StackRadar

CVE-2026-4519

High

Advisory

Published 20 Mar 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.003
23rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
739
of 17,781 indexed, latest versions
Container images
761
deployed by those charts
Fix available
13 of 18
affected packages

Red Hat Security Advisory: python3.9 security update

Carried by container images the latest versions of 739 of 17,781 indexed charts deploy, on 761 images.

Affected packageAffected versionsFixed inImages
python3.11deb3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+5 more3.11.2-6+deb12u8163
python3rpm3.6.8-15.1.el8, 3.6.8-23.el8, 3.6.8-24.el8_2, 3.6.8-24.el8_2.2+26 more0:3.6.8-75.el8_10, 0:3.6.8-75.el8_10.rocky.0134
python3.8deb3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+11 moreno fix listed100
python3.10deb3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+14 more3.10.12-1~22.04.1671
python2.7deb2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+12 moreno fix listed54
python3.12deb3.12.3-1, 3.12.3-1ubuntu0.2, 3.12.3-1ubuntu0.3, 3.12.3-1ubuntu0.4+8 more3.12.3-1ubuntu0.1548
python3.6deb3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 moreno fix listed44
python3.9rpm3.9.16-1.el9, 3.9.16-1.el9_2.1, 3.9.16-1.el9_2.2, 3.9.18-1.el9_3.1+13 more0:3.9.18-3.el9_4.12, 0:3.9.25-3.el9_7.240
python3.5deb3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.9no fix listed25
python3.13deb3.13.5-2, 3.13.5-2+e30, 3.13.7-1ubuntu0.13.13.5-2+deb13u2, 3.13.5-2+e3623
pythonrpm2.7.5-77.el7_6, 2.7.5-86.el7, 2.7.5-89.el7, 2.7.5-90.el70:2.7.5-94.el7_9.411
python3.4deb3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.7no fix listed7
python3.12rpm3.12.5-2.el9_5.2, 3.12.12-3.el10_1, 3.12.12-3.el10_1.10:3.12.12-3.el10_1.2, 0:3.12.12-4.el9_7.23
python3.11rpm3.11.7-1.el9, 3.11.7-1.el9_4.50:3.11.13-5.2.el9_72
python-3.14apk3.14.2-r23.14.3-r54
python-3.13apk3.13.7-r0, 3.13.10-r0, 3.13.12-r23.13.12-r53
python-3.12apk3.12.0-r1, 3.12.9-r13.12.13-r12
python3apk3.11.12-r1, 3.12.8-r1, 3.12.9-r0, 3.12.10-r0+4 more3.12.14-r063
OSV records
CGA-3h84-x2w3-jxqgCGA-4wwp-7g84-8876CGA-f4c2-gfhc-p78wRHSA-2026:10101RHSA-2026:6256RHSA-2026:6285RHSA-2026:6286RHSA-2026:6473RHSA-2026:6766RHSA-2026:9614RLSA-2026:6473RLSA-2026:6766UBUNTU-CVE-2026-4519ALPINE-CVE-2026-4519DEBIAN-CVE-2026-4519ECHO-d547-7bae-8442
Also known as
CGA-98cv-hx2c-frrf, CGA-r4rr-7h23-pmrf, CGA-xr2r-237r-fjfj, RHSA-2026:9042, RHSA-2026:9262, RHSA-2026:9289, RHSA-2026:9354, RHSA-2026:9386, RHSA-2026:9387, RHSA-2026:9621, USN-8509-1

Charts affected

739 by stars
ChartLatestAffected imagesRadar Score
contract-managementfiware3.5.361 of 1See more

contract-management fiware 3.5.36

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/contract-management:3.3.122bcfcf874451
python3@3.6.8-67.el8_10
0:3.6.8-75.el8_10

Open the chart page →

2,411
credentials-config-servicefiware2.6.41 of 1See more

credentials-config-service fiware 2.6.4

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
python3@3.6.8-67.el8_10
0:3.6.8-75.el8_10

Open the chart page →

2,293
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
python3@3.6.8-48.el8_7.1
0:3.6.8-75.el8_10

Open the chart page →

4,536
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
python3@3.6.8-45.el8
0:3.6.8-75.el8_10

Open the chart page →

11,835
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
python3@3.6.8-45.el8
0:3.6.8-75.el8_10

Open the chart page →

7,019
orionfiware1.6.111 of 2See more

orion fiware 1.6.11

1 of the 2 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10

Open the chart page →

10,637
tm-forum-apifiware0.17.1519 of 19See more

tm-forum-api fiware 0.17.15

19 of the 19 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.06b25aac03414
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
python3@3.6.8-70.el8_10
0:3.6.8-75.el8_10

