StackRadar

CVE-2026-54411

High

Advisory

Published 14 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,400
of 17,781 indexed, latest versions
Container images
2,405
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 2,400 of 17,781 indexed charts deploy, on 2,405 images.

Affected packageAffected versionsFixed inImages
pamdeb1.1.8-1ubuntu2, 1.1.8-1ubuntu2.2, 1.1.8-3.2ubuntu2, 1.1.8-3.2ubuntu2.1+33 more1.4.0-11ubuntu2.7, 1.5.3-5ubuntu5.6, 1.7.0-5+e5, 1.7.0-5ubuntu3.12,221
linux-pamapk1.7.2-r41.7.2-r55
pamrpm1.1.8-22.el7, 1.1.8-23.el7, 1.3.0-150000.6.86.1, 1.3.0-lp151.7.38+28 more0:1.1.8-23.el7_9.3, 0:1.3.1-40.el8_10, 0:1.5.1-27.el9_8.1, 0:1.5.1-28.el9_8.1+4 more179
OSV records
CGA-6xpv-g74w-9xwfDEBIAN-CVE-2026-54411RHSA-2026:56131RHSA-2026:59379RHSA-2026:60224RHSA-2026:61227RHSA-2026:64815RLSA-2026:56131RLSA-2026:59379RLSA-2026:64815UBUNTU-CVE-2026-54411ECHO-a8ba-b20f-6ddaopenSUSE-SU-2026:11201-1SUSE-SU-2026:22639-1SUSE-SU-2026:3163-1
Also known as
CGA-jvfq-ppr4-246f, RHSA-2026:61223, RHSA-2026:61224, RHSA-2026:61225, RHSA-2026:61226, RHSA-2026:61228, RHSA-2026:61230, USN-8601-1

Charts affected

2,400 by stars
ChartLatestAffected imagesRadar Score
docmosthelmforgeVerified publisher1.2.113 of 4See more

docmost helmforge 1.2.11

3 of the 4 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
docmost/docmost:0.95.041c8d777cf23
pam@1.5.2-6+deb12u2
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
pam@1.7.0-5
no fix listed
library/redis:8.10.1298e5b3bc566
pam@1.7.0-5
no fix listed

Open the chart page →

5,564
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
pam@1.7.0-5
no fix listed

Open the chart page →

4,148
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
pam@1.7.0-5
no fix listed

Open the chart page →

2,901
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6

Open the chart page →

1,263
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6

Open the chart page →

8,636
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
pam@1.7.0-5
no fix listed

Open the chart page →

1,244
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6

Open the chart page →

1,187
passboltpassbolt2.1.15 of 6See more

passbolt passbolt 2.1.1

5 of the 6 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
pam@1.5.2-6+deb12u1
no fix listed
library/haproxy:3.4.10f597665a2a6
pam@1.7.0-5
no fix listed
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
pam@1.7.0-5
no fix listed

Open the chart page →

13,350
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7

Open the chart page →

2,878
thehivestrangebee-helmOfficialVerified publisher1.0.64 of 7See more

thehive strangebee-helm 1.0.6

4 of the 7 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
pam@1.5.2-6+deb12u1
no fix listed
strangebee/thehive:5.7.6-1e77b713124dd
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

16,210
truenas-csptruenas-cspVerified publisher1.2.41 of 11See more

truenas-csp truenas-csp 1.2.4

1 of the 11 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
pam@1.5.1-28.el9
0:1.5.1-28.el9_8.1

Open the chart page →

5,759
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

14,240
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
pam@1.7.0-5
no fix listed

Open the chart page →

3,380
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6

Open the chart page →

2,668
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
pam@1.7.0-5
no fix listed
baserow/web-frontend:2.3.3566d24c7d9f5
pam@1.7.0-5
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

17,263
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
pam@1.3.1-5ubuntu4.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
pam@1.3.1-5ubuntu4.1
no fix listed

