StackRadar

CVE-2026-4437

High

Advisory

Published 20 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
996
of 17,787 indexed, latest versions
Container images
1,167
deployed by those charts
Fix available
3 of 4
affected packages

CVE-2026-4437 affecting package glibc for versions less than 2.38-19

Carried by container images the latest versions of 996 of 17,787 indexed charts deploy, on 1,167 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.36-9, 2.36-9+deb12u1, 2.36-9+deb12u3, 2.36-9+deb12u4+19 more2.36-9+deb12u14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e2, 2.41-12+deb13u31,137
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+7 more2.43-r420
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.38-16.azl3, 2.38-18.azl32.38-193
OSV records
CGA-28jr-9938-gm2mDEBIAN-CVE-2026-4437UBUNTU-CVE-2026-4437AZL-80279ECHO-3c7d-5484-9e80
Also known as
CGA-2vmx-p942-gvjv, CGA-3ppc-8crm-xcwj, CGA-447g-pcpw-fghr, CGA-4rv8-gm3c-8hh4, CGA-7wrv-wrfh-p8c9, CGA-9xfq-4v63-2prp, CGA-f493-mp32-m44p, CGA-pm9m-w6f6-3vcx, CGA-qfw8-frvf-4g9v, CGA-qgv8-8g95-5gfq, CGA-qjc4-84cm-3mxj, CGA-qvv7-4qrx-v7f8, CGA-rvmr-63g4-4mrj, CGA-wq5x-prm6-fhhx, CGA-xq4q-286c-rcpc, USN-8611-1

Charts affected

996 by stars
ChartLatestAffected imagesRadar Score
commonground-gatewayopencatalogi1.5.31 of 7See more

commonground-gateway opencatalogi 1.5.3

1 of the 7 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u14

Open the chart page →

9,736
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

5,688
sebaopencord1.0.01 of 17See more

seba opencord 1.0.0

1 of the 17 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
voltha/voltha-envoy:1.6.059ab2a00f712
eglibc@2.19-0ubuntu6.13
no fix listed

Open the chart page →

93,965
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

11,003
llm-stackopenproject-helm-chartsVerified publisher1.1.01 of 2See more

llm-stack openproject-helm-charts 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
apache/apisix:3.16.0-ubuntu5e47692cac00
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,977
mattermost-team-editionopenshift6.6.831 of 4See more

mattermost-team-edition openshift 6.6.83

1 of the 4 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
mattermost/mattermost-team-edition:10.11.2b8bd1246cb3a
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

4,095
voyager-gatewayopenshift2026.1.152 of 2See more

voyager-gateway openshift 2026.1.15

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/voyagermesh/crd-manager:v0.1.013fd0cccafe8
glibc@2.36-9+deb12u13
2.36-9+deb12u14
ghcr.io/voyagermesh/gateway:v1.6.223f4da194134
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

2,579
kubernetes-syncopslevelVerified publisher0.8.01 of 1See more

kubernetes-sync opslevel 0.8.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
public.ecr.aws/opslevel/kubectl-opslevel:v2024.9.571697b5ff713
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

1,729
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
replicated/replicated-sdk:1.0.0-beta.318751b4963250
glibc@2.40-r2
2.43-r4

Open the chart page →

5,609
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
eglibc@2.19-0ubuntu6.14
no fix listed

Open the chart page →

26,367
hiveopstty0.1.91 of 4See more

hive opstty 0.1.9

1 of the 4 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

4,539
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

10,965
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.020 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

20 of the 40 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/git:latest4b08d0c5af8d
glibc@2.36-9+deb12u10
2.36-9+deb12u14
chromadb/chroma:1.5.7fc8dc8e11fb2
glibc@2.41-12+deb13u2
2.41-12+deb13u3
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
glibc@2.36-9+deb12u7
2.36-9+deb12u14
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
glibc@2.36-9+deb12u13
2.36-9+deb12u14
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

72,154
fluent-bitot-container-kit0.0.31 of 2See more

fluent-bit ot-container-kit 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

874
loki-standaloneot-container-kit1.0.22 of 5See more

loki-standalone ot-container-kit 1.0.2

2 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
glibc@2.41-12+deb13u2
2.41-12+deb13u3
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

3,593
vm-standaloneot-container-kit0.0.42 of 6See more

vm-standalone ot-container-kit 0.0.4

2 of the 6 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quay.io/opstree/grafana:12.4.3b61c1ed2f015
glibc@2.41-12+deb13u2
2.41-12+deb13u3
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
glibc@2.41-12+deb13u2
2.41-12+deb13u3

