StackRadar

CVE-2026-33416

High

Advisory

Published 26 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
796
of 17,781 indexed, latest versions
Container images
760
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: libpng security update

Carried by container images the latest versions of 796 of 17,781 indexed charts deploy, on 760 images.

Affected packageAffected versionsFixed inImages
libpng1.6deb1.6.34-1ubuntu0.18.04.1, 1.6.34-1ubuntu0.18.04.2, 1.6.37-2, 1.6.37-3build5+12 more1.6.34-1ubuntu0.18.04.2+esm3, 1.6.37-2ubuntu0.1~esm3, 1.6.37-3ubuntu0.5, 1.6.39-2+deb12u4+3 more512
libpngapk1.6.43-r0, 1.6.44-r0, 1.6.45-r0, 1.6.47-r0+3 more1.6.56-r0141
libpngrpm2:1.5.13-7.el7_2, 2:1.6.34-5.el8, 2:1.6.37-12.el9, 2:1.6.37-12.el9_7.12:1.5.13-8.el7_9.3, 2:1.6.34-11.el8_10, 2:1.6.37-12.el9_7.487
libpngdeb1.2.50-1ubuntu2, 1.2.50-1ubuntu2.14.04.2, 1.2.50-1ubuntu2.14.04.3, 1.2.54-1ubuntu1+1 more1.2.50-1ubuntu2.14.04.3+esm2, 1.2.54-1ubuntu1.1+esm320
OSV records
ALPINE-CVE-2026-33416DEBIAN-CVE-2026-33416RHSA-2026:18028RHSA-2026:29898RHSA-2026:50808UBUNTU-CVE-2026-33416
Also known as
RHSA-2026:20548, RHSA-2026:20549, RHSA-2026:20550, RHSA-2026:29900, RHSA-2026:29901, RHSA-2026:29902, USN-8251-1, USN-8639-1

Charts affected

796 by stars
ChartLatestAffected imagesRadar Score
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

17,377
games-on-whalesgeek-cookbookVerified publisher1.8.22 of 7See more

games-on-whales geek-cookbook 1.8.2

2 of the 7 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

35,305
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

15,653
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm3

Open the chart page →

11,662
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
libpng1.6@1.6.34-1ubuntu0.18.04.2
1.6.34-1ubuntu0.18.04.2+esm3

Open the chart page →

11,553
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

13,025
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

15,856
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
haveagitgat/tdarr_node:2.00.101e3f9328327d
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

31,000
geo-checkergeo-checkerVerified publisher5.0.01 of 1See more

geo-checker geo-checker 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ymuski/geo-checker:5.0.05ba7fd8c7bdc
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

1,455
leantimegissilabs1.3.01 of 2See more

leantime gissilabs 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
leantime/leantime:3.3.3ad4bfb0699d3
libpng@1.6.44-r0
1.6.56-r0

Open the chart page →

6,416
gridgaingridgainOfficialVerified publisher1.0.61 of 1See more

gridgain gridgain 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
gridgain/community:8.9.11d32d182a0e6a
libpng@1.6.43-r0
1.6.56-r0

Open the chart page →

4,679
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

10,072
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

6,374
app-blueprinthelm-app-blueprintVerified publisher0.2.11 of 1See more

app-blueprint helm-app-blueprint 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

840
guacamolehelmforgeVerified publisher1.5.21 of 5See more

guacamole helmforge 1.5.2

1 of the 5 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6

Open the chart page →

8,716
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

12,397
iceberg-resticeberg-rest-fixture0.0.11 of 2See more

iceberg-rest iceberg-rest-fixture 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

3,470
immichimmich-helm0.3.01 of 4See more

immich immich-helm 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
libpng1.6@1.6.48-1
1.6.48-1+deb13u4

Open the chart page →

15,712
elasticinseefrlab2.2.01 of 2See more

elastic inseefrlab 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
library/kibana:7.17.3e2e2031c15be
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

17,284
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
libpng1.6@1.6.48-1
1.6.48-1+deb13u4

Open the chart page →

11,764
jdownloader2jdownloader2Verified publisher1.10.01 of 1See more

jdownloader2 jdownloader2 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
jlesage/jdownloader-2:v26.03.13d6cb102bd9b
libpng@1.6.55-r0
1.6.56-r0

Open the chart page →

539
jetic-operatorjetic-operatorVerified publisher2.0.21 of 1See more

jetic-operator jetic-operator 2.0.2

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
apache/camel-k:1.10.43bb13d14f64a
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10

Open the chart page →

9,318
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

7,387
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
kafkakraft/kafka-controller:3.7.0f261ad288fce
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
kafkakraft/kafkakraft:3.7.02e4b593b878b
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

14,130
kokukokuVerified publisher1.0.01 of 7See more

koku koku 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libpng@2:1.6.37-12.el9
2:1.6.37-12.el9_7.4

Open the chart page →

12,019
nginx-php-fpmkokuwa0.1.41 of 2See more

nginx-php-fpm kokuwa 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

1,838
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

20,403
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

4,095
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

7,710
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

12,422
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

113,791
chibisafel4gVerified publisher0.1.11 of 3See more

chibisafe l4g 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
chibisafe/chibisafe-server:latest3da4fcbc1a18
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

5,654
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
libpng1.6@1.6.39-2+deb12u1
1.6.39-2+deb12u4

