StackRadar

CVE-2026-4046

High

Advisory

Published 30 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
32nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,879
of 17,790 indexed, latest versions
Container images
2,124
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 1,879 of 17,790 indexed charts deploy, on 2,124 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+55 more2.35-0ubuntu3.14, 2.36-9+deb12u14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e3+2 more1,862
glibcapk2.37-r6, 2.38-r6, 2.39-r7, 2.40-r1+7 more2.43-r620
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.26-lp151.18.7, 2.28-42.el8_0.1, 2.28-72.el8_1.1, 2.28-101.el8+29 more0:2.28-251.el8_10.37, 2.38-20, 2.43-2.1235
OSV records
CGA-229m-666p-m6pjCGA-3m2c-2p7h-jh79DEBIAN-CVE-2026-4046UBUNTU-CVE-2026-4046RHSA-2026:20587RLSA-2026:20587AZL-81273ECHO-511d-493a-869eopenSUSE-SU-2026:10722-1
Also known as
CGA-4677-mx7m-c27p, CGA-5v9q-38j7-x3cg, CGA-6rph-gxmg-fqx5, CGA-89vv-3r63-429r, CGA-8mxx-m272-2w2r, CGA-947p-p8jf-59v6, CGA-9f7h-rwh4-rqq8, CGA-cr3q-p72f-c68p, CGA-hf3c-3g26-884q, CGA-hh2h-qhg9-85hm, CGA-hm83-4gr6-p3qh, CGA-qxqg-xq26-h75q, CGA-xg6m-vg6w-3m4x, CGA-xxcr-pv23-2mwh, USN-8611-1

Charts affected

1,879 by stars
ChartLatestAffected imagesRadar Score
aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
glibc@2.28-225.el8
0:2.28-251.el8_10.37
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
glibc@2.28-225.el8
0:2.28-251.el8_10.37

Open the chart page →

13,712
akto-ai-guardrails-v2akto0.3.02 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

2 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3
redis/redis-stack-server:7.4.0-v172035434f455
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14

Open the chart page →

9,505
akto-mini-runtimeakto0.7.221 of 3See more

akto-mini-runtime akto 0.7.22

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

2,826
akto-mini-runtime-shaakto0.7.231 of 3See more

akto-mini-runtime-sha akto 0.7.23

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/redisdigest-pinned47200b041382
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,258
akto-mini-testing-kafkaakto1.42.12 of 5See more

akto-mini-testing-kafka akto 1.42.1

2 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.37
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.37

Open the chart page →

6,404
akto-protectionakto0.1.02 of 4See more

akto-protection akto 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:6.2.11-1-ubi8ac776fad95a5
glibc@2.28-225.el8
0:2.28-251.el8_10.37
confluentinc/cp-zookeeper:6.2.11-1-ubi8cae577096489
glibc@2.28-225.el8
0:2.28-251.el8_10.37

Open the chart page →

11,296
akto-regional-setupakto1.3.11 of 9See more

akto-regional-setup akto 1.3.1

1 of the 9 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.072035434f455
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14

Open the chart page →

7,828
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

3,487
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

6,352
slskdalexmorbo-slskdVerified publisher0.3.01 of 1See more

slskd alexmorbo-slskd 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,732
tubearchivistalexmorbo-tubearchivistVerified publisher0.1.01 of 2See more

tubearchivist alexmorbo-tubearchivist 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
valkey/valkey:9.0.1546304417fea
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

1,674
redisalexvanderberkelVerified publisher2.2.01 of 1See more

redis alexvanderberkel 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/redis:8.2.15fa2edb1e408
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

1,869
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:latestdc171ec796d5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

3,691
katalogalpineworks0.1.21 of 5See more

katalog alpineworks 0.1.2

1 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

4,533
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,242
amorphieamorphie0.1.23 of 18See more

amorphie amorphie 0.1.2

3 of the 18 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
camunda/zeebe:8.4.5ab5abc09e407
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
hazelcast/management-center:5.3.2f9d34300d330
glibc@2.28-225.el8
0:2.28-251.el8_10.37
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.14

Open the chart page →

28,289
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

7,605
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,242
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
glibc@2.27-3ubuntu1.6
no fix listed

Open the chart page →

11,582
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

4,063
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.14
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
glibc@2.31-0ubuntu9.2
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
glibc@2.31-0ubuntu9.2
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

42,325
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
glibc@2.41-12+deb13u1
2.41-12+deb13u3

Open the chart page →

5,591
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
glibc@2.36-9+deb12u4
2.36-9+deb12u14
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

25,816
antigenic-stalwart-helm-chartantigenic-stalwart-helm-chartVerified publisher1.0.51 of 2See more

antigenic-stalwart-helm-chart antigenic-stalwart-helm-chart 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.15.5dcf575db2d53
glibc@2.41-12+deb13u1
2.41-12+deb13u3

Open the chart page →

1,454
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
glibc@2.28-251.el8_10.16
0:2.28-251.el8_10.37

Open the chart page →

2,461
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

3,261
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.14

Open the chart page →

6,256
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
glibc@2.31-0ubuntu9.7
no fix listed