Open the chart page →

35,112
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
python3.9@3.9.21-2.el9_6.1
0:3.9.25-3.el9_7.2

Open the chart page →

1,701
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
python3@3.6.8-45.el8
0:3.6.8-75.el8_10

Open the chart page →

7,087
batchrunnerflanksourceVerified publisher1.0.441 of 1See more

batchrunner flanksource 1.0.44

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
flanksource/batch-runner:v1.0.44689687a7cf95
python3.12@3.12.3-1ubuntu0.8
3.12.3-1ubuntu0.15

Open the chart page →

5,292
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u8

Open the chart page →

8,902
fluxcd-helm-upgraderfluxcd-helm-upgraderVerified publisher0.7.71 of 1See more

fluxcd-helm-upgrader fluxcd-helm-upgrader 0.7.7

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
kenchrcum/fluxcd-helm-upgrader:0.7.7c326e28a8f5f
python3@3.12.13-r0
3.12.14-r0

Open the chart page →

2,420
maxscalefour-allportalVerified publisher4.1.161 of 3See more

maxscale four-allportal 4.1.16

1 of the 3 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
mariadb/maxscale:23.02.256c5e0908148
python3@3.6.8-51.el8.rocky.0
0:3.6.8-75.el8_10.rocky.0

Open the chart page →

6,611
galoy-depsgaloymoney0.10.201 of 9See more

galoy-deps galoymoney 0.10.20

1 of the 9 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
python3@3.6.8-56.el8_9.3
0:3.6.8-75.el8_10

Open the chart page →

11,961
galoy-depsgaloymoney20.10.201 of 9See more

galoy-deps galoymoney2 0.10.20

1 of the 9 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
python3@3.6.8-56.el8_9.3
0:3.6.8-75.el8_10

Open the chart page →

11,961
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
python3.8@3.8.5-1~20.04.3
no fix listed

Open the chart page →

18,230
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
python3.8@3.8.10-0ubuntu1~20.04
no fix listed

Open the chart page →

16,123
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
python3.6@3.6.9-1~18.04ubuntu1.4
no fix listed

Open the chart page →

13,551
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
python3.8@3.8.10-0ubuntu1~20.04.1
no fix listed

Open the chart page →

12,222
haste-servergeek-cookbookVerified publisher3.4.21 of 1See more

haste-server geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
python3.8@3.8.10-0ubuntu1~20.04
no fix listed

Open the chart page →

10,994
icinga2geek-cookbookVerified publisher4.2.01 of 1See more

icinga2 geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
jordan/icinga2:latestf75025fe8ea8
python3.11@3.11.2-6+deb12u7
3.11.2-6+deb12u8

Open the chart page →

9,077
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u8

Open the chart page →

12,958
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
python3.10@3.10.4-3ubuntu0.1
3.10.12-1~22.04.16

Open the chart page →

12,076
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
python3.8@3.8.5-1~20.04.2
no fix listed

Open the chart page →

17,702
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
python3.8@3.8.10-0ubuntu1~20.04.5
no fix listed

Open the chart page →

27,949
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed

Open the chart page →

15,730
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
python3.8@3.8.10-0ubuntu1~20.04.4
no fix listed

Open the chart page →

11,807
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
python3.8@3.8.10-0ubuntu1~20.04
no fix listed

Open the chart page →

24,293
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
python3.6@3.6.6-1~18.04
no fix listed

Open the chart page →

26,944
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
python3.8@3.8.10-0ubuntu1~20.04.5
no fix listed

Open the chart page →

11,861
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
python3.8@3.8.10-0ubuntu1~20.04.4
no fix listed

Open the chart page →

17,929
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u8

Open the chart page →

4,259
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
python3.5@3.5.2-2ubuntu0~16.04.5
no fix listed
istio/pilot:1.2.9c09319753454
python3.5@3.5.2-2ubuntu0~16.04.5
no fix listed
istio/proxyv2:1.2.90c78be035e98
python3.5@3.5.2-2ubuntu0~16.04.5
no fix listed

Open the chart page →

36,102
glpiglpi-chart0.1.11 of 3See more

glpi glpi-chart 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
python3.11@3.11.2-6+deb12u2
3.11.2-6+deb12u8

Open the chart page →

12,170
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
library/cassandra:3.11.65aa8400b4b3b
python2.7@2.7.17-1~18.04ubuntu1.1
no fix listed

