StackRadar

CVE-2026-41568

Medium

Advisory

Published 18 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
579
of 17,781 indexed, latest versions
Container images
572
deployed by those charts
Fix available
1 of 3
affected packages

Docker: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap

Carried by container images the latest versions of 579 of 17,781 indexed charts deploy, on 572 images.

Affected packageAffected versionsFixed inImages
github.com/docker/dockergolangv0.0.0-20180620051407-e2593239d949, v0.7.3-0.20190327010347-be7ac8be2ae0, v1.4.2-0.20190924003213-a8608b5b67c7, v1.4.2-0.20191121165722-d1d5f6476656+84 moreno fix listed547
github.com/moby/mobygolangv0.7.3-0.20190826074503-38ab9da00309, v1.4.2-0.20170731201646-1009e6a40b29, v1.13.1, v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible+4 moreno fix listed30
docker.iodeb20.10.24+dfsg1-1+deb12u1+b6, 26.1.5+dfsg1-9+b1326.1.5+dfsg1-9+deb13u12
OSV records
DEBIAN-CVE-2026-41568GHSA-vp62-88p7-qqf5
Also known as
GO-2026-5668

Charts affected

579 by stars
ChartLatestAffected imagesRadar Score
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
no fix listed

Open the chart page →

15,291
gitops-operatorredhat-cop0.10.61 of 1See more

gitops-operator redhat-cop 0.10.6

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
github.com/docker/docker@v28.5.2+incompatible
no fix listed

Open the chart page →

369
ploigosredhat-cop0.0.92 of 2See more

ploigos redhat-cop 0.0.9

2 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:latest605eaa5d469c
github.com/docker/docker@v28.5.2+incompatible
no fix listed
quay.io/openshift/origin-cli:4.66722d5041b47
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
no fix listed

Open the chart page →

11,437
sonatype-nexusredhat-cop1.1.131 of 2See more

sonatype-nexus redhat-cop 1.1.13

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
github.com/docker/docker@v24.0.7+incompatible
no fix listed

Open the chart page →

16,047
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
github.com/docker/docker@v20.10.3+incompatible
github.com/moby/moby@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
no fix listed
no fix listed

Open the chart page →

29,227
retromretsamedocVerified publisher2026.2.51 of 1See more

retrom retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
github.com/docker/docker@v27.1.2+incompatible
no fix listed

Open the chart page →

7,084
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
no fix listed

Open the chart page →

7,491
krr-enforcerrobusta0.3.51 of 2See more

krr-enforcer robusta 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
alpine/k8s:1.30.0bd01dae02676
github.com/docker/docker@v20.10.24+incompatible
no fix listed

Open the chart page →

4,038
gitlab-operatorrock8sVerified publisher0.7.01 of 2See more

gitlab-operator rock8s 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
github.com/docker/docker@v17.12.1-ce+incompatible
no fix listed

Open the chart page →

5,422
mailserverrock8sVerified publisher0.1.21 of 1See more

mailserver rock8s 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
registry.gitlab.com/bitspur/rock8s/images/kube-commands:3.1880ef8ceffc92
github.com/docker/docker@v24.0.6+incompatible
no fix listed

Open the chart page →

1,946
monitoringrocketchat-server0.0.171 of 9See more

monitoring rocketchat-server 0.0.17

1 of the 9 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.143.03bc07732530c
github.com/docker/docker@v28.5.2+incompatible
no fix listed

Open the chart page →

6,859
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
github.com/docker/docker@v27.1.1+incompatible
no fix listed

Open the chart page →

9,607
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
no fix listed

Open the chart page →

10,466
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
github.com/docker/docker@v20.10.17+incompatible
no fix listed

Open the chart page →

12,949
argo-workflowromholdings0.1.61 of 1See more

argo-workflow romholdings 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
github.com/docker/docker@v20.10.24+incompatible
no fix listed

Open the chart page →

1,580
clairromholdings0.1.141 of 2See more

clair romholdings 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
github.com/docker/docker@v20.10.7+incompatible
no fix listed

Open the chart page →

6,237
devtron-enterpriseromholdings48.0.02 of 28See more

devtron-enterprise romholdings 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:94237c18-109-3942098580969b333
github.com/docker/docker@v24.0.5+incompatible
no fix listed
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
no fix listed