Open the chart page →

52,919
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

5,870
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
pam@1.5.2-6+deb12u1
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

9,106
dagster-user-deploymentsdagsterVerified publisher1.13.221 of 1See more

dagster-user-deployments dagster 1.13.22

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
dagster/user-code-example:1.13.225947f9ae481c
pam@1.7.0-5
no fix listed

Open the chart page →

928
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7

Open the chart page →

14,094
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
pam@1.5.2-6+deb12u1
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7

Open the chart page →

27,267
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
pam@1.7.0-5
no fix listed

Open the chart page →

2,163
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
pam@1.7.0-5
no fix listed

Open the chart page →

2,604
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6

Open the chart page →

2,539
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7
geopython/pycsw:3.0.0-beta284662ea6b78b
pam@1.5.2-6+deb12u1
no fix listed
library/memcached:1.6.40cc523a19da58
pam@1.7.0-5
no fix listed
library/redis:8.4.03906b477e4b6
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

13,953
gitops-promotergitops-promoterOfficialVerified publisher0.17.01 of 2See more

gitops-promoter gitops-promoter 0.17.0

1 of the 2 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
pam@1.7.0-5
no fix listed

Open the chart page →

2,814
glpiglpi-conteiner0.1.02 of 3See more

glpi glpi-conteiner 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
pam@1.7.0-5
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

12,170
grafana-mcpgrafana-communityVerified publisher0.23.11 of 1See more

grafana-mcp grafana-community 0.23.1

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.1cfcf06863c23
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

1,073
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

4,109
karakeephelmforgeVerified publisher1.2.91 of 3See more

karakeep helmforge 1.2.9

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

9,460
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
pam@1.7.0-5
no fix listed

Open the chart page →

3,641
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
pam@1.7.0-5
no fix listed

Open the chart page →

1,626
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
pam@1.7.0-5
no fix listed

Open the chart page →

2,027
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

3,383
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
apache/hertzbeat-collector:1.8.0a2bab1be574c
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
library/postgres:159b1d34adbce1
pam@1.7.0-5
no fix listed

Open the chart page →

14,000
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
pam@1.5.2-6+deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
pam@1.5.2-6+deb12u1
no fix listed
library/neo4j:2026.05.06c162e2432f8
pam@1.7.0-5
no fix listed

Open the chart page →

10,428
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6

Open the chart page →

1,685
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
pam@1.3.1-5ubuntu4.7
no fix listed

Open the chart page →

6,307
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
pam@1.3.1-22.el8
0:1.3.1-40.el8_10

Open the chart page →

4,652
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
pam@1.3.1-25.el8
0:1.3.1-40.el8_10

Open the chart page →

4,957
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
pam@1.3.1-5ubuntu4.3
no fix listed
library/python:3.7eedf63967cdb
pam@1.5.2-6
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
pam@1.1.8-3.2ubuntu2.1
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed

Open the chart page →

96,941
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,530
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

5,779
libredb-studiolibredb-studioVerified publisher0.1.631 of 1See more

libredb-studio libredb-studio 0.1.63

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
pam@1.7.0-5
no fix listed

Open the chart page →

1,222
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

7,949
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6

Open the chart page →

9,261
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7

Open the chart page →

8,722
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
pam@1.3.1-5ubuntu4.6
no fix listed

Open the chart page →

10,469
pubsubplus-hasolaceVerified publisher3.10.01 of 1See more

pubsubplus-ha solace 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
solace/solace-pubsub-standard:latest8e8ad105595e
pam@1.5.1-28.el9
0:1.5.1-28.el9_8.1

Open the chart page →

236
steampipe-powerpipe-kubernetessteampipe-powerpipe-kubernetesVerified publisher0.13.12 of 2See more

steampipe-powerpipe-kubernetes steampipe-powerpipe-kubernetes 0.13.1

2 of the 2 container images this version deploys carry CVE-2026-54411.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
pam@1.5.2-6+deb12u2
no fix listed
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

