StackRadar

CVE-2026-54371

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,693
of 17,803 indexed, latest versions
Container images
2,797
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: attr security update

Carried by container images the latest versions of 2,693 of 17,803 indexed charts deploy, on 2,797 images.

Affected packageAffected versionsFixed inImages
attrdeb1:2.4.47-1ubuntu1, 1:2.4.47-2, 1:2.4.47-2build1, 1:2.4.48-5+9 more1:2.4.47-1ubuntu1+esm1, 1:2.4.47-2ubuntu0.16.04.1~esm1, 1:2.4.47-2ubuntu0.18.04.1~esm1, 1:2.4.48-5ubuntu0.1~esm1+4 more2,344
attrrpm2.4.48-3.el8, 2.5.1-3.el9, 2.5.2-1.azl3, 2.5.2-5.el100:2.6.0-1.el8_10, 0:2.6.0-1.el9_8, 0:2.6.0-1.el10_2, 2.6.0-1453
aclrpm2.3.1-2.azl32.4.0-13
OSV records
DEBIAN-CVE-2026-54371UBUNTU-CVE-2026-54371RHSA-2026:56133RHSA-2026:59380RHSA-2026:60226RLSA-2026:56133RLSA-2026:59380RLSA-2026:60226AZL-91400AZL-91424ECHO-e81f-866f-9cb6
Also known as
USN-8691-1

Charts affected

2,693 by stars
ChartLatestAffected imagesRadar Score
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,824
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,667
community-operatormongodb-helm-charts0.13.01 of 1See more

community-operator mongodb-helm-charts 0.13.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-kubernetes-operator:0.13.02dcc6393e6f7
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

1,126
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,728
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,823
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
attr@1:2.5.1-4
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

19,654
dragonflydragonflyVerified publisher1.8.51 of 3See more

dragonfly dragonfly 1.8.5

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.59fe2a1d6206f
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,083
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,810
stackgres-operatorstackgres-chartsOfficialVerified publisher1.19.11 of 2See more

stackgres-operator stackgres-charts 1.19.1

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

2,139
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

417
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1

Open the chart page →

1,605
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,722
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,978
difydify-helmVerified publisher0.38.06 of 11See more

dify dify-helm 0.38.0

6 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
attr@1:2.5.1-4
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
attr@1:2.5.1-4
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
attr@1:2.5.1-4
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
langgenius/dify-sandbox:0.2.15750e1111426e
attr@1:2.5.2-3
no fix listed
library/nginx:latest05b8cb60c354
attr@1:2.5.2-3
no fix listed

Open the chart page →

22,306
eclipse-cheeclipse-cheVerified publisher7.122.01 of 1See more

eclipse-che eclipse-che 7.122.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

931
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,225
operatorminio-operator7.1.11 of 1See more

operator minio-operator 7.1.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/minio/operator:v7.1.1cd587f60c43d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

874
plantumlstevehipwellVerified publisher3.49.01 of 1See more

plantuml stevehipwell 3.49.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,975
stacks-blockchainhirosystemsVerified publisher2.2.21 of 1See more

stacks-blockchain hirosystems 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,403
ingresskongOfficialVerified publisher0.24.01 of 2See more

ingress kong 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,199
oktetooktetoOfficialVerified publisher0.0.0-2026-08-171 of 10See more

okteto okteto 0.0.0-2026-08-17

1 of the 10 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-173e56bdd1b90d
attr@1:2.5.2-3
no fix listed

Open the chart page →

5,527
yourlsyourlsOfficialVerified publisher8.10.01 of 2See more

yourls yourls 8.10.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/yourls/yourls:1.10.654082566391e
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,968
apisix-ingress-controllerapisix1.4.01See more

apisix-ingress-controller apisix 1.4.0

1 container image this version deploys carries CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/api7/adc:0.27.1f65f53dd9668
attr@1:2.5.1-4
no fix listed

Open the chart page →

volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

1,386
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1

Open the chart page →

24,028
actualbudgetcommunity-chartsVerified publisher1.9.41 of 1See more

actualbudget community-charts 1.9.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,121
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,060
dynatrace-operatordynatraceVerified publisher1.10.21 of 1See more

dynatrace-operator dynatrace 1.10.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
public.ecr.aws/dynatrace/dynatrace-operator:v1.10.252281db48c93
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

