StackRadar

CVE-2026-41989

High

Advisory

Published 23 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,958
of 17,792 indexed, latest versions
Container images
2,170
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 1,958 of 17,792 indexed charts deploy, on 2,170 images.

Affected packageAffected versionsFixed inImages
libgcryptrpm1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8, 1.8.5-6.el8+7 more0:1.8.5-8.el8_10, 0:1.10.0-13.el9_8, 1.11.0-150700.5.10.1, 1.12.1-160000.3.1378
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+18 more1.9.4-3ubuntu3.2, 1.10.1-3+deb12u1, 1.10.3-2ubuntu0.1, 1.11.0-7+deb13u1+4 more1,792
OSV records
RHSA-2026:47117RHSA-2026:50147RLSA-2026:47117RLSA-2026:50147DEBIAN-CVE-2026-41989UBUNTU-CVE-2026-41989ECHO-afba-f32f-e1d7SUSE-SU-2026:22826-1SUSE-SU-2026:3182-1
Also known as
RHSA-2026:52950, RHSA-2026:52952, RHSA-2026:52953, RHSA-2026:58977, RHSA-2026:58978, RHSA-2026:58979, USN-8319-1

Charts affected

1,958 by stars
ChartLatestAffected imagesRadar Score
fhir-serverlinuxforhealth0.9.11 of 2See more

fhir-server linuxforhealth 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/linuxforhealth/fhir-schematool:5.1.1f62cefee6ef6
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10

Open the chart page →

1,052
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

7,934
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

6,776
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

7,240
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,781
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-assure-identity:2.0.0147854a3c916
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-audit:2.0.079428add7f38
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-binary-storage:2.0.053decadc102d
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-deployment:2.0.0ea8110886d38
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-management-api:2.0.0b9a23345eabd
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-voice-verifier:2.0.014170ad34903
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

71,369
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,773
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
library/rabbitmq:4.1.0-management935b3f84c1e4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1
longhornio/longhorn-ui:v1.10.0e60f36161511
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1

Open the chart page →

13,685
mcp-orchestratormagertronVerified publisher3.8.311 of 7See more

mcp-orchestrator magertron 3.8.31

1 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
curtismager20/mcp-orchestrator:3.8.312c8bdd49aaee
libgcrypt20@1.10.3-2ubuntu0.2
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

1,707
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

3,026
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

19,206
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

4,221
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10

Open the chart page →

6,922
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
libgcrypt20@1.11.0-7build1
1.11.0-7ubuntu0.1

Open the chart page →

11,106
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

13,819
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

3,738
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

37,538
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

347
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

14,398
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

6,120
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,079
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

14,920
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

4,216
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

2,124
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,875
opentelemetry-demoopentelemetry-helmVerified publisher0.41.23 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

3 of the 34 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

23,064
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,960
opikopikOfficialVerified publisher2.2.662 of 13See more

opik opik 2.2.66

2 of the 13 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
redis/redis-stack-server:7.2.0-v10e44b2b49d059
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

14,454
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
shaowenchen/ops-server:latest315444f703f4
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

9,214
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

8,591
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,897
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

7,840
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

4,743
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1

Open the chart page →

7,160
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,632
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

5,230
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

32,112
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

5,503
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

3,239
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

24,012
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

6,914
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

2,838
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,519
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,683
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
library/rabbitmq:4.3.4-managementeb5295d08332
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

12,026
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,510
rke2-ingress-nginxrke2-charts4.15.1101 of 2See more

rke2-ingress-nginx rke2-charts 4.15.110

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
libgcrypt@1.11.1-160000.2.2
1.12.1-160000.3.1

Open the chart page →

737
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,595
dev-feedrm3lVerified publisher3.1.22 of 3See more

dev-feed rm3l 3.1.2

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
rm3l/dev-feed-api:latest9a7f732245a3
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

9,932
mac-ouirm3lVerified publisher1.25.01 of 1See more

mac-oui rm3l 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
rm3l/mac-oui:1.8.03a5e1f95c132
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10

Open the chart page →

1,975

Container images carrying it

2,170 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/zazukoians/qlever-server:v0.10.11de7869ab46e
libgcrypt20@1.10.3-2ubuntu0.2
1.12.0-2ubuntu0.1~Fips1~rc11
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.2ae9ae0925ff8
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
public.ecr.aws/aktosecurity/redis47200b041382
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
libgcrypt20@1.11.0-7+e4
1.11.0-7+e6
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.