StackRadar

CVE-2026-41989

High

Advisory

Published 23 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,959
of 17,790 indexed, latest versions
Container images
2,171
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 1,959 of 17,790 indexed charts deploy, on 2,171 images.

Affected packageAffected versionsFixed inImages
libgcryptrpm1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8, 1.8.5-6.el8+7 more0:1.8.5-8.el8_10, 0:1.10.0-13.el9_8, 1.11.0-150700.5.10.1, 1.12.1-160000.3.1379
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+18 more1.9.4-3ubuntu3.2, 1.10.1-3+deb12u1, 1.10.3-2ubuntu0.1, 1.11.0-7+deb13u1+4 more1,792
OSV records
RHSA-2026:47117RHSA-2026:50147RLSA-2026:47117RLSA-2026:50147DEBIAN-CVE-2026-41989UBUNTU-CVE-2026-41989ECHO-afba-f32f-e1d7SUSE-SU-2026:22826-1SUSE-SU-2026:3182-1
Also known as
RHSA-2026:52950, RHSA-2026:52952, RHSA-2026:52953, RHSA-2026:58977, RHSA-2026:58978, RHSA-2026:58979, USN-8319-1

Charts affected

1,959 by stars
ChartLatestAffected imagesRadar Score
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

13,792
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

5,440
aibrixdanchevVerified publisher0.7.01 of 5See more

aibrix danchev 0.7.0

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
aibrix/metadata-service:v0.7.063fb81a64377
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,343
data-fairdata354-helmVerified publisher1.1.22 of 12See more

data-fair data354-helm 1.1.2

2 of the 12 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

38,441
datacube-explorerdatacube-charts0.5.321 of 1See more

datacube-explorer datacube-charts 0.5.32

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
opendatacube/explorer:latest120457ffcd69
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

4,915
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10

Open the chart page →

4,759
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/valkey:latest0384ca2eec63
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

53,108
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

1,862
kubedashdevopstalesOfficialVerified publisher4.0.01 of 8See more

kubedash devopstales 4.0.0

1 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1

Open the chart page →

9,271
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10

Open the chart page →

6,237
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

6,982
directusdirectus-io2.1.02 of 3See more

directus directus-io 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

7,565
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

8,864
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

10,911
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

18,480
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

3,760
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

5,754
glpieftechcombr-glpiVerified publisher2.12.01 of 5See more

glpi eftechcombr-glpi 2.12.0

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:12.3.2a02fe89cb597
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

4,415
elchi-stackelchi1.13.03 of 10See more

elchi-stack elchi 1.13.0

3 of the 10 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
envoyproxy/envoy:v1.33.056da5afd7df3
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
library/mongo:6.0.12646902910d6a
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

15,540
enbuildenbuildVerified publisher0.0.504 of 6See more

enbuild enbuild 0.0.50

4 of the 6 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

31,674
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

3,096
besuethereum-helm-chartsVerified publisher1.1.41 of 2See more

besu ethereum-helm-charts 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
hyperledger/besu:latest6f3f21ce5333
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

693
lighthouseethereum-helm-chartsVerified publisher1.1.91 of 2See more

lighthouse ethereum-helm-charts 1.1.9

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
sigp/lighthouse:latest9a62bb870545
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed

Open the chart page →

1,590
rethethereum-helm-chartsVerified publisher0.1.91 of 2See more

reth ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

678
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

11,530
mcrouterevryfs-ossVerified publisher0.4.01 of 2See more

mcrouter evryfs-oss 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed

Open the chart page →

6,511
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

4,357
fastapi-microservice-appfast-api-microservice-app1.3.04 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

4 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
omkara25/simple-microservice-app-user-service:v2d62cba548580
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

9,655
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,086
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

12,989
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
libgcrypt20@1.8.1-4ubuntu1.1
no fix listed

Open the chart page →

12,941
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

17,440
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libgcrypt20@1.8.5-5ubuntu1
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libgcrypt20@1.8.5-5ubuntu1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

35,444
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

15,728
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

11,680
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed

Open the chart page →

11,582
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

5,178
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

8,038
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

11,602
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

10,275
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

13,098
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

15,917
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
haveagitgat/tdarr_node:2.00.101e3f9328327d
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

31,185
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

7,701
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.33 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

3 of the 9 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
confluentinc/cp-kafka:7.4.4c0224a1adf7a
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
library/postgres:15.38775adb39f0d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

15,635
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

3,145
leantimegissilabs1.3.01 of 2See more

leantime gissilabs 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.6.218a16204dc96c
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

6,462
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

3,569
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

4,186
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

10,169

Container images carrying it

2,171 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/aerokube/jumphost:1.0.170fd7c00418d
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/aerokube/keygen:1.0.1578934444f04
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/backube/volsync:0.16.00d03a6aad575
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/everythingascode/apishift:v0.3.08fbbcd23b902
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
1
quay.io/fengyuanxing/zte_endogenous_security/kite-agent:V2.0.0734808044936
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
quay.io/fiware/contract-management:3.3.122bcfcf874451
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-account:1.18.06b25aac03414
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.