StackRadar

CVE-2026-56392

Medium

Advisory

Published 24 Jul 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,776
of 17,803 indexed, latest versions
Container images
1,782
deployed by those charts
Fix available
1 of 2
affected packages

Red Hat Bug Fix Advisory: coreutils bug fix and enhancement update

Carried by container images the latest versions of 1,776 of 17,803 indexed charts deploy, on 1,782 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb9.1-1, 9.7-3, 9.7-3+dhi3, 9.7-3+dhi4no fix listed1,294
coreutilsrpm8.30-6.el8, 8.30-6.el8_1.1, 8.30-7.el8_2.1, 8.30-8.el8+11 more0:8.30-20.el8_10, 0:8.32-41.el9_8.1488
OSV records
DEBIAN-CVE-2026-56392RHBA-2026:47115RHSA-2026:66403RLSA-2026:66403

Charts affected

1,776 by stars
ChartLatestAffected imagesRadar Score
gitlab-operatorrock8sVerified publisher0.7.01 of 2See more

gitlab-operator rock8s 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
coreutils@8.30-12.el8
0:8.30-20.el8_10

Open the chart page →

5,432
matrix-stackrock8sVerified publisher0.8.11 of 7See more

matrix-stack rock8s 0.8.1

1 of the 7 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
coreutils@9.1-1
no fix listed

Open the chart page →

9,498
reviewboardrock8sVerified publisher0.0.11 of 3See more

reviewboard rock8s 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
coreutils@9.7-3
no fix listed

Open the chart page →

6,226
rocketchat-voiprocketchat-server0.1.01 of 1See more

rocketchat-voip rocketchat-server 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rocketchat/freeswitch:stablecfba5c20a5cc
coreutils@9.1-1
no fix listed

Open the chart page →

5,785
ai-agentromholdings0.0.11 of 1See more

ai-agent romholdings 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
coreutils@9.1-1
no fix listed

Open the chart page →

9,743
calicoromholdings0.1.11 of 4See more

calico romholdings 0.1.1

1 of the 4 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
coreutils@8.30-8.el8
0:8.30-20.el8_10

Open the chart page →

10,096
clairromholdings0.1.141 of 2See more

clair romholdings 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
coreutils@8.30-12.el8
0:8.30-20.el8_10

Open the chart page →

6,238
devtron-enterpriseromholdings48.0.03 of 28See more

devtron-enterprise romholdings 48.0.0

3 of the 28 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
coreutils@9.1-1
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
coreutils@9.1-1
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
coreutils@9.1-1
no fix listed

Open the chart page →

69,552
devtron-operatorromholdings0.23.32 of 11See more

devtron-operator romholdings 0.23.3

2 of the 11 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
coreutils@9.1-1
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
coreutils@9.1-1
no fix listed

Open the chart page →

33,352
migration-incluster-cdromholdings0.10.01 of 1See more

migration-incluster-cd romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
coreutils@9.1-1
no fix listed

Open the chart page →

3,947
rosette-serverrosette-serverOfficialVerified publisher3.6.01 of 3See more

rosette-server rosette-server 3.6.0

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rosette/root-rli:7.23.21.c82.0a4467d3bb211
coreutils@8.30-17.el8_10
0:8.30-20.el8_10

Open the chart page →

189
beaconrotationalVerified publisher0.2.01 of 1See more

beacon rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/beacon:0.2.0f8d8b694515a
coreutils@9.7-3+dhi4
no fix listed

Open the chart page →

1,011
endeavorrotationalVerified publisher1.3.12 of 2See more

endeavor rotational 1.3.1

2 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/endeavor:1.3.0ac566baddc06
coreutils@9.1-1
no fix listed
rotationalio/quarterdeck:0.16.00e7ad3a031dc
coreutils@9.1-1
no fix listed

Open the chart page →

2,291
genoarotationalVerified publisher1.4.01 of 1See more

genoa rotational 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/genoa:1.2.03ab583519215
coreutils@9.1-1
no fix listed

Open the chart page →

1,015
geopingrotationalVerified publisher1.3.21 of 1See more

geoping rotational 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/geoping:1.3.034bcb6fc3cb7
coreutils@9.7-3
no fix listed

