StackRadar

CVE-2026-28372

High

Advisory

Published 27 Feb 2026In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.004
31st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
11
of 17,781 indexed, latest versions
Container images
12
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 11 of 17,781 indexed charts deploy, on 12 images.

Affected packageAffected versionsFixed inImages
inetutilsdeb2:1.9.4-11ubuntu0.2, 2:2.2-2ubuntu0.2, 2:2.4-2+deb12u1, 2:2.5-3ubuntu4+1 more2:1.9.4-11ubuntu0.2+esm4, 2:2.2-2ubuntu0.2+esm1, 2:2.4-2+deb12u3, 2:2.5-3ubuntu4.212
OSV records
DEBIAN-CVE-2026-28372UBUNTU-CVE-2026-28372
Also known as
USN-8387-1

Charts affected

11 by stars
ChartLatestAffected imagesRadar Score
stackstorm-hastackstormVerified publisher1.1.01 of 17See more

stackstorm-ha stackstorm 1.1.0

1 of the 17 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
inetutils@2:1.9.4-11ubuntu0.2
2:1.9.4-11ubuntu0.2+esm4

Open the chart page →

96,419
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
inetutils@2:2.5-3ubuntu4.1
2:2.5-3ubuntu4.2

Open the chart page →

1,263
wireguardk8s-home-lab-repo1.6.01 of 1See more

wireguard k8s-home-lab-repo 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
inetutils@2:1.9.4-11ubuntu0.2
2:1.9.4-11ubuntu0.2+esm4

Open the chart page →

7,337
aramid-indexerbiatec-repoVerified publisher3.9.01 of 5See more

aramid-indexer biatec-repo 3.9.0

1 of the 5 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2

Open the chart page →

13,357
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2

Open the chart page →

5,059
smartorchestratorassist-iot-smart-orchestrator4.0.02 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

2 of the 14 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3

Open the chart page →

45,363
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2

Open the chart page →

5,059
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2

Open the chart page →

8,967
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2

Open the chart page →

4,940
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3

Open the chart page →

23,613
checkmkrtomik-helm-chartsVerified publisher0.1.01 of 1See more

checkmk rtomik-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-28372.

Container imageDigestPackageFixed in
checkmk/check-mk-community:2.5.0p6c11b422210c4
inetutils@2:2.2-2ubuntu0.2
2:2.2-2ubuntu0.2+esm1

Open the chart page →

7,436

Container images carrying it

12 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
arunvelsriram/utils:latest655ad18fd8d6
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
inetutils@2:2.2-2ubuntu0.2
2:2.2-2ubuntu0.2+esm1
1
erlangsolutions/mongooseim:6.6.0cc5bf032931f
inetutils@2:2.5-3ubuntu4.1
2:2.5-3ubuntu4.2
1
kubeovn/kube-ovn:v1.14.06722b54eb5c0
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2
1
logiqai/flash:v3.10.265b996bc7bdc
inetutils@2:2.4-2+deb12u1
2:2.4-2+deb12u3
1
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2
1
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2
1
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
inetutils@2:2.5-3ubuntu4
2:2.5-3ubuntu4.2
1
stackstorm/st2actionrunner:3.888235ba70cad
inetutils@2:1.9.4-11ubuntu0.2
2:1.9.4-11ubuntu0.2+esm4
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
inetutils@2:1.9.4-11ubuntu0.2
2:1.9.4-11ubuntu0.2+esm4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.