StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,698
of 17,787 indexed, latest versions
Container images
2,857
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,698 of 17,787 indexed charts deploy, on 2,857 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,389
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+59 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2439
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,698 by stars
ChartLatestAffected imagesRadar Score
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
glibc@2.41-12+deb13u2
2.41-12+deb13u4

Open the chart page →

4,332
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
glibc@2.31-0ubuntu9.17
no fix listed
netrisai/controller-telescope:4.6.0.00414d82948a8b2
glibc@2.31-0ubuntu9.17
no fix listed
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
glibc@2.31-0ubuntu9.16
no fix listed
netrisai/controller-web-session-generator:0.2.0a030a31289f4
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

30,326
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
glibc@2.41-12+deb13u2
2.41-12+deb13u4

Open the chart page →

2,244
syftopenmined0.9.53 of 6See more

syft openmined 0.9.5

3 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
glibc@2.36-9+deb12u4
no fix listed
openmined/syft-backend:0.9.5b72f74a68b32
glibc@2.40-r8
2.43-r7
openmined/syft-frontend:0.9.5d11524a3854a
glibc@2.40-r8
2.43-r7

Open the chart page →

17,245
paperless-ngxpaperless-ngxVerified publisher0.3.223 of 3See more

paperless-ngx paperless-ngx 0.3.22

3 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
no fix listed
valkey/valkey:9.1.2c123e3715db6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

8,489
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/api-gateway:latest40a4970de568
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/customers-service:latest2089811e5cc6
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/vets-service:latestd1165c94dfb3
glibc@2.27-3ubuntu1.4
no fix listed
platform9community/visits-service:latest8d11b50368c6
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

41,872
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

11,782
tbmq-clustertbmq-helm-chartOfficialVerified publisher2.1.02 of 3See more

tbmq-cluster tbmq-helm-chart 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
glibc@2.41-12+deb13u3
2.41-12+deb13u4
thingsboard/tbmq-node:2.4.070661025dba5
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,534
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

7,268
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

6,348
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

2,283
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

5,630
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
glibc@2.31-0ubuntu9.2
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
glibc@2.31-0ubuntu9.2
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

30,668
phpmyadminalekcVerified publisher0.3.11 of 1See more

phpmyadmin alekc 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,582
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

6,457
awx-operatorawx-operator-helm3.2.11 of 2See more

awx-operator awx-operator-helm 3.2.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
glibc@2.28-236.el8.7
0:2.28-251.el8_10.38

Open the chart page →

9,868
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
glibc@2.31-0ubuntu9.14
no fix listed

Open the chart page →

12,111
memcachedcloudpirates-memcachedVerified publisher0.14.91 of 1See more

memcached cloudpirates-memcached 0.14.9

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,052
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

3,033
codercoderOfficialVerified publisher1.44.62 of 2See more

coder coder 1.44.6

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
coderenvs/coder-service:1.44.61deffc4670e6
glibc@2.28-236.el8_9.13
0:2.28-251.el8_10.38
coderenvs/timescale:1.44.676fd37fe6830
glibc@2.28-236.el8_9.13
0:2.28-251.el8_10.38

Open the chart page →

6,849
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

5,896
cortexcortex3.3.82 of 4See more

cortex cortex 3.3.8

2 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
glibc@2.41-12+deb13u3
2.41-12+deb13u4
library/nginx:1.3105b8cb60c354
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,897
valkeygroundhog2k2.3.41 of 1See more

valkey groundhog2k 2.3.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

807
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

4,903
docmosthelmforgeVerified publisher1.2.113 of 4See more

docmost helmforge 1.2.11

3 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
docmost/docmost:0.95.041c8d777cf23
glibc@2.36-9+deb12u14
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
library/redis:8.10.1298e5b3bc566
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

5,564
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

4,148
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
glibc@2.41-12+deb13u2
2.41-12+deb13u4

Open the chart page →

2,901
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,263
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

8,636
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,244
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,187
passboltpassbolt2.1.15 of 6See more

passbolt passbolt 2.1.1

5 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
glibc@2.36-9+deb12u10
no fix listed
library/haproxy:3.4.10f597665a2a6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

13,350
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
glibc@2.34-231.el9_7.10
0:2.34-272.el9_8

Open the chart page →

896
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14

Open the chart page →

2,878
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

2,335
thehivestrangebee-helmOfficialVerified publisher1.0.66 of 7See more

thehive strangebee-helm 1.0.6

6 of the 7 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
glibc@2.36-9+deb12u9
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
no fix listed
minio/mc:RELEASE.2025-08-13T08-35-41Za7fe349ef4bd
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
minio/minio:RELEASE.2025-09-07T16-13-09Z14cea493d9a3
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
strangebee/thehive:5.7.6-1e77b713124dd
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

16,210
truenas-csptruenas-cspVerified publisher1.2.45 of 11See more

truenas-csp truenas-csp 1.2.4

5 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
glibc@2.34-270.el9_8
0:2.34-272.el9_8
quay.io/hpestorage/csi-extensions:v1.2.1189146672a7ac
glibc@2.34-270.el9_8
0:2.34-272.el9_8
quay.io/hpestorage/volume-group-provisioner:v1.0.107bf9d8f16a5d
glibc@2.34-270.el9_8
0:2.34-272.el9_8
quay.io/hpestorage/volume-group-snapshotter:v1.0.10caeaaffe7e2b
glibc@2.34-270.el9_8
0:2.34-272.el9_8
quay.io/hpestorage/volume-mutator:v1.3.109e98b2e697bd
glibc@2.34-270.el9_8
0:2.34-272.el9_8

