StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,712
of 17,813 indexed, latest versions
Container images
2,893
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,712 of 17,813 indexed charts deploy, on 2,893 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,433
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+60 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2431
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,712 by stars
ChartLatestAffected imagesRadar Score
calicodevtron-labs0.1.11 of 4See more

calico devtron-labs 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
glibc@2.28-151.el8
0:2.28-251.el8_10.38

Open the chart page →

10,099
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
glibc@2.28-164.el8
0:2.28-251.el8_10.38

Open the chart page →

6,239
devtron-enterprisedevtron-labs48.0.08 of 28See more

devtron-enterprise devtron-labs 48.0.0

8 of the 28 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
no fix listed
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
glibc@2.23-0ubuntu11.3
no fix listed
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
glibc@2.36-9+deb12u13
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

69,760
devtron-logs-dumpdevtron-labs0.1.01 of 1See more

devtron-logs-dump devtron-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

4,993
devtron-operatordevtron-labs0.23.35 of 11See more

devtron-operator devtron-labs 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

33,411
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

12,000
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

3,961
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.03 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
glibc@2.27-3ubuntu1.4
no fix listed
library/rabbitmq:3-managemente582c0bc7766
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
oscarsotosanchez/weatherservice:v1.0911ec961d10b
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

27,736
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

4,145
difydify1.0.02 of 4See more

dify dify 1.0.0

2 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
glibc@2.36-9+deb12u9
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
glibc@2.36-9+deb12u6
no fix listed

Open the chart page →

51,732
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,285
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

7,692
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

2,429
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

7,367
ownclouddjjudas21Verified publisher0.3.232 of 3See more

owncloud djjudas21 0.3.23

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
glibc@2.36-9+deb12u7
no fix listed
valkey/valkey:8.1.481db6d39e1bb
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

10,292
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.8

Open the chart page →

92,708
spoolmandjjudas21Verified publisher0.1.81 of 1See more

spoolman djjudas21 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.24.042135965c42d
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

1,907
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

5,389
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

6,137
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

14,860
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
glibc@2.36-9+deb12u8
no fix listed

Open the chart page →

3,872
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
glibc@2.36-9+deb12u8
no fix listed

Open the chart page →

3,872
dnation-kubernetes-monitoring-stackdnationcloud4.0.35 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.3

5 of the 17 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
glibc@2.36-9+deb12u8
no fix listed
grafana/loki:3.2.0882e30c20683
glibc@2.36-9+deb12u8
no fix listed
grafana/loki-canary:3.2.049e03f80d361
glibc@2.36-9+deb12u8
no fix listed
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

23,543
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

9,013
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

3,106
dominodomino-iisasVerified publisher0.3.13 of 3See more

domino domino-iisas 0.3.1

3 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
glibc@2.41-12
2.41-12+deb13u4
ghcr.io/iisas/domino-frontend:k8s8e53861be292
glibc@2.36-9+deb12u13
no fix listed
ghcr.io/iisas/domino-rest:latest3009350bfc11
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

10,511
doris-foundationdbdorisVerified publisher25.8.01 of 4See more

doris-foundationdb doris 25.8.0

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
glibc@2.34-125.el9_5.3
0:2.34-272.el9_8

Open the chart page →

3,202
exim4dossif0.2.01 of 1See more

exim4 dossif 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
tianon/exim4:latestb489049cdbca
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,511
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

25,063
healthchecksdoubanVerified publisher1.0.101 of 2See more

healthchecks douban 1.0.10

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
healthchecks/healthchecks:latestaa08a61b0dcf
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,757
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

11,898
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.03 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
glibc@2.27-3ubuntu1.4
no fix listed
library/rabbitmq:3-managemente582c0bc7766
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
oscarsotosanchez/weatherservice:v1.0911ec961d10b
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

24,825
drogue-cloud-coredrogue-iotVerified publisher0.7.1120 of 22See more

drogue-cloud-core drogue-iot 0.7.11

20 of the 22 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
glibc@2.28-211.el8
0:2.28-251.el8_10.38
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
glibc@2.34-40.el9
0:2.34-272.el9_8
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
glibc@2.34-40.el9
0:2.34-272.el9_8
quay.io/keycloak/keycloak:20.0054ef67eb7da
glibc@2.28-211.el8
0:2.28-251.el8_10.38

Open the chart page →

56,289
drogue-cloud-examplesdrogue-iotVerified publisher0.7.114 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

4 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
glibc@2.35-0ubuntu3
2.35-0ubuntu3.14
ghcr.io/ctron/kubectl:1.25e37d61b5277c
glibc@2.28-236.el8_9.12
0:2.28-251.el8_10.38
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
glibc@2.28-164.el8
0:2.28-251.el8_10.38
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
glibc@2.28-164.el8
0:2.28-251.el8_10.38

Open the chart page →

30,832
drogue-cloud-twindrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0054ef67eb7da
glibc@2.28-211.el8
0:2.28-251.el8_10.38

Open the chart page →

6,924
duckdb-uiduckdb-ui0.5.21 of 1See more

duckdb-ui duckdb-ui 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/beslovas/duckdb-ui:1.3.272f35584026d
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

4,494
cloudflaredduck-helm1.1.31 of 1See more

cloudflared duck-helm 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

1,481
postgres-backup-localduck-helm0.1.51 of 1See more

postgres-backup-local duck-helm 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
prodrigestivill/postgres-backup-local:latestf70742ebe42b
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

