StackRadar

CVE-2026-54371

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,716
of 17,790 indexed, latest versions
Container images
2,832
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: attr security update

Carried by container images the latest versions of 2,716 of 17,790 indexed charts deploy, on 2,832 images.

Affected packageAffected versionsFixed inImages
attrdeb1:2.4.47-1ubuntu1, 1:2.4.47-2, 1:2.4.47-2build1, 1:2.4.48-5+9 more1:2.4.47-1ubuntu1+esm1, 1:2.4.47-2ubuntu0.16.04.1~esm1, 1:2.4.47-2ubuntu0.18.04.1~esm1, 1:2.4.48-5ubuntu0.1~esm1+4 more2,375
attrrpm2.4.48-3.el8, 2.5.1-3.el9, 2.5.2-1.azl3, 2.5.2-5.el100:2.6.0-1.el8_10, 0:2.6.0-1.el9_8, 0:2.6.0-1.el10_2, 2.6.0-1457
aclrpm2.3.1-2.azl32.4.0-13
OSV records
DEBIAN-CVE-2026-54371UBUNTU-CVE-2026-54371RHSA-2026:56133RHSA-2026:59380RHSA-2026:60226RLSA-2026:56133RLSA-2026:59380RLSA-2026:60226AZL-91400AZL-91424ECHO-e81f-866f-9cb6
Also known as
USN-8691-1

Charts affected

2,716 by stars
ChartLatestAffected imagesRadar Score
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,231
passboltpassbolt2.1.16 of 6See more

passbolt passbolt 2.1.1

6 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
attr@1:2.5.1-4
no fix listed
library/haproxy:3.4.10f597665a2a6
attr@1:2.5.2-3
no fix listed
library/mariadb:latestdd9b303aed4f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
attr@1:2.5.2-3
no fix listed

Open the chart page →

13,523
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

921
reposilitereposilite1.4.21 of 1See more

reposilite reposilite 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,033
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

2,955
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,377
thehivestrangebee-helmOfficialVerified publisher1.0.76 of 7See more

thehive strangebee-helm 1.0.7

6 of the 7 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
attr@1:2.5.1-4
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
attr@1:2.5.1-4
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
attr@1:2.5.1-4
no fix listed
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
strangebee/thehive:5.8.0-1a7f7b05fba24
attr@1:2.5.1-4
no fix listed

Open the chart page →

16,220
truenas-csptruenas-cspVerified publisher1.2.45 of 11See more

truenas-csp truenas-csp 1.2.4

5 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/csi-extensions:v1.2.1189146672a7ac
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-group-provisioner:v1.0.107bf9d8f16a5d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-group-snapshotter:v1.0.10caeaaffe7e2b
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-mutator:v1.3.109e98b2e697bd
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

5,918
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
attr@1:2.5.1-4
no fix listed

Open the chart page →

14,327
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
attr@1:2.5.2-3
no fix listed

Open the chart page →

3,402
photoprismandrenarchyVerified publisher8.15.01 of 1See more

photoprism andrenarchy 8.15.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
photoprism/photoprism:260728958642220223
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1

Open the chart page →

8,923
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,722
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
attr@1:2.5.2-3
no fix listed
baserow/web-frontend:2.3.3566d24c7d9f5
attr@1:2.5.2-3
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
attr@1:2.5.1-4
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
attr@1:2.5.1-4
no fix listed

Open the chart page →

17,413
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
attr@1:2.5.1-4
no fix listed
headwindmdm/hmdm:0.1.93550b4840840
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

5,929
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
attr@1:2.5.1-4
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
attr@1:2.5.1-4
no fix listed

Open the chart page →

9,208
dagster-user-deploymentsdagsterVerified publisher1.13.221 of 1See more

dagster-user-deployments dagster 1.13.22

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dagster/user-code-example:1.13.225947f9ae481c
attr@1:2.5.2-3
no fix listed

Open the chart page →

955
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
attr@1:2.5.1-4
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
attr@1:2.5.1-4
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
attr@1:2.5.1-4
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

27,426
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,186
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,626
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
geopython/pycsw:3.0.0-beta284662ea6b78b
attr@1:2.5.1-4
no fix listed
library/memcached:1.6.40cc523a19da58
attr@1:2.5.2-3
no fix listed
library/redis:8.4.03906b477e4b6
attr@1:2.5.1-4
no fix listed

