StackRadar

CVE-2026-24882

High

Advisory

Published 27 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
208
of 17,781 indexed, latest versions
Container images
105
deployed by those charts
Fix available
1 of 2
affected packages

Security update for gpg2

Carried by container images the latest versions of 208 of 17,781 indexed charts deploy, on 105 images.

Affected packageAffected versionsFixed inImages
gnupg2deb2.4.7-21+b3, 2.4.7-21+deb13u1, 2.4.7-21+deb13u1+b1, 2.4.7-21+deb13u1+b2+4 moreno fix listed102
gpg2rpm2.4.4-150600.3.9.12.4.4-150600.3.15.13
OSV records
DEBIAN-CVE-2026-24882SUSE-SU-2026:0434-1

Charts affected

208 by stars
ChartLatestAffected imagesRadar Score
apptreenityVerified publisher0.1.531 of 2See more

app treenity 0.1.53

1 of the 2 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

1,793
treenitytreenityVerified publisher0.1.31 of 4See more

treenity treenity 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

3,341
video-dl-botvideo-dl-botVerified publisher1.4.31 of 1See more

video-dl-bot video-dl-bot 1.4.3

1 of the 1 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/video-dl-bot:1.4.36daa2dc7556b
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

1,961
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

1,626
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

8,262
postgresappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

1,626
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

8,262
wikiwikijs3.0.01 of 2See more

wiki wikijs 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-24882.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
gnupg2@2.4.7-21+deb13u1+b4
no fix listed

Open the chart page →

5,459

Container images carrying it

105 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/postgres:17.5aadf2c0696f5
gnupg2@2.4.7-21+b3
no fix listed
1
library/postgres:14.22eba8ddbdd837
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1
library/postgres:17.10ebba4f4de37f
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
library/python:3.1070c9cc675605
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
library/python:3.9da5aee29682d
gnupg2@2.4.7-21+b3
no fix listed
1
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
gpg2@2.4.4-150600.3.9.1
2.4.4-150600.3.15.1
1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
gpg2@2.4.4-150600.3.9.1
2.4.4-150600.3.15.1
1
longhornio/longhorn-ui:v1.10.0e60f36161511
gpg2@2.4.4-150600.3.9.1
2.4.4-150600.3.15.1
1
machines/filestash:latest0b8fc005e52e
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
mindsdb/mindsdb:latest163011c09299
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1
oneuptime/runner:release4accc516d800
gnupg2@2.4.7-21+deb13u1+b5
no fix listed
1
opencsghq/label-studio:v2.5.047e22aa71870
gnupg2@2.4.7-21+deb13u1
no fix listed
1
opencsghq/label-studio:v2.4.0b4e849fcf94a
gnupg2@2.4.7-21+deb13u1
no fix listed
1
opencsghq/postgres:15.1842578c9d3ebd
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
openproject/openproject:17.8.0-slim48952034215d
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
gnupg2@2.4.7-21+deb13u1+b3
no fix listed
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
gnupg2@2.4.7-21+b3
no fix listed
1
polyaxon/polyaxon-api:2.16.42b55c3265a90
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
postgis/postgis:18-3.67e00e8c3539f
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
gnupg2@2.4.7-21+b3
no fix listed
1
proxysql/proxysql:3.0.8947a7abad45b
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
gnupg2@2.4.7-21+deb13u1+b3
no fix listed
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
gnupg2@2.4.7-21+deb13u1
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
tenureai/tenure:v1.0.285f5b222df9a5
gnupg2@2.4.7-21+deb13u1+dhi2
no fix listed
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
gnupg2@2.4.7-21+b3
no fix listed
1
ghcr.io/argonix-io/argonix-api:1.0.068e17a8aaa40
gnupg2@2.4.7-21+deb13u1+b5
no fix listed
1
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
gnupg2@2.4.7-21+deb13u1+b3
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
gnupg2@2.4.7-21+deb13u1+b1
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
gnupg2@2.4.7-21+deb13u1+b1
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
gnupg2@2.4.7-21+deb13u1+b4
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
gnupg2@2.4.7-21+b3
no fix listed
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
gnupg2@2.4.7-21+deb13u1+b1
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
gnupg2@2.4.7-21+b3
no fix listed
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-033e56bdd1b90d
gnupg2@2.4.7-21+deb13u1+b3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
gnupg2@2.4.7-21+b3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
gnupg2@2.4.7-21+b3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
gnupg2@2.4.7-21+deb13u1+b2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.