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
no fix listed

Open the chart page →

32,902
securityromholdings0.2.21 of 1See more

security romholdings 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
github.com/docker/docker@v20.10.7+incompatible
no fix listed

Open the chart page →

2,435
spindlerubxkubeVerified publisher0.1.12 of 2See more

spindle rubxkube 0.1.1

2 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
library/docker:29.7.2-dind3ef33f2e220b
github.com/docker/docker@v28.5.2+incompatible
no fix listed
ghcr.io/qjoly/spindle:v1.16.1-alphaaab0c99d313f
github.com/docker/docker@v28.2.2+incompatible
no fix listed

Open the chart page →

1,438
harborsb-helm-charts0.3.01 of 2See more

harbor sb-helm-charts 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
goharbor/harbor-core:v2.11.1c017dd84ee96
github.com/docker/docker@v24.0.9+incompatible
no fix listed

Open the chart page →

1,680
opentelemetry-collectorsb-helm-charts0.3.01 of 1See more

opentelemetry-collector sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.96.07ef2a2ff46b9
github.com/docker/docker@v24.0.9+incompatible
no fix listed

Open the chart page →

1,721
promtailsb-helm-charts0.4.01 of 1See more

promtail sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
grafana/promtail:3.6.18dcfdf466da0
github.com/docker/docker@v28.5.0+incompatible
no fix listed

Open the chart page →

2,202
ed-traefik2scaleway-charts0.2.01 of 1See more

ed-traefik2 scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
library/traefik:2.5.62f603f8d3abe
github.com/docker/docker@v20.10.7+incompatible
no fix listed

Open the chart page →

3,160
centralbrainsciencemeshVerified publisher0.0.31 of 5See more

centralbrain sciencemesh 0.0.3

1 of the 5 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
no fix listed

Open the chart page →

9,754
semaphoresemaphore-light1.0.01 of 1See more

semaphore semaphore-light 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
semaphoreui/semaphore:latest3996804607eb
github.com/docker/docker@v28.5.2+incompatible
no fix listed

Open the chart page →

1,674
ccx-monitoringseveralnines0.6.211 of 7See more

ccx-monitoring severalnines 0.6.21

1 of the 7 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
grafana/grafana:12.3.12175aaa91c96
github.com/moby/moby@v27.5.1+incompatible
no fix listed

Open the chart page →

7,708
loggensikalabs0.1.01 of 1See more

loggen sikalabs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
sikalabs/slu:v0.72.07bd267f30247
github.com/docker/docker@v24.0.7+incompatible
no fix listed

Open the chart page →

2,314
olmsikalabs0.3.01 of 2See more

olm sikalabs 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/operator-framework/olmdigest-pinned40d0363f4aa6
github.com/docker/docker@v25.0.5+incompatible
no fix listed

Open the chart page →

1,146
teamcitysinextraVerified publisher1.0.21 of 3See more

teamcity sinextra 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
library/docker:26.1-dinddd43b430341a
github.com/docker/docker@v27.1.0+incompatible
no fix listed

Open the chart page →

2,429
network-observerskupper-network-observerVerified publisher2.2.21 of 3See more

network-observer skupper-network-observer 2.2.2

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.11.3c0b857aead0d
github.com/docker/docker@v28.5.2+incompatible
no fix listed

Open the chart page →

601
skypilot-prometheus-serverskypilotVerified publisher0.11.11 of 3See more

skypilot-prometheus-server skypilot 0.11.1

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.4.19abc6cf6aea7
github.com/docker/docker@v28.1.1+incompatible
no fix listed

Open the chart page →

2,344
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
github.com/docker/docker@v20.10.12+incompatible
no fix listed

Open the chart page →

9,196
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
github.com/docker/docker@v20.10.7+incompatible
no fix listed

Open the chart page →

3,462
cost-analyzersoftonic2.5.51 of 6See more

cost-analyzer softonic 2.5.5

1 of the 6 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.2.16927e0919a14
github.com/docker/docker@v27.4.1+incompatible
no fix listed

Open the chart page →

7,901
harborsoftonic1.13.01 of 8See more

harbor softonic 1.13.0

1 of the 8 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
github.com/docker/docker@v23.0.7-0.20230714215826-f00e7af96042+incompatible
no fix listed

