StackRadar

CVE-2026-54371

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.4
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,746
of 17,828 indexed, latest versions
Container images
2,895
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: attr security update

Carried by container images the latest versions of 2,746 of 17,828 indexed charts deploy, on 2,895 images.

Affected packageAffected versionsFixed inImages
attrdeb1:2.4.47-1ubuntu1, 1:2.4.47-2, 1:2.4.47-2build1, 1:2.4.48-5+9 more1:2.4.47-1ubuntu1+esm1, 1:2.4.47-2ubuntu0.16.04.1~esm1, 1:2.4.47-2ubuntu0.18.04.1~esm1, 1:2.4.48-5ubuntu0.1~esm1+4 more2,445
attrrpm2.4.48-3.el8, 2.5.1-3.el9, 2.5.2-1.azl3, 2.5.2-5.el100:2.6.0-1.el8_10, 0:2.6.0-1.el9_8, 0:2.6.0-1.el10_2, 2.6.0-1450
aclrpm2.3.1-2.azl32.4.0-13
OSV records
DEBIAN-CVE-2026-54371UBUNTU-CVE-2026-54371RHSA-2026:56133RHSA-2026:59380RHSA-2026:60226RLSA-2026:56133RLSA-2026:59380RLSA-2026:60226AZL-91400AZL-91424ECHO-e81f-866f-9cb6
Also known as
USN-8691-1

Charts affected

2,746 by stars
ChartLatestAffected imagesRadar Score
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,419
passboltpassbolt2.1.15 of 6See more

passbolt passbolt 2.1.1

5 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
attr@1:2.5.1-4
no fix listed
library/haproxy:3.4.10f597665a2a6
attr@1:2.5.2-3
no fix listed
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
attr@1:2.5.2-3
no fix listed

Open the chart page →

13,284
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

944
reposilitereposilite1.4.21 of 1See more

reposilite reposilite 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,092
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latest4402d880dd4c
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

2,700
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
attr@1:2.5.1-4
no fix listed

Open the chart page →

2,435
thehivestrangebee-helmOfficialVerified publisher1.1.06 of 7See more

thehive strangebee-helm 1.1.0

6 of the 7 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
attr@1:2.5.1-4
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
attr@1:2.5.1-4
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
attr@1:2.5.1-4
no fix listed
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
strangebee/thehive:5.8.0-1a7f7b05fba24
attr@1:2.5.1-4
no fix listed

Open the chart page →

16,513
truenas-csptruenas-cspVerified publisher1.2.45 of 11See more

truenas-csp truenas-csp 1.2.4

5 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/csi-extensions:v1.2.1189146672a7ac
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-group-provisioner:v1.0.107bf9d8f16a5d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-group-snapshotter:v1.0.10caeaaffe7e2b
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
quay.io/hpestorage/volume-mutator:v1.3.109e98b2e697bd
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

6,027
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
attr@1:2.5.1-4
no fix listed

Open the chart page →

14,373
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/nginx:stable0aa2d81d65bc
attr@1:2.5.2-3
no fix listed

Open the chart page →

3,142
photoprismandrenarchyVerified publisher8.15.01 of 1See more

photoprism andrenarchy 8.15.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
photoprism/photoprism:260728958642220223
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1

Open the chart page →

42,161
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,853
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
attr@1:2.5.2-3
no fix listed
baserow/web-frontend:2.3.3566d24c7d9f5
attr@1:2.5.2-3
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
attr@1:2.5.1-4
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
attr@1:2.5.1-4
no fix listed

Open the chart page →

17,768
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

129,761
headwind-mdmchristianhuthVerified publisher5.10.52 of 2See more

headwind-mdm christianhuth 5.10.5

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
attr@1:2.5.1-4
no fix listed
headwindmdm/hmdm:0.1.93550b4840840
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

6,046
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
attr@1:2.5.1-4
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
attr@1:2.5.1-4
no fix listed

Open the chart page →

9,592
dagster-user-deploymentsdagsterVerified publisher1.13.241 of 1See more

dagster-user-deployments dagster 1.13.24

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dagster/user-code-example:1.13.24206c454797f7
attr@1:2.5.2-3
no fix listed

Open the chart page →

697
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

14,303
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
attr@1:2.5.1-4
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
attr@1:2.5.1-4
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
attr@1:2.5.1-4
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1

Open the chart page →

76,125
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,221
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,681
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

2,628
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
attr@1:2.5.1-1build1
1:2.5.1-1ubuntu0.1
geopython/pycsw:3.0.0-beta284662ea6b78b
attr@1:2.5.1-4
no fix listed
library/memcached:1.6.40cc523a19da58
attr@1:2.5.2-3
no fix listed
library/redis:8.4.03906b477e4b6
attr@1:2.5.1-4
no fix listed

Open the chart page →

55,539
gitops-promotergitops-promoterOfficialVerified publisher0.20.01 of 2See more

gitops-promoter gitops-promoter 0.20.0

1 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/gitops-promoter:v0.41.0cab605cc1d1d
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,988
glpiglpi-conteiner0.1.02 of 3See more

glpi glpi-conteiner 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/phpmyadmin:latest9e915766488a
attr@1:2.5.2-3
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
attr@1:2.5.1-4
no fix listed

