StackRadar

CVE-2026-3731

High

Advisory

Published 8 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
555
of 17,787 indexed, latest versions
Container images
472
deployed by those charts
Fix available
2 of 2
affected packages

Security update for libssh

Carried by container images the latest versions of 555 of 17,787 indexed charts deploy, on 472 images.

Affected packageAffected versionsFixed inImages
libsshdeb0.6.3-4.3, 0.6.3-4.3ubuntu0.2, 0.8.0~20170825.94fa1e38-1ubuntu0.2, 0.8.0~20170825.94fa1e38-1ubuntu0.5+22 more0.6.3-4.3ubuntu0.6+esm5, 0.8.0~20170825.94fa1e38-1ubuntu0.7+esm7, 0.9.3-2ubuntu2.5+esm4, 0.9.6-2ubuntu0.22.04.7+4 more469
libsshrpm0.9.8-150600.11.3.10.9.8-150600.11.12.13
OSV records
DEBIAN-CVE-2026-3731UBUNTU-CVE-2026-3731SUSE-SU-2026:1310-1
Also known as
USN-8093-1, USN-8093-2

Charts affected

555 by stars
ChartLatestAffected imagesRadar Score
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-3731.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4

Open the chart page →

28,605
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-3731.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4

Open the chart page →

15,230
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2026-3731.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.7

Open the chart page →

9,248
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2026-3731.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4

Open the chart page →

6,285
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-3731.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7

Open the chart page →

14,100

Container images carrying it

472 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
kusionstack/kusion:v0.14.0126c8f0b0976
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
langgenius/dify-api:0.6.11fca918260dd6
libssh@0.10.6-0+deb12u1
no fix listed
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
libssh@0.10.6-2ubuntu0.2
0.10.6-2ubuntu0.4
1
library/cassandra:3.11.10b095ff3248c6
libssh@0.9.3-2ubuntu2.1
0.9.3-2ubuntu2.5+esm4
1
library/elasticsearch:8.17.32cc40b15dff8
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4
1
library/elasticsearch:8.15.0310b9fc03b06
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4
1
library/elasticsearch:7.17.0332c6d416808
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/elasticsearch:7.17.1588c2ec10c7f2
libssh@0.9.3-2ubuntu2.3
0.9.3-2ubuntu2.5+esm4
1
library/elasticsearch:7.17.8fdc73b3249c1
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/flink:1.14.6-scala_2.122461f02672b3
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.7
1
library/kibana:7.17.150172f1c538e7
libssh@0.9.3-2ubuntu2.3
0.9.3-2ubuntu2.5+esm4
1
library/kibana:8.18.004c0fc150f3a
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4
1
library/kibana:7.17.8c5781ba340ef
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/kibana:7.17.3e2e2031c15be
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/logstash:7.17.817a4f64e9cf5
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/mongo:7.0.140032d2ca20db
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
library/mongo:4.4.1305678ae4e5e1
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/mongo:5.0.32-focal3b6c281e1c08
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4
1
library/mongo:5.0.14-focal50cae5081ab4
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/mongo:6.0.12646902910d6a
libssh@0.9.6-2ubuntu0.22.04.2
0.9.6-2ubuntu0.22.04.7
1
library/mongo:6.0.271a63fc2438e
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/mongo:5.0.217c81758cb295
libssh@0.9.3-2ubuntu2.3
0.9.3-2ubuntu2.5+esm4
1
library/mongo:7.0.28-jammy88785f6f665a
libssh@0.9.6-2ubuntu0.22.04.5
0.9.6-2ubuntu0.22.04.7
1
library/mongo:7.0.12ae1cf99fa7bf
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
library/mongo:4.4.18d23ec07162ca
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
library/mongo:8.0.11dca8d11fe467
libssh@0.10.6-2ubuntu0.1
0.10.6-2ubuntu0.4
1
library/sonarqube:10.7.0-community0842dcd4c8f8
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
library/sonarqube:10.0.0-communityef9723cf4fe4
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.7
1
library/zookeeper:3.8-temurin55d1e5b2e601
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.7
1
library/zookeeper:3.9.4dfa9ba46d14b
libssh@0.9.6-2ubuntu0.22.04.5
0.9.6-2ubuntu0.22.04.7
1
linuxserver/calibre-web:0.6.24241009026e6f
libssh@0.10.6-2ubuntu0.1
0.10.6-2ubuntu0.4
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
linuxserver/code-server:4.10.1a5e43a05ae79
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.7
1
linuxserver/foldingathome:7.6.219a997426d71e
libssh@0.10.6-2build2
0.10.6-2ubuntu0.4
1
linuxserver/jellyfin:10.7.72427dde159a2
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
linuxserver/plex:1.25.24a13ced2326c
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
linuxserver/unifi-controller:8.0.240ae315a3a456
libssh@0.9.3-2ubuntu2.4
0.9.3-2ubuntu2.5+esm4
1
linuxserver/unifi-controller:7.3.83ab105cc50322
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
livekit/ingress:v1.2.21ab01641b366
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.7
1
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
libssh@0.9.8-150600.11.3.1
0.9.8-150600.11.12.1
1
longhornio/longhorn-manager:v1.2.3dca34321452c
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
libssh@0.9.8-150600.11.3.1
0.9.8-150600.11.12.1
1
longhornio/longhorn-ui:v1.10.0e60f36161511
libssh@0.9.8-150600.11.3.1
0.9.8-150600.11.12.1
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
libssh@0.9.3-2ubuntu2.5
0.9.3-2ubuntu2.5+esm4
1
mbround18/valheim:3.1.070bd4da591cd
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1
mediagis/nominatim:3.7c15e941485ef
libssh@0.9.3-2ubuntu2.2
0.9.3-2ubuntu2.5+esm4
1
mediagis/nominatim:4.2d0eae7b51374
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.7
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.