StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,667
of 17,790 indexed, latest versions
Container images
1,598
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,667 of 17,790 indexed charts deploy, on 1,598 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,195
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more392
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,667 by stars
ChartLatestAffected imagesRadar Score
steadybit-agentsteadybit3.1.1633See more

steadybit-agent steadybit 3.1.163

3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/steadybit/agent:2.4.52bc7b260e44e
nghttp2@1.64.0-1.1+deb13u1
no fix listed
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
nghttp2@1.64.0-1.1+deb13u1
no fix listed
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

pagesstephendillondell1.0.02 of 3See more

pages stephendillondell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

20,233
minkstoneshi-tscharts0.1.01 of 1See more

mink stoneshi-tscharts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

10,182
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

12,524
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

12,524
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

12,937
3d-printing-cost-calculatorssudo-kraken-3d-printing-cost-calculatorsVerified publisher0.1.41 of 1See more

3d-printing-cost-calculators sudo-kraken-3d-printing-cost-calculators 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/3d-printing-cost-calculators:v1.1.1220c5e4e1a3d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,577
authentik-webfinger-proxysudo-kraken-authentik-webfinger-proxyVerified publisher0.1.41 of 1See more

authentik-webfinger-proxy sudo-kraken-authentik-webfinger-proxy 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/authentik-webfinger-proxy:v1.1.1e1351a977607
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,657
fantasy-dice-chambersudo-kraken-fantasy-dice-chamberVerified publisher0.1.31 of 1See more

fantasy-dice-chamber sudo-kraken-fantasy-dice-chamber 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/fantasy-dice-chamber:v1.3.299fd4cb0f4fe
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,689
finances-trackersudo-kraken-finances-trackerVerified publisher0.1.51 of 1See more

finances-tracker sudo-kraken-finances-tracker 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/finances-tracker:v1.1.1c73527cde81c
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,657
flaresolverrsudo-kraken-flaresolverrVerified publisher2.1.41 of 1See more

flaresolverr sudo-kraken-flaresolverr 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

33,591
jellyfinsudo-kraken-jellyfinVerified publisher2.1.31 of 1See more

jellyfin sudo-kraken-jellyfin 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.6333b64771663
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

3,355
jf-pushover-webhooksudo-kraken-jf-pushover-webhookVerified publisher0.1.31 of 1See more

jf-pushover-webhook sudo-kraken-jf-pushover-webhook 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sudo-kraken/jf-pushover-webhook:v1.1.0ee9cf22a39ab
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,657
nginx-chartsuin-nginx0.1.01 of 1See more

nginx-chart suin-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
pagessunilb2590-pages1.0.02 of 3See more

pages sunilb2590-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

20,233
convert-datasvtechVerified publisher0.13.21 of 3See more

convert-data svtech 0.13.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

7,636
netforge-besvtechVerified publisher0.0.21 of 3See more

netforge-be svtech 0.0.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
conductoross/conductor:3.31.09fba127693e6
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

4,687
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

12,097
freeradiussvtech-public-helm-charts0.1.51 of 4See more

freeradius svtech-public-helm-charts 0.1.5

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

12,708
grafanasvtech-public-helm-charts1.0.01 of 2See more

grafana svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
nghttp2@1.40.0-1ubuntu0.1
no fix listed

Open the chart page →

10,949
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4

Open the chart page →

5,880
nagvissvtech-public-helm-charts1.0.01 of 1See more

nagvis svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

7,880
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

12,097
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
nghttp2@1.40.0-1ubuntu0.1
no fix listed

Open the chart page →

18,828
swr-cache-proxyswr-cache-proxy0.2.01 of 1See more

swr-cache-proxy swr-cache-proxy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
vividplanet/swr-cache-proxy:v1ae1c5b1cbecb
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3

Open the chart page →

13,717
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

8,251
app-startersynkubeVerified publisher1.4.11 of 1See more

app-starter synkube 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

3,253
vaultwardensyself1.0.01 of 1See more

vaultwarden syself 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
vaultwarden/server:latest094b5689ed81
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,756
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

10,545
nginx-charttaeseon-nginx0.1.01 of 1See more

nginx-chart taeseon-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
stateful-data-generatortalhajuikar-helm-charts0.1.21 of 2See more

stateful-data-generator talhajuikar-helm-charts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

4,898
repmanteam-blueVerified publisher0.3.01 of 5See more

repman team-blue 0.3.0

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:stablecb92301e719d
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

4,004
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
nghttp2@1.52.0-1
no fix listed

Open the chart page →

5,291
istio-discoverytemp-charts0.3.31 of 1See more

istio-discovery temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/pilot:1.10.0294ca55bd1cc
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

10,583
istio-ingresstemp-charts0.3.31 of 1See more

istio-ingress temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.088c6c693e67a
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

10,529
supabaseteochenglim0.1.23 of 13See more

supabase teochenglim 0.1.2

3 of the 13 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
supabase/logflare:latest49bfe526f1b4
nghttp2@1.64.0-1.1+deb13u1
no fix listed
supabase/realtime:latestd3aa0c86c7b3
nghttp2@1.64.0-1.1+deb13u1
no fix listed
supabase/studio:latest94a2a9d2906e
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

9,469
pagestest43221.0.02 of 3See more

pages test4322 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

20,233
flask-contactstest-configmap1.0.11 of 3See more

flask-contacts test-configmap 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