Open the chart page →

11,494
alloy-operatorgrafana0.7.11 of 1See more

alloy-operator grafana 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

475
grafana-mcpgrafana-communityVerified publisher0.24.01 of 1See more

grafana-mcp grafana-community 0.24.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.5.107c6614a8f8b
attr@1:2.5.1-4
no fix listed

Open the chart page →

1,124
mariadbgroundhog2k4.44.01 of 1See more

mariadb groundhog2k 4.44.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mariadb:11.8.46b848cb24fbb
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

3,009
heimdallheimdallOfficialVerified publisher3.3.32 of 2See more

heimdall heimdall 3.3.3

2 of the 2 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:17f4c66b820c6f
attr@1:2.5.2-3
no fix listed
mitre/heimdall2:release-latest06f6e72d416a
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

1,868
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
attr@1:2.5.1-4
no fix listed

Open the chart page →

4,249
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
attr@1:2.5.1-4
no fix listed

Open the chart page →

9,600
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
attr@1:2.5.2-3
no fix listed

Open the chart page →

3,770
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie86c951e05bf5
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,268
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie86c951e05bf5
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,669
openctihelm-openctiVerified publisher3.0.111 of 8See more

opencti helm-opencti 3.0.11

1 of the 8 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
attr@1:2.5.1-4
no fix listed

Open the chart page →

3,431
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
apache/hertzbeat-collector:1.8.0a2bab1be574c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
library/postgres:15dfbbb0ad8cab
attr@1:2.5.2-3
no fix listed

Open the chart page →

14,020
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
attr@1:2.5.1-4
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
attr@1:2.5.1-4
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
attr@1:2.5.1-4
no fix listed
library/neo4j:2026.05.06c162e2432f8
attr@1:2.5.2-3
no fix listed

Open the chart page →

10,651
jenkinsjenkins-helm-chartVerified publisher0.1.01 of 1See more

jenkins jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
attr@1:2.5.2-3
no fix listed

Open the chart page →

2,545
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

1,780
kamu-api-serverkamuVerified publisher0.90.01 of 1See more

kamu-api-server kamu 0.90.0

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.90.0e61435d44913
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

6,426
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

4,668
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10

Open the chart page →

4,962
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1
istio/proxyv2:1.14.1df69c1a7af7c
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
library/python:3.7eedf63967cdb
attr@1:2.5.1-4
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
attr@1:2.4.47-2
1:2.4.47-2ubuntu0.16.04.1~esm1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
attr@1:2.4.47-2build1
1:2.4.47-2ubuntu0.18.04.1~esm1

Open the chart page →

158,913
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1

Open the chart page →

10,732
testkubekubeshop2.13.32 of 5See more

testkube kubeshop 2.13.3

2 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
kubeshop/testkube-minio:2025.10d8e1af6aca99
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,364
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
attr@1:2.5.1-4
no fix listed

Open the chart page →

5,943
libredb-studiolibredb-studioVerified publisher0.1.671 of 1See more

libredb-studio libredb-studio 0.1.67

1 of the 1 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.2c398419c29a7
attr@1:2.5.2-3
no fix listed

Open the chart page →

1,198
musicocielmusicocielVerified publisher0.0.01 of 3See more

musicociel musicociel 0.0.0

1 of the 3 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:23.0.34f72a5b0c076
attr@2.5.1-3.el9
0:2.6.0-1.el9_8

Open the chart page →

4,444
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
attr@1:2.5.1-4
no fix listed

Open the chart page →

8,216
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-54371.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
attr@1:2.5.2-1build1.1
1:2.5.2-1ubuntu0.1

Open the chart page →

9,360

Container images carrying it

2,895 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/zncdatadev/hdfs-operator:0.4.0eb3c2928250e
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/hive-operator:0.4.0d66ba9149c22
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/listener-csi-driver:0.4.0b69bed123b02
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/listener-operator:0.4.068b92dae8d75
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/trino-operator:0.4.04f516757aee3
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
attr@1:2.5.2-4
1:2.5.2-4ubuntu0.1
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
attr@1:2.5.2-3
no fix listed
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
attr@1:2.4.48-5
1:2.4.48-5ubuntu0.1~esm1
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
attr@2.4.48-3.el8
0:2.6.0-1.el8_10
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
attr@1:2.5.1-4
no fix listed
1
registry.gitlab.com/xrow-public/ci-tools/tools:main9b9d1ed86b6a
attr@2.5.2-5.el10
0:2.6.0-1.el10_2
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
attr@2.5.1-3.el9
0:2.6.0-1.el9_8
1
registry.gitlab.com/xrow-public/velero-client/velero-client:1.4.203015f863a3e
attr@2.5.2-5.el10
0:2.6.0-1.el10_2
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
attr@1:2.5.2-3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
attr@1:2.5.1-4
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
attr@1:2.5.1-4
no fix listed
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.