StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,582
of 17,832 indexed, latest versions
Container images
2,861
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,582 of 17,832 indexed charts deploy, on 2,861 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,409
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+60 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2423
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,582 by stars
ChartLatestAffected imagesRadar Score
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
glibc@2.36-9+deb12u9
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed
library/neo4j:2026.05.06c162e2432f8
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

10,651
jenkinsjenkins-helm-chartVerified publisher0.1.01 of 1See more

jenkins jenkins-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,545
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,780
kamu-api-serverkamuVerified publisher0.90.01 of 1See more

kamu-api-server kamu 0.90.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.90.0e61435d44913
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

6,426
keycloak-operatorkeycloak-operatorVerified publisher0.0.41 of 1See more

keycloak-operator keycloak-operator 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
glibc@2.28-211.el8
0:2.28-251.el8_10.38

Open the chart page →

4,668
percona-xtradb-clusterkfirfer1.5.101 of 3See more

percona-xtradb-cluster kfirfer 1.5.10

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster:8.0.32-24.21f978ab8912e
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

4,962
kong-meshkong-meshVerified publisher2.14.51 of 3See more

kong-mesh kong-mesh 2.14.5

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
kong/kumactl:2.14.58191df5c7019
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

511
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
glibc@2.27-3ubuntu1.4
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
glibc@2.31-0ubuntu9.9
no fix listed
library/python:3.7eedf63967cdb
glibc@2.36-9+deb12u1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
glibc@2.23-0ubuntu11
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
glibc@2.27-3ubuntu1.4
no fix listed

Open the chart page →

158,913
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

10,732
testkubekubeshop2.13.31 of 5See more

testkube kubeshop 2.13.3

1 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
kubeshop/testkube-minio:2025.10d8e1af6aca99
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

5,364
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

5,943
libredb-studiolibredb-studioVerified publisher0.1.671 of 1See more

libredb-studio libredb-studio 0.1.67

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.2c398419c29a7
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,198
musicocielmusicocielVerified publisher0.0.01 of 3See more

musicociel musicociel 0.0.0

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:23.0.34f72a5b0c076
glibc@2.34-83.el9_3.7
0:2.34-272.el9_8

Open the chart page →

4,444
headplanenbcloudVerified publisher0.1.22 of 4See more

headplane nbcloud 0.1.2

2 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
glibc@2.36-9+deb12u10
no fix listed
headscale/headscale:0.25.1a7a8ae9616bb
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

8,216
node-local-dnsnode-local-dns2.4.01 of 1See more

node-local-dns node-local-dns 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

2,664
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
gradiant/open5gs-dbctl:0.10.3332031245fce
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

9,360
mattermostphntom3.24.01 of 2See more

mattermost phntom 3.24.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

8,873
unifi-controllerqonstruktVerified publisher2.6.11 of 1See more

unifi-controller qonstrukt 2.6.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:8.0.240ae315a3a456
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

10,686
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
glibc@2.17-323.el7_9
0:2.17-326.el7_9.6
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
glibc@2.17-323.el7_9
0:2.17-326.el7_9.6

Open the chart page →

4,527
steampipe-powerpipe-kubernetessteampipe-powerpipe-kubernetesVerified publisher0.13.12 of 2See more

steampipe-powerpipe-kubernetes steampipe-powerpipe-kubernetes 0.13.1

2 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

5,630
uffizzi-appuffizzi-app1.3.01 of 14See more

uffizzi-app uffizzi-app 1.3.0

1 of the 14 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

19,484
reposilitevolker-raschekVerified publisher1.0.01 of 1See more

reposilite volker-raschek 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.5.264128c2d7a6ba
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8

Open the chart page →

3,067
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
glibc@2.23-0ubuntu9
no fix listed

Open the chart page →

13,608
grafana-pdf-exporterwiremindVerified publisher2.1.11 of 1See more

grafana-pdf-exporter wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

9,664
matrixzekker6Verified publisher3.31.01 of 4See more

matrix zekker6 3.31.0

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.161.06b95dd129e35
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

5,659
zenmlzenml0.96.41 of 1See more

zenml zenml 0.96.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
zenmldocker/zenml-server:0.96.409027a6312ee
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

1,310
eshoponabpabp-charts1.0.01 of 15See more

eshoponabp abp-charts 1.0.0

1 of the 15 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mongo:4.2699d652ed674
glibc@2.27-3ubuntu1.6
no fix listed

Open the chart page →

19,538
changedetectionalekcVerified publisher0.14.51 of 1See more

changedetection alekc 0.14.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.7096dae27b5d6
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