Open the chart page →

19,229
grafana-dashboard-convertergrafana-dashboard-converterVerified publisher0.3.101 of 1See more

grafana-dashboard-converter grafana-dashboard-converter 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
kenchrcum/grafana-dashboard-converter:0.3.105310497aea3f
python3@3.12.12-r0
3.12.14-r0

Open the chart page →

906
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
python3.10@3.10.12-1~22.04.15
3.10.12-1~22.04.16

Open the chart page →

4,556
temporalgroundcover1.12.3571 of 2See more

temporal groundcover 1.12.357

1 of the 2 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
python3.13@3.13.5-2+e30
3.13.5-2+e36

Open the chart page →

2,013
librechathajowielandVerified publisher1.1.01 of 1See more

librechat hajowieland 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat:v0.7.87fe76551a78e
python3@3.12.10-r0
3.12.14-r0

Open the chart page →

2,950
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
python3.10@3.10.12-1~22.04.7
3.10.12-1~22.04.16

Open the chart page →

9,096
heliconehelicone0.1.422 of 14See more

helicone helicone 0.1.42

2 of the 14 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
python3.8@3.8.10-0ubuntu1~20.04.13
no fix listed
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
python3.11@3.11.2-6
3.11.2-6+deb12u8

Open the chart page →

24,995
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
python3.6@3.6.9-1~18.04ubuntu1.9
no fix listed

Open the chart page →

10,627
esphomehelm-chart-roeiVerified publisher2025.3.01 of 1See more

esphome helm-chart-roei 2025.3.0

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
esphome/esphome:2025.3.0def8b6e4f517
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u8

Open the chart page →

6,008
hawkbit-operatorhelm-chartsVerified publisher0.1.41 of 1See more

hawkbit-operator helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ctron/hawkbit-operator:0.1.48fdea8f76499
python3@3.6.8-23.el8
0:3.6.8-75.el8_10

Open the chart page →

5,792
iofoghelm-chartsVerified publisher0.1.12 of 3See more

iofog helm-charts 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
iofog/router:2.0.17260cf861479
python2.7@2.7.17-1~18.04ubuntu1.1
no fix listed
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
python3@3.6.8-37.el8
0:3.6.8-75.el8_10

Open the chart page →

24,161
streamsheetshelm-chartsVerified publisher0.2.35 of 8See more

streamsheets helm-charts 0.2.3

5 of the 8 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
python3@3.6.8-37.el8
0:3.6.8-75.el8_10
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
python3@3.6.8-37.el8
0:3.6.8-75.el8_10
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
python3@3.6.8-37.el8
0:3.6.8-75.el8_10
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
python3@3.6.8-37.el8
0:3.6.8-75.el8_10
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
python3@3.6.8-37.el8
0:3.6.8-75.el8_10

Open the chart page →

89,959
twampyhelm-charts-darox0.0.21 of 1See more

twampy helm-charts-darox 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
dariomader/twampy:v0.0.2d2f4a8c5e690
python-3.12@3.12.0-r1
3.12.13-r1

Open the chart page →

2,057
appwritehelmforgeVerified publisher1.3.41 of 5See more

appwrite helmforge 1.3.4

1 of the 5 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.6adc7d0e7ec23
python3@3.12.13-r0
3.12.14-r0

Open the chart page →

6,952
archiveboxhelmforgeVerified publisher1.1.121 of 1See more

archivebox helmforge 1.1.12

1 of the 1 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
archivebox/archivebox:0.7.41a5a37331091
python3.11@3.11.2-6+deb12u7
3.11.2-6+deb12u8

Open the chart page →

7,633
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-4519.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
python3.13@3.13.5-2
3.13.5-2+deb13u2

Open the chart page →

10,849

Container images carrying it

761 by charts deploying them

A fixed version is listed for 13 of the 18 affected packages.

