StackRadar

CVE-2026-5450

Critical

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.005
42nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,691
of 17,821 indexed, latest versions
Container images
2,902
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: glibc security, bug fix, and enhancement update

Carried by container images the latest versions of 2,691 of 17,821 indexed charts deploy, on 2,902 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,447
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+60 more0:2.17-326.el7_9.6, 0:2.28-251.el8_10.38, 0:2.34-272.el9_8, 0:2.39-126.el10_2426
OSV records
CGA-3qwq-5w83-3j3qDEBIAN-CVE-2026-5450UBUNTU-CVE-2026-5450RHSA-2026:33092RHSA-2026:33126RHSA-2026:33226RHSA-2026:34211RLSA-2026:33126RLSA-2026:33226AZL-83093ECHO-56eb-505f-7a61
Also known as
CGA-76f7-m58j-73wj, CGA-7x3v-c6pf-4v43, CGA-88p4-5g7h-3xrh, CGA-g425-f69f-xj8j, CGA-hq3x-5xh3-92jc, CGA-j9xg-mq3r-jh83, CGA-jgfr-5wmr-hfpc, CGA-mvj4-3q5f-wmwg, CGA-p427-94gh-pr7p, CGA-p7rp-4rm4-hg9q, CGA-qj6g-5h8p-677v, CGA-vc3j-8vcq-8pqc, CGA-vv29-hp4w-2hrw, CGA-wxx7-6vh7-9qhv, CGA-xrvh-57r4-pjhh, RHSA-2026:33227, RHSA-2026:33228, RHSA-2026:33229, RHSA-2026:33230, RHSA-2026:33231, RHSA-2026:36643, USN-8611-1

Charts affected

2,691 by stars
ChartLatestAffected imagesRadar Score
squadsquadVerified publisher0.1.111 of 1See more

squad squad 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
cm2network/squad:latest8cba47f53df5
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

2,455
srebotsrebot0.14.01 of 2See more

srebot srebot 0.14.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/shadrus/srebot:0.14.09b4415e937b2
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,621
pagessrinipages1.0.02 of 3See more

pages srinipages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,287
servicexssl-hep1.8.511 of 16See more

servicex ssl-hep 1.8.5

11 of the 16 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
glibc@2.41-12+deb13u3
2.41-12+deb13u4
ncsa/checks:main0b738bbc8d70
glibc@2.41-12
2.41-12+deb13u4
sslhep/servicex_app:v1.8.51d12f943cec5
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
glibc@2.41-12+deb13u3
2.41-12+deb13u4
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

70,106
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
glibc@2.28-151.el8
0:2.28-251.el8_10.38

Open the chart page →

28,618
jenkinsstakaterVerified publisher0.21.01 of 1See more

jenkins stakater 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,451
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

11,562
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review:1.0.35954d2be66e95
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

11,562
workshop-operatorstakaterVerified publisher0.0.381 of 2See more

workshop-operator stakater 0.0.38

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
stakater/workshop-operator:v0.0.3897bf456cc97c
glibc@2.28-164.el8
0:2.28-251.el8_10.38

Open the chart page →

6,683
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
glibc@2.36-9+deb12u1
no fix listed

Open the chart page →

20,487
erigonstakewise2.61.21 of 3See more

erigon stakewise 2.61.2

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
erigontech/erigon:v2.61.288706754b627
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

3,003
lighthouse-validatorstakewise7.0.11 of 2See more

lighthouse-validator stakewise 7.0.1

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
sigp/lighthouse:v7.0.12cae720e9a35
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14

Open the chart page →

2,043
lodestar-validatorstakewise1.2.01 of 1See more

lodestar-validator stakewise 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
chainsafe/lodestar:v1.27.07b9fe4aa8073
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

4,124
nethermindstakewise2.8.21 of 3See more

nethermind stakewise 2.8.2

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
nethermind/nethermind:1.31.893e57917371a
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

2,100
operatorstakewise2.1.11 of 5See more

operator stakewise 2.1.1

1 of the 5 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
sigp/lighthouse:v2.1.2ad501f02cfef
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

6,609
rethstakewise1.2.11 of 3See more

reth stakewise 1.2.1

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14

Open the chart page →

2,039
ssv-nodestakewise2.2.01 of 2See more

ssv-node stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

7,067
teku-validatorstakewise4.3.21 of 2See more

teku-validator stakewise 4.3.2

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
consensys/teku:25.4.1bf6ecd2ea716
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

3,249
verostakewise0.8.31 of 2See more

vero stakewise 0.8.3

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

3,525
stalwartstalwart-helmVerified publisher0.7.181 of 2See more

stalwart stalwart-helm 0.7.18

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.22388dcb75a707
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,451
multus-cnistartechnicaVerified publisher0.1.41 of 1See more

multus-cni startechnica 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:latest-thickbc058c992eec
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,062
open-appsec-injectorstartechnicaVerified publisher1.1.21 of 3See more

open-appsec-injector startechnica 1.1.2

1 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
glibc@2.41-12
2.41-12+deb13u4

