StackRadar

CVE-2026-54371

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,711
of 17,805 indexed, latest versions
Container images
2,801
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: attr security update

Carried by container images the latest versions of 2,711 of 17,805 indexed charts deploy, on 2,801 images.

Affected packageAffected versionsFixed inImages
attrdeb1:2.4.47-1ubuntu1, 1:2.4.47-2, 1:2.4.47-2build1, 1:2.4.48-5+9 more1:2.4.47-1ubuntu1+esm1, 1:2.4.47-2ubuntu0.16.04.1~esm1, 1:2.4.47-2ubuntu0.18.04.1~esm1, 1:2.4.48-5ubuntu0.1~esm1+4 more2,348
attrrpm2.4.48-3.el8, 2.5.1-3.el9, 2.5.2-1.azl3, 2.5.2-5.el100:2.6.0-1.el8_10, 0:2.6.0-1.el9_8, 0:2.6.0-1.el10_2, 2.6.0-1453
aclrpm2.3.1-2.azl32.4.0-13
OSV records
DEBIAN-CVE-2026-54371UBUNTU-CVE-2026-54371RHSA-2026:56133RHSA-2026:59380RHSA-2026:60226RLSA-2026:56133RLSA-2026:59380RLSA-2026:60226AZL-91400AZL-91424ECHO-e81f-866f-9cb6
Also known as
USN-8691-1

Charts affected

2,711 by stars
ChartLatestAffected imagesRadar Score
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
attr@1:2.5.2-3
no fix listed

Open the chart page →

5,658
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
attr@1:2.5.1-4
no fix listed
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
attr@1:2.5.1-4
no fix listed

Open the chart page →

26,236
antigenic-stalwart-helm-chartantigenic-stalwart-helm-chartVerified publisher1.0.51 of 2See more

antigenic-stalwart-helm-chart antigenic-stalwart-helm-chart 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.15.5dcf575db2d53
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,481
antmediaantmediaVerified publisher3.1.01 of 4See more

antmedia antmedia 3.1.0

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:8.002a0cc7939f5
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

4,635
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,479
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
attr@1:2.5.2-3
no fix listed

Open the chart page →

3,294
flow-aggregatorantreaVerified publisher2.7.01 of 1See more

flow-aggregator antrea 2.7.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
antrea/flow-aggregator:v2.7.0065193e7572f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

786
apishiftapishiftVerified publisher0.3.02 of 4See more

apishift apishift 0.3.0

2 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift:v0.3.08fbbcd23b902
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

2,995
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

6,294
d.vazquezm.2021_helmapphelmVerified publisher1.0.01 of 6See more

d.vazquezm.2021_helm apphelm 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:5.0.6-focal8e70544b6c76
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

19,821
app-mobilityappmo0.1.02 of 5See more

app-mobility appmo 0.1.0

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

12,559
accounts-uiappscodeVerified publisher2026.9.111 of 1See more

accounts-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,710
aceappscodeVerified publisher2026.9.111 of 2See more

ace appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,012
ace-installerappscodeVerified publisher2026.9.111 of 2See more

ace-installer appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,368
ace-installer-certifiedappscodeVerified publisher2026.9.111 of 2See more

ace-installer-certified appscode 2026.9.11

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,368
billingappscodeVerified publisher2026.9.111 of 1See more

billing appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,710
cert-manager-csi-driver-cacertsappscodeVerified publisher2026.9.181 of 3See more

cert-manager-csi-driver-cacerts appscode 2026.9.18

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/csi-driver-cacerts:v0.6.0ab213b156017
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,508
cluster-gatewayappscodeVerified publisher2026.6.261 of 1See more

cluster-gateway appscode 2026.6.26

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-gateway:v1.12.158bed8d1e7fc
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

670
cluster-gateway-managerappscodeVerified publisher2026.6.261 of 1See more

cluster-gateway-manager appscode 2026.6.26

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/cluster-gateway-manager:v1.12.1f22cae0e6cf3
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

670
cluster-manager-hubappscodeVerified publisher2026.2.161 of 1See more

cluster-manager-hub appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

1,086
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

4,033
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
library/rabbitmq:3.12.1-managementf020c06da226
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
ghcr.io/appscode/inbox-server:latest536358d7b17e
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

15,797
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
library/rabbitmq:3.12.1-managementf020c06da226
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

17,200
managed-serviceaccountappscodeVerified publisher2024.2.251 of 1See more

managed-serviceaccount appscode 2024.2.25

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,405
managed-serviceaccount-managerappscodeVerified publisher2026.2.161 of 1See more

managed-serviceaccount-manager appscode 2026.2.16

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

928
marketplace-apiappscodeVerified publisher2026.9.111 of 1See more

marketplace-api appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,710
minioappscodeVerified publisher2026.9.111 of 1See more

minio appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

4,191
multicluster-controlplaneappscodeVerified publisher2025.4.301 of 1See more

multicluster-controlplane appscode 2025.4.30

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,584
platform-apiappscodeVerified publisher2026.9.112 of 3See more

platform-api appscode 2026.9.11

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
attr@1:2.5.1-4
no fix listed
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
attr@1:2.5.2-3
no fix listed

