StackRadar

CVE-2026-4878

High

Advisory

Published 7 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.002
11th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,597
of 17,787 indexed, latest versions
Container images
1,823
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libcap security update

Carried by container images the latest versions of 1,597 of 17,787 indexed charts deploy, on 1,823 images.

Affected packageAffected versionsFixed inImages
libcap2deb1:2.24-0ubuntu2, 1:2.24-12, 1:2.25-1.2, 1:2.32-1+16 more1:2.24-0ubuntu2+esm2, 1:2.24-12ubuntu0.1~esm2, 1:2.25-1.2ubuntu0.1~esm2, 1:2.32-1ubuntu0.2+esm1+6 more1,411
libcapapk2.70-r0, 2.71-r0, 2.76-r0, 2.77-r02.78-r039
libcaprpm2.25-9.el8, 2.25-lp151.3.70, 2.26-1.el8, 2.26-3.el8+16 more0:2.48-6.el8_10.1, 0:2.48-10.el9_7.1, 0:2.48-10.el9_8.1, 0:2.69-7.el10_1.1+3 more373
OSV records
ALPINE-CVE-2026-4878DEBIAN-CVE-2026-4878RHSA-2026:12423RHSA-2026:12441RHSA-2026:13285RHSA-2026:19346RLSA-2026:12441RLSA-2026:13285UBUNTU-CVE-2026-4878AZL-82425ECHO-beb9-6eea-f967openSUSE-SU-2026:10536-1SUSE-SU-2026:1432-1
Also known as
RHSA-2026:19458, RHSA-2026:20595, RHSA-2026:21254, RHSA-2026:22957, RHSA-2026:24346, RLSA-2026:19346, USN-8193-1, USN-8193-2

Charts affected

1,597 by stars
ChartLatestAffected imagesRadar Score
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

6,012
daskdask2024.1.11 of 2See more

dask dask 2024.1.1

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

12,830
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

3,031
netbirdjaconiVerified publisher0.15.11 of 4See more

netbird jaconi 0.15.1

1 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
netbirdio/management:0.45.10c9994b393ea
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

8,473
litellm-helmlitellm1.101.01 of 2See more

litellm-helm litellm 1.101.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

4,574
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3

Open the chart page →

5,679
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4

Open the chart page →

3,422
scribebackube-helm-chartsVerified publisher0.2.01 of 2See more

scribe backube-helm-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/backube/scribe:0.2.0cdefc81c6b2e
libcap@2.26-4.el8
0:2.48-6.el8_10.1

Open the chart page →

6,853
glasskube-operatorglasskubeOfficialVerified publisher0.12.23 of 3See more

glasskube-operator glasskube 0.12.2

3 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
quay.io/minio/mc:RELEASE.2023-09-29T16-41-22Za784ce6e3b1b
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1
quay.io/minio/minio:RELEASE.2023-09-30T07-02-29Z6262bc9a2730
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1

Open the chart page →

11,971
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

5,364
plane-cemakeplaneOfficialVerified publisher1.8.12 of 11See more

plane-ce makeplane 1.8.1

2 of the 11 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

4,854
milvusmilvus-helm5.0.283 of 4See more

milvus milvus-helm 5.0.28

3 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
milvusdb/etcd:3.5.25-r1fededb2f2d63
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
quay.io/minio/minio:RELEASE.2024-12-18T13-15-44Z1dce27c494a1
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

10,764
mssqlmssqlVerified publisher1.10.31 of 1See more

mssql mssql 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-mssql/mssql:1.10.3f923d842bc47
libcap@2.69-7.el10
0:2.69-7.el10_1.1

Open the chart page →

642
prefect-serverprefectVerified publisher2026.9.141419101 of 2See more

prefect-server prefect 2026.9.14141910

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

5,448
rocketmqrocketmq12.6.02 of 2See more

rocketmq rocketmq 12.6.0

2 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

6,385
apicurio-registryapicurio-registry-helmVerified publisher3.8.01 of 2See more

apicurio-registry apicurio-registry-helm 3.8.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
libcap@2.48-5.el8_8
0:2.48-6.el8_10.1

Open the chart page →

6,675
codefreshcodefresh-onpremOfficialVerified publisher2.12.134 of 42See more

codefresh codefresh-onprem 2.12.13

4 of the 42 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/consul:1.21.4-debian-12-r133ae872fc99d
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/rabbitmq:4.1.39e635efba431
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

14,615
stackstorm-hastackstormVerified publisher1.1.011 of 17See more

stackstorm-ha stackstorm 1.1.0

11 of the 17 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2api:3.86f56d239d280
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2auth:3.833ecfda16608
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2notifier:3.8f190a6212195
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2rulesengine:3.8259503496ff9
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2scheduler:3.8b1de2055c362
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2sensorcontainer:3.8b1a338f64773
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2stream:3.81c8904a3bf67
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2timersengine:3.81bf35bfaf00c
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1
stackstorm/st2workflowengine:3.819fdfffdbba8
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

