StackRadar

CVE-2026-56209

High

Advisory

Published 19 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.004
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
254
of 17,781 indexed, latest versions
Container images
262
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 254 of 17,781 indexed charts deploy, on 262 images.

Affected packageAffected versionsFixed inImages
aomdeb1.0.0.errata1-3+deb11u1build0.20.04.1, 1.0.0.errata1-3build1, 3.1.0-0ubuntu1~20.04.sav0, 3.3.0-1+8 more3.6.0-1+deb12u3, 3.12.1-1+deb13u1262
OSV records
DEBIAN-CVE-2026-56209UBUNTU-CVE-2026-56209

Charts affected

254 by stars
ChartLatestAffected imagesRadar Score
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2026-56209.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
aom@3.6.0-1+deb12u2
3.6.0-1+deb12u3

Open the chart page →

9,117
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-56209.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
aom@3.3.0-1
no fix listed

Open the chart page →

14,100
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-56209.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
aom@3.6.0-1
3.6.0-1+deb12u3

Open the chart page →

7,673
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-56209.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
aom@3.3.0-1ubuntu0.1
no fix listed

Open the chart page →

7,849

Container images carrying it

262 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
aom@3.6.0-1+deb12u1
3.6.0-1+deb12u3
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
aom@3.6.0-1
3.6.0-1+deb12u3
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
aom@3.6.0-1
3.6.0-1+deb12u3
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
aom@3.6.0-1
3.6.0-1+deb12u3
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
aom@3.6.0-1+deb12u1
3.6.0-1+deb12u3
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
aom@3.6.0-1
3.6.0-1+deb12u3
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
aom@3.8.2-2ubuntu0.1
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
aom@3.6.0-1+deb12u1
3.6.0-1+deb12u3
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
aom@3.6.0-1
3.6.0-1+deb12u3
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
aom@3.12.1-1
3.12.1-1+deb13u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
aom@3.6.0-1+deb12u2
3.6.0-1+deb12u3
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
aom@3.6.0-1+deb12u2
3.6.0-1+deb12u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.