StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,717
of 17,781 indexed, latest versions
Container images
2,882
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,717 of 17,781 indexed charts deploy, on 2,882 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,414
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+59 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2439
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,717 by stars
ChartLatestAffected imagesRadar Score
zeroclawzeroclawVerified publisher0.2.11 of 2See more

zeroclaw zeroclaw 0.2.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/zeroclaw-labs/zeroclaw:v0.1.7497893753e16
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

778
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
glibc@2.34-168.el9_6.14
0:2.34-272.el9_8

Open the chart page →

1,819
paperless-ngxadnoctemVerified publisher0.4.23 of 5See more

paperless-ngx adnoctem 0.4.2

3 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
gotenberg/gotenberg:8.36.087c16b9f3642
glibc@2.41-12+deb13u3
2.41-12+deb13u4
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

19,691
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

13,635
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
agentarea/agentarea-api:latest9e15e16fa758
glibc@2.41-12+deb13u3
2.41-12+deb13u4
agentarea/agentarea-mcp-runner:latestd3c209a5d531
glibc@2.36-9+deb12u14
no fix listed
agentarea/agentarea-worker:latest1e5cb68ee77a
glibc@2.41-12+deb13u3
2.41-12+deb13u4
valkey/valkey:9.0.1546304417fea
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

14,914
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.221 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.22

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

2,358
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14

Open the chart page →

3,697
cloudflaredalekcVerified publisher1.8.11 of 1See more

cloudflared alekc 1.8.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.9.1b269e8abd07a
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

313
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,604
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
glibc@2.41-12+deb13u1
2.41-12+deb13u4
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

12,037
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
glibc@2.27-3ubuntu1.6
no fix listed

Open the chart page →

12,046
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

8,341
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

5,880
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

3,366
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
glibc@2.36-9+deb12u4
no fix listed
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

22,202
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.14

Open the chart page →

7,740
kubedb-provisionerappscodeVerified publisher0.66.01 of 1See more

kubedb-provisioner appscode 0.66.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

500
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

5,222
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

1,710
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

2,297
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
glibc@2.31-0ubuntu9.12
no fix listed

Open the chart page →

17,896
dltbrokerassist-iot-distributed-broker0.2.03 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
glibc@2.23-0ubuntu10
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
glibc@2.23-0ubuntu11
no fix listed

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.03 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

3 of the 9 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:latesta70b6ba64a08
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
glibc@2.23-0ubuntu10
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
glibc@2.23-0ubuntu11
no fix listed

Open the chart page →

77,687
astradnsastradnsVerified publisher0.2.91 of 2See more

astradns astradns 0.2.9

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,613
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

4,292
kube-image-webhookav1o-chartsVerified publisher0.1.31 of 1See more

kube-image-webhook av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
glibc@2.27-3ubuntu1.5
no fix listed

Open the chart page →

3,723
azuredisk-csi-driverazuredisk-csi-driverVerified publisher1.34.57 of 8See more

azuredisk-csi-driver azuredisk-csi-driver 1.34.5

7 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
mcr.microsoft.com/oss/v2/kubernetes-csi/azuredisk-csi:v1.34.552b33e858369
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-attacher:v4.12.016987358befc
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.17.0b767078c36e0
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v6.3.09915a2058ad6
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v2.2.04bfe19fe8919
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-snapshotter:v8.6.0557008207ca4
glibc@2.38-20.azl3
no fix listed
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.19.0bd19535678a8
glibc@2.38-20.azl3
no fix listed

Open the chart page →

794
music-assistantbdclark-helm-chartsVerified publisher0.4.131 of 1See more

music-assistant bdclark-helm-charts 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.10.3885872224fa5
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,657
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

13,145
aramid-indexerbiatec-repoVerified publisher3.9.04 of 5See more

aramid-indexer biatec-repo 3.9.0

4 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3

Open the chart page →

13,357
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14

Open the chart page →

7,190
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

5,059
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.14

Open the chart page →

7,190
self-hostbitwarden2.4.01 of 11See more

self-host bitwarden 2.4.0

1 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

5,190
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

2,897
plexbrandan-schmitz-helm-chartsVerified publisher1.5.11 of 1See more

plex brandan-schmitz-helm-charts 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
linuxserver/plex:1.43.22785a6ad64d3
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,119
brightdata-exporterbrightdata-chartsVerified publisher0.2.171 of 1See more

brightdata-exporter brightdata-charts 0.2.17

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/danielgines/brightdata-exporter:0.2.176920d17cf6ff
glibc@2.41-12+deb13u2
2.41-12+deb13u4

Open the chart page →

1,284
pgcagriekinVerified publisher2.1.01 of 2See more

pg cagriekin 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,280
pgvectorcagriekinVerified publisher2.1.02 of 3See more

pgvector cagriekin 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
glibc@2.41-12+deb13u3
2.41-12+deb13u4
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

4,004
camel-dashboard-operatorcamel-dashboardVerified publisher0.1.01 of 1See more

camel-dashboard-operator camel-dashboard 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/camel-tooling/camel-dashboard-operator:latest5e867d01846e
glibc@2.28-251.el8_10.31
0:2.28-251.el8_10.38

