StackRadar

CVE-2026-41989

High

Advisory

Published 23 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,948
of 17,792 indexed, latest versions
Container images
2,155
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 1,948 of 17,792 indexed charts deploy, on 2,155 images.

Affected packageAffected versionsFixed inImages
libgcryptrpm1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8, 1.8.5-6.el8+7 more0:1.8.5-8.el8_10, 0:1.10.0-13.el9_8, 1.11.0-150700.5.10.1, 1.12.1-160000.3.1378
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+18 more1.9.4-3ubuntu3.2, 1.10.1-3+deb12u1, 1.10.3-2ubuntu0.1, 1.11.0-7+deb13u1+4 more1,777
OSV records
RHSA-2026:47117RHSA-2026:50147RLSA-2026:47117RLSA-2026:50147DEBIAN-CVE-2026-41989UBUNTU-CVE-2026-41989ECHO-afba-f32f-e1d7SUSE-SU-2026:22826-1SUSE-SU-2026:3182-1
Also known as
RHSA-2026:52950, RHSA-2026:52952, RHSA-2026:52953, RHSA-2026:58977, RHSA-2026:58978, RHSA-2026:58979, USN-8319-1

Charts affected

1,948 by stars
ChartLatestAffected imagesRadar Score
dbrepodbrepo1.13.315 of 25See more

dbrepo dbrepo 1.13.3

15 of the 25 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/valkey:latest0384ca2eec63
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

53,108
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

1,862
kubedashdevopstalesOfficialVerified publisher4.0.01 of 8See more

kubedash devopstales 4.0.0

1 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1

Open the chart page →

9,271
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10

Open the chart page →

6,237
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

6,982
directusdirectus-io2.1.02 of 3See more

directus directus-io 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

7,565
dominodominoVerified publisher0.1.112 of 3See more

domino domino 0.1.11

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

8,864
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

10,911
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

18,480
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

3,760
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

5,754
glpieftechcombr-glpiVerified publisher2.12.11See more

glpi eftechcombr-glpi 2.12.1

1 container image this version deploys carries CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:12.3.2a02fe89cb597
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

elchi-stackelchi1.13.03 of 10See more

elchi-stack elchi 1.13.0

3 of the 10 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
envoyproxy/envoy:v1.33.056da5afd7df3
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
library/mongo:6.0.12646902910d6a
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

15,540
enbuildenbuildVerified publisher0.0.504 of 6See more

enbuild enbuild 0.0.50

4 of the 6 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

31,674
beaconchain-explorerethereum-helm-chartsVerified publisher0.1.61 of 2See more

beaconchain-explorer ethereum-helm-charts 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
gobitfly/eth2-beaconchain-explorer:latest1d08a7986348
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

3,096
besuethereum-helm-chartsVerified publisher1.1.41 of 2See more

besu ethereum-helm-charts 1.1.4

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
hyperledger/besu:latest6f3f21ce5333
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

693
lighthouseethereum-helm-chartsVerified publisher1.1.91 of 2See more

lighthouse ethereum-helm-charts 1.1.9

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
sigp/lighthouse:latest9a62bb870545
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed

Open the chart page →

1,590
rethethereum-helm-chartsVerified publisher0.1.91 of 2See more

reth ethereum-helm-charts 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

678
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

11,530
mcrouterevryfs-ossVerified publisher0.4.01 of 2See more

mcrouter evryfs-oss 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed

Open the chart page →

6,511
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

4,357
fastapi-microservice-appfast-api-microservice-app1.3.04 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

4 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:7.0b6421fd6d1c5
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
omkara25/simple-microservice-app-user-service:v2d62cba548580
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

9,655
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,086
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

12,989
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
libgcrypt20@1.8.1-4ubuntu1.1
no fix listed

Open the chart page →

12,941
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

17,440
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

22,792
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libgcrypt20@1.8.5-5ubuntu1
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libgcrypt20@1.8.5-5ubuntu1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

35,444
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

15,728
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

11,680
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

14,004
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed

Open the chart page →

11,582
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

5,178
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

8,038
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

11,602
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

10,275
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

13,098
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

15,917
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
haveagitgat/tdarr_node:2.00.101e3f9328327d
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

31,185
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
libgcrypt20@1.8.5-5ubuntu1
no fix listed

Open the chart page →

7,701
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.33 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

3 of the 9 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
confluentinc/cp-kafka:7.4.4c0224a1adf7a
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
library/postgres:15.38775adb39f0d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

15,635
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

3,145
leantimegissilabs1.3.01 of 2See more

leantime gissilabs 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.6.218a16204dc96c
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

6,462
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

3,569
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

4,186
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

10,169
haproxy-redis-sentinelhaproxy-redis-sentinelVerified publisher0.1.32 of 2See more

haproxy-redis-sentinel haproxy-redis-sentinel 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/haproxy:3.1-bookworm49a0a0d6f0b8
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

4,317
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,464
hawkhawk1.1.52 of 4See more

hawk hawk 1.1.5

2 of the 4 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

13,676
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

4,754

Container images carrying it

2,155 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/minio/directpv:v4.0.84560083eb77d
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/mittwald/kube-mail:latest04f1099241fc
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
libgcrypt20@1.6.5-2ubuntu0.6
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/nmstate/kubernetes-nmstate-operator:v0.87.04dce694f01ea
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/open-cluster-management/multicluster-controlplane:latest9888240f644b
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
libgcrypt@1.8.3-4.el8
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libgcrypt@1.8.3-4.el8
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libgcrypt20@1.6.5-2ubuntu0.5
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/projectquay/clair:4.9.023329c3368e4
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/strimzi/operator:0.45.158c727cd2e68
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.