96,984
supabasetokens-studioVerified publisher1.0.05 of 14See more

supabase tokens-studio 1.0.0

5 of the 14 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.26476cb08c816a
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4
supabase/edge-runtime:v1.59.0eff9c554d649
libcap2@1:2.66-4
1:2.66-4+deb12u3
supabase/postgres-meta:v0.84.2d0a96973e9f1
libcap2@1:2.66-4
1:2.66-4+deb12u3
supabase/realtime:v2.33.8d207e6e23ad3
libcap2@1:2.66-4
1:2.66-4+deb12u3
supabase/studio:20241021-9f9b08326d8070c55e9
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

23,263
renterdartur9010Verified publisher1.4.42 of 2See more

renterd artur9010 1.4.4

2 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
libcap2@1:2.66-4
1:2.66-4+deb12u3
ghcr.io/siafoundation/renterd:2.9.0e0334f124863
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3

Open the chart page →

8,530
budibasebudibase0.0.0-master2 of 7See more

budibase budibase 0.0.0-master

2 of the 7 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
minio/minio:latest14cea493d9a3
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

10,810
csi-secrets-store-provider-azurecsi-secrets-store-provider-azureVerified publisher1.8.21 of 5See more

csi-secrets-store-provider-azure csi-secrets-store-provider-azure 1.8.2

1 of the 5 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
libcap@2.69-12.azl3
2.69-14

Open the chart page →

2,235
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
libcap2@1:2.44-1build3
1:2.44-1ubuntu0.22.04.3

Open the chart page →

3,493
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3

Open the chart page →

3,037
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
libcap2@1:2.44-1build3
1:2.44-1ubuntu0.22.04.3

Open the chart page →

7,896
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

1,279
purelbpurelb0.0.0-106-ipv6-lbip-052cedab1 of 2See more

purelb purelb 0.0.0-106-ipv6-lbip-052cedab

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
libcap@2.26-5.el8
0:2.48-6.el8_10.1

Open the chart page →

4,412
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

3,492
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

11,453
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

4,281
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3

Open the chart page →

3,024
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
libcap2@1:2.66-4
1:2.66-4+deb12u3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4
quay.io/devtron/postgres:14.91b594392f7cb
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4

Open the chart page →

5,396
ilumilumOfficialVerified publisher6.7.34 of 19See more

ilum ilum 6.7.3

4 of the 19 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
libcap2@1:2.66-4
1:2.66-4+deb12u3
bitnamilegacy/postgresql:16233f361c5819
libcap2@1:2.66-4
1:2.66-4+deb12u3
ilum/marquez:0.54.06e1d709d41f8
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
minio/mc:RELEASE.2025-04-16T18-13-26Zaead63c77f9d
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1

Open the chart page →

23,289
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
libcap2@1:2.66-5ubuntu2
1:2.66-5ubuntu2.4

Open the chart page →

3,434
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

7,031
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1

Open the chart page →

5,665
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1

Open the chart page →

4,344
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1

Open the chart page →

2,257
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
libcap2@1:2.66-4
1:2.66-4+deb12u3

Open the chart page →

17,306
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

8,510
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

14,276
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
libcap2@1:2.32-1ubuntu0.2
1:2.32-1ubuntu0.2+esm1

Open the chart page →

7,333
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4

Open the chart page →

2,321
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
libcap2@1:2.44-1ubuntu0.22.04.1
1:2.44-1ubuntu0.22.04.3

Open the chart page →

5,669
zabbix-serveraekondratievVerified publisher1.0.62 of 4See more

zabbix-server aekondratiev 1.0.6

2 of the 4 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

30,811
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3

Open the chart page →

6,484
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1

Open the chart page →

9,868
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-4878.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
libcap2@1:2.32-1ubuntu0.1
1:2.32-1ubuntu0.2+esm1

Open the chart page →

12,163

Container images carrying it

1,823 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/wearefrank/frank-gateway:1.0.05ccf797ccdf1
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
libcap2@1:2.66-4+deb12u1
1:2.66-4+deb12u3
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ghcr.io/wiremind/bitnami/rabbitmq:4.2.2-debian-12-r11572e12bc93c
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ghcr.io/wiremind/bitnami/redis:8.4.0-debian-12-r31f0f7ddc4370
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/wundergraph/cosmo/keycloak:0.13.0b37408461b9b
libcap@2.48-10.el9
0:2.48-10.el9_7.1
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.1da0b5eb7721a
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
1
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
libcap@2.69-12.azl3
2.69-14
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
libcap@2.76-r0
2.78-r0
1
public.ecr.aws/aktosecurity/redis47200b041382
libcap2@1:2.66-4+deb12u2
1:2.66-4+deb12u3
1
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
libcap2@1:2.75-10+b8
1:2.75-10+deb13u1
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
libcap2@1:2.75-10+b1
1:2.75-10+deb13u1
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
libcap2@1:2.44-1ubuntu0.22.04.2
1:2.44-1ubuntu0.22.04.3
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
libcap2@1:2.75-10+b3
1:2.75-10+e1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
libcap2@1:2.66-4+deb12u2+b2
1:2.66-4+deb12u3
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
libcap@2.48-6.el8_9
0:2.48-6.el8_10.1
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
libcap2@1:2.66-5ubuntu2.2
1:2.66-5ubuntu2.4
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libcap2@1:2.32-1
1:2.32-1ubuntu0.2+esm1
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libcap2@1:2.66-4
1:2.66-4+deb12u3
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
libcap@2.48-9.el9_2
0:2.48-10.el9_7.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.