StackRadar

CVE-2026-54371

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,732
of 17,781 indexed, latest versions
Container images
2,835
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: attr security update

Carried by container images the latest versions of 2,732 of 17,781 indexed charts deploy, on 2,835 images.

Affected packageAffected versionsFixed inImages
attrdeb1:2.4.47-1ubuntu1, 1:2.4.47-2, 1:2.4.47-2build1, 1:2.4.48-5+9 more1:2.4.47-1ubuntu1+esm1, 1:2.4.47-2ubuntu0.16.04.1~esm1, 1:2.4.47-2ubuntu0.18.04.1~esm1, 1:2.4.48-5ubuntu0.1~esm1+4 more2,376
attrrpm2.4.48-3.el8, 2.5.1-3.el9, 2.5.2-1.azl3, 2.5.2-5.el100:2.6.0-1.el8_10, 0:2.6.0-1.el9_8, 0:2.6.0-1.el10_2, 2.6.0-1459
aclrpm2.3.1-2.azl32.4.0-13
OSV records
DEBIAN-CVE-2026-54371UBUNTU-CVE-2026-54371RHSA-2026:56133RHSA-2026:59380RHSA-2026:60226RLSA-2026:56133RLSA-2026:59380RLSA-2026:60226AZL-91400AZL-91424ECHO-e81f-866f-9cb6
Also known as
USN-8691-1

Charts affected

2,732 by stars
ChartLatestAffected imagesRadar Score
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
attr@1:2.5.1-4
no fix listed

Open the chart page →

10,622
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
penpotapp/mcp:2.17.284f3f07ead11
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1

Open the chart page →

4,314
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
attr@1:2.5.1-4
no fix listed

Open the chart page →

7,568
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:latest5927ff3702df
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,699
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,800
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,626
community-operatormongodb-helm-charts0.13.01 of 1See more

community-operator mongodb-helm-charts 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

1,127
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,705
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,802
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
attr@1:2.5.1-4
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

19,391
dragonflydragonflyVerified publisher1.8.41 of 3See more

dragonfly dragonfly 1.8.4

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.4a1b52779c4dd
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,787
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,766
stackgres-operatorstackgres-chartsOfficialVerified publisher1.19.11 of 2See more

stackgres-operator stackgres-charts 1.19.1

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,119
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

392
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1

Open the chart page →

1,548
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,606
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,927
difydify-helmVerified publisher0.38.06 of 11See more

dify dify-helm 0.38.0

6 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
attr@1:2.5.1-4
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
attr@1:2.5.1-4
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
attr@1:2.5.1-4
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
langgenius/dify-sandbox:0.2.15750e1111426e
attr@1:2.5.2-3
no fix listed
library/nginx:latest05b8cb60c354
attr@1:2.5.2-3
no fix listed

Open the chart page →

22,002
eclipse-cheeclipse-cheVerified publisher7.122.01 of 1See more

eclipse-che eclipse-che 7.122.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

925
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,157
operatorminio-operator7.1.11 of 1See more

operator minio-operator 7.1.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/minio/operator:v7.1.1cd587f60c43d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

874
plantumlstevehipwellVerified publisher3.49.01 of 1See more

plantuml stevehipwell 3.49.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,869
rabbitmqgroundhog2k2.3.81 of 2See more

rabbitmq groundhog2k 2.3.8

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/rabbitmq:4.3.51773ab33af6a
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,002
stacks-blockchainhirosystemsVerified publisher2.2.21 of 1See more

stacks-blockchain hirosystems 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,374
kiali-serverkiali2.31.01 of 1See more

kiali-server kiali 2.31.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/kiali/kiali:v2.31.0df636734606c
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

234
ingresskongOfficialVerified publisher0.24.01 of 2See more

ingress kong 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,135
oktetooktetoOfficialVerified publisher0.0.0-2026-08-031 of 10See more

okteto okteto 0.0.0-2026-08-03

1 of the 10 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-033e56bdd1b90d
attr@1:2.5.2-3
no fix listed

