StackRadar

CVE-2026-27135

High

Advisory

Published 18 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,451
of 17,790 indexed, latest versions
Container images
1,503
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,451 of 17,790 indexed charts deploy, on 1,503 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+11 more1.30.0-1ubuntu1+esm3, 1.40.0-1ubuntu0.3+esm1, 1.43.0-1ubuntu0.3, 1.52.0-1+deb12u3+3 more935
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+13 more0:1.33.0-6.el8_10.2, 0:1.43.0-6.el9_7.1, 0:1.64.0-2.el10_1.1, 1.64.0-150700.3.3.1+1 more322
nghttp2apk1.57.0-r0, 1.64.0-r0, 1.65.0-r0, 1.68.0-r01.68.1246
OSV records
ALPINE-CVE-2026-27135DEBIAN-CVE-2026-27135RHSA-2026:7666RHSA-2026:7667RHSA-2026:7668RLSA-2026:7667RLSA-2026:7668UBUNTU-CVE-2026-27135openSUSE-SU-2026:10437-1SUSE-SU-2026:1074-1
Also known as
RHSA-2026:8538, RHSA-2026:8539, RHSA-2026:8540, RHSA-2026:8541, RHSA-2026:8545, RHSA-2026:8547, RHSA-2026:8548, USN-8233-1

Charts affected

1,451 by stars
ChartLatestAffected imagesRadar Score
jf-pushover-webhooksudo-kraken-jf-pushover-webhookVerified publisher0.1.31 of 1See more

jf-pushover-webhook sudo-kraken-jf-pushover-webhook 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

2,773
prowlarrsudo-kraken-prowlarrVerified publisher3.2.11 of 1See more

prowlarr sudo-kraken-prowlarr 3.2.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/home-operations/prowlarr:2.3.01a8a4b11972b
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

878
qbittorrentsudo-kraken-qbittorrentVerified publisher5.1.51 of 2See more

qbittorrent sudo-kraken-qbittorrent 5.1.5

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

2,137
pagessunilb2590-pages1.0.02 of 3See more

pages sunilb2590-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

20,242
convert-datasvtechVerified publisher0.13.21 of 3See more

convert-data svtech 0.13.2

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.3

Open the chart page →

7,639
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3

Open the chart page →

12,100
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

12,712
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

10,959
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.3

Open the chart page →

5,883
nagvissvtech-public-helm-charts1.0.01 of 1See more

nagvis svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

9,182
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3

Open the chart page →

12,100
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

18,846
swr-cache-proxyswr-cache-proxy0.2.01 of 1See more

swr-cache-proxy swr-cache-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
vividplanet/swr-cache-proxy:v1ae1c5b1cbecb
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.2

Open the chart page →

14,058
stashswuuper-githubVerified publisher0.1.161 of 1See more

stash swuuper-github 0.1.16

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
stashapp/stash:v0.31.1df744af5a0c9
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

2,402
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3

Open the chart page →

8,242
app-startersynkubeVerified publisher1.4.11 of 1See more

app-starter synkube 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
nghttp2@1.64.0-1.1
1.64.0-1.1+deb13u1

Open the chart page →

3,263
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

11,272
stateful-data-generatortalhajuikar-helm-charts0.1.21 of 2See more

stateful-data-generator talhajuikar-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
nghttp2@1.40.0-1ubuntu0.3
1.40.0-1ubuntu0.3+esm1

Open the chart page →

4,901
poscatechnostructuresVerified publisher1.0.01 of 1See more

posca technostructures 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

1,116
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
nghttp2@1.52.0-1
1.52.0-1+deb12u3

Open the chart page →

6,321
mrasiftech-thinker1.0.41 of 1See more

mrasif tech-thinker 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
mrasif/mrasif.in:v4.6.0375a1ed8fdc0
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

2,044
istio-discoverytemp-charts0.3.31 of 1See more

istio-discovery temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
istio/pilot:1.10.0294ca55bd1cc
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

10,585
istio-ingresstemp-charts0.3.31 of 1See more

istio-ingress temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.088c6c693e67a
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

10,531
pagestest43221.0.02 of 3See more

pages test4322 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

20,242
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

11,722
chatqnatest-opea1.0.02 of 11See more

chatqna test-opea 1.0.0

2 of the 11 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/chatqna:1.038c51b791efa
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

39,273
codegentest-opea1.0.03 of 5See more

codegen test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/codegen:1.058f91683892d
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/codegen-ui:1.02bee4eb66f3e
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

28,944
codetranstest-opea1.0.03 of 5See more

codetrans test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/codetrans:1.0e2436483b73d
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/codetrans-ui:1.03ef121f34610
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

28,515
docsumtest-opea1.0.03 of 5See more

docsum test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/docsum:1.03eaa91849512
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
opea/docsum-ui:1.07f854e9bffaf
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

28,990
speecht5test-opea1.0.01 of 1See more

speecht5 test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
opea/speecht5:1.0249afad3d268
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

9,668
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
library/mongo:5.0.217c81758cb295
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1

Open the chart page →

20,378
codeth-chartsVerified publisher0.1.01 of 1See more

code th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
collabora/code:24.04.13.2.101dc4ab83977
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

