StackRadar

CVE-2026-44690

High

Advisory

Published 22 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.6
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
62
of 17,781 indexed, latest versions
Container images
87
deployed by those charts
Fix available
2 of 3
affected packages

Red Hat Security Advisory: unbound security update

Carried by container images the latest versions of 62 of 17,781 indexed charts deploy, on 87 images.

Affected packageAffected versionsFixed inImages
unboundrpm1.7.3-14.el8, 1.7.3-15.el8, 1.7.3-17.el8, 1.16.2-5.8.el8_10+3 more0:1.16.2-5.14.el8_1025
unbounddeb1.9.4-2ubuntu1.1, 1.9.4-2ubuntu1.2, 1.13.1-1ubuntu5.8, 1.13.1-1ubuntu5.11+9 moreno fix listed61
unboundapk1.25.1-r01.25.2-r01
OSV records
ALPINE-CVE-2026-44690DEBIAN-CVE-2026-44690RHSA-2026:55784UBUNTU-CVE-2026-44690

Charts affected

62 by stars
ChartLatestAffected imagesRadar Score
smtplbenicio-communityVerified publisher0.1.31 of 1See more

smtp lbenicio-community 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

1,237
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
unbound@1.9.4-2ubuntu1.2
no fix listed

Open the chart page →

43,341
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
unbound@1.7.3-15.el8
0:1.16.2-5.14.el8_10

Open the chart page →

7,775
smilencsaVerified publisher1.1.04 of 23See more

smile ncsa 1.1.0

4 of the 23 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
unbound@1.17.1-2
no fix listed
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
unbound@1.17.1-2
no fix listed
socialmediamacroscope/preprocessing:0.1.3ca863306314b
unbound@1.17.1-2
no fix listed
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
unbound@1.17.1-2
no fix listed

Open the chart page →

109,294
laravel-appoli-the-devVerified publisher2.0.171 of 1See more

laravel-app oli-the-dev 2.0.17

1 of the 1 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

2,660
agentpolyaxon2.16.43 of 4See more

agent polyaxon 2.16.4

3 of the 4 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

10,046
polyaxonpolyaxon2.16.43 of 5See more

polyaxon polyaxon 2.16.4

3 of the 5 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-api:2.16.42b55c3265a90
unbound@1.22.0-2+deb13u3
no fix listed
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

13,741
radar-cp-ksql-serverradar-baseVerified publisher0.0.21 of 2See more

radar-cp-ksql-server radar-base 0.0.2

1 of the 2 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
unbound@1.16.2-5.el8
0:1.16.2-5.14.el8_10

Open the chart page →

5,269
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
unbound@1.22.0-2
no fix listed

Open the chart page →

9,534
ipsecsinextraVerified publisher0.6.41 of 1See more

ipsec sinextra 0.6.4

1 of the 1 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/ipsec:5.236f4e651d1fe
unbound@1.25.1-r0
1.25.2-r0

Open the chart page →

683
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
unbound@1.22.0-2+deb13u3
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
unbound@1.22.0-2+deb13u3
no fix listed

Open the chart page →

66,266
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-44690.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
unbound@1.7.3-15.el8
0:1.16.2-5.14.el8_10

Open the chart page →

28,165

Container images carrying it

87 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
oneuptime/runner:release4accc516d800
unbound@1.22.0-2+deb13u3
no fix listed
1
opennode/waldur-mastermind:8.1.24c82b15d9042
unbound@1.22.0-2+deb13u3
no fix listed
1
polyaxon/polyaxon-api:2.16.42b55c3265a90
unbound@1.22.0-2+deb13u3
no fix listed
1
polyaxon/polyaxon-streams:2.16.4c186bd9834c0
unbound@1.22.0-2+deb13u3
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
unbound@1.22.0-2+deb13u3
no fix listed
1
prowlercloud/prowler-api:5.31.14f252d579be2
unbound@1.17.1-2+deb12u4
no fix listed
1
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
unbound@1.22.0-2+deb13u3
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
unbound@1.17.1-2
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
unbound@1.17.1-2
no fix listed
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
unbound@1.22.0-2+deb13u1
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
unbound@1.22.0-2+deb13u3
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
unbound@1.22.0-2+deb13u3
no fix listed
1
tianon/exim4:latestb489049cdbca
unbound@1.22.0-2+deb13u3
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
unbound@1.19.2-1ubuntu3.7
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
unbound@1.22.0-2+deb13u1
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
unbound@1.22.0-2+deb13u1
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
unbound@1.22.0-2
no fix listed
1
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
unbound@1.22.0-2+deb13u1
no fix listed
1
ghcr.io/sergelogvinov/ipsec:5.236f4e651d1fe
unbound@1.25.1-r0
1.25.2-r0
1
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
unbound@1.22.0-2+deb13u3
no fix listed
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
unbound@1.7.3-15.el8
0:1.16.2-5.14.el8_10
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
unbound@1.16.2-5.9.el8_10
0:1.16.2-5.14.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
unbound@1.16.2-5.9.el8_10
0:1.16.2-5.14.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
unbound@1.16.2-5.9.el8_10
0:1.16.2-5.14.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
unbound@1.7.3-15.el8
0:1.16.2-5.14.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
unbound@1.16.2-5.9.el8_10
0:1.16.2-5.14.el8_10
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
unbound@1.22.0-2+deb13u3
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
unbound@1.9.4-2ubuntu1.1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.