StackRadar

CVE-2026-4878

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.002
11th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,587
of 17,787 indexed, latest versions
Container images
1,813
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libcap security update

Carried by container images the latest versions of 1,587 of 17,787 indexed charts deploy, on 1,813 images.

Affected packageAffected versionsFixed inImages
libcap2deb1:2.24-0ubuntu2, 1:2.24-12, 1:2.25-1.2, 1:2.32-1+16 more1:2.24-0ubuntu2+esm2, 1:2.24-12ubuntu0.1~esm2, 1:2.25-1.2ubuntu0.1~esm2, 1:2.32-1ubuntu0.2+esm1+6 more1,402
libcapapk2.70-r0, 2.71-r0, 2.76-r0, 2.77-r02.78-r039
libcaprpm2.25-9.el8, 2.25-lp151.3.70, 2.26-1.el8, 2.26-3.el8+16 more0:2.48-6.el8_10.1, 0:2.48-10.el9_7.1, 0:2.48-10.el9_8.1, 0:2.69-7.el10_1.1+3 more372
OSV records
ALPINE-CVE-2026-4878DEBIAN-CVE-2026-4878RHSA-2026:12423RHSA-2026:12441RHSA-2026:13285RHSA-2026:19346RLSA-2026:12441RLSA-2026:13285UBUNTU-CVE-2026-4878AZL-82425ECHO-beb9-6eea-f967openSUSE-SU-2026:10536-1SUSE-SU-2026:1432-1
Also known as
RHSA-2026:19458, RHSA-2026:20595, RHSA-2026:21254, RHSA-2026:22957, RHSA-2026:24346, RLSA-2026:19346, USN-8193-1, USN-8193-2

Charts affected

1,587 by stars
ChartLatestAffected imagesRadar Score
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

6,324
slskdalexmorbo-slskdVerified publisher0.3.01 of 1See more

slskd alexmorbo-slskd 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

1,688
tubearchivistalexmorbo-tubearchivistVerified publisher0.1.01 of 2See more

tubearchivist alexmorbo-tubearchivist 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
valkey/valkey:9.0.1546304417fea
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1

Open the chart page →

1,651
redisalexvanderberkelVerified publisher2.2.01 of 1See more

redis alexvanderberkel 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/redis:8.2.15fa2edb1e408
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3

Open the chart page →

1,846
katalogalpineworks0.1.21 of 5See more

katalog alpineworks 0.1.2

1 of the 5 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

4,497
amorphieamorphie0.1.23 of 18See more

amorphie amorphie 0.1.2

3 of the 18 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
camunda/zeebe:8.4.5ab5abc09e407
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
hazelcast/management-center:5.3.2f9d34300d330
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

28,131
anchore-admission-controlleranchore-charts0.8.51See more

anchore-admission-controller anchore-charts 0.8.5

1 container image this version deploys carries CVE-2026-4878.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3

Open the chart page →

3,991
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

42,126
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
libcap2@1:2.75-10+b3
1:2.75-10+deb13u1

Open the chart page →

5,558
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
libcap2@1:2.66-4
1:2.66-4+deb12u3
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

25,669
antigenic-stalwart-helm-chartantigenic-stalwart-helm-chartVerified publisher1.0.51 of 2See more

antigenic-stalwart-helm-chart antigenic-stalwart-helm-chart 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.15.5dcf575db2d53
libcap2@1:2.75-10+b3
1:2.75-10+deb13u1

Open the chart page →

1,432
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1

Open the chart page →

2,453
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1

Open the chart page →

3,239
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

2,902
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

6,187
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
libcap@2.48-2.el8
0:2.48-6.el8_10.1
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
libcap@2.48-2.el8
0:2.48-6.el8_10.1

Open the chart page →

12,521
cert-manager-csi-driver-cacertsappscodeVerified publisher2026.1.151 of 3See more

cert-manager-csi-driver-cacerts appscode 2026.1.15

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3

Open the chart page →

3,417
cluster-manager-hubappscodeVerified publisher2026.2.161 of 1See more

cluster-manager-hub appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
libcap@2.48-10.el9
0:2.48-10.el9_7.1

Open the chart page →

1,038
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3

Open the chart page →

3,963
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
library/rabbitmq:3.12.1-managementf020c06da226
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
ghcr.io/appscode/inbox-server:latest536358d7b17e
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3

Open the chart page →

15,573
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
library/rabbitmq:3.12.1-managementf020c06da226
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

16,975
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1

Open the chart page →

2,404
managed-serviceaccount-managerappscodeVerified publisher2026.2.161 of 1See more

managed-serviceaccount-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
libcap@2.48-10.el9
0:2.48-10.el9_7.1

Open the chart page →

894
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
libcap@2.48-4.el8
0:2.48-6.el8_10.1

Open the chart page →

4,043
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1

Open the chart page →

2,569
pgadminappscodeVerified publisher2026.3.301 of 1See more

pgadmin appscode 2026.3.30

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
dpage/pgadmin4:9.11.050700ac17936
libcap@2.77-r0
2.78-r0