Open the chart page →

520
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

84,444
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

84,444
carbone-eecarboneOfficialVerified publisher1.0.61 of 1See more

carbone-ee carbone 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
carbone/carbone-ee:full-5.11.0518172cbad49
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,619
cbioportalcbioportalOfficialVerified publisher1.1.01 of 1See more

cbioportal cbioportal 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

3,674
cert-vaultcert-vaultOfficialVerified publisher2.12.06 of 7See more

cert-vault cert-vault 2.12.0

6 of the 7 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
glibc@2.36-9+deb12u10
no fix listed
library/postgres:1767f41722b7a8
glibc@2.41-12+deb13u3
2.41-12+deb13u4
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

15,863
home-assistant-matter-servercharts-derwitt-devVerified publisher4.2.11 of 2See more

home-assistant-matter-server charts-derwitt-dev 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,360
passbolt-hachristianhuthVerified publisher6.0.13 of 4See more

passbolt-ha christianhuth 6.0.1

3 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
glibc@2.36-9+deb12u10
no fix listed
proxysql/proxysql:3.0.110e95d1b7cc32
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

10,817
squestchristianhuthVerified publisher6.6.73 of 4See more

squest christianhuth 6.6.7

3 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

9,971
typo3christianhuthVerified publisher7.7.02 of 2See more

typo3 christianhuth 7.7.0

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
glibc@2.36-9+deb12u10
no fix listed
martinhelmich/typo3:12.4c83a4f3fd7ae
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

8,466
chromadbchromadb-helmVerified publisher0.2.21 of 1See more

chromadb chromadb-helm 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/chroma-core/chroma:1.5.3cfd193653bd6
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

1,432

Container images carrying it

2,882 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.25:1.25.5a484819eb602
glibc@2.36-9+deb12u7
no fix listed
3
library/node:ltsbe23f54a88d3
glibc@2.36-9+deb12u14
no fix listed
3
library/python:3.12-slim78387bc3881b
glibc@2.41-12+deb13u3
2.41-12+deb13u4
3
localstack/localstack-pro:latest4aef81c53168
glibc@2.41-12+deb13u3
2.41-12+deb13u4
3
mcp/grafana:latest9362bcf6aa0e
glibc@2.36-9+deb12u14
no fix listed
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
glibc@2.28-127.el8
0:2.28-251.el8_10.38
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
glibc@2.23-0ubuntu10
no fix listed
3
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
no fix listed
3
sigp/lighthouse:latest-amd6450f66cfebb6d
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
3
tykio/tyk-dashboard:v5.13.10e03b94c153d
glibc@2.41-12+deb13u3
2.41-12+deb13u4
3
tykio/tyk-gateway-ee:v5.13.13e907e675bf9
glibc@2.41-12+deb13u3+dhi1
2.41-12+deb13u4
3
vaultwarden/server:1.37.1ebdfe70701c6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
3
xenondb/percona:5.7.330e26872a2b67
glibc@2.31-0ubuntu9.2
no fix listed
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
glibc@2.36-9+deb12u9
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
no fix listed
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
glibc@2.36-9+deb12u14
no fix listed
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
glibc@2.36-9+deb12u7
no fix listed
3
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
glibc@2.36-9+deb12u14
no fix listed
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
glibc@2.36-9+deb12u13
no fix listed
3
ghcr.io/tremolosecurity/kube-oidc-proxy:1.0.12d7747f308042
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
3
ghcr.io/voyagermesh/crd-manager:v0.3.0e67f14e5c853
glibc@2.36-9+deb12u14
no fix listed
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-node-driver-registrar:v2.17.0b767078c36e0
glibc@2.38-20.azl3
no fix listed
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-provisioner:v6.3.09915a2058ad6
glibc@2.38-20.azl3
no fix listed
3
mcr.microsoft.com/oss/v2/kubernetes-csi/csi-resizer:v2.2.04bfe19fe8919
glibc@2.38-20.azl3
no fix listed
3
mcr.microsoft.com/oss/v2/kubernetes-csi/livenessprobe:v2.19.0bd19535678a8
glibc@2.38-20.azl3
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
glibc@2.36-9+deb12u8
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
glibc@2.28-151.el8
0:2.28-251.el8_10.38
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/clair:4.3.675fb847ac045
glibc@2.28-164.el8
0:2.28-251.el8_10.38
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
glibc@2.31-0ubuntu9.7
no fix listed
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
glibc@2.23-0ubuntu11.3
no fix listed
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
glibc@2.36-9+deb12u13
no fix listed
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
glibc@2.28-189.6.el8_6
0:2.28-251.el8_10.38
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
glibc@2.28-164.el8
0:2.28-251.el8_10.38
3
actualbudget/actual-server:26.9.0552beab3dec8
glibc@2.36-9+deb12u14
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
2
apache/apisix-ingress-controller:2.2.05c5efa4c7f2a
glibc@2.36-9+deb12u14
no fix listed
2
apache/druid:37.0.00116fb802786
glibc@2.36-9+deb12u13
no fix listed
2
apache/nifi-registry:1.26.07cdfd8deec92
glibc@2.35-0ubuntu3.7
2.35-0ubuntu3.14
2
apache/rocketmq:5.4.0319cd8a81ed1
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.8
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.