5,468

Container images carrying it

2,405 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
aktosecurity/akto-agent-guard-worker:1.1.4666eaffd5362
pam@1.7.0-5
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
pam@1.7.0-5ubuntu3
1.7.0-5ubuntu3.1
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
pam@1.7.0-5ubuntu3
1.7.0-5ubuntu3.1
1
alazidis/stornx:1.1.1602d4f7f090c
pam@1.5.2-6+deb12u2
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
pam@1.5.2-6+deb12u1
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7
1
anchore/anchore-engine:v0.10.0bde9eedf639d
pam@1.3.1-14.el8
0:1.3.1-40.el8_10
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
pam@1.3.1-4.el8
0:1.3.1-40.el8_10
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7
1
andrianrf/backoffice:latest047a7837651e
pam@1.3.1-34.el8_10
0:1.3.1-40.el8_10
1
anguda/ant-media:2.5c435285fc241
pam@1.3.1-5ubuntu4.6
no fix listed
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
pam@1.5.2-6
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
pam@1.7.0-5
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
pam@1.5.2-6+deb12u1
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
1
apache/activemq-artemis:2.37.0bae523439ee3
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6
1
apache/airflow:2.8.4-python3.964e58748b6b9
pam@1.5.2-6+deb12u1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
pam@1.5.2-6+deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
pam@1.5.2-6+deb12u1
no fix listed
1
apache/apisix:3.16.0-ubuntu5e47692cac00
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7
1
apache/hertzbeat:1.8.075d48a62748f
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
pam@1.5.3-5ubuntu5.5
1.5.3-5ubuntu5.6
1
apache/iotdb:0.13.3-nodeafa47bf1692a
pam@1.3.1-5ubuntu4.3
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.7
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
pam@1.3.1-5ubuntu4.3
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
pam@1.4.0-11ubuntu2.4
1.4.0-11ubuntu2.7
1
apachepulsar/pulsar:2.9.0d056c89b7131
pam@1.3.1-5ubuntu4.3
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
pam@1.3.1-5ubuntu4.3
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
pam@1.4.0-11ubuntu2.6
1.4.0-11ubuntu2.7
1
apache/rocketmq:5.3.0434d8398f996
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.6
1
apache/rocketmq-exporter:0.0.2c8fb51195444
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7
1
apache/skywalking-oap-server:9.2.0133d35d2c263
pam@1.4.0-11ubuntu2
1.4.0-11ubuntu2.7
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
pam@1.3.1-5ubuntu4.3
no fix listed
1
apache/skywalking-ui:9.2.0295f1dc87d98
pam@1.4.0-11ubuntu2
1.4.0-11ubuntu2.7
1
apache/skywalking-ui:8.9.180530f0308a5
pam@1.3.1-5ubuntu4.3
no fix listed
1
apache/superset:4.0.1ab9467fd712c
pam@1.5.2-6+deb12u1
no fix listed
1
apache/tika:3.3.1.090b7fa1dc018
pam@1.7.0-5ubuntu3
1.7.0-5ubuntu3.1
1
apache/tika:2.9.0.092d055a84e9e
pam@1.4.0-11ubuntu2.3
1.4.0-11ubuntu2.7
1
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
pam@1.7.0-5
no fix listed
1
apecloud/kb-cloud-installer:v2.1.42-certified98abc64aa985
pam@1.5.1-26.el9_6
0:1.5.1-27.el9_8.1
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
pam@1.3.1-25.el8
0:1.3.1-40.el8_10
1
archivebox/archivebox:0.7.41a5a37331091
pam@1.5.2-6+deb12u2
no fix listed
1
arilot/docker-bitcoind:0.17.127a4f7e0f9f1
pam@1.1.8-3.2ubuntu2.1
no fix listed
1
aristidetm/basic-notebook:3.6.5469dbc951224
pam@1.5.2-6+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.