Open the chart page →

1,565
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1

Open the chart page →

37,268
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

3,270
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

5,657
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
libcap@2.48-4.el8
0:2.48-6.el8_10.1

Open the chart page →

2,903
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1

Open the chart page →

7,489
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

7,300
arlas-aiasarlas-stackVerified publisher28.8.09 of 22See more

arlas-aias arlas-stack 28.8.0

9 of the 22 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

40,238
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

23,353
bind9artem-shestakov1.0.11 of 1See more

bind9 artem-shestakov 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
libcap2@1:2.32-1ubuntu0.2
1:2.32-1ubuntu0.2+esm1

Open the chart page →

3,530
assemblylineassemblylineVerified publisher7.4.192See more

assemblyline assemblyline 7.4.19

2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1

Open the chart page →

14,728
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libcap2@1:2.24-12
1:2.24-12ubuntu0.1~esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libcap2@1:2.24-12
1:2.24-12ubuntu0.1~esm2

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libcap2@1:2.24-12
1:2.24-12ubuntu0.1~esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libcap2@1:2.24-12
1:2.24-12ubuntu0.1~esm2

Open the chart page →

77,706
idmassist-iot-identity-manager0.1.02 of 2See more

idm assist-iot-identity-manager 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
libcap2@1:2.66-4
1:2.66-4+deb12u3
assistiot/identity-manager_kc:latest0df4b4fa899a
libcap@2.48-2.el8
0:2.48-6.el8_10.1

Open the chart page →

13,352
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
libcap2@1:2.44-1build3
1:2.44-1ubuntu0.22.04.3

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

18,277
semantic-repositoryassist-iot-semantic-repository1.1.01 of 3See more

semantic-repository assist-iot-semantic-repository 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
minio/minio:latest14cea493d9a3
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

1,069
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
libcap2@1:2.66-4
1:2.66-4+deb12u3
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
libcap2@1:2.66-4
1:2.66-4+deb12u3
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

13,913
account-monitorastria0.0.11 of 1See more

account-monitor astria 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3

Open the chart page →

1,929
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
libcap2@1:2.44-1build3
1:2.44-1ubuntu0.22.04.3
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

32,501
auctioneerastria0.0.21 of 1See more

auctioneer astria 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

2,178
evm-bridge-withdrawerastria1.0.61 of 1See more

evm-bridge-withdrawer astria 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

2,154

Container images carrying it

1,813 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
libcap2@1:2.44-1build3
1:2.44-1ubuntu0.22.04.3
1
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
cm2network/squad:latest8cba47f53df5
libcap2@1:2.75-10+b3
1:2.75-10+deb13u1
1
cockroachdb/cockroach:v22.2.91116820f4134
libcap@2.48-4.el8
0:2.48-6.el8_10.1
1
cockroachdb/cockroachdb-operator-v2:v1.0.04335d8bcbd3d
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
cockroachdb/cockroach-operator:v2.1.0983312754620
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
coderenvs/coder-service:1.44.61deffc4670e6
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
coderenvs/timescale:1.44.676fd37fe6830
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
codetogether/codetogether:latest4348c8a38752
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
collabora/code:24.04.13.2.101dc4ab83977
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
collabora/code:23.05.10.1.105299b452f7f
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
libcap@2.48-2.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka:7.6.683dbca3efd2a
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka:7.8.0-3-ubi8adc392d28a1e
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka:7.4.4c0224a1adf7a
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka:7.5.1dc9b972db002
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-ksqldb-server:7.6.08ec46c27982f
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
1
confluentinc/cp-zookeeper:7.8.0-3-ubi85ca5f3269814
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
consensys/teku:25.4.1bf6ecd2ea716
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
contentsquareplatform/chproxy:v1.26.524555f22d4be
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
cortezaproject/corteza:2024.9.60bcdcbcd3c63
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
cortezaproject/corteza:2024.9.4cb9f200de5d2
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1
1
countly/countly-server:25.05.4e3c238248f99
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
1
craftypath/sops-operator:v0.8.0402a0024c732
libcap@2.26-4.el8
0:2.48-6.el8_10.1
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
libcap2@1:2.24-12
1:2.24-12ubuntu0.1~esm2
1
cspconsole/config-provider:1.0.365524a26a6c23
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
cspconsole/report-collector:1.0.15839750248193b
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
cspconsole/report-processor:1.0.279a2d8840bfdf
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ctron/hawkbit-operator:0.1.48fdea8f76499
libcap@2.26-3.el8
0:2.48-6.el8_10.1
1
cubejs/cubestore:v1.5.334ac523a9bab
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
dannielkil/book-frontend:latest937993927694
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
darthsim/imgproxy:v3.30.13b709e4a0e5e
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
darthsim/imgproxy:v3.26476cb08c816a
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.