3,275
jellyfinth-chartsVerified publisher0.1.01 of 1See more

jellyfin th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.77ae36aab93ef
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

3,980
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3

Open the chart page →

10,159
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
nghttp2@1.40.0-1ubuntu0.3
1.40.0-1ubuntu0.3+esm1

Open the chart page →

10,071
pagesthiru-pages1.0.02 of 3See more

pages thiru-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

20,242
pagesthuy-pages1.0.02 of 3See more

pages thuy-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
1.30.0-1ubuntu1+esm3

Open the chart page →

20,242
tikatikaVerified publisher0.3.01 of 1See more

tika tika 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

1,826
todolist-charttodolist-chart0.1.71 of 10See more

todolist-chart todolist-chart 0.1.7

1 of the 10 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
erenozcan17/react_frontend:v4.56e1b14973f9b
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

7,019
togglr-backendtogglrVerified publisher1.0.01 of 1See more

togglr-backend togglr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

3,225
togglr-frontendtogglrVerified publisher1.0.01 of 1See more

togglr-frontend togglr 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
gdrocha/togglr-frontend:1.0.0ffbc1571c234
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

1,110
token-servertoken-server1.0.91 of 1See more

token-server token-server 1.0.9

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
udhos/token-server:1.0.9728013f2fac1
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

1,246
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.2

Open the chart page →

12,724
traefik-secrets-exportertraefik-secrets-exporter0.0.21 of 1See more

traefik-secrets-exporter traefik-secrets-exporter 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
ghcr.io/reiche-world/traefik-secrets-exporter:0.0.21485ff93cbf9
nghttp2@1.68.0-r0
1.68.1

Open the chart page →

1,676
trident-protect-bxp-previewtrident-protect100.2511.0-bxp-preview1 of 3See more

trident-protect-bxp-preview trident-protect 100.2511.0-bxp-preview

1 of the 3 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
netapp/trident-protect-utils:v1.0.058b9fac358bd
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

2,191
traceetrivy-operator0.24.11 of 1See more

tracee trivy-operator 0.24.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
aquasec/tracee:0.24.1cfbbfee972e6
nghttp2@1.64.0-r0
1.68.1

Open the chart page →

1,083
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3

Open the chart page →

17,396
truefoundry-monitoringtruefoundryVerified publisher0.1.61 of 8See more

truefoundry-monitoring truefoundry 0.1.6

1 of the 8 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
grafana/grafana:12.3.070d9599b186c
nghttp2@1.65.0-r0
1.68.1

Open the chart page →

4,544
zookeepertwomartensVerified publisher0.2.21 of 1See more

zookeeper twomartens 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.2

Open the chart page →

1,733
simple-mongodbtyk-helm0.1.11 of 1See more

simple-mongodb tyk-helm 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-27135.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
nghttp2@1.40.0-1ubuntu0.3
1.40.0-1ubuntu0.3+esm1

Open the chart page →

4,128

Container images carrying it

1,503 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
artur9010/wait-for:v1.0.06b4de3ce8b0e
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
arunvelsriram/utils:latest655ad18fd8d6
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
assistiot/identity-manager_kc:latest0df4b4fa899a
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.2
1
assistiot/location_processing:lateste9bae124095f
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
1
assistiot/open_api_backend:1.1.230812ba93555
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.3
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
nghttp2@1.40.0-1ubuntu0.1
1.40.0-1ubuntu0.3+esm1
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
nghttp2@1.52.0-1
1.52.0-1+deb12u3
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
atlassian/confluence-server:7.10.03b9222ab32ef
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.3
1
atlassian/jira-software:8.14.037bc46cbec1a
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.3
1
atlassian/jira-software:9.7.264a75aa4ec4e
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.3
1
avinash263/pyredis263:latestaa2b8727f1a6
nghttp2@1.52.0-1
1.52.0-1+deb12u3
1
avzini/web-app:latestf40b30210ed0
nghttp2@1.52.0-1
1.52.0-1+deb12u3
1
awesometechnologies/synapse-admin:0.11.4a1c1f4662875
nghttp2@1.68.0-r0
1.68.1
1
baserow/backend:1.31.1e0b3c8130b91
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
baserow/baserow:1.30.1df0c42eb67e8
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
nghttp2@1.40.0-1build1
1.40.0-1ubuntu0.3+esm1
1
beopenit/door-helm:v3.0.1b4d9f9bee224
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.2
1
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
nghttp2@1.64.0-1.1
1.64.0-1.1+deb13u1
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
beyzkaya/blog-frontend:v1.0.0bf412d75c510
nghttp2@1.65.0-r0
1.68.1
1
bitnamilegacy/elasticsearch:8.12.215d4647fd491
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/git:latest4b08d0c5af8d
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/keycloak:24.0.4cc599cbd15ff
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/kubectl:1.301249fc292e84
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/kubectl:1.3164614ef8290f
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/kubectl:1.30.5744f84cf7493
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/mongodb:latestb0652af9c8d0
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
nghttp2@1.52.0-1+deb12u2
1.52.0-1+deb12u3
1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
nghttp2@1.52.0-1+deb12u1
1.52.0-1+deb12u3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.