StackRadar

CVE-2026-54369

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,538
of 17,805 indexed, latest versions
Container images
2,512
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: acl security update

Carried by container images the latest versions of 2,538 of 17,805 indexed charts deploy, on 2,512 images.

Affected packageAffected versionsFixed inImages
acldeb2.2.52-1, 2.2.52-3, 2.2.52-3build1, 2.2.53-6+8 more2.4.0-12,468
aclrpm2.3.1-2.azl3, 2.3.1-3.el9, 2.3.1-4.el90:2.4.0-0.el9_2.1, 0:2.4.0-0.el9_4.1, 0:2.4.0-0.el9_6.1, 2.4.0-144
OSV records
DEBIAN-CVE-2026-54369RHSA-2026:67140RHSA-2026:67142RHSA-2026:67144UBUNTU-CVE-2026-54369AZL-91397ECHO-b5ce-94bd-9b5b

Charts affected

2,538 by stars
ChartLatestAffected imagesRadar Score
penpotkubitodevVerified publisher1.2.12 of 5See more

penpot kubitodev 1.2.1

2 of the 5 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
penpotapp/backend:2.2.147853d9bb9dd
acl@2.3.1-1
no fix listed
penpotapp/exporter:2.2.15c835ffd87ab
acl@2.3.1-1
no fix listed

Open the chart page →

17,071
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.43 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

3 of the 9 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
acl@2.3.2-1build1.1
no fix listed
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
acl@2.3.2-2+b1
no fix listed
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
acl@2.3.1-3
no fix listed

Open the chart page →

20,551
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
acl@2.2.53-6
no fix listed

Open the chart page →

3,489
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
acl@2.3.1-1
no fix listed

Open the chart page →

63,724
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
acl@2.2.53-6
no fix listed

Open the chart page →

2,523
dynatrace-operatorkvalitetsitVerified publisher1.3.01 of 1See more

dynatrace-operator kvalitetsit 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
acl@2.3.1-4.el9
0:2.4.0-0.el9_4.1

Open the chart page →

1,320
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
acl@2.3.2-1build1.1
no fix listed

Open the chart page →

3,172
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
acl@2.3.2-1build1
no fix listed

Open the chart page →

3,403
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
acl@2.2.52-3build1
no fix listed

Open the chart page →

16,732
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
acl@2.3.1-1
no fix listed

Open the chart page →

7,863
nginx-chartkyb-nginx0.1.01 of 1See more

nginx-chart kyb-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,885
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
acl@2.2.52-3build1
no fix listed

Open the chart page →

26,559
pageslatif-pages1.0.02 of 3See more

pages latif-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
acl@2.2.53-6
no fix listed
flyway/flyway:6.4.422d97ceb0c47
acl@2.2.52-3build1
no fix listed

Open the chart page →

20,279
pageslavanya-pages1.0.02 of 3See more

pages lavanya-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
acl@2.2.53-6
no fix listed
flyway/flyway:6.4.422d97ceb0c47
acl@2.2.52-3build1
no fix listed

Open the chart page →

20,279
homebridgelbenicio-communityVerified publisher0.1.151 of 1See more

homebridge lbenicio-community 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
acl@2.3.2-1build1.1
no fix listed

Open the chart page →

34,333
kubernetes-dashboardlbenicio-communityVerified publisher7.14.91 of 5See more

kubernetes-dashboard lbenicio-community 7.14.9

1 of the 5 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
acl@2.3.2-1build1.1
no fix listed

Open the chart page →

2,330
smtplbenicio-communityVerified publisher0.1.31 of 1See more

smtp lbenicio-community 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,374
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
acl@2.3.1-3
no fix listed

Open the chart page →

33,836
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
acl@2.3.2-2+b1
no fix listed

Open the chart page →

4,492
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
acl@2.2.53-6
no fix listed

Open the chart page →

4,296
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
acl@2.3.1-3
no fix listed

Open the chart page →

4,090
vaultwardenleprechaun-charts0.1.281 of 1See more

vaultwarden leprechaun-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1ebdfe70701c6
acl@2.3.2-2+b1
no fix listed

Open the chart page →

2,080
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
acl@2.3.1-3
no fix listed

