StackRadar

CVE-2026-4437

High

Advisory

Published 20 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
996
of 17,787 indexed, latest versions
Container images
1,167
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-4437 affecting package glibc for versions less than 2.38-19

Carried by container images the latest versions of 996 of 17,787 indexed charts deploy, on 1,167 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.36-9, 2.36-9+deb12u1, 2.36-9+deb12u3, 2.36-9+deb12u4+19 more2.36-9+deb12u14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e2, 2.41-12+deb13u31,137
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+7 more2.43-r420
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.38-16.azl3, 2.38-18.azl32.38-193
OSV records
CGA-28jr-9938-gm2mDEBIAN-CVE-2026-4437UBUNTU-CVE-2026-4437AZL-80279ECHO-3c7d-5484-9e80
Also known as
CGA-2vmx-p942-gvjv, CGA-3ppc-8crm-xcwj, CGA-447g-pcpw-fghr, CGA-4rv8-gm3c-8hh4, CGA-7wrv-wrfh-p8c9, CGA-9xfq-4v63-2prp, CGA-f493-mp32-m44p, CGA-pm9m-w6f6-3vcx, CGA-qfw8-frvf-4g9v, CGA-qgv8-8g95-5gfq, CGA-qjc4-84cm-3mxj, CGA-qvv7-4qrx-v7f8, CGA-rvmr-63g4-4mrj, CGA-wq5x-prm6-fhhx, CGA-xq4q-286c-rcpc, USN-8611-1

Charts affected

996 by stars
ChartLatestAffected imagesRadar Score
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u14

Open the chart page →

9,736
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

5,688
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
voltha/voltha-envoy:1.6.059ab2a00f712
eglibc@2.19-0ubuntu6.13
no fix listed

Open the chart page →

93,965
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

11,003
llm-stackopenproject-helm-chartsVerified publisher1.1.01 of 2See more

llm-stack openproject-helm-charts 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,977
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

4,095
voyager-gatewayopenshift2026.1.152 of 2See more

voyager-gateway openshift 2026.1.15

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
glibc@2.36-9+deb12u13
2.36-9+deb12u14
ghcr.io/voyagermesh/gateway:v1.6.223f4da194134
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

2,579
kubernetes-syncopslevelVerified publisher0.8.01 of 1See more

kubernetes-sync opslevel 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

1,729
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
replicated/replicated-sdk:1.0.0-beta.318751b4963250
glibc@2.40-r2
2.43-r4

Open the chart page →

5,609
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
eglibc@2.19-0ubuntu6.14
no fix listed

Open the chart page →

26,367
hiveopstty0.1.91 of 4See more

hive opstty 0.1.9

1 of the 4 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

4,539
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

10,965
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.020 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

20 of the 40 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
chromadb/chroma:1.5.7fc8dc8e11fb2
glibc@2.41-12+deb13u2
2.41-12+deb13u3
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
glibc@2.36-9+deb12u7
2.36-9+deb12u14
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
glibc@2.36-9+deb12u13
2.36-9+deb12u14
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

72,154
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

874
loki-standaloneot-container-kit1.0.22 of 5See more

loki-standalone ot-container-kit 1.0.2

2 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
glibc@2.41-12+deb13u2
2.41-12+deb13u3
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

3,593
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
glibc@2.41-12+deb13u2
2.41-12+deb13u3
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

3,390
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

3,133
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

11,095
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
glibc@2.36-9+deb12u7
2.36-9+deb12u14
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

25,681
parcial-1parcial-1-chart1.0.01 of 5See more

parcial-1 parcial-1-chart 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
esteban1930/backend-1:1.31.01ebe075675de
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

3,852
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8

Open the chart page →

4,159
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

2,383
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

3,866
vaultwardenpascaliskeVerified publisher2.0.01 of 1See more

vaultwarden pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

3,405
matomopetbattle11.0.12 of 2See more

matomo petbattle 11.0.1

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

10,801
mariadbpetersandor15.2.51 of 1See more

mariadb petersandor 15.2.5

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/mariadb:11.7.216a7dae804fb
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

2,758
memcachedpetersandor14.1.61 of 1See more

memcached petersandor 14.1.6

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/memcached:1.6.38dd8f2cba9a5b
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,280
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

4,007
redispetersandor15.2.21 of 1See more

redis petersandor 15.2.2

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/redis:7.4.24e65bf641805
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,662
pgcatpgcatVerified publisher0.2.51 of 1See more

pgcat pgcat 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

3,316
dummy-servicephanVerified publisher0.3.41 of 1See more

dummy-service phan 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
phan2410/dummy-service:0.0.89c6ed6de26ca
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,731
falcon-asgi-serverphanVerified publisher0.1.01 of 1See more

falcon-asgi-server phan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
phan2410/falcon-asgi-server:0.1.04a86d138832d
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,215
phronetisphronetis0.1.272 of 2See more

phronetis phronetis 0.1.27

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
knspar/phronetis:0.1.4609499d2dc91a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
knspar/phronetis-operator:0.1.60c4f0543ee58
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

