CVE-2026-31657
CriticalAdvisory
Published 24 Apr 2026In the index since 6 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 9.8
- base score, highest
- EPSS
- 0.004
- 34th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 154
- of 17,813 indexed, latest versions
- Container images
- 153
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 154 of 17,813 indexed charts deploy, on 153 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| linuxdeb | 3.13.0-46.77, 3.13.0-126.175, 3.13.0-149.199, 3.13.0-170.220+89 more | 4.15.0-254.266, 5.4.0-234.254, 5.15.0-185.195, 6.8.0-134.134+1 more | 153 |
- OSV records
- UBUNTU-CVE-2026-31657
- Also known as
- USN-8490-1, USN-8492-1, USN-8493-1, USN-8633-1, USN-8666-1
Charts affected
154 by stars
Container images carrying it
153 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| public.ecr.aws/ | 86380a01587d | linux | 6.8.0-134.134 | 1 |
| public.ecr.aws/ | efcecf98b912 | linux | 4.15.0-254.266 | 1 |
| registry.gitlab.com/ | f6385712935f | linux | 5.4.0-234.254 | 1 |