StackRadar

CVE-2026-5260

High

Advisory

Published 30 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.007
52nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,700
of 17,787 indexed, latest versions
Container images
1,786
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,700 of 17,787 indexed charts deploy, on 1,786 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.5.17-1ubuntu1, 3.5.18-1ubuntu1, 3.5.18-1ubuntu1.1, 3.5.18-1ubuntu1.2+41 more3.5.18-1ubuntu1.6+esm3, 3.6.13-2ubuntu1.12+esm2, 3.7.3-4ubuntu1.9, 3.7.9-2+deb12u7+5 more1,745
gnutlsapk3.8.5-r0, 3.8.8-r0, 3.8.11-r0, 3.8.12-r03.8.13-r041
OSV records
ALPINE-CVE-2026-5260DEBIAN-CVE-2026-5260UBUNTU-CVE-2026-5260
Also known as
USN-8284-1, USN-8502-1

Charts affected

1,700 by stars
ChartLatestAffected imagesRadar Score
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

35,050
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

4,418
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

7,874
clickhouseliwenhe1.0.11 of 3See more

clickhouse liwenhe 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.14ccf9c2b5e3f2
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6+esm3

Open the chart page →

6,761
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

7,201
locustlocustVerified publisher0.1.41 of 1See more

locust locust 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
hansehe/locust:1.1.0bc8e45262bc4
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

2,757
voice-biometricslumenvox2.0.112 of 26See more

voice-biometrics lumenvox 2.0.1

12 of the 26 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-assure-identity:2.0.0147854a3c916
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-audit:2.0.079428add7f38
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-binary-storage:2.0.053decadc102d
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-deployment:2.0.0ea8110886d38
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-management-api:2.0.0b9a23345eabd
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
lumenvox/cloud-voice-verifier:2.0.014170ad34903
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

70,741
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,734
magentomagento3.2.32 of 12See more

magento magento 3.2.3

2 of the 12 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mariadb:10.422edfe1c7834
gnutls28@3.6.13-2ubuntu1.11
3.6.13-2ubuntu1.12+esm2
library/rabbitmq:4.1.0-management935b3f84c1e4
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

13,479
maptiler-servermaptilerOfficialVerified publisher1.3.01 of 1See more

maptiler-server maptiler 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
maptiler/server:4.8.07e206140057b
gnutls28@3.6.13-2ubuntu1.12
3.6.13-2ubuntu1.12+esm2

Open the chart page →

2,975
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6+esm3

Open the chart page →

19,187
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6

Open the chart page →

4,137
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
gnutls28@3.8.9-3ubuntu2
3.8.9-3ubuntu2.2

Open the chart page →

11,103
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

13,738
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9

Open the chart page →

3,689
clowder2ncsaVerified publisher1.9.75 of 12See more

clowder2 ncsa 1.9.7

5 of the 12 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

37,373
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

14,250
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,039
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
gnutls28@3.7.9-2
3.7.9-2+deb12u7
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

14,838
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

4,166
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.13 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

3 of the 34 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
gnutls28@3.7.3-4ubuntu1.9
no fix listed
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6

Open the chart page →

22,420
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

6,873
opikopikOfficialVerified publisher2.2.612See more

opik opik 2.2.61

2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
redis/redis-stack-server:7.2.0-v10e44b2b49d059
gnutls28@3.7.3-4ubuntu1.4
3.7.3-4ubuntu1.9

Open the chart page →

opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
gnutls28@3.7.3-4ubuntu1.9
no fix listed
shaowenchen/ops-server:latest315444f703f4
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9

Open the chart page →

8,939
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

3,681
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

8,489
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

6,883
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6+esm3

Open the chart page →

4,727
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

7,576
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mariadb:12.3.3dd9b303aed4f
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

5,047
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7

Open the chart page →

31,844
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

3,201
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

23,964
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
gnutls28@3.7.3-4ubuntu1.1
3.7.3-4ubuntu1.9

Open the chart page →

6,796
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
gnutls28@3.8.3-1.1ubuntu3.3
3.8.3-1.1ubuntu3.6

Open the chart page →

2,762
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9

Open the chart page →

7,405
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

2,652
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7
library/rabbitmq:4.3.4-managementeb5295d08332
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2

Open the chart page →

11,869
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
gnutls28@3.7.3-4ubuntu1.6
3.7.3-4ubuntu1.9

Open the chart page →

7,432
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

6,521
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7

Open the chart page →

9,837
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2

Open the chart page →

10,120
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7

Open the chart page →

5,482
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
gnutls28@3.6.13-2ubuntu1.7
3.6.13-2ubuntu1.12+esm2

