StackRadar

CVE-2026-5260

High

Advisory

Published 30 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,720
of 17,790 indexed, latest versions
Container images
1,805
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,720 of 17,790 indexed charts deploy, on 1,805 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.5.17-1ubuntu1, 3.5.18-1ubuntu1, 3.5.18-1ubuntu1.1, 3.5.18-1ubuntu1.2+41 more3.5.18-1ubuntu1.6+esm3, 3.6.13-2ubuntu1.12+esm2, 3.7.3-4ubuntu1.9, 3.7.9-2+deb12u7+5 more1,764
gnutlsapk3.8.5-r0, 3.8.8-r0, 3.8.11-r0, 3.8.12-r03.8.13-r041
OSV records
ALPINE-CVE-2026-5260DEBIAN-CVE-2026-5260UBUNTU-CVE-2026-5260
Also known as
USN-8284-1, USN-8502-1

Charts affected

1,720 by stars
ChartLatestAffected imagesRadar Score
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

4,077
observalobservalVerified publisher1.13.11 of 8See more

observal observal 1.13.1

1 of the 8 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3810861a2e2d0
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

5,916
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.672 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

2 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
alpine/git:2.47.2062a01ad7a0e
gnutls@3.8.8-r0
3.8.13-r0
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

5,244
oesopsmxVerified publisher4.0.322 of 25See more

oes opsmx 4.0.32

2 of the 25 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
gnutls28@3.8.9-3
3.8.9-3+deb13u4

Open the chart page →

108,315
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

1,869
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

5,465
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
library/elasticsearch:8.15.0310b9fc03b06
gnutls28@3.6.13-2ubuntu1.11
3.6.13-2ubuntu1.12+esm2
library/postgres:16.24aea012537ed
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7

Open the chart page →

13,647
nominatimrobjuz6.4.12 of 4See more

nominatim robjuz 6.4.1

2 of the 4 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
mediagis/nominatim:5.3.27923a8e67197
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

8,783
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

6,400
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

24,566
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9

Open the chart page →

3,469
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
gnutls28@3.8.9-3+deb13u1
3.8.9-3+deb13u4

Open the chart page →

3,423
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9

Open the chart page →

5,810
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
gnutls28@3.6.13-2ubuntu1.11
3.6.13-2ubuntu1.12+esm2

Open the chart page →

15,564
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

7,075
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

28,634
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9

Open the chart page →

10,373
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3

Open the chart page →

18,177
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

4,418
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
gnutls28@3.7.9-2
3.7.9-2+deb12u7

Open the chart page →

3,478
wgerwgerOfficialVerified publisher1.0.01 of 8See more

wger wger 1.0.0

1 of the 8 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
wger/server:2.6997ead43aabd
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

8,634
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9

Open the chart page →

19,828
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

13,671
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.231 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.23

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

2,411
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
gnutls28@3.7.3-4ubuntu1.8
3.7.3-4ubuntu1.9

Open the chart page →

3,746
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
gnutls28@3.8.9-3
3.8.9-3+deb13u4

Open the chart page →

12,092
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3

Open the chart page →

12,081
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

8,387
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

3,395
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7

Open the chart page →

22,304
antreaantreaVerified publisher2.7.02 of 2See more

antrea antrea 2.7.0

2 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

3,539
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
gnutls28@3.7.3-4ubuntu1.6
3.7.3-4ubuntu1.9

Open the chart page →

7,794
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

5,249
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

1,736
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
gnutls28@3.6.13-2ubuntu1.8
3.6.13-2ubuntu1.12+esm2

Open the chart page →

17,951
dltbrokerassist-iot-distributed-broker0.2.01 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

77,883
dltloggingassist-iot-logging-auditing0.2.01 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

1 of the 9 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
gnutls28@3.7.3-4ubuntu1.9
no fix listed

Open the chart page →

77,863
astradnsastradnsVerified publisher0.2.91 of 2See more

astradns astradns 0.2.9

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

2,649
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2

Open the chart page →

13,219
aramid-indexerbiatec-repoVerified publisher3.9.01 of 5See more

aramid-indexer biatec-repo 3.9.0

1 of the 5 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

13,544
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9

Open the chart page →

7,246
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

5,117
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9

Open the chart page →

7,246
self-hostbitwarden2.4.11 of 11See more

self-host bitwarden 2.4.1

1 of the 11 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6

Open the chart page →

5,269
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
gnutls28@3.7.9-2+deb12u1
3.7.9-2+deb12u7

Open the chart page →

2,919
plexbrandan-schmitz-helm-chartsVerified publisher1.5.11 of 1See more

plex brandan-schmitz-helm-charts 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
linuxserver/plex:1.43.22785a6ad64d3
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

1,163
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

84,710
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

84,710
cbioportalcbioportalOfficialVerified publisher1.1.01 of 1See more

cbioportal cbioportal 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

3,745
cert-vaultcert-vaultOfficialVerified publisher2.12.05 of 7See more

cert-vault cert-vault 2.12.0

5 of the 7 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

16,056

Container images carrying it

1,805 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
gnutls28@3.6.13-2ubuntu1.8
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
gnutls@3.8.8-r0
3.8.13-r0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
gnutls@3.8.8-r0
3.8.13-r0
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
gnutls@3.8.11-r0
3.8.13-r0
1
ghcr.io/kokuwaio/gcloud-mysql:v3.2.1963098135c550
gnutls@3.8.12-r0
3.8.13-r0
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
gnutls28@3.5.18-1ubuntu1.6
3.5.18-1ubuntu1.6+esm3
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kubelauncher/openldap8978aa002bc0
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
ghcr.io/kubelauncher/rabbitmqff5a36a457f1
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
ghcr.io/lambdaclass/ethrex:latest0c7896f060d6
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
ghcr.io/linuxserver/duplicati:latesta792931146b4
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.9
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
gnutls28@3.7.3-4ubuntu1.9
no fix listed
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
gnutls28@3.7.3-4ubuntu1.9
no fix listed
1
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
gnutls28@3.7.3-4ubuntu1.9
no fix listed
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
gnutls28@3.8.9-3
3.8.9-3+deb13u4
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.