Open the chart page →

3,980
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

35,050
fhir-serverlinuxforhealth0.9.11 of 2See more

fhir-server linuxforhealth 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/linuxforhealth/fhir-schematool:5.1.1f62cefee6ef6
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10

Open the chart page →

1,053
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libpng1.6@1.6.39-2+deb12u1
1.6.39-2+deb12u4

Open the chart page →

7,201
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

5,734
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3

Open the chart page →

2,975
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
libpng1.6@1.6.50-1
1.6.50-1ubuntu0.5

Open the chart page →

11,103
mockservermockserverOfficialVerified publisher7.6.01 of 1See more

mockserver mockserver 7.6.0

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
mockserver/mockserver:mockserver-7.6.080b3b1a26f35
libpng1.6@1.6.39-2+deb12u3
1.6.39-2+deb12u4

Open the chart page →

1,021
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

13,738
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
clowder/clowder2-frontend:2.0.0-beta.4fe97882672ca
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

37,373
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

5,039
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libpng1.6@1.6.39-2
1.6.39-2+deb12u4

Open the chart page →

14,838
opentelemetry-demoopentelemetry-helmVerified publisher0.41.13 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

3 of the 34 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
libpng1.6@1.6.39-2+deb12u3
1.6.39-2+deb12u4
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
libpng@1.6.54-r0
1.6.56-r0
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6

Open the chart page →

22,420
opikopikOfficialVerified publisher2.2.591 of 13See more

opik opik 2.2.59

1 of the 13 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
libpng1.6@1.6.37-3ubuntu0.4
1.6.37-3ubuntu0.5

Open the chart page →

14,334
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

8,939
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
libpng@1.6.47-r0
1.6.56-r0

Open the chart page →

2,278
phpipamphpipam-helmVerified publisher1.0.122 of 3See more

phpipam phpipam-helm 1.0.12

2 of the 3 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
phpipam/phpipam-cron:v1.7.354468713454e
libpng@1.6.44-r0
1.6.56-r0
phpipam/phpipam-www:v1.7.3ace0efd24830
libpng@1.6.44-r0
1.6.56-r0

Open the chart page →

3,778
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-33416.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5

Open the chart page →

7,576

Container images carrying it

760 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
apache/activemq-artemis:2.44.00305c26f19ed
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6
1
apache/activemq-artemis:2.37.0bae523439ee3
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6
1
apache/camel-k:1.10.43bb13d14f64a
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
apache/druid:29.0.10cef139b6bf1
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apache/hertzbeat:1.8.075d48a62748f
libpng1.6@1.6.43-5ubuntu0.4
1.6.43-5ubuntu0.6
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
libpng1.6@1.6.43-5ubuntu0.4
1.6.43-5ubuntu0.6
1
apache/iotdb:0.13.3-nodeafa47bf1692a
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apache/kafka:4.1.0bff074a5d005
libpng@1.6.47-r0
1.6.56-r0
1
apache/kafka:3.9.0fbc7d7c428e3
libpng@1.6.44-r0
1.6.56-r0
1
apache/nifi-registry:1.27.063b8e3e40742
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apachepulsar/pulsar:3.0.79c9947de139d
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apachepulsar/pulsar:2.9.0d056c89b7131
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apachepulsar/pulsar:2.8.2d538416d5afe
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apache/ranger:2.7.076c176e8a0e4
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apache/rocketmq:5.3.0434d8398f996
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6
1
apache/rocketmq-exporter:0.0.2c8fb51195444
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apache/skywalking-oap-server:9.2.0133d35d2c263
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apache/skywalking-ui:9.2.0295f1dc87d98
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apache/skywalking-ui:8.9.180530f0308a5
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
apache/tika:2.9.0.092d055a84e9e
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
appwrite/appwrite:1.9.01aaa70127114
libpng@1.6.55-r0
1.6.56-r0
1
appwrite/console:8.7.383dcdc8492ac6
libpng@1.6.55-r0
1.6.56-r0
1
appwrite/console:7.5.7aaa11ceab999
libpng@1.6.44-r0
1.6.56-r0
1
aristidetm/basic-notebook:3.6.5469dbc951224
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
assistiot/identity-manager_kc:latest0df4b4fa899a
libpng@2:1.6.34-5.el8
2:1.6.34-11.el8_10
1
assistiot/location_processing:lateste9bae124095f
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
assistiot/open_api_backend:1.1.230812ba93555
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
atlassian/confluence-server:7.10.03b9222ab32ef
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
atlassian/jira-software:8.14.037bc46cbec1a
libpng1.6@1.6.37-3build5
1.6.37-3ubuntu0.5
1
atlassian/jira-software:9.7.264a75aa4ec4e
libpng1.6@1.6.43-5build1
1.6.43-5ubuntu0.6
1
avinash263/pyredis263:latestaa2b8727f1a6
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
avzini/web-app:latestf40b30210ed0
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
awesometechnologies/synapse-admin:0.11.4a1c1f4662875
libpng@1.6.54-r0
1.6.56-r0
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
libpng1.6@1.6.37-2
1.6.37-2ubuntu0.1~esm3
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1
beyzkaya/blog-frontend:v1.0.0bf412d75c510
libpng@1.6.47-r0
1.6.56-r0
1
bitnamilegacy/elasticsearch:8.12.215d4647fd491
libpng1.6@1.6.39-2
1.6.39-2+deb12u4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.