Open the chart page →

3,390
avap2p-avs0.1.01 of 1See more

ava p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
avaprotocol/ap-avs:1.2.0c430ea5c37d6
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

3,133
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

11,095
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
glibc@2.36-9+deb12u7
2.36-9+deb12u14
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

25,681
parcial-1parcial-1-chart1.0.01 of 5See more

parcial-1 parcial-1-chart 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
esteban1930/backend-1:1.31.01ebe075675de
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

3,852
istio-operatorparticuleio1.7.01 of 1See more

istio-operator particuleio 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
gcr.io/istio-testing/operator:latest8d4576f7b98f
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8

Open the chart page →

4,159
ctfdpascaliskeVerified publisher2.0.01 of 1See more

ctfd pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/ctfd/ctfd:3.8.2870e396fddf8
glibc@2.36-9+deb12u13
2.36-9+deb12u14

Open the chart page →

2,383
linkdingpascaliskeVerified publisher3.0.01 of 1See more

linkding pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/sissbruecker/linkding:1.45.061b2eb9eed8e
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

3,866
vaultwardenpascaliskeVerified publisher2.0.01 of 1See more

vaultwarden pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
glibc@2.41-12
2.41-12+deb13u3

Open the chart page →

3,405
matomopetbattle11.0.12 of 2See more

matomo petbattle 11.0.1

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

10,801
mariadbpetersandor15.2.51 of 1See more

mariadb petersandor 15.2.5

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/mariadb:11.7.216a7dae804fb
glibc@2.36-9+deb12u9
2.36-9+deb12u14

Open the chart page →

2,758
memcachedpetersandor14.1.61 of 1See more

memcached petersandor 14.1.6

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/memcached:1.6.38dd8f2cba9a5b
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,280
mongodbpetersandor14.1.81 of 1See more

mongodb petersandor 14.1.8

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/mongodb:8.0.8b3bd5b6be9a0
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

4,007
redispetersandor15.2.21 of 1See more

redis petersandor 15.2.2

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnami/redis:7.4.24e65bf641805
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,662
pgcatpgcatVerified publisher0.2.51 of 1See more

pgcat pgcat 0.2.5

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

3,316
dummy-servicephanVerified publisher0.3.41 of 1See more

dummy-service phan 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
phan2410/dummy-service:0.0.89c6ed6de26ca
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

5,731
falcon-asgi-serverphanVerified publisher0.1.01 of 1See more

falcon-asgi-server phan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
phan2410/falcon-asgi-server:0.1.04a86d138832d
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

8,215
phronetisphronetis0.1.272 of 2See more

phronetis phronetis 0.1.27

2 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
knspar/phronetis:0.1.4609499d2dc91a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
knspar/phronetis-operator:0.1.60c4f0543ee58
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

15,077
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8

Open the chart page →

7,149
subgraph-oraclepinaxVerified publisher0.0.11 of 1See more

subgraph-oracle pinax 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

11,373
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8

Open the chart page →

4,938
pingdom-operatorpingdom-operator0.0.201 of 1See more

pingdom-operator pingdom-operator 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

11,017
planectlplanectlVerified publisher0.7.04 of 10See more

planectl planectl 0.7.0

4 of the 10 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
2.36-9+deb12u14
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
glibc@2.36-9+deb12u10
2.36-9+deb12u14
library/node:208f693eaa7e0a
glibc@2.36-9+deb12u13
2.36-9+deb12u14
quay.io/argoproj/argocd:v2.14.115fc69e31c755
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

25,626
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
glibc@2.41-12+deb13u1
2.41-12+deb13u3

Open the chart page →

4,273
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

11,680
libretimepodzone-chartsVerified publisher0.4.11 of 9See more

libretime podzone-charts 0.4.1

1 of the 9 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/postgres:16.24aea012537ed
glibc@2.36-9+deb12u6
2.36-9+deb12u14

Open the chart page →

11,181
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

6,575
polyaxonpolyaxon2.16.41 of 5See more

polyaxon polyaxon 2.16.4

1 of the 5 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

13,520
beylaportefaix-hub0.1.01 of 1See more

beyla portefaix-hub 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
grafana/beyla:1.3.336d07f8d276e
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

2,452
quickwitportefaix-hub0.1.11 of 1See more

quickwit portefaix-hub 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.1d29332bdadcc
glibc@2.36-9+deb12u4
2.36-9+deb12u14

Open the chart page →

3,185
postgrespostgresVerified publisher0.1.11 of 1See more

postgres postgres 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
library/postgres:13.12ced3ba927f4c
glibc@2.36-9+deb12u3
2.36-9+deb12u14