Open the chart page →

4,672
libredb-studiolibredb-studio-oci0.1.651 of 1See more

libredb-studio libredb-studio-oci 0.1.65

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.0fa925884368a
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,192
librenmslibrenms10.1.21 of 5See more

librenms librenms 10.1.2

1 of the 5 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/redis:8.10.1602d361c4da9
acl@2.3.2-2+b1
no fix listed

Open the chart page →

2,743
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
acl@2.2.53-6
no fix listed

Open the chart page →

4,480
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
acl@2.3.1-3
no fix listed
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
acl@2.3.1-3
no fix listed

Open the chart page →

5,462
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
acl@2.3.1-3
no fix listed

Open the chart page →

38,541
weblinzhengen0.1.71 of 1See more

web linzhengen 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,885
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
acl@2.3.2-2+b1
no fix listed

Open the chart page →

3,132
pocketbase-halitesql0.0.31 of 1See more

pocketbase-ha litesql 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
ghcr.io/litesql/pocketbase-ha:latestc5b28608958b
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,166
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
acl@2.3.1-1
no fix listed

Open the chart page →

10,843
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
acl@2.2.53-6
no fix listed
flyway/flyway:6.4.422d97ceb0c47
acl@2.2.52-3build1
no fix listed

Open the chart page →

20,279
web-chartljw-ktcloudlab0.1.01 of 1See more

web-chart ljw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
acl@2.3.2-2+b1
no fix listed

Open the chart page →

1,885
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
acl@2.3.2-2+b1
no fix listed

Open the chart page →

12,181
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
acl@2.3.1-4.el9
0:2.4.0-0.el9_6.1

Open the chart page →

2,564
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
acl@2.3.2-2+b1
no fix listed

Open the chart page →

2,661
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
acl@2.3.1-3
no fix listed

Open the chart page →

1,984
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
acl@2.3.1-3
no fix listed

Open the chart page →

7,574
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
acl@2.3.1-3
no fix listed

Open the chart page →

33,836
vnode-runtimeloftVerified publisher0.3.31 of 1See more

vnode-runtime loft 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
acl@2.3.1-1
no fix listed

Open the chart page →

2,546
nightingalelogic3579Verified publisher0.3.13 of 6See more

nightingale logic3579 0.3.1

3 of the 6 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
acl@2.3.2-1build1.1
no fix listed
flashcatcloud/nightingale:8.5.1421acb36181b
acl@2.3.2-2+b1
no fix listed
library/redis:6.2143f7bfc2358
acl@2.3.1-3
no fix listed

Open the chart page →

9,164
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
acl@2.3.1-1
no fix listed

Open the chart page →

6,689
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
acl@2.3.1-3
no fix listed

Open the chart page →

6,597
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
acl@2.3.1-3
no fix listed

Open the chart page →

23,734
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
acl@2.2.52-3build1
no fix listed

Open the chart page →

5,932
allure_docker_servicelovemew67Verified publisher0.0.11 of 1See more

allure_docker_service lovemew67 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.27.00815040339a9
acl@2.2.52-3build1
no fix listed

Open the chart page →

65,373
mongo_guilovemew67Verified publisher0.0.21 of 1See more

mongo_gui lovemew67 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.1.1e3952b14ae8e
acl@2.3.1-3
no fix listed

Open the chart page →

2,012
oncall-hobbylovemew67Verified publisher0.0.51 of 2See more

oncall-hobby lovemew67 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
library/redis:7.0.15352c1fdadc91
acl@2.3.1-3
no fix listed

Open the chart page →

5,905
vulnerability-scaninglovemew67Verified publisher0.0.31 of 2See more

vulnerability-scaning lovemew67 0.0.3

1 of the 2 container images this version deploys carry CVE-2026-54369.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.35.14154286c0209
acl@2.3.2-1build1.1
no fix listed

Open the chart page →

5,244

Container images carrying it

2,512 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
acl@2.2.53-6
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
acl@2.3.1-3
no fix listed
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
acl@2.3.1-4.el9
0:2.4.0-0.el9_6.1
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
acl@2.3.1-3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
acl@2.3.2-2+b1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
acl@2.3.1-3
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
acl@2.3.1-3
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
acl@2.3.1-3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
acl@2.3.1-3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
acl@2.3.1-3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
acl@2.3.1-3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
acl@2.3.1-3
no fix listed
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.