StackRadar

CVE-2026-25646

High

Advisory

Published 10 Feb 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.010
60th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
690
of 17,787 indexed, latest versions
Container images
635
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: libpng security update

Carried by container images the latest versions of 690 of 17,787 indexed charts deploy, on 635 images.

Affected packageAffected versionsFixed inImages
libpng1.6deb1.6.34-1ubuntu0.18.04.1, 1.6.34-1ubuntu0.18.04.2, 1.6.37-2, 1.6.37-3build5+8 more1.6.34-1ubuntu0.18.04.2+esm2, 1.6.37-2ubuntu0.1~esm2, 1.6.37-3ubuntu0.4, 1.6.39-2+deb12u3+3 more482
libpngapk1.6.43-r0, 1.6.44-r0, 1.6.45-r0, 1.6.47-r0+2 more1.6.55-r0126
libpngdeb1.2.50-1ubuntu2, 1.2.50-1ubuntu2.14.04.2, 1.2.50-1ubuntu2.14.04.3, 1.2.54-1ubuntu1+1 more1.2.50-1ubuntu2.14.04.3+esm1, 1.2.54-1ubuntu1.1+esm220
libpngrpm2:1.5.13-7.el7_2, 2:1.5.13-8.el72:1.5.13-8.el7_9.26
libpng16rpm1.6.40-150600.1.31.6.40-150600.3.12.11
OSV records
ALPINE-CVE-2026-25646DEBIAN-CVE-2026-25646RHSA-2026:4756UBUNTU-CVE-2026-25646SUSE-SU-2026:0597-1
Also known as
DSA-6138-1, USN-8035-1, USN-8039-1, USN-8081-1

Charts affected

690 by stars
ChartLatestAffected imagesRadar Score
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

26,843
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

15,984
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
libpng@1.2.50-1ubuntu2
1.2.50-1ubuntu2.14.04.3+esm1

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

7,883
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
libpng1.6@1.6.48-1
1.6.48-1+deb13u3

Open the chart page →

7,728
backendzymtraceOfficialVerified publisher26.9.11 of 6See more

backend zymtrace 26.9.1

1 of the 6 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/zystem-io/zymtrace-pub-ui:26.9.1e951adf792cd
libpng@1.6.47-r0
1.6.55-r0

Open the chart page →

10,408
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5

Open the chart page →

3,226
linkstackadnoctemVerified publisher0.4.01 of 1See more

linkstack adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
linkstackorg/linkstack:latest1c8b05399ee4
libpng@1.6.54-r0
1.6.55-r0

Open the chart page →

2,092
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
libpng@1.6.47-r0
1.6.55-r0

Open the chart page →

4,881
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
libpng1.6@1.6.43-5ubuntu0.3
1.6.43-5ubuntu0.5

Open the chart page →

4,856
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
libpng1.6@1.6.43-5ubuntu0.3
1.6.43-5ubuntu0.5

Open the chart page →

3,481
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

5,898
lidarralexmorbo-lidarrVerified publisher0.1.21 of 1See more

lidarr alexmorbo-lidarr 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
libpng@1.6.53-r0
1.6.55-r0

Open the chart page →

1,874
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
flyway/flyway:6.4.422d97ceb0c47
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

20,233
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

28,212
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
flyway/flyway:6.4.422d97ceb0c47
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

20,233
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

11,579
games-on-whalesangelnu2.0.03 of 7See more

games-on-whales angelnu 2.0.0

3 of the 7 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

42,345
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

6,227
deploy-uiappscodeVerified publisher2026.9.111 of 1See more

deploy-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/deploy-ui:0.3.6f3e07eff3997
libpng@1.6.44-r0
1.6.55-r0

Open the chart page →

720
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

4,002
inbox-server-distributedappscodeVerified publisher2025.12.252 of 4See more

inbox-server-distributed appscode 2025.12.25

2 of the 4 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
ghcr.io/appscode/inbox-server:latest536358d7b17e
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

15,707
inbox-uiappscodeVerified publisher2026.9.111 of 1See more

inbox-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-ui:0.0.5ae3b0e29daaa
libpng@1.6.47-r0
1.6.55-r0

