StackRadar

CVE-2026-33846

High

Advisory

Published 4 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,821
of 17,821 indexed, latest versions
Container images
1,899
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,821 of 17,821 indexed charts deploy, on 1,899 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.4.10-4ubuntu1.3, 3.4.10-4ubuntu1.4, 3.4.10-4ubuntu1.5, 3.4.10-4ubuntu1.7+47 more3.4.10-4ubuntu1.9+esm3, 3.5.18-1ubuntu1.6+esm3, 3.6.13-2ubuntu1.12+esm2, 3.7.3-4ubuntu1.9+6 more1,857
gnutlsapk3.8.5-r0, 3.8.8-r0, 3.8.11-r0, 3.8.12-r03.8.13-r042
OSV records
ALPINE-CVE-2026-33846DEBIAN-CVE-2026-33846UBUNTU-CVE-2026-33846
Also known as
USN-8284-1, USN-8502-1

Charts affected

1,821 by stars
ChartLatestAffected imagesRadar Score
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
gnutls28@3.8.9-3
3.8.9-3+deb13u4

Open the chart page →

5,705
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

4,453
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2
netrisai/controller-telescope:4.6.0.00414d82948a8b2
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
gnutls28@3.6.13-2ubuntu1.11
3.6.13-2ubuntu1.12+esm2
netrisai/controller-web-session-generator:0.2.0a030a31289f4
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

30,605
hedgedocnicholaswildeVerified publisher1.1.01 of 1See more

hedgedoc nicholaswilde 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/hedgedoc:version-1.9.0792a12ee976a
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3

Open the chart page →

12,717
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

2,336
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
gnutls28@3.7.9-2+deb12u1
3.7.9-2+deb12u7

Open the chart page →

17,443
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

8,593
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3
platform9community/api-gateway:latest40a4970de568
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3
platform9community/customers-service:latest2089811e5cc6
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3
platform9community/vets-service:latestd1165c94dfb3
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3
platform9community/visits-service:latest8d11b50368c6
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3

Open the chart page →

41,995
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9

Open the chart page →

14,578
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

11,900
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2

Open the chart page →

7,481
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

6,411
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

2,378
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9

Open the chart page →

5,700
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

30,913
crowdatlassian-data-centerVerified publisher2.0.151 of 2See more

crowd atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
atlassian/crowd:7.2.3c81cc7d6bc9e
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

1,565
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

6,514
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
gnutls28@3.6.13-2ubuntu1.9
3.6.13-2ubuntu1.12+esm2

Open the chart page →

12,235
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

3,004
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

5,975
grayloggraylog2OfficialVerified publisher2.0.01 of 2See more

graylog graylog2 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
graylog/graylog-enterprise:7.1.88a1f641cd7aa
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

1,584
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9

Open the chart page →

4,989
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

2,979
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

1,331
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

8,712
technitium-dnsserverobeoneVerified publisher1.13.11 of 1See more

technitium-dnsserver obeone 1.13.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
technitium/dns-server:15.5.02502fd4993d1
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

714
passboltpassbolt2.1.13 of 6See more

passbolt passbolt 2.1.1

3 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

12,865
reposilitereposilite1.4.21 of 1See more

reposilite reposilite 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

1,058
selenium-gridselenium-grid0.59.13 of 4See more

selenium-grid selenium-grid 0.59.1

3 of the 4 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
selenium/hub:4.48.0-20260905d47c27474cb4
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
selenium/node-chrome:4.48.0-202609055ac71fd8dd1e
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
selenium/node-firefox:4.48.0-2026090574a5c1c90f95
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

7,351
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latest4402d880dd4c
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

2,666
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

2,364
thehivestrangebee-helmOfficialVerified publisher1.1.03 of 7See more

thehive strangebee-helm 1.1.0

3 of the 7 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

16,294
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
gnutls28@3.7.9-2+deb12u1
3.7.9-2+deb12u7

Open the chart page →

14,279
abcdesktopabcdesktopOfficialVerified publisher4.4.121 of 9See more

abcdesktop abcdesktop 4.4.12

1 of the 9 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/abcdesktopio/mongo:safe8.0c4c1938a973b
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

835
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

2,802
bambooatlassian-data-centerVerified publisher2.0.151 of 2See more

bamboo atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
atlassian/bamboo:12.1.114af4bb6c8d46
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

33,391
baserowbaserow-chartVerified publisher1.0.563 of 6See more

baserow baserow-chart 1.0.56

3 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7

Open the chart page →

17,372
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

132,182
headwind-mdmchristianhuthVerified publisher5.10.52 of 2See more

headwind-mdm christianhuth 5.10.5

2 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
headwindmdm/hmdm:0.1.93550b4840840
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

5,907
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
dolibarr/dolibarr:22.0.47ad88fc9b13c
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

9,449
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
gnutls28@3.7.3-4ubuntu1.3
3.7.3-4ubuntu1.9

Open the chart page →

14,292
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
datamate/seafile-professional:11.0.202dd66b722464
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9

Open the chart page →

77,544
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

2,605
geonode-k8sgeonode-k8sVerified publisher2.0.03 of 10See more

geonode-k8s geonode-k8s 2.0.0

3 of the 10 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
gnutls28@3.7.3-4ubuntu1.8
3.7.3-4ubuntu1.9
geopython/pycsw:3.0.0-beta284662ea6b78b
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
library/redis:8.4.03906b477e4b6
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

57,014
glpiglpi-conteiner0.1.01 of 3See more

glpi glpi-conteiner 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

11,385
mariadbgroundhog2k4.44.01 of 1See more

mariadb groundhog2k 4.44.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mariadb:11.8.46b848cb24fbb
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

2,978
mongodbgroundhog2k0.8.31 of 1See more

mongodb groundhog2k 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mongo:8.3.115d7043a4ffe0
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

935
karakeephelmforgeVerified publisher1.2.91 of 3See more

karakeep helmforge 1.2.9

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

9,587
openctihelm-openctiVerified publisher3.0.111 of 8See more

opencti helm-opencti 3.0.11

1 of the 8 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

3,360
hertzbeathertzbeatOfficialVerified publisher1.8.12 of 4See more

hertzbeat hertzbeat 1.8.1

2 of the 4 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
apache/hertzbeat-collector:1.8.0a2bab1be574c
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

13,948

Container images carrying it

1,899 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
gnutls28@3.7.9-2+deb12u1
3.7.9-2+deb12u7
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/aerokube/keygen:1.0.1578934444f04
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/argoproj/argocd:v2.10.783c86003b781
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
gnutls28@3.7.3-4ubuntu1.8
3.7.3-4ubuntu1.9
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
gnutls28@3.5.18-1ubuntu1.6
3.5.18-1ubuntu1.6+esm3
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/go-skynet/local-ai:latest0632c21ddbe4
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
quay.io/mittwald/kube-mail:latest04f1099241fc
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
gnutls28@3.4.10-4ubuntu1.8
3.4.10-4ubuntu1.9+esm3
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
gnutls28@3.4.10-4ubuntu1.5
3.4.10-4ubuntu1.9+esm3
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
gnutls@3.8.8-r0
3.8.13-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.