StackRadar

CVE-2026-4046

High

Advisory

Published 30 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
32nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,880
of 17,787 indexed, latest versions
Container images
2,125
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 1,880 of 17,787 indexed charts deploy, on 2,125 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+55 more2.35-0ubuntu3.14, 2.36-9+deb12u14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e3+2 more1,863
glibcapk2.37-r6, 2.38-r6, 2.39-r7, 2.40-r1+7 more2.43-r620
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.26-lp151.18.7, 2.28-42.el8_0.1, 2.28-72.el8_1.1, 2.28-101.el8+29 more0:2.28-251.el8_10.37, 2.38-20, 2.43-2.1235
OSV records
CGA-229m-666p-m6pjCGA-3m2c-2p7h-jh79DEBIAN-CVE-2026-4046UBUNTU-CVE-2026-4046RHSA-2026:20587RLSA-2026:20587AZL-81273ECHO-511d-493a-869eopenSUSE-SU-2026:10722-1
Also known as
CGA-4677-mx7m-c27p, CGA-5v9q-38j7-x3cg, CGA-6rph-gxmg-fqx5, CGA-89vv-3r63-429r, CGA-8mxx-m272-2w2r, CGA-947p-p8jf-59v6, CGA-9f7h-rwh4-rqq8, CGA-cr3q-p72f-c68p, CGA-hf3c-3g26-884q, CGA-hh2h-qhg9-85hm, CGA-hm83-4gr6-p3qh, CGA-qxqg-xq26-h75q, CGA-xg6m-vg6w-3m4x, CGA-xxcr-pv23-2mwh, USN-8611-1

Charts affected

1,880 by stars
ChartLatestAffected imagesRadar Score
netbirdjaconiVerified publisher0.15.13 of 4See more

netbird jaconi 0.15.1

3 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
netbirdio/management:0.45.10c9994b393ea
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
netbirdio/relay:0.45.1872e3add0e1e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
netbirdio/signal:0.45.146ce5a45538f
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,473
litellm-helmlitellm1.101.01 of 2See more

litellm-helm litellm 1.101.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

4,574
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
glibc@2.41-12+deb13u2
2.41-12+deb13u3
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

5,679
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8

Open the chart page →

3,422
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
glibc@2.27-3ubuntu1.2
no fix listed

Open the chart page →

15,607
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
glibc@2.31-0ubuntu9.7
no fix listed

Open the chart page →

7,917
scribebackube-helm-chartsVerified publisher0.2.01 of 2See more

scribe backube-helm-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
quay.io/backube/scribe:0.2.0cdefc81c6b2e
glibc@2.28-151.el8
0:2.28-251.el8_10.37

Open the chart page →

6,853
glasskube-operatorglasskubeOfficialVerified publisher0.12.23 of 3See more

glasskube-operator glasskube 0.12.2

3 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.14
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
glibc@2.28-225.el8
0:2.28-251.el8_10.37
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
glibc@2.28-225.el8
0:2.28-251.el8_10.37

Open the chart page →

11,971
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

5,364
milvusmilvus-helm5.0.282 of 4See more

milvus milvus-helm 5.0.28

2 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14
milvusdb/etcd:3.5.25-r1fededb2f2d63
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14

Open the chart page →

10,764
prefect-serverprefectVerified publisher2026.9.141419101 of 2See more

prefect-server prefect 2026.9.14141910

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

5,448
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

6,385
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

18,570
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
glibc@2.28-236.el8.7
0:2.28-251.el8_10.37

Open the chart page →

6,675
codefreshcodefresh-onpremOfficialVerified publisher2.12.134 of 42See more

codefresh codefresh-onprem 2.12.13

4 of the 42 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
glibc@2.36-9+deb12u8
2.36-9+deb12u14
bitnamilegacy/rabbitmq:4.1.39e635efba431
glibc@2.36-9+deb12u10
2.36-9+deb12u14
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

14,615
stackstorm-hastackstormVerified publisher1.1.012 of 17See more

stackstorm-ha stackstorm 1.1.0

12 of the 17 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2api:3.86f56d239d280
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2auth:3.833ecfda16608
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2notifier:3.8f190a6212195
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2web:3.809989a26c8b7
glibc@2.31-0ubuntu9.12
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
glibc@2.31-0ubuntu9.12
no fix listed

Open the chart page →

96,984
supabasetokens-studioVerified publisher1.0.05 of 14See more

supabase tokens-studio 1.0.0

5 of the 14 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
supabase/edge-runtime:v1.59.0eff9c554d649
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/postgres-meta:v0.84.2d0a96973e9f1
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/realtime:v2.33.8d207e6e23ad3
glibc@2.36-9+deb12u8
2.36-9+deb12u14
supabase/studio:20241021-9f9b08326d8070c55e9
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

23,263
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
glibc@2.36-9+deb12u7
2.36-9+deb12u14
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

8,530
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,749
budibasebudibase0.0.0-master1 of 7See more

budibase budibase 0.0.0-master

1 of the 7 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

10,810
csi-secrets-store-provider-azurecsi-secrets-store-provider-azureVerified publisher1.8.21 of 5See more

csi-secrets-store-provider-azure csi-secrets-store-provider-azure 1.8.2

1 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
glibc@2.38-18.azl3
2.38-20

Open the chart page →

2,235
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,818
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

3,493
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,037
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

7,896
cassandrakubelauncherVerified publisher0.1.271 of 1See more

cassandra kubelauncher 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/cassandradigest-pinnedb66aba320083
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3

Open the chart page →

1,490
mongodbkubelauncherVerified publisher0.4.51 of 1See more

mongodb kubelauncher 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/mongodbdigest-pinned9bc37ed78a8b
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3

