StackRadar

CVE-2026-40356

High

Advisory

Published 28 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
939
of 17,787 indexed, latest versions
Container images
1,000
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: krb5 security update

Carried by container images the latest versions of 939 of 17,787 indexed charts deploy, on 1,000 images.

Affected packageAffected versionsFixed inImages
krb5deb1.19.2-2, 1.19.2-2ubuntu0.1, 1.19.2-2ubuntu0.2, 1.19.2-2ubuntu0.3+20 more1.19.2-2ubuntu0.8, 1.20.1-2+deb12u5, 1.20.1-6ubuntu2.7, 1.21.3-5+deb13u1+2 more970
krb5rpm1.20.1-8.el9, 1.20.1-9.el9_2, 1.21.1-1.el9, 1.21.1-2.el9_4+2 more0:1.20.1-9.el9_2.6, 0:1.21.1-2.el9_4.5, 0:1.21.1-8.el9_6.230
OSV records
DEBIAN-CVE-2026-40356RHSA-2026:24683RHSA-2026:24685RHSA-2026:24686UBUNTU-CVE-2026-40356ECHO-874c-29e0-d62b
Also known as
USN-8585-1

Charts affected

939 by stars
ChartLatestAffected imagesRadar Score
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

7,521
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5

Open the chart page →

8,806
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
krb5@1.21.3-5
1.21.3-5+deb13u1

Open the chart page →

7,136
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
krb5@1.21.3-5
1.21.3-5+deb13u1

Open the chart page →

6,926
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5

Open the chart page →

3,918
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.7

Open the chart page →

4,616
door-agentcnoVerified publisher3.0.151 of 15See more

door-agent cno 3.0.15

1 of the 15 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.8

Open the chart page →

19,380
codehubcodehubVerified publisher6.2.182 of 5See more

codehub codehub 6.2.18

2 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
jupyterhub/jupyterhub:5.4.63974ba945e65
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7

Open the chart page →

13,286
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

3,236
cortezacorteza1.1.02 of 3See more

corteza corteza 1.1.0

2 of the 3 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
krb5@1.19.2-2ubuntu0.7
1.19.2-2ubuntu0.8
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5

Open the chart page →

8,251
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7

Open the chart page →

2,994
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

14,587
kubernetes-mcpcowboysysopVerified publisher2.0.01 of 1See more

kubernetes-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
krb5@1.21.1-8.el9_6
0:1.21.1-8.el9_6.2

Open the chart page →

1,814
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

6,183
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5

Open the chart page →

3,872
csghubcsghubVerified publisher2.4.36 of 34See more

csghub csghub 2.4.3

6 of the 34 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
opencsghq/agenticflow:ee-v0.6-52f03fead54db
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
opencsghq/kubectl:latestb6d87e1048c2
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5

Open the chart page →

59,131
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

14,206
cspconsolecspconsole1.3.113 of 5See more

cspconsole cspconsole 1.3.11

3 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
cspconsole/csp-control-center:1.0.1046dda4a31bd6
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
cspconsole/report-collector:1.0.15839750248193b
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5

Open the chart page →

11,891
cypikcypik-app0.1.01 of 2See more

cypik cypik-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

7,527
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

16,632
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.8

Open the chart page →

5,438
damap-chartdamapVerified publisher0.3.01 of 5See more

damap-chart damap 0.3.0

1 of the 5 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7

Open the chart page →

13,859
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
razzy10/product-service:latest702e411956db
krb5@1.21.1-8.el9_6
0:1.21.1-8.el9_6.2

Open the chart page →

3,576
pgcatdasmeta0.1.31 of 2See more

pgcat dasmeta 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

2,924
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5

Open the chart page →

4,914
sentry-relaydasmeta0.1.21 of 1See more

sentry-relay dasmeta 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
getsentry/relay:24.10.0ba7bf9163219
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

3,401
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.7

Open the chart page →

6,177
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.7

Open the chart page →

6,028
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
krb5@1.19.2-2ubuntu0.7
1.19.2-2ubuntu0.8

Open the chart page →

6,226
private-action-runnerdatadogVerified publisher1.28.11 of 1See more

private-action-runner datadog 1.28.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7

Open the chart page →

2,164
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

10,116
intel-gpu-exporterdefault-ghVerified publisher0.1.01 of 1See more

intel-gpu-exporter default-gh 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.8

Open the chart page →

4,846
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

5,656
technitiumdeimosfr-charts15.4.01 of 1See more

technitium deimosfr-charts 15.4.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7

Open the chart page →

1,225
dell-fan-controllerdell-fan-controllerVerified publisher1.0.71 of 1See more

dell-fan-controller dell-fan-controller 1.0.7

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
krb5@1.20.1-6ubuntu2.2
1.20.1-6ubuntu2.7

Open the chart page →

2,560
apachedevops0.1.02 of 4See more

apache devops 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
krb5@1.19.2-2
1.19.2-2ubuntu0.8
ghcr.io/codingducksrl/laravel:8.15be52524664c
krb5@1.19.2-2
1.19.2-2ubuntu0.8

Open the chart page →

30,150
laraveldevops0.10.32 of 4See more

laravel devops 0.10.3

2 of the 4 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/mariadb:10.9.4fbb8456ebdb1
krb5@1.19.2-2ubuntu0.1
1.19.2-2ubuntu0.8
ghcr.io/codingducksrl/laravel:8.15be52524664c
krb5@1.19.2-2
1.19.2-2ubuntu0.8