Open the chart page →

1,618
honurotationalVerified publisher0.5.31 of 1See more

honu rotational 0.5.3

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/honu:0.5.069fd30c2e31c
coreutils@9.1-1
no fix listed

Open the chart page →

2,206
imgtagrotationalVerified publisher0.2.01 of 1See more

imgtag rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
coreutils@9.1-1
no fix listed

Open the chart page →

3,355
quarterdeckrotationalVerified publisher0.16.01 of 1See more

quarterdeck rotational 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/quarterdeck:0.16.00e7ad3a031dc
coreutils@9.1-1
no fix listed

Open the chart page →

1,187
rotational-apirotationalVerified publisher1.3.11 of 1See more

rotational-api rotational 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/rotational-api:1.3.0f1a2d05d8fff
coreutils@9.7-3
no fix listed

Open the chart page →

1,617
vanityrotationalVerified publisher1.2.21 of 1See more

vanity rotational 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
rotationalio/vanity:1.2.0d77350f69b45
coreutils@9.7-3
no fix listed

Open the chart page →

1,247
routehub-serverroutehub-helm1.0.11 of 3See more

routehub-server routehub-helm 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
coreutils@9.7-3
no fix listed

Open the chart page →

7,002
agentdatarss30.1.01 of 1See more

agentdata rss3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
coreutils@9.1-1
no fix listed

Open the chart page →

3,566
noderss30.7.21 of 3See more

node rss3 0.7.2

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
coreutils@9.1-1
no fix listed

Open the chart page →

4,772
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
coreutils@9.7-3
no fix listed

Open the chart page →

10,680
flaresolverrrubxkubeVerified publisher0.1.11 of 1See more

flaresolverr rubxkube 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
coreutils@9.1-1
no fix listed

Open the chart page →

27,754
jellyfinrubxkubeVerified publisher1.3.11 of 1See more

jellyfin rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
coreutils@9.7-3
no fix listed

Open the chart page →

2,658
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
coreutils@9.1-1
no fix listed

Open the chart page →

7,500
linkdingrubxkubeVerified publisher1.2.41 of 1See more

linkding rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.47.0e35cb50e0581
coreutils@9.7-3
no fix listed

Open the chart page →

2,088
simple-coffeerubxkubeVerified publisher0.1.01 of 1See more

simple-coffee rubxkube 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
coreutils@9.7-3
no fix listed

Open the chart page →

2,573
trmnl-serverrubxkubeVerified publisher0.1.01 of 2See more

trmnl-server rubxkube 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/python:3.14-slimcad9a2c87176
coreutils@9.7-3
no fix listed

Open the chart page →

2,950
uptime-kumarubxkubeVerified publisher1.2.11 of 1See more

uptime-kuma rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.4.091e963bfda56
coreutils@9.1-1
no fix listed

Open the chart page →

30,706
vaultwardenrubxkubeVerified publisher1.2.41 of 1See more

vaultwarden rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
coreutils@9.7-3
no fix listed

Open the chart page →

1,785
your-spotifyrubxkubeVerified publisher1.0.11 of 3See more

your-spotify rubxkube 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:latestb0652af9c8d0
coreutils@9.1-1
no fix listed

Open the chart page →

5,463
runwhen-localrunwhen-contribVerified publisher0.6.171 of 3See more

runwhen-local runwhen-contrib 0.6.17

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
coreutils@9.7-3
no fix listed

Open the chart page →

3,818
rybbitrybbit-helm1.3.01 of 7See more

rybbit rybbit-helm 1.3.0

1 of the 7 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
valkey/valkey:9.1.164e361b630ec
coreutils@9.7-3
no fix listed

Open the chart page →

5,903
orbitalryuunosukeds30.2.01 of 1See more

orbital ryuunosukeds3 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
ryuunosukeds3/orbital:latest0879f7261b10
coreutils@9.1-1
no fix listed

Open the chart page →

2,699
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
coreutils@9.7-3
no fix listed

Open the chart page →

9,763
test-helm-app1saam-helm-test0.1.01 of 1See more

test-helm-app1 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
hamidyousefi93/saam-test:latestc34f071f6ed0
coreutils@9.1-1
no fix listed