Open the chart page →

19,788
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.37
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.37

Open the chart page →

12,541
cert-manager-csi-driver-cacertsappscodeVerified publisher2026.1.151 of 3See more

cert-manager-csi-driver-cacerts appscode 2026.1.15

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

3,461
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14

Open the chart page →

4,005
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
library/rabbitmq:3.12.1-managementf020c06da226
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
ghcr.io/appscode/inbox-server:latest536358d7b17e
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14

Open the chart page →

15,718
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
library/rabbitmq:3.12.1-managementf020c06da226
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14

Open the chart page →

17,122
kubedb-oneappscodeVerified publisher2023.12.281 of 10See more

kubedb-one appscode 2023.12.28

1 of the 10 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.25.0df6b11907d33
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

15,265
kubevault-certifiedappscodeVerified publisher2026.2.271 of 1See more

kubevault-certified appscode 2026.2.27

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kubevault/vault-operator:v0.24.00087cb49616f
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

1,129
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
glibc@2.28-236.el8_9.12
0:2.28-251.el8_10.37

Open the chart page →

2,404
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
glibc@2.28-211.el8
0:2.28-251.el8_10.37

Open the chart page →

4,050
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
glibc@2.28-236.el8_9.12
0:2.28-251.el8_10.37

Open the chart page →

2,575
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

37,629
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14

Open the chart page →

3,313
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
glibc@2.36-9+deb12u1
2.36-9+deb12u14

Open the chart page →

5,680
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
glibc@2.28-211.el8
0:2.28-251.el8_10.37

Open the chart page →

2,902
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

7,558
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

7,359
arlas-aiasarlas-stackVerified publisher28.8.012 of 22See more

arlas-aias arlas-stack 28.8.0

12 of the 22 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
glibc@2.36-9+deb12u9
2.36-9+deb12u14
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
glibc@2.36-9+deb12u10
2.36-9+deb12u14
gisaia/arlas-permissions-server:28.0.0e612fc722e02
glibc@2.41-12+deb13u2
2.41-12+deb13u3
gisaia/arlas-persistence-server:28.0.0f667e0ee79be
glibc@2.41-12+deb13u2
2.41-12+deb13u3
gisaia/arlas-server:28.0.04e693e7b6f37
glibc@2.41-12+deb13u2
2.41-12+deb13u3
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

40,580
arlas-servicesarlas-stackVerified publisher28.8.03 of 3See more

arlas-services arlas-stack 28.8.0

3 of the 3 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
gisaia/arlas-permissions-server:28.0.0e612fc722e02
glibc@2.41-12+deb13u2
2.41-12+deb13u3
gisaia/arlas-persistence-server:28.0.0f667e0ee79be
glibc@2.41-12+deb13u2
2.41-12+deb13u3
gisaia/arlas-server:28.0.04e693e7b6f37
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

1,579
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

23,425
bind9artem-shestakov1.0.11 of 1See more

bind9 artem-shestakov 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

3,571
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
glibc@2.27-3ubuntu1.2
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
glibc@2.31-0ubuntu9.12
no fix listed
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
glibc@2.31-0ubuntu9.12
no fix listed

Open the chart page →

22,663
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-4046.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
glibc@2.28-225.el8
0:2.28-251.el8_10.37
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
glibc@2.28-225.el8
0:2.28-251.el8_10.37

Open the chart page →

14,823

Container images carrying it

2,124 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
glibc@2.27-3ubuntu1.6
no fix listed
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v5.2.0afdfa3da79df
glibc@2.38-16.azl3
2.38-20
1
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v1.13.2fa8eba9843ff
glibc@2.38-18.azl3
2.38-20
1
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
glibc@2.38-18.azl3
2.38-20
1
public.ecr.aws/aktosecurity/redis47200b041382
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
glibc@2.41-12
2.41-12+deb13u3
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14
1
public.ecr.aws/groundcovercom/kong/kubernetes-ingress-controller:3.5.3-20260205bf9db911deed
glibc@2.41-12+deb13u1+e2
2.41-12+deb13u2+e3
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
glibc@2.41-12+deb13u1+e2
2.41-12+deb13u2+e3
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.37
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
glibc@2.27-3ubuntu1.6
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
glibc@2.31-0ubuntu9.2
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
public.ecr.aws/zinclabs/openobserve:v0.8.127f8de509169
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
quay.io/aerokube/keygen:1.0.1578934444f04
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
glibc@2.28-236.el8.7
0:2.28-251.el8_10.37
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
glibc@2.28-236.el8.7
0:2.28-251.el8_10.37
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.14
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
glibc@2.28-151.el8
0:2.28-251.el8_10.37
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
glibc@2.28-251.el8_10.31
0:2.28-251.el8_10.37
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
glibc@2.28-225.el8
0:2.28-251.el8_10.37
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
glibc@2.28-151.el8
0:2.28-251.el8_10.37
1
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.37
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
glibc@2.28-151.el8
0:2.28-251.el8_10.37
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.