Open the chart page →

1,380
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

1,279
rediskubelauncherVerified publisher0.5.11 of 1See more

redis kubelauncher 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/redisdigest-pinnedbcd8e9a6224f
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3

Open the chart page →

809
purelbpurelb0.0.0-106-ipv6-lbip-052cedab1 of 2See more

purelb purelb 0.0.0-106-ipv6-lbip-052cedab

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
glibc@2.28-164.el8_5.3
0:2.28-251.el8_10.37

Open the chart page →

4,412
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

3,492
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

11,453
zillazillaOfficialVerified publisher2.4.21 of 1See more

zilla zilla 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/aklivity/zilla:2.4.289c4a2e74863
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14

Open the chart page →

1,737
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.14

Open the chart page →

4,281
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,024
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
2.36-9+deb12u14
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.8

Open the chart page →

5,396
envoy-gatewayhelmforgeVerified publisher2.1.01 of 3See more

envoy-gateway helmforge 2.1.0

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
mccutchen/go-httpbin:v2.15.024528cf5229d
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

2,391
ilumilumOfficialVerified publisher6.7.33 of 19See more

ilum ilum 6.7.3

3 of the 19 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14
ilum/marquez:0.54.06e1d709d41f8
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

23,289
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8

Open the chart page →

3,434
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

7,031
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

5,665
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

4,344
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
glibc@2.31-0ubuntu9.17
no fix listed
netrisai/controller-telescope:4.6.0.00414d82948a8b2
glibc@2.31-0ubuntu9.17
no fix listed
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
glibc@2.31-0ubuntu9.16
no fix listed
netrisai/controller-web-session-generator:0.2.0a030a31289f4
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

30,481
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

2,257
syftopenmined0.9.53 of 6See more

syft openmined 0.9.5

3 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
glibc@2.36-9+deb12u4
2.36-9+deb12u14
openmined/syft-backend:0.9.5b72f74a68b32
glibc@2.40-r8
2.43-r6
openmined/syft-frontend:0.9.5d11524a3854a
glibc@2.40-r8
2.43-r6

Open the chart page →

17,306
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,510
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/api-gateway:latest40a4970de568
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/customers-service:latest2089811e5cc6
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/vets-service:latestd1165c94dfb3
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/visits-service:latest8d11b50368c6
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

41,902
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14

Open the chart page →

14,276

Container images carrying it

2,125 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
hazegoodlife/haaze:veggiesite50f02d2d5d4d
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hazegoodlife/haaze:milksite8d4c63169e14
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hazelcast/management-center:5.3.2f9d34300d330
glibc@2.28-225.el8
0:2.28-251.el8_10.37
1
headscale/headscale:0.25.1a7a8ae9616bb
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
headscale/headscale:0.27.1cd37b3001857
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
hecrom/myweatherangularclient:1.3.11bb0372939c19
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
glibc@2.31-0ubuntu9.16
no fix listed
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
helmforge/fastmcp-server:0.2.061f759a1421f
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
helmforge/fastmcp-server:0.11.2fcb7017327d6
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
glibc@2.41-12
2.41-12+deb13u3
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
hivemq/hivemq-edge:2026.13aba306d1f089
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
1
hivemq/hivemq-swarm:4.54.0f9746d5d70fa
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
hiversh/gateway:0.1.45839226cc6e41
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
glibc@2.36-9
2.36-9+deb12u14
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
hmediade/printserver:latest481a552c8e1c
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
hmediade/printserver-init:latest7f005eb6c718
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
housewrecker/gaps:latestf417dd0a7547
glibc@2.31-0ubuntu9.7
no fix listed
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
glibc@2.27-3ubuntu1.4
no fix listed
1
hugohg34/toposervice:0.0.2812a03b3f274
glibc@2.31-0ubuntu9.7
no fix listed
1
hyperglance/init:wildfly467ad8491bc3
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
hyperglance/init:postgres9fd5faf1fe80
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
hyperglance/init:apacheb2f8c6d52623
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
glibc@2.23-0ubuntu10
no fix listed
1
hyperledger/fabric-orderer:1.3.06ee1abcfd840
glibc@2.23-0ubuntu10
no fix listed
1
hyperledger/fabric-peer:1.3.06756c7c48234
glibc@2.23-0ubuntu10
no fix listed
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
glibc@2.28-211.el8
0:2.28-251.el8_10.37
1
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
glibc@2.28-211.el8
0:2.28-251.el8_10.37
1
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
glibc@2.28-211.el8
0:2.28-251.el8_10.37
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
glibc@2.28-101.el8
0:2.28-251.el8_10.37
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
glibc@2.28-101.el8
0:2.28-251.el8_10.37
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
glibc@2.28-127.el8_3.2
0:2.28-251.el8_10.37
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
glibc@2.23-0ubuntu10
no fix listed
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
glibc@2.23-0ubuntu10
no fix listed
1
ibmcom/microclimate-theia:lateste17bdccc5030
glibc@2.23-0ubuntu9
no fix listed
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
glibc@2.28-42.el8_0.1
0:2.28-251.el8_10.37
1
ibmcom/skydive:0.22.0395e60cc6e3d
glibc@2.27-3ubuntu1
no fix listed
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
ilum/streamlit-example:1.0.0ce5dcdeb22ba
glibc@2.41-12
2.41-12+deb13u3
1
improwised/proxysql:master-6b26e59-171765063828940522e8b7
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
infiniflow/infinity:v0.7.0992c87a68612
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
inseefrlab/shelly:cloudshell31f04ca7436b
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.14
1
instill/artifact-backend:b28766ac4a393e601ed
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
instill/model-backend:611f0f2e980125e5ba5
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
instructure/kinesalite:latest34400d82f28f
glibc@2.31-0ubuntu9.17
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.