172
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1

Open the chart page →

4,177
openprojectopenproject-helm-chartsOfficialVerified publisher13.12.04 of 5See more

openproject openproject-helm-charts 13.12.0

4 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
attr@1:2.5.1-4
no fix listed
library/postgres:16f1c3376c26f2
attr@1:2.5.2-3
no fix listed
openproject/hocuspocus:release-338001b288dc1359dfb5
attr@1:2.5.1-4
no fix listed
openproject/openproject:17.8.0-slim48952034215d
attr@1:2.5.2-3
no fix listed

Open the chart page →

20,108
sftpgosftpgoOfficialVerified publisher0.47.01 of 1See more

sftpgo sftpgo 0.47.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,269
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
attr@1:2.5.1-4
no fix listed

Open the chart page →

11,422
lemmyananace-chartsVerified publisher0.6.152 of 5See more

lemmy ananace-charts 0.6.15

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
attr@1:2.5.1-4
no fix listed
dessalines/lemmy-ui:0.19.20ee4c620d8e93
attr@1:2.5.2-3
no fix listed

Open the chart page →

7,260
zabbixcetic3.1.35 of 5See more

zabbix cetic 3.1.3

5 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
attr@1:2.5.2-3
no fix listed
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

34,000
csi-driver-smbcsi-driver-smbVerified publisher1.20.31 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,985
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,319
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,585
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
attr@1:2.5.1-4
no fix listed
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
attr@1:2.5.1-4
no fix listed

Open the chart page →

8,416
hpe-csi-driverhpe-storageVerified publisher3.3.01 of 14See more

hpe-csi-driver hpe-storage 3.3.0

1 of the 14 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/hpestorage/alletra-6000-and-nimble-csp:v3.3.0ea653ca39885
attr@2.5.2-5.el10
0:2.6.0-1.el10_2

Open the chart page →

1,700
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,383
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
attr@1:2.5.1-4
no fix listed

Open the chart page →

6,081
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

12,876
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,051
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
factoriotools/factorio:lateste9227748c507
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,459
netbirdjaconiVerified publisher0.15.12 of 4See more

netbird jaconi 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/golang:latest512690a56605
attr@1:2.5.2-3
no fix listed
netbirdio/management:0.45.10c9994b393ea
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

8,608
litellm-helmlitellm1.101.01 of 2See more

litellm-helm litellm 1.101.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,009
localstacklocalstack0.7.01 of 1See more

localstack localstack 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,245
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
attr@1:2.5.2-3
no fix listed

Open the chart page →

10,081
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

5,302
oneuptimeoneuptimeOfficialVerified publisher13.0.73See more

oneuptime oneuptime 13.0.7

3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
attr@1:2.5.2-3
no fix listed
oneuptime/probe:releasec5ef060a0bf3
attr@1:2.5.1-4
no fix listed
oneuptime/runner:releasebc4f82c54680
attr@1:2.5.2-3
no fix listed

Open the chart page →

Container images carrying it

2,797 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/minio/directpv:v4.0.84560083eb77d
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/minio/operator:v7.1.1cd587f60c43d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
attr@1:2.5.1-4
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
attr@1:2.5.1-4
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
1
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/nmstate/kubernetes-nmstate-operator:v0.87.04dce694f01ea
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
attr@1:2.5.2-3
no fix listed
1
quay.io/ongres/kubectl:v1.25.16-build-6.5304dada9e4503
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/open-cluster-management/multicluster-controlplane:latest9888240f644b
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
attr@1:2.5.2-3
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
attr@1:2.5.2-3
no fix listed
1
quay.io/piraeusdatastore/nri-volume-qos:v0.1.3cbe3e1ea2b6a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
1
quay.io/projectopenubl/searchpe:v4.1.0eefee675f9af
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/projectquay/clair:4.9.023329c3368e4
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/redhat-cop/vault-config-operator:v1.0.2e191cd9545d9
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
attr@1:2.5.1-4
no fix listed
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.