Open the chart page →

7,672
kube-prometheus-stacksoftonic81.5.11 of 6See more

kube-prometheus-stack softonic 81.5.1

1 of the 6 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
grafana/grafana:12.3.2ba93c9d192e5
github.com/moby/moby@v27.5.1+incompatible
no fix listed

Open the chart page →

4,974
trivy-operatorsoftonic0.18.01 of 1See more

trivy-operator softonic 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
ghcr.io/aquasecurity/trivy-operator:0.16.0a608b798fda5
github.com/docker/docker@v24.0.5+incompatible
no fix listed

Open the chart page →

2,505
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
github.com/docker/docker@v20.10.12+incompatible
no fix listed

Open the chart page →

30,687
datadogspartan0.1.01 of 1See more

datadog spartan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
github.com/docker/docker@v27.3.1+incompatible
no fix listed

Open the chart page →

3,232
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
github.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
no fix listed

Open the chart page →

28,165
vaultstakaterVerified publisher0.8.41 of 2See more

vault stakater 0.8.4

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
github.com/docker/docker@v17.12.0-ce-rc1.0.20200309214505-aa6a9891b09c+incompatible
no fix listed

Open the chart page →

5,864
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
prom/prometheus:v2.52.05c435642ca4d
github.com/docker/docker@v26.0.1+incompatible
no fix listed

Open the chart page →

20,223
cost-analyzerstatcan1.82.21 of 9See more

cost-analyzer statcan 1.82.2

1 of the 9 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
prom/prometheus:v2.22.2f7ffebdd428b
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
no fix listed

Open the chart page →

16,506
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
no fix listed

Open the chart page →

6,596
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
github.com/docker/docker@v23.0.1+incompatible
no fix listed

Open the chart page →

10,134
switchbladeswitchblade0.0.191 of 1See more

switchblade switchblade 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
public.ecr.aws/boundless-software/switchblade:release-v0.0.19-lcm01d8413d5075
github.com/docker/docker@v24.0.7+incompatible
no fix listed

Open the chart page →

1,360
explorersynapse0.2.161 of 6See more

explorer synapse 0.2.16

1 of the 6 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
ghcr.io/synapsecns/sanguine/explorer:latest00131e3d1eaf
github.com/docker/docker@v26.1.3+incompatible
no fix listed

Open the chart page →

8,518
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
no fix listed

Open the chart page →

7,480
act-runnertektonops0.1.22 of 2See more

act-runner tektonops 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-41568.

Container imageDigestPackageFixed in
gitea/act_runner:nightly7940221bcfc9
github.com/docker/docker@v25.0.15+incompatible
no fix listed
library/docker:23.0.6-dindafa5d5134900
github.com/docker/docker@v24.0.6+incompatible
no fix listed