Open the chart page →

5,759
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

14,240
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

7,930
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,380
kubedbappscodeVerified publisher2026.7.105 of 8See more

kubedb appscode 2026.7.10

5 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

4,016
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

2,984
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

2,668
alb-controllerazure-application-gateway-for-containers1.12.11 of 3See more

alb-controller azure-application-gateway-for-containers 1.12.1

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
mcr.microsoft.com/application-lb/images/alb-controller-crds:1.12.14dcf198fcb7c
glibc@2.38-20.azl3
no fix listed

Open the chart page →

209
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
glibc@2.41-12+deb13u3
2.41-12+deb13u4
baserow/web-frontend:2.3.3566d24c7d9f5
glibc@2.41-12+deb13u3
2.41-12+deb13u4
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
glibc@2.36-9+deb12u7
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
glibc@2.36-9+deb12u8
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

17,263
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
glibc@2.31-0ubuntu9.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

52,919
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

5,870
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

1,663
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
glibc@2.36-9+deb12u10
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

9,106

Container images carrying it

2,857 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
boky/postfix:4.4.0f3f247fd4252
glibc@2.36-9+deb12u9
no fix listed
1
boxcutter/meshcmd:1.1.384e13f01bcab
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
glibc@2.31-0ubuntu9.2
no fix listed
1
bsgrigorov/helm-operator:latest45ab095f09c8
glibc@2.28-127.el8_3.2
0:2.28-251.el8_10.38
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
glibc@2.36-9+deb12u3
no fix listed
1
budibase/database:2.1.0d90f656261c9
glibc@2.36-9+deb12u13
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
bugsink/bugsink:2ecdd84587746
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
burakince/mlflow:3.16.0ab4b566644b9
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
calico/node:v3.28.0385bf6391fea
glibc@2.28-236.el8_9.13
0:2.28-251.el8_10.38
1
calico/node:v3.28.1d8c644a8a3ee
glibc@2.28-251.el8_10.2
0:2.28-251.el8_10.38
1
calltelemetry/web:0.8.1-rc7205d13269e350
glibc@2.36-9+deb12u8
no fix listed
1
camunda/zeebe:8.4.5ab5abc09e407
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
carbone/carbone-ee:full-5.11.0518172cbad49
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
glibc@2.36-9+deb12u9
no fix listed
1
castai/hibernate:v0.14da62858c8381
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
castlemock/castlemock:latestb7f3f1527ba9
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8
1
castopod/castopod:1.12.101fd37280cbb2
glibc@2.36-9+deb12u8
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
glibc@2.41-12+deb13u1
2.41-12+deb13u4
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
chaerr/kridge:demo-operator-v0.1.266833deec017
glibc@2.31-0ubuntu9.9
no fix listed
1
chainsafe/lodestar:latest5593f6e97912
glibc@2.36-9+deb12u14
no fix listed
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
glibc@2.36-9+deb12u9
no fix listed
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
eglibc@2.19-0ubuntu6.15
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
glibc@2.31-0ubuntu9.1
no fix listed
1
cheveo/azp-agent:1.0.282240f890884
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14
1
cheyang/distributed-tf:1.6.046cc34755493
glibc@2.23-0ubuntu10
no fix listed
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
chocobozzz/peertube:v8.1.5052712130691
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
chriseaton/adventureworks:latest54c3384ce701
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14
1
chromadb/chroma:1.5.7fc8dc8e11fb2
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
circleci/runner:launch-agent9bdc62f02162
glibc@2.31-0ubuntu9.16
no fix listed
1
ciscolabs/msm-nc:0710202336d02faad958
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
1
citizenstig/httpbin:latestb81c818ccb86
glibc@2.23-0ubuntu5
no fix listed
1
ckan/ckan-base:2.12.087ecf3f27ad6
glibc@2.36-9+deb12u14
no fix listed
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
ckulka/baikal:0.10.1-nginx434bdd162247
glibc@2.36-9+deb12u10
no fix listed
1
cleveritcz/opencve:1.5.0c75c1636e0b7
glibc@2.34-83.el9.12
0:2.34-272.el9_8
1
clickhouse/clickhouse-server:24.81ffa82edee00
glibc@2.31-0ubuntu9.16
no fix listed
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
glibc@2.31-0ubuntu9.15
no fix listed
1
clickhouse/clickhouse-server:23.8512bb8a21483
glibc@2.31-0ubuntu9.16
no fix listed
1
clickhouse/clickhouse-server:25.3.2.398745843b17f9
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14
1
clickhouse/clickhouse-server:26.3.1092098d3b31dd
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
1
clickhouse/clickhouse-server:24.12.6a65ca89ddbe8
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14
1
clickhouse/clickhouse-server:25.3.14.14b627d7a9bc0e
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
1
clickhouse/clickhouse-server:25.10.2.65e019438e1e05
glibc@2.35-0ubuntu3.11
2.35-0ubuntu3.14
1
cloudflare/cloudflared:2025.8.0eb5c9324efe3
glibc@2.36-9+deb12u10
no fix listed
1
cloudflare/cloudflared:2026.9.0ff69a2225ad7
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.