StackRadar

CVE-2026-41989

High

Advisory

Published 23 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,958
of 17,792 indexed, latest versions
Container images
2,170
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 1,958 of 17,792 indexed charts deploy, on 2,170 images.

Affected packageAffected versionsFixed inImages
libgcryptrpm1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8, 1.8.5-6.el8+7 more0:1.8.5-8.el8_10, 0:1.10.0-13.el9_8, 1.11.0-150700.5.10.1, 1.12.1-160000.3.1378
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+18 more1.9.4-3ubuntu3.2, 1.10.1-3+deb12u1, 1.10.3-2ubuntu0.1, 1.11.0-7+deb13u1+4 more1,792
OSV records
RHSA-2026:47117RHSA-2026:50147RLSA-2026:47117RLSA-2026:50147DEBIAN-CVE-2026-41989UBUNTU-CVE-2026-41989ECHO-afba-f32f-e1d7SUSE-SU-2026:22826-1SUSE-SU-2026:3182-1
Also known as
RHSA-2026:52950, RHSA-2026:52952, RHSA-2026:52953, RHSA-2026:58977, RHSA-2026:58978, RHSA-2026:58979, USN-8319-1

Charts affected

1,958 by stars
ChartLatestAffected imagesRadar Score
fhir-serverlinuxforhealth0.9.11 of 2See more

fhir-server linuxforhealth 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/linuxforhealth/fhir-schematool:5.1.1f62cefee6ef6
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10

Open the chart page →

1,052
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

7,934
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

6,776
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

7,240
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,781
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-assure-identity:2.0.0147854a3c916
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-audit:2.0.079428add7f38
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-binary-storage:2.0.053decadc102d
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-deployment:2.0.0ea8110886d38
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-management-api:2.0.0b9a23345eabd
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
lumenvox/cloud-voice-verifier:2.0.014170ad34903
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

71,369
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,773
magentomagento3.2.35 of 12See more

magento magento 3.2.3

5 of the 12 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
library/rabbitmq:4.1.0-management935b3f84c1e4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1
longhornio/longhorn-ui:v1.10.0e60f36161511
libgcrypt@1.11.0-150700.5.7.1
1.11.0-150700.5.10.1

Open the chart page →

13,685
mcp-orchestratormagertronVerified publisher3.8.311 of 7See more

mcp-orchestrator magertron 3.8.31

1 of the 7 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
curtismager20/mcp-orchestrator:3.8.312c8bdd49aaee
libgcrypt20@1.10.3-2ubuntu0.2
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

1,707
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

3,026
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

19,206
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

4,221
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10

Open the chart page →

6,922
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
libgcrypt20@1.11.0-7build1
1.11.0-7ubuntu0.1

Open the chart page →

11,106
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

13,819
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

3,738
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

37,538
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

347
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed

Open the chart page →

14,398
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8

Open the chart page →

6,120
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,079
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

14,920
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

4,216
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

2,124
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

5,875
opentelemetry-demoopentelemetry-helmVerified publisher0.41.23 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

3 of the 34 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

23,064
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,960
opikopikOfficialVerified publisher2.2.662 of 13See more

opik opik 2.2.66

2 of the 13 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2
redis/redis-stack-server:7.2.0-v10e44b2b49d059
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

14,454
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
libgcrypt20@1.9.4-3ubuntu3.2
no fix listed
shaowenchen/ops-server:latest315444f703f4
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

9,214
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

8,591
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,897
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

7,840
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
libgcrypt20@1.8.1-4ubuntu1.2
no fix listed

Open the chart page →

4,743
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
libgcrypt20@1.11.0-7
1.11.0-7+deb13u1

Open the chart page →

7,160
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,632
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

5,230
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

32,112
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

5,503
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

3,239
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

24,012
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

6,914
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1

Open the chart page →

2,838
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,519
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

2,683
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
library/rabbitmq:4.3.4-managementeb5295d08332
libgcrypt20@1.10.3-2ubuntu0.1
1.12.0-2ubuntu0.1~Fips1~rc11

Open the chart page →

12,026
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.2

Open the chart page →

7,510
rke2-ingress-nginxrke2-charts4.15.1101 of 2See more

rke2-ingress-nginx rke2-charts 4.15.110

1 of the 2 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
libgcrypt@1.11.1-160000.2.2
1.12.1-160000.3.1

Open the chart page →

737
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1

Open the chart page →

6,595
dev-feedrm3lVerified publisher3.1.22 of 3See more

dev-feed rm3l 3.1.2

2 of the 3 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
rm3l/dev-feed-api:latest9a7f732245a3
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8

Open the chart page →

9,932
mac-ouirm3lVerified publisher1.25.01 of 1See more

mac-oui rm3l 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-41989.

Container imageDigestPackageFixed in
rm3l/mac-oui:1.8.03a5e1f95c132
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10

Open the chart page →

1,975

Container images carrying it

2,170 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/maximilianopizarro/custom-rhcl-console:v0.1.270bb0cabd653
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuralbank-backend:latesta53899fcfc01
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/nfl-api-bills:1.0.1b596a4687bb0
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/maximilianopizarro/nfl-wallet-api-customers:1.0.1d50c80a85b35
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/maximilianopizarro/nfl-wallet-api-raiders:1.0.1f9c71dc2bc5f
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libgcrypt@1.8.5-6.el8
0:1.8.5-8.el8_10
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libgcrypt@1.8.3-4.el8
0:1.8.5-8.el8_10
1
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/minio/directpv:v4.0.84560083eb77d
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/mittwald/kube-mail:latest04f1099241fc
libgcrypt20@1.10.1-3
1.10.1-3+deb12u1
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
libgcrypt20@1.6.5-2ubuntu0.6
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/nmstate/kubernetes-nmstate-operator:v0.87.04dce694f01ea
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
libgcrypt@1.10.0-11.el9
0:1.10.0-13.el9_8
1
quay.io/open-cluster-management/multicluster-controlplane:latest9888240f644b
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
libgcrypt@1.8.3-4.el8
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libgcrypt@1.8.3-4.el8
0:1.8.5-8.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libgcrypt20@1.6.5-2ubuntu0.5
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/projectquay/clair:4.9.023329c3368e4
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
libgcrypt@1.8.5-7.el8_6
0:1.8.5-8.el8_10
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libgcrypt@1.10.0-10.el9_2
0:1.10.0-13.el9_8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libgcrypt@1.8.5-4.el8
0:1.8.5-8.el8_10
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.