Open the chart page →

4,212

Container images carrying it

572 by charts deploying them

A fixed version is listed for 1 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
falcosecurity/falcoctl:0.13.00eeb79adc580
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
falcosecurity/falco-driver-loader:0.44.17df783d5269a
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
flashcatcloud/categraf:latest42e6ab16472e
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
flomesh/fsm-manager:0.2.1122f849c70b25
github.com/docker/docker@v20.10.24+incompatible
no fix listed
1
fluxcd/helm-controller:v0.9.092b891e495d8
github.com/moby/moby@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
no fix listed
1
fluxcd/source-controller:v0.10.031a8c79a6803
github.com/moby/moby@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
no fix listed
1
fosrl/newt:1.10.4ccd2b0e9a049
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
galaxy/cloudman-server:lateste5c265fe9fcd
github.com/docker/docker@v20.10.17+incompatible
no fix listed
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
github.com/docker/docker@v27.5.1+incompatible
no fix listed
1
gitea/act_runner:0.2.11-dind-rootless6120b1165f3a
github.com/docker/docker@v25.0.5+incompatible
no fix listed
1
gitea/act_runner:nightly7940221bcfc9
github.com/docker/docker@v25.0.15+incompatible
no fix listed
1
gitea/act_runner:0.3.1c2a169c5e998
github.com/docker/docker@v25.0.13+incompatible
no fix listed
1
gitea/act_runner:0.2.11c57233403eff
github.com/docker/docker@v25.0.5+incompatible
no fix listed
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
github.com/docker/docker@v20.10.12+incompatible
no fix listed
1
gocrane/craned:v0.5.1a1400909118c
github.com/docker/docker@v20.10.2+incompatible
no fix listed
1
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
github.com/docker/docker@v20.10.12+incompatible
no fix listed
1
goharbor/harbor-acceld:0.2.13451103a6c8d8
github.com/docker/docker@v24.0.7+incompatible
no fix listed
1
goharbor/harbor-core:v2.5.386bf3031f4a7
github.com/docker/docker@v20.10.9+incompatible
no fix listed
1
goharbor/harbor-core:v2.11.1c017dd84ee96
github.com/docker/docker@v24.0.9+incompatible
no fix listed
1
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
github.com/docker/docker@v20.10.9+incompatible
no fix listed
1
goharbor/trivy-adapter-photon:v2.14.35c6f7162804c
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
github.com/docker/docker@v20.10.3-0.20220224222438-c78f6963a1c0+incompatible
no fix listed
1
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
github.com/docker/docker@v23.0.7-0.20230714215826-f00e7af96042+incompatible
no fix listed
1
grafana/agent:v0.44.23364714a2f64
github.com/docker/docker@v25.0.6+incompatible
no fix listed
1
grafana/agent:v0.20.0825c09373d27
github.com/docker/docker@v20.10.7+incompatible
no fix listed
1
grafana/agent:v0.40.3f6cbec9409be
github.com/docker/docker@v24.0.7+incompatible
no fix listed
1
grafana/alloy:v1.5.101a63f4e032c
github.com/docker/docker@v27.1.1+incompatible
no fix listed
1
grafana/alloy:v1.4.306bdcbb51fc2
github.com/docker/docker@v27.1.1+incompatible
no fix listed
1
grafana/alloy:v1.18.10f4434c92b3e
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
grafana/alloy:v1.18.0491b0578c049
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
grafana/alloy:v1.16.384b76d56c594
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
grafana/alloy:v1.11.38c7256f412fe
github.com/docker/docker@v28.3.3+incompatible
no fix listed
1
grafana/alloy:v1.19.2b8ec653c4423
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
grafana/alloy:v1.1.1c3dac4e26471
github.com/docker/docker@v25.0.5+incompatible
no fix listed
1
grafana/alloy:v1.14.0f50931848bd8
github.com/docker/docker@v28.5.2+incompatible
no fix listed
1
grafana/grafana:13.0.10f86bada30d6
github.com/moby/moby@v28.5.2+incompatible
no fix listed
1
grafana/grafana:13.0.1-security-012d1f9ae67c17
github.com/moby/moby@v28.5.2+incompatible
no fix listed
1
grafana/grafana:12.3.070d9599b186c
github.com/moby/moby@v27.5.1+incompatible
no fix listed
1
grafana/grafana:12.3.2ba93c9d192e5
github.com/moby/moby@v27.5.1+incompatible
no fix listed
1
grafana/otel-lgtm:0.11.1009d8c3ce4f3a
github.com/docker/docker@v28.2.2+incompatible
no fix listed
1
grafana/phlare:0.5.1330f990cdad9
github.com/docker/docker@v20.10.22+incompatible
no fix listed
1
grafana/promtail:2.6.1072527b12cdf
github.com/docker/docker@v20.10.12+incompatible
no fix listed
1
grafana/promtail:2.0.05fd12edcc694
github.com/docker/docker@v17.12.0-ce-rc1.0.20201009160326-9c15e82f19b0+incompatible
no fix listed
1
grafana/promtail:2.9.1063a2e57a5b14
github.com/docker/docker@v23.0.8+incompatible
no fix listed
1
grafana/promtail:3.5.165bfae480b57
github.com/docker/docker@v28.0.4+incompatible
no fix listed
1
grafana/promtail:3.6.18dcfdf466da0
github.com/docker/docker@v28.5.0+incompatible
no fix listed
1
grafana/promtail:2.7.0c16c710f7333
github.com/docker/docker@v20.10.18+incompatible
no fix listed
1
grafana/promtail:3.0.0d3de3da9431c
github.com/docker/docker@v25.0.3+incompatible
no fix listed
1
graviteeio/kubernetes-operator:4.12.1951dca8076ecc
github.com/moby/moby@v27.5.1+incompatible
no fix listed
1
hashicorp/boundary:0.15.3339b78b61750
github.com/docker/docker@v24.0.9+incompatible
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.