Open the chart page →

4,363
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
glibc@2.27-3ubuntu1.5
no fix listed

Open the chart page →

14,629
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
glibc@2.28-151.el8
0:2.28-251.el8_10.38

Open the chart page →

6,600
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

13,950
static-src-people-detector-appstatic-src-people-detector-chartVerified publisher1.5.51 of 6See more

static-src-people-detector-app static-src-people-detector-chart 1.5.5

1 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/mongo:4.4.18d23ec07162ca
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

13,673
pagesstephendillondell1.0.02 of 3See more

pages stephendillondell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,287
its-mytabsstone0.3.01 of 1See more

its-mytabs stone 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
louislam/its-mytabs:1.7.02e478d3170bd
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,533
minkstoneshi-tscharts0.1.01 of 1See more

mink stoneshi-tscharts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,887
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
glibc@2.31-0ubuntu9.16
no fix listed

Open the chart page →

66,885
strimzi-topic-operatorstrimzi-topic-operator0.2.01 of 1See more

strimzi-topic-operator strimzi-topic-operator 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.32.0c5e0e5dca750
glibc@2.28-189.5.el8_6
0:2.28-251.el8_10.38

Open the chart page →

5,497
wonder-mesh-netstrrl-helm2026.629.03 of 3See more

wonder-mesh-net strrl-helm 2026.629.0

3 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
headscale/headscale:0.27.1cd37b3001857
glibc@2.36-9+deb12u13
no fix listed
ghcr.io/strrl/wonder-mesh-net:v2026.629.0625b140372fd
glibc@2.36-9+deb12u14
no fix listed
quay.io/keycloak/keycloak:26.009a381c715ab
glibc@2.34-125.el9_5.1
0:2.34-272.el9_8

Open the chart page →

5,202
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

12,815
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8

Open the chart page →

12,815
artifactory-cleanupsubshellVerified publisher1.0.11 of 1See more

artifactory-cleanup subshell 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
devopshq/artifactory-cleanup:1.0.1830e093bffa91
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

2,505
group-challengesubshell-labVerified publisher2.1.01 of 2See more

group-challenge subshell-lab 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.29.17d12c7c8fc66
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

2,626
substra-backendsubstraVerified publisher26.15.32 of 7See more

substra-backend substra 26.15.3

2 of the 7 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
glibc@2.41-12+deb13u3
2.41-12+deb13u4
ghcr.io/substra/substra-backend:1.0.121967f54ec86
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.8

Open the chart page →

4,794
substra-frontendsubstraVerified publisher1.2.31 of 1See more

substra-frontend substra 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

3,039
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
glibc@2.36-9+deb12u6
no fix listed

Open the chart page →

13,652
3d-printing-cost-calculatorssudo-kraken-3d-printing-cost-calculatorsVerified publisher0.1.41 of 1See more

3d-printing-cost-calculators sudo-kraken-3d-printing-cost-calculators 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,725
authentik-webfinger-proxysudo-kraken-authentik-webfinger-proxyVerified publisher0.1.41 of 1See more

authentik-webfinger-proxy sudo-kraken-authentik-webfinger-proxy 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,805
fantasy-dice-chambersudo-kraken-fantasy-dice-chamberVerified publisher0.1.31 of 1See more

fantasy-dice-chamber sudo-kraken-fantasy-dice-chamber 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,837
finances-trackersudo-kraken-finances-trackerVerified publisher0.1.51 of 1See more

finances-tracker sudo-kraken-finances-tracker 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,805
flaresolverrsudo-kraken-flaresolverrVerified publisher2.1.41 of 1See more

flaresolverr sudo-kraken-flaresolverr 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

34,146
jellyfinsudo-kraken-jellyfinVerified publisher2.1.31 of 1See more

jellyfin sudo-kraken-jellyfin 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.6333b64771663
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

3,470
jf-pushover-webhooksudo-kraken-jf-pushover-webhookVerified publisher0.1.31 of 1See more

jf-pushover-webhook sudo-kraken-jf-pushover-webhook 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

2,805
nginx-chartsuin-nginx0.1.01 of 1See more

nginx-chart suin-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,887
pagessunilb2590-pages1.0.02 of 3See more

pages sunilb2590-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
no fix listed

Open the chart page →

20,287
surogate-hubsurogate-hubVerified publisher2.1.51 of 1See more

surogate-hub surogate-hub 2.1.5

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

3,535
svc-lb-muxsvc-lb-mux0.1.31 of 1See more

svc-lb-mux svc-lb-mux 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5450.

Container imageDigestPackageFixed in
ghcr.io/nowakeai/svc-lb-mux:0.1.37d8fb8e996b6
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,486

Container images carrying it

2,902 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
glibc@2.36-9+deb12u10
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.