Open the chart page →

37,889
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

3,326
haproxyappuio2.7.21 of 1See more

haproxy appuio 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,704
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,903
chart-app-vidapp-vid-chartVerified publisher0.0.71 of 2See more

chart-app-vid app-vid-chart 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

8,931
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
attr@1:2.5.2-3
no fix listed

Open the chart page →

7,607
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

7,697
arlas-aiasarlas-stackVerified publisher28.9.09See more

arlas-aias arlas-stack 28.9.0

9 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.0.1-debian-12-r0e6f6ddcce2f1
attr@1:2.5.1-4
no fix listed
bitnamilegacy/keycloak:26.3.3-debian-12-r0da3df0976a9f
attr@1:2.5.1-4
no fix listed
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
attr@1:2.5.1-4
no fix listed
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
attr@1:2.5.1-4
no fix listed
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
attr@1:2.5.1-4
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
attr@1:2.5.1-4
no fix listed
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:8.0.3-debian-12-r1189aae381e7f
attr@1:2.5.1-4
no fix listed
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
attr@1:2.5.1-4
no fix listed

Open the chart page →

arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

23,461
bind9artem-shestakov1.0.11 of 1See more

bind9 artem-shestakov 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

3,703
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

22,754
assemblylineassemblylineVerified publisher7.4.207 of 12See more

assemblyline assemblyline 7.4.20

7 of the 12 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable20098127270065
attr@1:2.5.1-4
no fix listed
cccs/assemblyline-rust:4.7.4.stable202be5e6a57427
attr@1:2.5.1-4
no fix listed
cccs/assemblyline-socketio:4.7.4.stable202b88493b62f7
attr@1:2.5.1-4
no fix listed
cccs/assemblyline-ui:4.7.4.stable20efa75509b854
attr@1:2.5.1-4
no fix listed
library/redis:latest298e5b3bc566
attr@1:2.5.2-3
no fix listed
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

12,862
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

14,912
dltkvassist-iot-data-integrity-verification0.2.03 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1

Open the chart page →

185,703
dltflassist-iot-dlt-based-fl0.2.03 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
hyperledger/fabric-couchdb:0.4.15f6c724592abf
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1

Open the chart page →

185,703
fl-orchestrator-guiassist-iot-fl-orchestrator0.1.01 of 3See more

fl-orchestrator-gui assist-iot-fl-orchestrator 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

9,428
idmassist-iot-identity-manager0.1.02 of 2See more

idm assist-iot-identity-manager 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
assistiot/identity-manager_db:latest0d3e6d35f168
attr@1:2.5.1-4
no fix listed
assistiot/identity-manager_kc:latest0df4b4fa899a
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

13,413
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

10,179
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

83,638
resource-provisioningassist-iot-resource-provisioning1.0.01 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

1 of the 7 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
attr@1:2.5.2-3
no fix listed

Open the chart page →

8,072
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

7,986
sd-wanassist-iot-sd-wan1.0.01 of 2See more

sd-wan assist-iot-sd-wan 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:4.2.21-bionic9cb28f7291d9
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1

Open the chart page →

5,382

Container images carrying it

2,801 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
attr@1:2.5.1-4
no fix listed
1
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
attr@1:2.5.2-3
no fix listed
1
ghcr.io/yourls/yourls:1.10.654082566391e
attr@1:2.5.2-3
no fix listed
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
attr@1:2.5.1-4
no fix listed
1
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
attr@1:2.5.2-3
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
attr@1:2.5.1-4
no fix listed
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
attr@1:2.5.1-4
no fix listed
1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
attr@1:2.5.1-4
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
attr@1:2.5.1-4
no fix listed
1
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.2ae9ae0925ff8
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
1
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.15.059b9d0348428
acl@2.3.1-2.azl3
attr@2.5.2-1.azl3
2.4.0-1
2.6.0-1
1
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver:v1.5.65f91243cfd60
acl@2.3.1-2.azl3
attr@2.5.2-1.azl3
2.4.0-1
2.6.0-1
1
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver-crds:v1.5.6cb0112636dc4
acl@2.3.1-2.azl3
attr@2.5.2-1.azl3
2.4.0-1
2.6.0-1
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
public.ecr.aws/aktosecurity/redis47200b041382
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
attr@1:2.5.2-3
no fix listed
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
attr@1:2.5.2-3
no fix listed
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
attr@1:2.5.2-3
1:2.6.0-1
1
public.ecr.aws/groundcovercom/temporalio/server:1.29.6-mini-20260702-170f191d0a80e
attr@1:2.5.2-3
1:2.6.0-1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
attr@1:2.5.1-4
no fix listed
1
public.ecr.aws/perfectscale-io/kube-state-metrics:4.1.14-redhat849e235e2d3e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.