Container imageDigestPackageFixed inUsed by
apache/gravitino-iceberg-rest:1.3.080136ae753ee
python3.10@3.10.12-1~22.04.15
3.10.12-1~22.04.16
1
apache/hertzbeat:1.8.075d48a62748f
python3.12@3.12.3-1ubuntu0.11
3.12.3-1ubuntu0.15
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
python3.12@3.12.3-1ubuntu0.11
3.12.3-1ubuntu0.15
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
python3.10@3.10.12-1~22.04.2
3.10.12-1~22.04.16
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
python3.10@3.10.12-1~22.04.6
3.10.12-1~22.04.16
1
apachepulsar/pulsar:2.9.0d056c89b7131
python3.8@3.8.10-0ubuntu1~20.04.1
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
python3.10@3.10.12-1~22.04.10
3.10.12-1~22.04.16
1
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
python3.9@3.9.25-2.el9_7
0:3.9.25-3.el9_7.2
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
python3@3.6.8-51.el8_8.2
0:3.6.8-75.el8_10
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
python3@3.6.8-37.el8
0:3.6.8-75.el8_10
1
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
python3@3.6.8-51.el8_8.1
0:3.6.8-75.el8_10
1
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
python3@3.6.8-51.el8_8.1
0:3.6.8-75.el8_10
1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
python3@3.6.8-51.el8_8.1
0:3.6.8-75.el8_10
1
appwrite/appwrite:1.9.01aaa70127114
python3@3.12.12-r0
3.12.14-r0
1
appwrite/appwrite:1.9.6adc7d0e7ec23
python3@3.12.13-r0
3.12.14-r0
1
archivebox/archivebox:0.7.41a5a37331091
python3.11@3.11.2-6+deb12u7
3.11.2-6+deb12u8
1
artur9010/wait-for:v1.0.06b4de3ce8b0e
python3.11@3.11.2-6
3.11.2-6+deb12u8
1
arunvelsriram/utils:latest655ad18fd8d6
python3.12@3.12.3-1ubuntu0.7
3.12.3-1ubuntu0.15
1
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
python2.7@2.7.18-1~20.04.3
no fix listed
1
assistiot/identity-manager_kc:latest0df4b4fa899a
python3@3.6.8-47.el8_6
0:3.6.8-75.el8_10
1
assistiot/open_api_backend:1.1.230812ba93555
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
1
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
python3.11@3.11.2-6
3.11.2-6+deb12u8
1
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
python3.11@3.11.2-6
3.11.2-6+deb12u8
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
python3.11@3.11.2-6
3.11.2-6+deb12u8
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
python3.8@3.8.10-0ubuntu1~20.04.7
no fix listed
1
atlassian/confluence-server:7.10.03b9222ab32ef
python3.10@3.10.6-1~22.04.1
3.10.12-1~22.04.16
1
atlassian/jira-software:8.14.037bc46cbec1a
python3.10@3.10.12-1~22.04.3
3.10.12-1~22.04.16
1
atlassian/jira-software:9.7.264a75aa4ec4e
python3.12@3.12.3-1ubuntu0.5
3.12.3-1ubuntu0.15
1
avinash263/pyredis263:latestaa2b8727f1a6
python3.11@3.11.2-6
3.11.2-6+deb12u8
1
baserow/backend:1.31.1e0b3c8130b91
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u8
1
baserow/baserow:1.30.1df0c42eb67e8
python3.11@3.11.2-6+deb12u4
3.11.2-6+deb12u8
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
beanbag/reviewboard:latest6b840f546e1c
python3.11@3.11.0~rc1-1~22.04.1
no fix listed
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
python3.11@3.11.2-6+deb12u6
3.11.2-6+deb12u8
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
python3.8@3.8.10-0ubuntu1~20.04.6
no fix listed
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
python3.8@3.8.10-0ubuntu1~20.04.2
no fix listed
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u8
1
bnjbvr/kresus:0.22.137e216b182c8
python3.11@3.11.2-6+deb12u4
3.11.2-6+deb12u8
1
boky/postfix:5.1.0aafc77238423
python3.13@3.13.5-2
3.13.5-2+deb13u2
1
boky/postfix:4.4.0f3f247fd4252
python3.11@3.11.2-6+deb12u5
3.11.2-6+deb12u8
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
python3.8@3.8.10-0ubuntu1~20.04
no fix listed
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
python3.11@3.11.2-6+deb12u4
3.11.2-6+deb12u8
1
castopod/castopod:1.12.101fd37280cbb2
python3.11@3.11.2-6+deb12u3
3.11.2-6+deb12u8
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
python3.10@3.10.12-1~22.04.15
3.10.12-1~22.04.16
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
python3.4@3.4.3-1ubuntu1~14.04.7
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
python3.8@3.8.5-1~20.04
no fix listed
1
cheyang/distributed-tf:1.6.046cc34755493
python2.7@2.7.12-1ubuntu0~16.04.3
python3.5@3.5.2-2ubuntu0~16.04.4
no fix listed
no fix listed
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
python3.13@3.13.5-2
3.13.5-2+deb13u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.