Open the chart page →

6,045
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

7,740
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
gnutls28@3.6.13-2ubuntu1.7
3.6.13-2ubuntu1.12+esm2

Open the chart page →

6,879
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-5260.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
gnutls28@3.7.9-2+deb12u5
3.7.9-2+deb12u7

Open the chart page →

2,654

Container images carrying it

1,786 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
airbyte/pod-sweeper:1.5.198d2c39d512e
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.12+esm2
1
akaunting/akaunting:3.0.1552811b36ec3a
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
akeyless/base:latest759e4289fae8
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
akeyless/gateway:5.3.13d2e7dce5eb9
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
aktosecurity/akto-api-security-dashboard:latest3aeaee66bc66
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
gnutls@3.8.8-r0
3.8.13-r0
1
aktosecurity/data-ingestion-service213aded7adc5
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
alazidis/stornx:1.1.1602d4f7f090c
gnutls28@3.7.9-2+deb12u6
3.7.9-2+deb12u7
1
allegroai/clearml:2.0.0-613713ae38f7daf
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6+esm3
1
alpine/git:v2.49.1c0280cf95723
gnutls@3.8.8-r0
3.8.13-r0
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
gnutls28@3.8.3-1.1ubuntu3.2
3.8.3-1.1ubuntu3.6
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
1
anguda/ant-media:2.5c435285fc241
gnutls28@3.6.13-2ubuntu1.8
3.6.13-2ubuntu1.12+esm2
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
gnutls28@3.7.9-2
3.7.9-2+deb12u7
1
antiantiops/vscode-browser-docker:1.137.0eeff80a99d92
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
gnutls28@3.8.9-3+deb13u2
3.8.9-3+deb13u4
1
antrea/flow-aggregator:v2.7.0065193e7572f
gnutls28@3.8.3-1.1ubuntu3.6
3.8.3-1.1ubuntu3.6+Fips1.2
1
anujdatar/cups:25.07.01685df04a643b
gnutls28@3.7.9-2+deb12u4
3.7.9-2+deb12u7
1
apache/activemq-artemis:2.44.00305c26f19ed
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
apache/activemq-artemis:2.37.0bae523439ee3
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
apache/airflow:2.8.4-python3.964e58748b6b9
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
gnutls28@3.7.9-2+deb12u3
3.7.9-2+deb12u7
1
apache/airflow:2.8.1e5560ad0b86e
gnutls28@3.7.9-2+deb12u2
3.7.9-2+deb12u7
1
apache/apisix:3.16.0-ubuntu5e47692cac00
gnutls28@3.8.3-1.1ubuntu3.5
3.8.3-1.1ubuntu3.6
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
gnutls28@3.7.3-4ubuntu1.7
3.7.3-4ubuntu1.9
1
apache/hertzbeat:1.8.075d48a62748f
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
gnutls28@3.8.3-1.1ubuntu3.4
3.8.3-1.1ubuntu3.6
1
apache/iotdb:0.13.3-nodeafa47bf1692a
gnutls28@3.6.13-2ubuntu1.7
3.6.13-2ubuntu1.12+esm2
1
apache/kafka:4.1.0bff074a5d005
gnutls@3.8.8-r0
3.8.13-r0
1
apache/kafka:3.9.0fbc7d7c428e3
gnutls@3.8.5-r0
3.8.13-r0
1
apache/nifi-registry:1.27.063b8e3e40742
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
gnutls28@3.7.3-4ubuntu1.2
3.7.3-4ubuntu1.9
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
apachepulsar/pulsar:3.0.79c9947de139d
gnutls28@3.7.3-4ubuntu1.5
3.7.3-4ubuntu1.9
1
apachepulsar/pulsar:2.9.0d056c89b7131
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
apachepulsar/pulsar:2.8.2d538416d5afe
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
apache/ranger:2.7.076c176e8a0e4
gnutls28@3.7.3-4ubuntu1.6
3.7.3-4ubuntu1.9
1
apache/rocketmq:5.3.0434d8398f996
gnutls28@3.8.3-1.1ubuntu3.1
3.8.3-1.1ubuntu3.6
1
apache/rocketmq-exporter:0.0.2c8fb51195444
gnutls28@3.7.3-4ubuntu1.3
3.7.3-4ubuntu1.9
1
apache/skywalking-oap-server:9.2.0133d35d2c263
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.9
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1
apache/skywalking-ui:9.2.0295f1dc87d98
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.9
1
apache/skywalking-ui:8.9.180530f0308a5
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.12+esm2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.