StackRadar

CVE-2026-27135

High

Advisory

Published 18 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,451
of 17,790 indexed, latest versions
Container images
1,503
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,451 of 17,790 indexed charts deploy, on 1,503 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+11 more1.30.0-1ubuntu1+esm3, 1.40.0-1ubuntu0.3+esm1, 1.43.0-1ubuntu0.3, 1.52.0-1+deb12u3+3 more935
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+13 more0:1.33.0-6.el8_10.2, 0:1.43.0-6.el9_7.1, 0:1.64.0-2.el10_1.1, 1.64.0-150700.3.3.1+1 more322
nghttp2apk1.57.0-r0, 1.64.0-r0, 1.65.0-r0, 1.68.0-r01.68.1246
OSV records
ALPINE-CVE-2026-27135DEBIAN-CVE-2026-27135RHSA-2026:7666RHSA-2026:7667RHSA-2026:7668RLSA-2026:7667RLSA-2026:7668UBUNTU-CVE-2026-27135openSUSE-SU-2026:10437-1SUSE-SU-2026:1074-1
Also known as
RHSA-2026:8538, RHSA-2026:8539, RHSA-2026:8540, RHSA-2026:8541, RHSA-2026:8545, RHSA-2026:8547, RHSA-2026:8548, USN-8233-1

Charts affected

1,451 by stars
ChartLatestAffected imagesRadar Score
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

7,216
voice-biometricslumenvox2.0.11 of 26See more

voice-biometrics lumenvox 2.0.1

1 of the 26 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
lumenvox/cloud-binary-storage:2.0.053decadc102d
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

71,216
dnsbl-exporterluzillaVerified publisher0.5.01 of 2See more

dnsbl-exporter luzilla 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/luzilla/unbound:v0.12.04fd8da9dc13c
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

1,147
magentomagento3.2.33 of 12See more

magento magento 3.2.3

3 of the 12 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.3.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.3.1
longhornio/longhorn-ui:v1.10.0e60f36161511
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.3.1

Open the chart page →

13,582
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

19,192
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.2

Open the chart page →

6,915
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
nghttp2@1.64.0-1.1ubuntu1
1.64.0-1.1ubuntu1.1

Open the chart page →

11,108
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

13,763
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

3,729
clowder2ncsaVerified publisher1.9.73 of 12See more

clowder2 ncsa 1.9.7

3 of the 12 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
clowder/clowder2-frontend:2.0.0-beta.4fe97882672ca
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

37,441
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.32 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

2 of the 5 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
natsio/nats-box:0.18.0abdc9f9f0120
nghttp2@1.65.0-r0
1.68.1
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_7.1

Open the chart page →

6,110
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

5,051
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
nghttp2@1.52.0-1
1.52.0-1+deb12u3
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

14,862
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_7.1

Open the chart page →

2,097
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3

Open the chart page →

5,833
opentelemetry-demoopentelemetry-helmVerified publisher0.41.21See more

opentelemetry-demo opentelemetry-helm 0.41.2

1 container image this version deploys carries CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

opikopikOfficialVerified publisher2.2.643See more

opik opik 2.2.64

3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
alpine/kubectl:1.35.0862d86046bbc
nghttp2@1.68.0-r0
1.68.1
curlimages/curl:8.12.194e9e444bcba
nghttp2@1.64.0-r0
1.68.1
library/zookeeper:3.9.4dfa9ba46d14b
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

9,049
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
nghttp2@1.64.0-r0
1.68.1

Open the chart page →

2,279
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
nghttp2@1.64.0-1.1
1.64.0-1.1+deb13u1

Open the chart page →

3,694
radarrpanzer1119Verified publisher0.2.21 of 1See more

radarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

950
sonarrpanzer1119Verified publisher0.2.21 of 1See more

sonarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

947
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

6,890
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.2
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_7.1

Open the chart page →

7,833
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3

Open the chart page →

7,616
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

31,949
readarrpree-helm-chartsVerified publisher1.17.11 of 1See more

readarr pree-helm-charts 1.17.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/home-operations/readarr:0.4.18.28058f7551205fbd
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

1,099
prometheus-sql-exporterprometheus-communityVerified publisher0.5.01 of 1See more

prometheus-sql-exporter prometheus-community 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/justwatchcom/sql_exporter:v0.8c4b1d3d0f052
nghttp2@1.64.0-r0
1.68.1

Open the chart page →

1,199
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

3,022
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3

Open the chart page →

6,835
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

7,466
reportportalreportportal-ioOfficialVerified publisher26.8.121 of 15See more

reportportal reportportal-io 26.8.12

1 of the 15 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

11,943
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
zbalogh/reservation-angular-ui:1.0.95eb19e460b3c
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

6,640
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

7,487
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
nghttp2@1.43.0-5.el9_2.1
0:1.43.0-6.el9_7.1

Open the chart page →

9,885
mac-ouirm3lVerified publisher1.25.01 of 1See more

mac-oui rm3l 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
rm3l/mac-oui:1.8.03a5e1f95c132
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.2

Open the chart page →

1,975
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

10,159
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

6,085
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

7,767
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

6,918
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

7,567
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

13,028
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

5,321
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.103 of 9See more

kyoo rubxkube 0.1.10

3 of the 9 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

30,310
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

38,115
sentry-k8ssentry-k8sVerified publisher1.4.11 of 11See more

sentry-k8s sentry-k8s 1.4.1

1 of the 11 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.2

Open the chart page →

16,194
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
dserio83/velero-watchdog:0.1.8d5deae589229
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

11,545
scaffoldsigstoreVerified publisher0.6.1151See more

scaffold sigstore 0.6.115

1 container image this version deploys carries CVE-2026-27135.

Container imageDigestPackageFixed in
curlimages/curldigest-pinned:8.17.0935d9100e9ba
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

4,250

Container images carrying it

1,503 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.2
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
nghttp2@1.40.0-1ubuntu0.3
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_7.1
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.2
1
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_7.1
1
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.2
1
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_7.1
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
nghttp2@1.40.0-1ubuntu0.3
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
nghttp2@1.64.0-1.1
1.64.0-1.1+deb13u1
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
ghcr.io/kuoss/lethe:v0.3.3ebdf55fd5705
nghttp2@1.65.0-r0
1.68.1
1
ghcr.io/kuoss/venti:v0.3.38ee3e70d77f1
nghttp2@1.65.0-r0
1.68.1
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
ghcr.io/linuxforhealth/fhir-schematool:5.1.1f62cefee6ef6
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.2
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3
1
ghcr.io/linuxserver/bookstack:version-v24.12.1cc795b254b73
nghttp2@1.64.0-r0
1.68.1
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
nghttp2@1.64.0-r0
1.68.1
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3
1
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
nghttp2@1.65.0-r0
1.68.1
1
ghcr.io/linuxserver/radarr:6.0.4c8a55bd83672
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3
1
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
nghttp2@1.65.0-r0
1.68.1
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_7.1
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
nghttp2@1.64.0-1.1
1.64.0-1.1+deb13u1
1
ghcr.io/luzilla/unbound:v0.12.04fd8da9dc13c
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3
1
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/mattn/picoclaw:latest517556c8b144
nghttp2@1.68.0-r0
1.68.1
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.