StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,691
of 17,821 indexed, latest versions
Container images
2,902
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,691 of 17,821 indexed charts deploy, on 2,902 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,447
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+60 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2426
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,691 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,902 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
glibc@2.34-100.el9_4.2
0:2.34-272.el9_8
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
glibc@2.34-60.el9
0:2.34-272.el9_8
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
glibc@2.28-236.el8.7
0:2.28-251.el8_10.38
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
glibc@2.34-100.el9
0:2.34-272.el9_8
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
glibc@2.28-151.el8
0:2.28-251.el8_10.38
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.38
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
glibc@2.36-9+deb12u14
no fix listed
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
glibc@2.34-125.el9_5.1
0:2.34-272.el9_8
1
quay.io/strimzi/operator:0.45.158c727cd2e68
glibc@2.34-168.el9_6.23
0:2.34-272.el9_8
1
quay.io/strimzi/operator:0.32.0c5e0e5dca750
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
glibc@2.28-225.el8
0:2.28-251.el8_10.38
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
glibc@2.36-9+deb12u14
no fix listed
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
glibc@2.28-211.el8
0:2.28-251.el8_10.38
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
glibc@2.36-9+deb12u1
no fix listed
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
glibc@2.27-3ubuntu1.5
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/dyff/workflows-informer:0.4.4bfbadc49635d
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-backend:1.0.31c7afac3446d6
glibc@2.41-12+deb13u3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-user:1.0.31d8a9cd4e1ae3
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
glibc@2.28-151.el8
0:2.28-251.el8_10.38
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
glibc@2.36-9+deb12u7
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
glibc@2.28-164.el8
0:2.28-251.el8_10.38
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
glibc@2.31-0ubuntu9.2
no fix listed
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
glibc@2.28-164.el8_5.3
0:2.28-251.el8_10.38
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
glibc@2.36-9+deb12u14
no fix listed
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
glibc@2.34-168.el9_6.20
0:2.34-272.el9_8
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
glibc@2.34-231.el9_7.10
0:2.34-272.el9_8
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
glibc@2.36-9+deb12u3
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
glibc@2.36-9+deb12u13
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
glibc@2.36-9+deb12u7
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
glibc@2.41-12
2.41-12+deb13u4
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
glibc@2.36-9+deb12u3
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
glibc@2.36-9+deb12u8
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
glibc@2.36-9+deb12u13
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
glibc@2.36-9+deb12u10
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
glibc@2.36-9+deb12u14
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.