15,077
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8

Open the chart page →

7,149
subgraph-oraclepinaxVerified publisher0.0.11 of 1See more

subgraph-oracle pinax 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

11,373
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8

Open the chart page →

4,938
pingdom-operatorpingdom-operator0.0.201 of 1See more

pingdom-operator pingdom-operator 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

11,017
planectlplanectlVerified publisher0.7.04 of 10See more

planectl planectl 0.7.0

4 of the 10 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
glibc@2.36-9+deb12u10
2.36-9+deb12u14
library/node:208f693eaa7e0a
glibc@2.36-9+deb12u13
2.36-9+deb12u14
quay.io/argoproj/argocd:v2.14.115fc69e31c755
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

25,626
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
glibc@2.41-12+deb13u1
2.41-12+deb13u3

Open the chart page →

4,273
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

11,680
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
glibc@2.36-9+deb12u6
2.36-9+deb12u14

Open the chart page →

11,181
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

6,575
polyaxonpolyaxon2.16.41 of 5See more

polyaxon polyaxon 2.16.4

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

13,520
beylaportefaix-hub0.1.01 of 1See more

beyla portefaix-hub 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
grafana/beyla:1.3.336d07f8d276e
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

2,452
quickwitportefaix-hub0.1.11 of 1See more

quickwit portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.1d29332bdadcc
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

3,185
postgrespostgresVerified publisher0.1.11 of 1See more

postgres postgres 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/postgres:13.12ced3ba927f4c
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

4,363
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

4,996
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
glibc@2.36-9+deb12u1
2.36-9+deb12u14

Open the chart page →

6,932
prometheus-optimizerprometheus-optimizer0.2.221 of 1See more

prometheus-optimizer prometheus-optimizer 0.2.22

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

4,226
flaskDiaryptj-miniproject2.1.21 of 2See more

flaskDiary ptj-miniproject 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
freedom98/flask:k3.0d7ce1533f297
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,965

Container images carrying it

1,167 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
openmined/syft-backend:0.9.5b72f74a68b32
glibc@2.40-r8
2.43-r4
1
openmined/syft-frontend:0.9.5d11524a3854a
glibc@2.40-r8
2.43-r4
1
openpolicyagent/opa:0.53.16a58dea59933
glibc@2.37-r7
2.43-r4
1
openproject/hocuspocus:release-338001b288dc1359dfb5
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
openvino/model_server:2025.2.11e7cd1d70cc1
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
openvpn/openvpn-as:latest2253c10ec652
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
opsmx11/issuegen:v2.1.05c50ca123d88
eglibc@2.19-0ubuntu6.14
no fix listed
1
outlinewiki/outline:0.82.0494dfb9249a6
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
phan2410/dummy-service:0.0.89c6ed6de26ca
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
photoprism/photoprism:251130db16ee6b1ba3
glibc@2.42-0ubuntu3
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
glibc@2.41-12
2.41-12+deb13u3
1
pk910/powfaucet:v2-stable3dcae6a62896
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
pococze/python-hello-elos:2.0.07a1aab425e51
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
praravind1801/helmimages:3.0.0f29d637b9ce1
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
glibc@2.41-12
2.41-12+deb13u3
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
proxysql/proxysql:3.0.8947a7abad45b
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
proxysql/proxysql:2.7.3a4d6c35c2949
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
qdrant/qdrant:v1.7.45f2a56b95266
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
qdrant/qdrant:v1.4.166ee661d5241
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
qonstrukt/php:8.4-v8-apache089af7925aa1
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
quickwit/quickwit:v0.8.1d29332bdadcc
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
qxip/qryn:3.2.3977acc9c7a9fd
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
readysettech/sqp:latest588f3507280e
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
readysettech/sqp-duckdb:latest67a83203ce60
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
redash/redash:25.8.000d813437db5
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
redash/redash:26.3.0c5c9148f5c38
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
glibc@2.40-r2
2.43-r4
1
resouer/redis-slave:v2e2f198b49ba7
eglibc@2.19-0ubuntu6.6
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
rnwood/smtp4dev:3.6.1912304153668
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
robustadev/kubewatch:v2.9.00457a51e36e8
glibc@2.40-r2
2.43-r4
1
rocketadmin/rocketadmin:1.17.710955ef540b9
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
rocketchat/freeswitch:stablecfba5c20a5cc
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
rotationalio/geoping:1.3.034bcb6fc3cb7
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
rotationalio/honu:0.5.069fd30c2e31c
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
rotationalio/rotational-api:1.3.0f1a2d05d8fff
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
rotationalio/vanity:1.2.0d77350f69b45
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
rrobetti/ojp:0.1.0-beta1141bd88232b
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
1
rtuszik/photon-docker:2.4.021549c60f9e6
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
ryshe/terraria:latestb1c89f7f359a
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
ryuunosukeds3/orbital:latest0879f7261b10
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
santisbon/evwatcher:latestc4e994ca4540
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
santisbon/evworker:lateste807283f8d69
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.