CVE-2026-43699
MediumAdvisory
Published 29 Jun 2026In the index since 8 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 6.5
- base score, highest
- EPSS
- 0.004
- 33rd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 3
- of 17,781 indexed, latest versions
- Container images
- 3
- deployed by those charts
- Fix available
- None
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 3 of 17,781 indexed charts deploy, on 3 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| qtwebkit-opensource-srcdeb | 5.212.0~alpha4-1ubuntu2.1, 5.212.0~alpha4-36 | no fix listed | 2 |
| webkit2gtkdeb | 2.38.6-0ubuntu0.20.04.1, 2.50.4-0ubuntu0.22.04.1 | no fix listed | 2 |
- OSV records
- UBUNTU-CVE-2026-43699
Charts affected
3 by stars
Container images carrying it
3 by charts deploying them
A fixed version is listed for 0 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| fiware/ | 29456835bb2c | qtwebkit-opensource-src webkit2gtk | no fix listed no fix listed | 1 |
| qonstrukt/ | 089af7925aa1 | qtwebkit-opensource-src | no fix listed | 1 |
| trueosiris/ | 9356f98ad561 | webkit2gtk | no fix listed | 1 |