Open the chart page →

14,112
gitops-promotergitops-promoterOfficialVerified publisher0.17.01 of 2See more

gitops-promoter gitops-promoter 0.17.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,917
glpiglpi-conteiner0.1.03 of 3See more

glpi glpi-conteiner 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
library/phpmyadmin:latest3a8a8d6b5289
attr@1:2.5.2-3
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
attr@1:2.5.1-4
no fix listed

Open the chart page →

12,359
alloy-operatorgrafana0.7.11 of 1See more

alloy-operator grafana 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

428
grafana-mcpgrafana-communityVerified publisher0.23.21 of 1See more

grafana-mcp grafana-community 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.2f87fa67a561f
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,090
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,172
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
attr@1:2.5.1-4
no fix listed

Open the chart page →

9,557
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
attr@1:2.5.2-3
no fix listed

Open the chart page →

3,664
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,649
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,050
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,407
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
apache/hertzbeat-collector:1.8.0a2bab1be574c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
library/postgres:159b1d34adbce1
attr@1:2.5.2-3
no fix listed

Open the chart page →

14,181
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
attr@1:2.5.1-4
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
attr@1:2.5.1-4
no fix listed
library/neo4j:2026.05.06c162e2432f8
attr@1:2.5.2-3
no fix listed

Open the chart page →

10,522
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,729
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

6,350
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

4,663
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

4,956
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
istio/proxyv2:1.14.1df69c1a7af7c
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
library/python:3.7eedf63967cdb
attr@1:2.5.1-4
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

10,573
testkubekubeshop2.13.22 of 5See more

testkube kubeshop 2.13.2

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
kubeshop/testkube-minio:2025.10d8e1af6aca99
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,151
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,849
libredb-studiolibredb-studioVerified publisher0.1.631 of 1See more

libredb-studio libredb-studio 0.1.63

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,244
local-ailocalai3.4.21 of 1See more

local-ai localai 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/go-skynet/local-ai:latestd78cd113b2bc
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

4,070
musicocielmusicocielVerified publisher0.0.01 of 3See more

musicociel musicociel 0.0.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:23.0.34f72a5b0c076
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

4,406
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
attr@1:2.5.1-4
no fix listed

Open the chart page →

7,997
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

9,305
ubuntuopen-charts1.2.11 of 1See more

ubuntu open-charts 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/ubuntu:22.042edbbc5dc405
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

1,579
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

8,777

Container images carrying it

2,832 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
ghcr.io/adnoctem/lhci:1.0.119553e4b4033
attr@1:2.5.1-4
no fix listed
1
ghcr.io/aeharding/voyager:latest779759172676
attr@1:2.5.2-3
no fix listed
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
1
ghcr.io/aetrius/msockperf-server/msockperf-server:main46ae4ea003e0
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
attr@1:2.5.1-4
no fix listed
1
ghcr.io/aklivity/zilla:2.4.289c4a2e74863
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/alethic/auth0-operator-image:1.4.122468990a8521
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
attr@1:2.5.1-4
no fix listed
1
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
attr@1:2.5.1-4
no fix listed
1
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
attr@1:2.5.1-4
no fix listed
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
attr@1:2.5.1-4
no fix listed
1
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
attr@1:2.5.2-3
no fix listed
1
ghcr.io/angelnu/tt-rss:2.0.10068d332ae2410f8
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
attr@1:2.5.1-4
no fix listed
1
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
attr@1:2.5.1-4
no fix listed
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
attr@1:2.5.2-3
no fix listed
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
ghcr.io/argonix-io/argonix-api:1.0.0cb5f24732197
attr@1:2.5.2-3
no fix listed
1
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
attr@1:2.5.2-1build1
1:2.5.2-1ubuntu0.1
1
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
attr@1:2.5.1-4
no fix listed
1
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
attr@1:2.5.1-4
no fix listed
1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
attr@1:2.5.1-4
no fix listed
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
attr@1:2.5.1-4
no fix listed
1
ghcr.io/backstage/backstage:latest792e262ea504
attr@1:2.5.2-3
no fix listed
1
ghcr.io/base/node-reth:v1.1.18eb6e492fe3c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
attr@1:2.5.1-4
no fix listed
1
ghcr.io/bionicstork/bionicstork/relay:latest13290b9a64af
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
ghcr.io/blockscout/smart-contract-verifier:main9a43f0cc5797
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
attr@1:2.5.1-4
no fix listed
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
attr@1:2.5.1-4
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.