Open the chart page →

5,750
yourlsyourlsOfficialVerified publisher8.9.111 of 2See more

yourls yourls 8.9.11

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/yourls/yourls:1.10.69b220ea83329
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,203
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

1,346
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1

Open the chart page →

23,964
actualbudgetcommunity-chartsVerified publisher1.9.41 of 1See more

actualbudget community-charts 1.9.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,091
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,022
dynatrace-operatordynatraceVerified publisher1.10.21 of 1See more

dynatrace-operator dynatrace 1.10.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

147
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1

Open the chart page →

4,154
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.04 of 5See more

openproject openproject-helm-charts 13.11.0

4 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
attr@1:2.5.1-4
no fix listed
library/postgres:16f1c3376c26f2
attr@1:2.5.2-3
no fix listed
openproject/hocuspocus:release-338001b288dc1359dfb5
attr@1:2.5.1-4
no fix listed
openproject/openproject:17.8.0-slim48952034215d
attr@1:2.5.2-3
no fix listed

Open the chart page →

19,926
sftpgosftpgoOfficialVerified publisher0.47.01 of 1See more

sftpgo sftpgo 0.47.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,232
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
attr@1:2.5.1-4
no fix listed

Open the chart page →

11,384
lemmyananace-chartsVerified publisher0.6.152 of 5See more

lemmy ananace-charts 0.6.15

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
attr@1:2.5.1-4
no fix listed
dessalines/lemmy-ui:0.19.20ee4c620d8e93
attr@1:2.5.2-3
no fix listed

Open the chart page →

7,210
apisix-ingress-controllerapisix1.3.11 of 2See more

apisix-ingress-controller apisix 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/api7/adc:0.27.1f65f53dd9668
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,616
zabbixcetic3.1.35 of 5See more

zabbix cetic 3.1.3

5 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
attr@1:2.5.2-3
no fix listed
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

33,725
csi-driver-smbcsi-driver-smbVerified publisher1.20.31 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,945
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,293
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,543
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
attr@1:2.5.1-4
no fix listed
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
attr@1:2.5.1-4
no fix listed

Open the chart page →

8,364
hpe-csi-driverhpe-storageVerified publisher3.3.01 of 14See more

hpe-csi-driver hpe-storage 3.3.0

1 of the 14 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/hpestorage/alletra-6000-and-nimble-csp:v3.3.0ea653ca39885
attr@2.5.2-5.el10
0:2.6.0-1.el10_2

Open the chart page →

1,615
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,321
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

5,240
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,987
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

12,746
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,993

Container images carrying it

2,835 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
library/ubuntu:24.0433ceb71981b6
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
3
localstack/localstack-pro:latest4aef81c53168
attr@1:2.5.2-3
no fix listed
3
mcp/grafana:latest9362bcf6aa0e
attr@1:2.5.1-4
no fix listed
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
3
selenium/hub:3.141.5902f251d48d5f
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
3
sigp/lighthouse:latest-amd6450f66cfebb6d
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
3
solace/solace-pubsub-standard:latest8e8ad105595e
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
3
vaultwarden/server:1.37.1ebdfe70701c6
attr@1:2.5.2-3
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
attr@1:2.5.1-4
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
attr@1:2.5.1-4
no fix listed
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
attr@1:2.5.1-4
no fix listed
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
attr@1:2.5.1-4
no fix listed
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
attr@1:2.5.1-4
no fix listed
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.12d7747f308042
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
3
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
3
quay.io/devtron/ai-agent:0.0.16545dac92173
attr@1:2.5.1-4
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/clair:4.3.675fb847ac045
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
attr@1:2.5.1-4
no fix listed
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
3
actualbudget/actual-server:26.9.0552beab3dec8
attr@1:2.5.1-4
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
2
apache/apisix:3.18.0-ubuntu9ee5df1611f9
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
2
apache/nifi-registry:1.26.07cdfd8deec92
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
2
apache/rocketmq:5.4.0319cd8a81ed1
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/etcd:latest99b408c15272
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
attr@1:2.5.1-4
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
attr@1:2.5.1-4
no fix listed
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.