3,523
rundeckdwardu-helm-charts0.3.42 of 2See more

rundeck dwardu-helm-charts 0.3.4

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
glibc@2.41-12+deb13u3
2.41-12+deb13u4
rundeck/rundeck:3.2.74d64fe56f767
glibc@2.23-0ubuntu11
no fix listed

Open the chart page →

19,999
dynamic-configdynamic-configVerified publisher0.3.01 of 1See more

dynamic-config dynamic-config 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/dynamic-config-rs/dynamic-config-webhook:v0.3.0f00f02c53f66
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

364
arbitrumdysnixVerified publisher0.1.11 of 1See more

arbitrum dysnix 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.1.0-7d1d84ce95865866129
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

9,455
base-consensusdysnixVerified publisher0.2.01 of 1See more

base-consensus dysnix 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/base/node-reth:v1.1.18eb6e492fe3c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,781
bitcoinddysnixVerified publisher0.4.31 of 2See more

bitcoind dysnix 0.4.3

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

2,000
gcp-local-ssd-raiddysnixVerified publisher0.1.71 of 2See more

gcp-local-ssd-raid dysnix 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

2,443
rethdysnixVerified publisher0.0.111 of 2See more

reth dysnix 0.0.11

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,095
aerios-k8s-shimeclipse-aeriosVerified publisher1.0.01 of 1See more

aerios-k8s-shim eclipse-aerios 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
eclipseaerios/aerios-k8s-shim:v1.0.0d4ed3d8e5db4
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,506
hlo-allocatoreclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-allocator eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
eclipseaerios/hlo-allocator:v3.0.03cc1d94cfe96
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,557
hlo-data-aggregatoreclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-data-aggregator eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
eclipseaerios/hlo-data-aggregator:v3.0.0b433c2b9f5dc
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,716
hlo-deployment-engineeclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-deployment-engine eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
eclipseaerios/hlo-deployment-engine:v3.0.0d582d39208c7
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,726
hlo-fe-engineeclipse-aeriosVerified publisher3.0.01 of 1See more

hlo-fe-engine eclipse-aerios 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
eclipseaerios/hlo-fe-engine:v3.0.08ed2df4ca692
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,716

Container images carrying it

2,893 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
glibc@2.34-83.el9_3.7
0:2.34-272.el9_8
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
glibc@2.34-83.el9_3.7
0:2.34-272.el9_8
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
glibc@2.34-100.el9_4.2
0:2.34-272.el9_8
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
1
quay.io/minio/operator:v7.1.1cd587f60c43d
glibc@2.34-125.el9_5.3
0:2.34-272.el9_8
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
glibc@2.28-225.el8
0:2.28-251.el8_10.38
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
glibc@2.36-9+deb12u10
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
glibc@2.36-9+deb12u10
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
glibc@2.23-0ubuntu11.2
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
glibc@2.28-127.el8
0:2.28-251.el8_10.38
1
quay.io/mongodb/mongodb-kubernetes-operator:0.9.05ee4bd681085
glibc@2.28-251.el8_10.22
0:2.28-251.el8_10.38
1
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
glibc@2.34-270.el9_8
0:2.34-272.el9_8
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
quay.io/open-cluster-management/kueue-addon:v0.1.47f728514fead
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
1
quay.io/open-cluster-management/multicluster-controlplane:latest9888240f644b
glibc@2.28-251.el8_10.37
0:2.28-251.el8_10.38
1
quay.io/openshift/origin-cli:4.66722d5041b47
glibc@2.28-101.el8
0:2.28-251.el8_10.38
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
glibc@2.28-101.el8
0:2.28-251.el8_10.38
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
glibc@2.28-189.8.el8_6
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
glibc@2.23-0ubuntu10
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
glibc@2.28-251.el8_10.25
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
glibc@2.28-251.el8_10.25
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
glibc@2.28-251.el8_10.25
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
glibc@2.41-12
2.41-12+deb13u4
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
glibc@2.28-151.el8
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
glibc@2.28-251.el8_10.25
0:2.28-251.el8_10.38
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
glibc@2.28-251.el8_10.27
0:2.28-251.el8_10.38
1
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
quay.io/opstree/grafana:12.4.3b61c1ed2f015
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
quay.io/opstree/k8s-sidecar:2.7.126aa9bb3386b
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
quay.io/opstree/k8s-sidecar:2.7.37075d455b219
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
quay.io/opstree/memcached:1.6.38-alpine3.22cabbdfd2c3fe
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
glibc@2.42-r4
2.43-r7
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
glibc@2.42-r4
2.43-r7
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
glibc@2.42-r4
2.43-r7
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
glibc@2.42-r4
2.43-r7
1
quay.io/projectopenubl/searchpe:v4.1.0eefee675f9af
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
1
quay.io/projectquay/clair:4.9.023329c3368e4
glibc@2.28-251.el8_10.27
0:2.28-251.el8_10.38
1
quay.io/projectquay/clair:4.7.28d38ffa8fad7
glibc@2.28-225.el8_8.6
0:2.28-251.el8_10.38
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
glibc@2.34-100.el9_4.2
0:2.34-272.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
glibc@2.34-60.el9
0:2.34-272.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
glibc@2.28-236.el8.7
0:2.28-251.el8_10.38
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
glibc@2.34-100.el9
0:2.34-272.el9_8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
glibc@2.28-151.el8
0:2.28-251.el8_10.38
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.38
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
glibc@2.36-9+deb12u14
no fix listed
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
glibc@2.34-125.el9_5.1
0:2.34-272.el9_8
1
quay.io/strimzi/operator:0.45.158c727cd2e68
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.