StackRadar

CVE-2026-33846

High

Advisory

Published 4 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
68th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,813
of 17,813 indexed, latest versions
Container images
1,891
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,813 of 17,813 indexed charts deploy, on 1,891 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.4.10-4ubuntu1.3, 3.4.10-4ubuntu1.4, 3.4.10-4ubuntu1.5, 3.4.10-4ubuntu1.7+47 more3.4.10-4ubuntu1.9+esm3, 3.5.18-1ubuntu1.6+esm3, 3.6.13-2ubuntu1.12+esm2, 3.7.3-4ubuntu1.9+6 more1,849
gnutlsapk3.8.5-r0, 3.8.8-r0, 3.8.11-r0, 3.8.12-r03.8.13-r042
OSV records
ALPINE-CVE-2026-33846DEBIAN-CVE-2026-33846UBUNTU-CVE-2026-33846
Also known as
USN-8284-1, USN-8502-1

Charts affected

1,813 by stars
ChartLatestAffected imagesRadar Score
ombik8s-home-lab-repo12.2.11 of 1See more

ombi k8s-home-lab-repo 12.2.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

1,486
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
kafkakraft/kafka-controller:3.7.0f261ad288fce
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
kafkakraft/kafkakraft:3.7.02e4b593b878b
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9

Open the chart page →

14,512
kdiffkdiff-snapshotsVerified publisher0.0.2031 of 2See more

kdiff kdiff-snapshots 0.0.203

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

8,218
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

5,880
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,293
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
gnutls28@3.6.13-2ubuntu1.8
3.6.13-2ubuntu1.12+esm2

Open the chart page →

5,324
netbirdkitstream-netbird0.7.11 of 3See more

netbird kitstream-netbird 0.7.1

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
netbirdio/netbird-server:0.78.2ac6317722f6f
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

833
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
langgenius/dify-sandbox:0.2.009b7e8705673
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7

Open the chart page →

20,635
pgbouncerkubernetes-helm-chart-pgbouncer1.0.151 of 1See more

pgbouncer kubernetes-helm-chart-pgbouncer 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
cradlepoint/pgbouncer:1.0.18f5720b0cd03
gnutls28@3.5.18-1ubuntu1
3.5.18-1ubuntu1.6+esm3

Open the chart page →

5,840
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.02 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
gnutls28@3.7.3-4ubuntu1.9
no fix listed
owncloud/server:10.16.274c53d341076
gnutls28@3.7.3-4ubuntu1.8
3.7.3-4ubuntu1.9

Open the chart page →

9,903
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

4,313
kubesendkubesend0.1.91 of 1See more

kubesend kubesend 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
v3xl/kubesend:0.1.06f62ca96be82
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

1,428
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
gnutls28@3.6.13-2ubuntu1.7
3.6.13-2ubuntu1.12+esm2

Open the chart page →

7,779
kuma-ingress-watcherkuma-ingress-watcherVerified publisher1.4.01 of 1See more

kuma-ingress-watcher kuma-ingress-watcher 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

2,713
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

12,518
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

267,461
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

4,028
lgtm-stacklgtm-stackVerified publisher0.1.31 of 8See more

lgtm-stack lgtm-stack 0.1.3

1 of the 8 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.10f4434c92b3e
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

2,527
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

35,720
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

4,481
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

8,114
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6+esm3

Open the chart page →

6,787
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

7,325
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

2,808
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-assure-identity:2.0.0147854a3c916
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-audit:2.0.079428add7f38
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-binary-storage:2.0.053decadc102d
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-deployment:2.0.0ea8110886d38
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-management-api:2.0.0b9a23345eabd
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-voice-verifier:2.0.014170ad34903
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

71,528
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,810
magentomagento3.2.32 of 12See more

magento magento 3.2.3

2 of the 12 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
gnutls28@3.6.13-2ubuntu1.11
3.6.13-2ubuntu1.12+esm2
library/rabbitmq:4.1.0-management935b3f84c1e4
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

13,758
mcp-orchestratormagertronVerified publisher3.8.631 of 7See more

mcp-orchestrator magertron 3.8.63

1 of the 7 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
curtismager20/mcp-orchestrator:3.8.638030b71dbbea
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

1,558
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2

Open the chart page →

3,039
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6+esm3

Open the chart page →

19,235
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6

Open the chart page →

4,255
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
gnutls28@3.8.9-3ubuntu2
3.8.9-3ubuntu2.2

Open the chart page →

35,191
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

13,969
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9

Open the chart page →

3,753
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

37,958
cloud9nicholaswildeVerified publisher1.0.01 of 1See more

cloud9 nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
linuxserver/cloud9:version-1.29.245c5fe102ff3
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3

Open the chart page →

11,742
papermergenicholaswildeVerified publisher1.0.21 of 1See more

papermerge nicholaswilde 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/papermerge:version-v2.0.198ba2dd3f0bd
gnutls28@3.6.13-2ubuntu1.7
3.6.13-2ubuntu1.12+esm2

Open the chart page →

20,271
writefreelynicholaswildeVerified publisher1.0.01 of 1See more

writefreely nicholaswilde 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/nicholaswilde/writefreely:version-0.13.1c3c8481b7e56
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3

Open the chart page →

8,106
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

13,634
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,121
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
gnutls28@3.7.9-2
3.7.9-2+deb12u7
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

15,003
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

4,376
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,921
opentelemetry-demoopentelemetry-helmOfficialVerified publisher0.42.03 of 34See more

opentelemetry-demo opentelemetry-helm 0.42.0

3 of the 34 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.1.0-accountingbfd9d13ac58a
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
ghcr.io/open-telemetry/demo:3.1.0-addfd7a4697116
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
ghcr.io/open-telemetry/demo:3.1.0-frontend-proxyfd4da88bfeaa
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

20,163
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

7,018
opikopikOfficialVerified publisher2.2.712 of 13See more

opik opik 2.2.71

2 of the 13 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
redis/redis-stack-server:7.2.0-v10e44b2b49d059
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9

Open the chart page →

14,912
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest35575d4f2bfe
gnutls28@3.7.3-4ubuntu1.9
no fix listed
shaowenchen/ops-server:latest6bac5cebd125
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9

Open the chart page →

94,467
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

3,771
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

8,820
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-33846.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

6,973

Container images carrying it

1,891 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
gnutls28@3.7.9-2+deb12u1
3.7.9-2+deb12u7
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/aerokube/keygen:1.0.1578934444f04
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
gnutls28@3.7.3-4ubuntu1.8
3.7.3-4ubuntu1.9
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
gnutls28@3.5.18-1ubuntu1.6
3.5.18-1ubuntu1.6+esm3
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9
1
quay.io/go-skynet/local-ai:latest0632c21ddbe4
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
quay.io/mittwald/kube-mail:latest04f1099241fc
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
gnutls28@3.4.10-4ubuntu1.8
3.4.10-4ubuntu1.9+esm3
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
gnutls28@3.4.10-4ubuntu1.5
3.4.10-4ubuntu1.9+esm3
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
gnutls@3.8.8-r0
3.8.13-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
registry.gitlab.com/crafty-controller/crafty-4:latest7b6e87514259
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.