Open the chart page →

4,363
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
glibc@2.36-9+deb12u7
2.36-9+deb12u14

Open the chart page →

4,996
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
glibc@2.36-9+deb12u1
2.36-9+deb12u14

Open the chart page →

6,932
prometheus-optimizerprometheus-optimizer0.2.221 of 1See more

prometheus-optimizer prometheus-optimizer 0.2.22

1 of the 1 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
glibc@2.36-9+deb12u8
2.36-9+deb12u14

Open the chart page →

4,226
flaskDiaryptj-miniproject2.1.21 of 2See more

flaskDiary ptj-miniproject 2.1.2

1 of the 2 container images this version deploys carry CVE-2026-4437.

Container imageDigestPackageFixed in
freedom98/flask:k3.0d7ce1533f297
glibc@2.36-9+deb12u10
2.36-9+deb12u14

Open the chart page →

2,965

Container images carrying it

1,167 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/alloy:v1.14.0f50931848bd8
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
grafana/beyla:1.3.336d07f8d276e
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
grafana/fluent-plugin-loki:latest8a3882e8c28b
glibc@2.36-9+deb12u10
2.36-9+deb12u14
1
grafana/loki:3.2.0882e30c20683
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
grafana/loki-canary:3.2.049e03f80d361
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
grafana/mcp-grafana:0.14.042f541f22063
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
grafana/promtail:3.5.165bfae480b57
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
grafana/promtail:3.6.18dcfdf466da0
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
graphprotocol/graph-node:latestb0436347fb24
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
graphprotocol/graph-node:v0.37.0f4452cdedd68
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
grpl/grapple-cli:0.2.127c00aafee6629
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8
1
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u14
1
hamidyousefi93/saam-test:latestc34f071f6ed0
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
hamzaarshad10/querypodpy:1.7154f38e8668e
glibc@2.36-9+deb12u8
2.36-9+deb12u14
1
hansehe/locust:1.1.0bc8e45262bc4
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hassroutyyoussef/accountservice:latest1f01edf1ee0c
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hassroutyyoussef/orderservice:latest2fc3d1617928
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hassroutyyoussef/userservice:lateste0392e2b4a90
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hazegoodlife/haaze:veggiesite50f02d2d5d4d
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
hazegoodlife/haaze:milksite8d4c63169e14
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
headscale/headscale:0.25.1a7a8ae9616bb
glibc@2.36-9+deb12u9
2.36-9+deb12u14
1
headscale/headscale:0.27.1cd37b3001857
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
hecrom/myweatherangularclient:1.3.11bb0372939c19
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
helmforge/fastmcp-server:0.2.061f759a1421f
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
helmforge/fastmcp-server:0.11.2fcb7017327d6
glibc@2.41-12+deb13u2
2.41-12+deb13u3
1
hiboxsystems/marge-bot:0.16.0b59f01bc0418
glibc@2.41-12
2.41-12+deb13u3
1
hiboxsystems/marge-bot:0.14.0dcffb926e563
glibc@2.36-9+deb12u3
2.36-9+deb12u14
1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
glibc@2.36-9+deb12u13
2.36-9+deb12u14
1
hivemq/hivemq-edge:2026.13aba306d1f089
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
hivemq/hivemq-swarm:4.54.0f9746d5d70fa
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
glibc@2.36-9
2.36-9+deb12u14
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
ildarmukhametzyanov/priceapp:0.115d23720a3ee
glibc@2.36-9+deb12u1
2.36-9+deb12u14
1
ilum/streamlit-example:1.0.0ce5dcdeb22ba
glibc@2.41-12
2.41-12+deb13u3
1
improwised/proxysql:master-6b26e59-171765063828940522e8b7
glibc@2.36-9+deb12u7
2.36-9+deb12u14
1
instill/artifact-backend:b28766ac4a393e601ed
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
instill/mgmt-backend:d0933d4ebe12f77a3f9
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
instill/model-backend:611f0f2e980125e5ba5
glibc@2.41-12+deb13u1
2.41-12+deb13u3
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
iomesh/node-disk-manager:1.8.0-2292ad270082e
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8
1
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8
1
istio/examples-helloworld-v1:latest328b237e4fb1
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
istio/examples-helloworld-v2:latest0a7f02b2c7c9
glibc@2.36-9+deb12u4
2.36-9+deb12u14
1
istio/install-cni:1.23.6ab34c4740f44
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
istio/install-cni:1.29.0ce27c9ce43c8
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
istio/pilot:1.29.0325156535773
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
istio/pilot:1.23.69c3d6a218181
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.