Open the chart page →

3,932
hivechart-1sabryp3-charts0.2.01 of 2See more

hivechart-1 sabryp3-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
valkey/valkey:latestc123e3715db6
coreutils@9.7-3
no fix listed

Open the chart page →

854
safe-config-servicesafe-global0.1.01 of 3See more

safe-config-service safe-global 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
safeglobal/safe-config-service:latest09a5e495c219
coreutils@9.7-3
no fix listed

Open the chart page →

1,631
safe-stacksafe-global0.1.03 of 9See more

safe-stack safe-global 0.1.0

3 of the 9 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
coreutils@9.1-1
no fix listed
safeglobal/safe-config-service:latest09a5e495c219
coreutils@9.7-3
no fix listed
safeglobal/safe-transaction-service:latest80db836cc5d5
coreutils@9.7-3
no fix listed

Open the chart page →

19,777
safe-transaction-servicesafe-global0.1.02 of 6See more

safe-transaction-service safe-global 0.1.0

2 of the 6 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
coreutils@9.1-1
no fix listed
safeglobal/safe-transaction-service:latest80db836cc5d5
coreutils@9.7-3
no fix listed

Open the chart page →

16,779
sagawisesagawiseVerified publisher0.1.01 of 3See more

sagawise sagawise 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
venturenox/redis:latest83b471c193ba
coreutils@9.1-1
no fix listed

Open the chart page →

4,383
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
coreutils@9.1-1
no fix listed
santisbon/evworker:lateste807283f8d69
coreutils@9.1-1
no fix listed

Open the chart page →

14,355
speedtestsantisbon0.1.02 of 3See more

speedtest santisbon 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
coreutils@9.1-1
no fix listed
santisbon/speedtest:latest8ee3a1697227
coreutils@9.1-1
no fix listed

Open the chart page →

12,826
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
coreutils@9.1-1
no fix listed

Open the chart page →

10,269
jellyfinsb-helm-charts0.4.01 of 1See more

jellyfin sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.317c3a8d9dddb
coreutils@9.1-1
no fix listed

Open the chart page →

4,164
keycloaksb-helm-charts0.3.01 of 2See more

keycloak sb-helm-charts 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:26.0.6a93d22e13b86
coreutils@8.32-36.el9
0:8.32-41.el9_8.1

Open the chart page →

2,595
mlflowsb-helm-charts0.3.01 of 1See more

mlflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/python:3.11-slim9534e5a8e315
coreutils@9.7-3
no fix listed

Open the chart page →

936
nextcloudsb-helm-charts0.4.01 of 2See more

nextcloud sb-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-56392.

Container imageDigestPackageFixed in
library/nextcloud:31.0.10-apacheb7faa1653c39
coreutils@9.7-3
no fix listed

Open the chart page →

9,886

Container images carrying it

1,782 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/zncdatadev/nifi-operator:0.4.0bb4e26ff5e2f
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
quay.io/zncdatadev/secret-csi-driver:0.4.0604a7d98ab58
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
quay.io/zncdatadev/spark-k8s-operator:0.4.0d3f2b10c4a6d
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
quay.io/zncdatadev/superset-operator:0.4.0102e66e32218
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
quay.io/zncdatadev/trino-operator:0.4.04f516757aee3
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
quay.io/zncdatadev/zookeeper-operator:0.4.0b4f33d89ac45
coreutils@8.32-41.el9_8
0:8.32-41.el9_8.1
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
coreutils@8.30-8.el8
0:8.30-20.el8_10
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
coreutils@9.7-3
no fix listed
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
coreutils@8.30-12.el8
0:8.30-20.el8_10
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
coreutils@8.30-12.el8
0:8.30-20.el8_10
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
coreutils@9.1-1
no fix listed
1
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
coreutils@8.32-39.el9
0:8.32-41.el9_8.1
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
coreutils@8.32-39.el9
0:8.32-41.el9_8.1
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
coreutils@9.1-1
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
coreutils@9.1-1
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
coreutils@9.7-3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
coreutils@9.1-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
coreutils@9.1-1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
coreutils@9.1-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
coreutils@9.1-1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.