Open the chart page →

29,151
wordpressdevops0.12.01 of 4See more

wordpress devops 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/mariadb:10.8.30abf60f81588
krb5@1.19.2-2
1.19.2-2ubuntu0.8

Open the chart page →

13,036
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

9,152
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
krb5@1.19.2-2
1.19.2-2ubuntu0.8

Open the chart page →

12,999
devtron-enterprisedevtron48.0.04 of 28See more

devtron-enterprise devtron 48.0.0

4 of the 28 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
quay.io/devtron/postgres:14.91b594392f7cb
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

66,542
devtron-logs-dumpdevtron0.1.01 of 1See more

devtron-logs-dump devtron 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.8

Open the chart page →

4,969
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

3,699
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

9,152
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
krb5@1.19.2-2
1.19.2-2ubuntu0.8

Open the chart page →

12,999
devtron-enterprisedevtron-labs48.0.04 of 28See more

devtron-enterprise devtron-labs 48.0.0

4 of the 28 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
quay.io/devtron/postgres:14.91b594392f7cb
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

66,542
devtron-logs-dumpdevtron-labs0.1.01 of 1See more

devtron-logs-dump devtron-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
krb5@1.19.2-2ubuntu0.2
1.19.2-2ubuntu0.8

Open the chart page →

4,969
devtron-operatordevtron-labs0.23.33 of 11See more

devtron-operator devtron-labs 0.23.3

3 of the 11 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
quay.io/devtron/postgres:14.91b594392f7cb
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

31,447
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5

Open the chart page →

3,699
difydify1.0.02 of 4See more

dify dify 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-40356.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
langgenius/dify-sandbox:0.2.009b7e8705673
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5

Open the chart page →

19,063

Container images carrying it

1,000 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
olvid/bot-daemon:2.0.1e0e6b165d879
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
1
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
omkara25/simple-microservice-app-user-service:v2d62cba548580
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
opea/asr:1.025dd26d9cd09
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/chatqna:1.038c51b791efa
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/codegen:1.058f91683892d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/codegen-ui:1.02bee4eb66f3e
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
1
opea/codetrans:1.0e2436483b73d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/codetrans-ui:1.03ef121f34610
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
1
opea/docsum:1.03eaa91849512
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/docsum-ui:1.07f854e9bffaf
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
1
opea/guardrails-tgi:1.0262c6048aab8
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/guardrails-tgi:latestf68bec6a1271
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/speecht5:1.0249afad3d268
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/tts:1.0257ae94709e9
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opea/web-retriever-chroma:1.0fe08165d7770
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
openbas/caldera-server:5.1.0a277796d9724
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
openbas/platform:2.0.5d986d80b0a75
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
krb5@1.20.1-2+deb12u4
1.20.1-2+deb12u5
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
opencsghq/kubectl:latestb6d87e1048c2
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
opendatacube/explorer:latest120457ffcd69
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
1
opendatacube/wps:latest80df355a660b
krb5@1.19.2-2ubuntu0.7
1.19.2-2ubuntu0.8
1
openproject/hocuspocus:release-338001b288dc1359dfb5
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
openvino/model_server:2025.2.11e7cd1d70cc1
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
1
owncloud/server:10.16.274c53d341076
krb5@1.19.2-2ubuntu0.7
1.19.2-2ubuntu0.8
1
pangeo/base-notebook:2024.01.155fbe688a4f80
krb5@1.19.2-2ubuntu0.3
1.19.2-2ubuntu0.8
1
payara/server-full:7.2026.2-jdk2531f1253f0cf8
krb5@1.19.2-2ubuntu0.7
1.19.2-2ubuntu0.8
1
penpotapp/backend:2.2.147853d9bb9dd
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.8
1
penpotapp/exporter:2.2.15c835ffd87ab
krb5@1.19.2-2ubuntu0.4
1.19.2-2ubuntu0.8
1
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
krb5@1.21.1-6.el9
0:1.21.1-8.el9_6.2
1
phan2410/dummy-service:0.0.89c6ed6de26ca
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
krb5@1.19.2-2ubuntu0.1
1.19.2-2ubuntu0.8
1
photoprism/photoprism:220629-jammy2954334adbda
krb5@1.19.2-2
1.19.2-2ubuntu0.8
1
photoprism/photoprism:260601650c6ad5a651
krb5@1.22.1-2ubuntu4
1.22.1-2ubuntu4.1
1
photoprism/photoprism:251130db16ee6b1ba3
krb5@1.21.3-5ubuntu2
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
krb5@1.20.1-6ubuntu2
1.20.1-6ubuntu2.7
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
krb5@1.21.3-5
1.21.3-5+deb13u1
1
pk910/powfaucet:v2-stable3dcae6a62896
krb5@1.20.1-2+deb12u3
1.20.1-2+deb12u5
1
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
krb5@1.20.1-6ubuntu2.6
1.20.1-6ubuntu2.7
1
pococze/python-hello-elos:2.0.07a1aab425e51
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
praravind1801/helmimages:3.0.0f29d637b9ce1
krb5@1.20.1-2+deb12u1
1.20.1-2+deb12u5
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
krb5@1.20.1-2+deb12u2
1.20.1-2+deb12u5
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
krb5@1.21.3-5
1.21.3-5+deb13u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.