2,701
code-serveralekcVerified publisher0.1.11 of 1See more

code-server alekc 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
linuxserver/code-server:4.10.1a5e43a05ae79
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

8,313
vaultwardenandrenarchyVerified publisher6.28.01 of 1See more

vaultwarden andrenarchy 6.28.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.31587c45feaa4
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,526
limesurveyarea-42Verified publisher0.3.971See more

limesurvey area-42 0.3.97

1 container image this version deploys carries CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

auto-deploy-appav1o-chartsVerified publisher0.15.41 of 1See more

auto-deploy-app av1o-charts 0.15.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
glibc@2.23-0ubuntu9
no fix listed

Open the chart page →

11,064
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
glibc@2.28-101.el8
0:2.28-251.el8_10.38

Open the chart page →

9,069
backup-zenbzen0.1.41 of 1See more

backup-zen bzen 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
rezachalak/bzen-mongo:1.0.034f694325191
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

66,682
thingsboardcetic0.1.21 of 2See more

thingsboard cetic 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
thingsboard/tb-postgres:latest2d17e4e36edc
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

5,358
collabora-codechrisingenhaag2.6.01 of 1See more

collabora-code chrisingenhaag 2.6.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
collabora/code:23.05.10.1.105299b452f7f
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

4,224
lighthousechronicleVerified publisher0.0.91See more

lighthouse chronicle 0.0.9

1 container image this version deploys carries CVE-2026-5450.

Container imageDigestPackageFixed in
sigp/lighthouse:v7.1.0870934e38931
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.14

Open the chart page →

ghostcloudpirates-ghostVerified publisher0.20.261See more

ghost cloudpirates-ghost 0.20.26

1 container image this version deploys carries CVE-2026-5450.

Container imageDigestPackageFixed in
library/mariadb:12.0.25b6a1eac15b8
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

clowardenclowarden0.2.31 of 4See more

clowarden clowarden 0.2.3

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

5,685
coder-observabilitycoder-observabilityVerified publisher0.7.32 of 21See more

coder-observability coder-observability 0.7.3

2 of the 21 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

24,977
codetogethercodetogether1.4.251 of 1See more

codetogether codetogether 1.4.25

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
codetogether/codetogether:latest4348c8a38752
glibc@2.34-100.el9_4.2
0:2.34-272.el9_8

Open the chart page →

7,551
convertigoconvertigoOfficialVerified publisher8.4.32 of 5See more

convertigo convertigo 8.4.3

2 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
glibc@2.36-9+deb12u9
no fix listed
library/couchdb:3.4.22817ad50b5c5
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

17,204
core-dump-handlercore-dump-handler9.0.01 of 1See more

core-dump-handler core-dump-handler 9.0.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.38

Open the chart page →

3,089
cosmocosmo-platformOfficialVerified publisher0.20.07 of 10See more

cosmo cosmo-platform 0.20.0

7 of the 10 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bitnamilegacy/clickhouse:24.6.2-debian-12-r3dcc172c6c55f
glibc@2.36-9+deb12u7
no fix listed
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r1670cafc5a71e8
glibc@2.36-9+deb12u7
no fix listed
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
glibc@2.36-9+deb12u9
no fix listed
ghcr.io/wundergraph/cosmo/graphqlmetrics:0.33.0efb69ec3330c
glibc@2.36-9+deb12u9
no fix listed
ghcr.io/wundergraph/cosmo/keycloak:0.13.0b37408461b9b
glibc@2.34-231.el9_7.10
0:2.34-272.el9_8
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

29,743
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

9,426
deepflowdeepflow6.2.2011 of 8See more

deepflow deepflow 6.2.201

1 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

16,073
defectdojodefectdojo1.9.531 of 4See more

defectdojo defectdojo 1.9.53

1 of the 4 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
defectdojo/defectdojo-django:3.3.2001cee5281e176
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,679
zabbix-kubernetes-discoverydjerfyVerified publisher1.4.201 of 1See more

zabbix-kubernetes-discovery djerfy 1.4.20

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8

Open the chart page →

4,273
edgelessdbedgelesssysVerified publisher0.3.21 of 1See more

edgelessdb edgelesssys 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

4,913
gateway-helmenvoy-gateway0.0.0-latest1 of 1See more

gateway-helm envoy-gateway 0.0.0-latest

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
envoyproxy/gateway-dev:lateste8946c457acc
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

267

Container images carrying it

2,861 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

No deployed image carries CVE-2026-5450.

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.