StackRadar

CVE-2026-40228

Low

Advisory

Published 10 Apr 2026In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.3
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,435
of 17,813 indexed, latest versions
Container images
2,426
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,435 of 17,813 indexed charts deploy, on 2,426 images.

Affected packageAffected versionsFixed inImages
systemddeb204-5ubuntu20.7, 204-5ubuntu20.10, 204-5ubuntu20.24, 204-5ubuntu20.28+115 moreno fix listed2,426
OSV records
DEBIAN-CVE-2026-40228UBUNTU-CVE-2026-40228

Charts affected

2,435 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,426 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
systemd@255.4-1ubuntu8.11
no fix listed
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
systemd@255.4-1ubuntu8.16
no fix listed
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
systemd@257.9-1~deb13u1
no fix listed
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
systemd@252.36-1~deb12u1
no fix listed
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
systemd@249.11-0ubuntu3.15
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
systemd@252.30-1~deb12u2
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
systemd@252.30-1~deb12u2
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
systemd@252.22-1~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
systemd@252.19-1~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
systemd@252.17-1~deb12u1
no fix listed
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
systemd@252.39-1~deb12u1
no fix listed
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
systemd@252.31-1~deb12u1
no fix listed
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
systemd@252.31-1~deb12u1
no fix listed
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
systemd@252.17-1~deb12u1
no fix listed
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
systemd@255.4-1ubuntu8.12
no fix listed
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
systemd@237-3ubuntu10.53
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
systemd@245.4-4ubuntu3.6
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
systemd@252.19-1~deb12u1
no fix listed
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
systemd@249.11-0ubuntu3.12
no fix listed
1
quay.io/aerokube/keygen:1.0.1578934444f04
systemd@249.11-0ubuntu3.12
no fix listed
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
systemd@259.5-0ubuntu3.4
no fix listed
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
systemd@249.11-0ubuntu3.4
no fix listed
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
systemd@255.4-1ubuntu8.6
no fix listed
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
systemd@255.4-1ubuntu8.10
no fix listed
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
systemd@249.11-0ubuntu3.11
no fix listed
1
quay.io/argoprojlabs/gitops-promoter:v0.40.1daf2e7650d61
systemd@257.13-1~deb13u1
no fix listed
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
systemd@249.11-0ubuntu3.12
no fix listed
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
systemd@255.4-1ubuntu8.10
no fix listed
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
systemd@255.4-1ubuntu8.12
no fix listed
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
systemd@255.4-1ubuntu8.12
no fix listed
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
systemd@255.4-1ubuntu8.10
no fix listed
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
systemd@252.33-1~deb12u1
no fix listed
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
systemd@252.38-1~deb12u1
no fix listed
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
systemd@249.11-0ubuntu3.20
no fix listed
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
systemd@237-3ubuntu10.56
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
systemd@249.11-0ubuntu3.6
no fix listed
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
systemd@249.11-0ubuntu3.6
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
systemd@257.13-1~deb13u1
no fix listed
1
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
systemd@259.5-0ubuntu3.3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
systemd@252.39-1~deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
systemd@252.39-1~deb12u1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
systemd@252.39-1~deb12u1
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
systemd@252.39-1~deb12u2
no fix listed
1
quay.io/maxiv/pieeat:0.9.3099715479210
systemd@257.13-1~deb13u1
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
systemd@252.38-1~deb12u1
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
systemd@252.36-1~deb12u1
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
systemd@229-4ubuntu21.29
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
systemd@257.13-1~deb13u1
no fix listed
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
systemd@255.4-1ubuntu8.11
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
systemd@229-4ubuntu21.4
no fix listed
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.