us1-0ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
21.0.11+10-1~24.04.2
2
1dev/server:11.9.0cd5b12fe5471
freetype@2.13.2+dfsg-1build3
openjdk-lts@11.0.26+4-1ubuntu1~24.04
2.13.2+dfsg-1ubuntu0.1
11.0.31+11-1ubuntu1~24.04.2
1
5200710/hadoop:3.2.3-java8092d3088a5fb
openjdk-8@8u392-ga-1~20.04
8u492-ga~us2-0ubuntu1~20.04.1
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
aktosecurity/data-ingestion-service213aded7adc5
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
anguda/ant-media:2.5c435285fc241
openjdk-lts@11.0.18+10-0ubuntu1~20.04.1
11.0.31+11-1ubuntu1~20.04.2
1
apache/activemq-artemis:2.44.00305c26f19ed
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
apache/activemq-artemis:2.37.0bae523439ee3
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
apache/hertzbeat:1.8.075d48a62748f
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2
1
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.31+11-1ubuntu1~20.04.2
1
apachepulsar/pulsar:2.8.2d538416d5afe
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.31+11-1ubuntu1~20.04.2
1
apache/rocketmq:5.3.0434d8398f996
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
apache/tika:3.3.1.090b7fa1dc018
openjdk-21@21.0.11~8ea-1
21.0.11+10-1~26.04.2
1
apache/tika:2.9.0.092d055a84e9e
openjdk-17@17.0.8+7-1~22.04
17.0.19+10-1~22.04.2
1
atlassian/jira-software:9.7.264a75aa4ec4e
freetype@2.13.2+dfsg-1build3
2.13.2+dfsg-1ubuntu0.1
1
bitnami/jmx-exporter9cc4a173c69e
jre@17.0.19-11-2
11.0.31
1
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
java@11.0.25-11-1
11.0.31
1
bitnamilegacy/elasticsearch:8.12.215d4647fd491
java@17.0.10-13-2
Java@17.0.10-13-2
11.0.31
11.0.31
1
bitnamilegacy/elasticsearch:8.12.1-debian-11-r29cfd2df1294d
java@17.0.10-13-1
Java@17.0.10-13-1
11.0.31
11.0.31
1
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
java@21.0.7-9-0
11.0.31
1
bitnamilegacy/kafka:3.5.0-debian-11-r08657bb93a581
java@17.0.7-7-2
11.0.31
1
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
java@11.0.18-10-2
11.0.31
1
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
java@11.0.15-150
11.0.31
1
bitnamilegacy/keycloak:20.0.5cb04e49e6eb1
java@17.0.6-10-4
11.0.31
1
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
java@17.0.11-12-0
Java@17.0.11-12-0
11.0.31
11.0.31
1
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
jre@21.0.8-12-0
11.0.31
1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
java@17.0.13-12-1
11.0.31
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.