Open the chart page →

840
james-komposeappscodeVerified publisher0.1.02 of 4See more

james-kompose appscode 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

17,110
marketplace-uiappscodeVerified publisher2026.9.111 of 1See more

marketplace-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/marketplace-ui:0.3.1d52177072013
libpng@1.6.44-r0
1.6.55-r0

Open the chart page →

720
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
libpng1.6@1.6.48-1
1.6.48-1+deb13u3

Open the chart page →

37,184
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

3,310
appwriteappwrite-helmVerified publisher1.3.21 of 8See more

appwrite appwrite-helm 1.3.2

1 of the 8 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
appwrite/console:7.5.7aaa11ceab999
libpng@1.6.44-r0
1.6.55-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
libpng1.6@1.6.48-1
1.6.48-1+deb13u3

Open the chart page →

7,521
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

40,411
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libpng@1.2.54-1ubuntu1
1.2.54-1ubuntu1.1+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libpng@1.2.54-1ubuntu1.1
1.2.54-1ubuntu1.1+esm2

Open the chart page →

77,821
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libpng@1.2.54-1ubuntu1
1.2.54-1ubuntu1.1+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libpng@1.2.54-1ubuntu1.1
1.2.54-1ubuntu1.1+esm2

Open the chart page →

77,821
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

10,101
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4

Open the chart page →

18,331
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

7,982
smartorchestratorassist-iot-smart-orchestrator4.0.01 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

1 of the 14 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

42,460
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

13,986
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

31,807
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

5,291
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
kuzwolka/aws9:news3e8880fbbb96
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
kuzwolka/aws9:blog4a7707410bf1
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
kuzwolka/aws9:shop84a9d9766345
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

16,920
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

6,310
bookinfobasictechno0.1.03 of 6See more

bookinfo basictechno 0.1.0

3 of the 6 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.17.0b8f16a765eea
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
istio/examples-bookinfo-reviews-v2:1.17.072f25a55f078
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
istio/examples-bookinfo-reviews-v3:1.17.08f92fc1b6592
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

20,785
pagesberrutig-pages1.0.02 of 3See more

pages berrutig-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
flyway/flyway:6.4.422d97ceb0c47
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

20,233
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

22,916
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2

Open the chart page →

13,499
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
sysnet4admin/colosseum-prm:log5802bfcd7fed
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

26,266
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
library/cassandra:3.11.65aa8400b4b3b
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

19,291
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
libpng1.6@1.6.39-2
1.6.39-2+deb12u3

Open the chart page →

7,627
pagesbrian-pages1.0.02 of 3See more

pages brian-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
flyway/flyway:6.4.422d97ceb0c47
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

20,233
pagesbrixton-mayuribhavsar23-pages1.0.02 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-25646.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
flyway/flyway:6.4.422d97ceb0c47
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2

Open the chart page →

20,233

Container images carrying it

635 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
libpng@1.6.53-r0
1.6.55-r0
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
libpng1.6@1.6.48-1
1.6.48-1+deb13u3
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
libpng@1.6.54-r0
1.6.55-r0
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm2
1
ghcr.io/linuxserver/bookstack:version-v24.12.1cc795b254b73
libpng@1.6.44-r0
1.6.55-r0
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
libpng@1.6.43-r0
1.6.55-r0
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
libpng1.6@1.6.48-1
1.6.48-1+deb13u3
1
ghcr.io/monicahq/monica-next:main8be69156acbb
libpng1.6@1.6.48-1
1.6.48-1+deb13u3
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libpng1.6@1.6.39-2+deb12u1
1.6.39-2+deb12u3
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
libpng@1.6.47-r0
1.6.55-r0
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
libpng@1.6.54-r0
1.6.55-r0
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.5
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.4
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm2
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libpng1.6@1.6.39-2
1.6.39-2+deb12u3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
libpng1.6@1.6.48-1
1.6.48-1+deb13u3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libpng1.6@1.6.48-1
1.6.48-1+deb13u3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.