5,624
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

11,674
functionstest-helm-chart-hoanganht1k27Verified publisher0.1.11 of 1See more

functions test-helm-chart-hoanganht1k27 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
myfirstcharttest-helm-charts0.2.01 of 1See more

myfirstchart test-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
chatqnatest-opea1.0.02 of 11See more

chatqna test-opea 1.0.0

2 of the 11 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/chatqna:1.038c51b791efa
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

36,661
codegentest-opea1.0.03 of 5See more

codegen test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/codegen:1.058f91683892d
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/codegen-ui:1.02bee4eb66f3e
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

26,489
codetranstest-opea1.0.03 of 5See more

codetrans test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/codetrans:1.0e2436483b73d
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/codetrans-ui:1.03ef121f34610
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

26,060
docsumtest-opea1.0.03 of 5See more

docsum test-opea 1.0.0

3 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/docsum:1.03eaa91849512
nghttp2@1.52.0-1+deb12u1
no fix listed
opea/docsum-ui:1.07f854e9bffaf
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

26,535
speecht5test-opea1.0.01 of 1See more

speecht5 test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
opea/speecht5:1.0249afad3d268
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

8,877
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
library/mongo:5.0.217c81758cb295
nghttp2@1.40.0-1ubuntu0.1
no fix listed

Open the chart page →

20,362
codeth-chartsVerified publisher0.1.01 of 1See more

code th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
collabora/code:24.04.13.2.101dc4ab83977
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,265
jellyfinth-chartsVerified publisher0.1.01 of 1See more

jellyfin th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.77ae36aab93ef
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,969

Container images carrying it

1,598 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
juicedata/juicefs-csi-driver:v0.32.595008ba63318
nghttp2@1.52.0-1+deb12u3
no fix listed
1
jupyterhub/jupyterhub:5.4.63974ba945e65
nghttp2@1.59.0-1ubuntu0.3
1.59.0-1ubuntu0.4
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
nghttp2@1.40.0-1build1
no fix listed
1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
nghttp2@1.40.0-1build1
no fix listed
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
nghttp2@1.40.0-1build1
no fix listed
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
1
kafkakraft/kafka-connect:3.7.0062d697db7e5
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4
1
kafkakraft/kafka-controller:3.7.0f261ad288fce
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4
1
kafkakraft/kafkakraft:3.7.02e4b593b878b
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4
1
kayrosuno/kping:latestf3bd44b29b0d
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
kfirfer/phppgadmin:7.13.0-22efb4a5d74a3
nghttp2@1.40.0-1build1
no fix listed
1
kimai/kimai2:2.67.03084f1e5ecdc
nghttp2@1.52.0-1+deb12u3
no fix listed
1
kinseii/wazuh-agent:4.14.17160eb143728
nghttp2@1.52.0-1+deb12u2
no fix listed
1
kitware/cdash:v5.3.0d7767d9b9da4
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
kixote/typemill4e9dff179519
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
kixote/typemill628f79a08cc7
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
knspar/phronetis-operator:0.1.60c4f0543ee58
nghttp2@1.52.0-1+deb12u1
no fix listed
1
kong/httpbin:latesta6ac46531193
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
krontechnology/aapm-agent:1.8.41cc7d5be6529
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
krontechnology/aapm-agent:1.1.07feef7d2ab42
nghttp2@1.40.0-1build1
no fix listed
1
krontechnology/aapm-service:1.1.39dd602db8baa
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
kubeflow/model-registry:v0.2.95783f6db428f
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
nghttp2@1.30.0-1ubuntu1
no fix listed
1
kubeovn/kube-ovn:v1.14.06722b54eb5c0
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
kuberay/operator:v1.0.04e6ac8a3a2c4
nghttp2@1.33.0-5.el8_8
0:1.33.0-6.el8_10.3
1
kubeshop/testkube-minio:2025.10d8e1af6aca99
nghttp2@1.52.0-1+deb12u3
no fix listed
1
kusionstack/kusion:v0.14.0126c8f0b0976
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
kuzwolka/aws9:main1ad759b961b1
nghttp2@1.52.0-1+deb12u2
no fix listed
1
kuzwolka/aws9:news3e8880fbbb96
nghttp2@1.52.0-1+deb12u2
no fix listed
1
kuzwolka/aws9:blog4a7707410bf1
nghttp2@1.52.0-1+deb12u2
no fix listed
1
kuzwolka/aws9:shop84a9d9766345
nghttp2@1.52.0-1+deb12u2
no fix listed
1
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
laly9999/node-app:1dd0e503913e1
nghttp2@1.52.0-1+deb12u2
no fix listed
1
langflowai/langflow-frontend:latest54f67f1961fe
nghttp2@1.52.0-1+deb12u2
no fix listed
1
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
nghttp2@1.52.0-1+deb12u3
no fix listed
1
langgenius/dify-api:1.0.0066035f93856
nghttp2@1.52.0-1+deb12u2
no fix listed
1
langgenius/dify-api:1.16.1dcefa5f7c47c
nghttp2@1.52.0-1+deb12u3
no fix listed
1
langgenius/dify-api:0.6.11fca918260dd6
nghttp2@1.52.0-1+deb12u1
no fix listed
1
langgenius/dify-ee-audit:3.9.8-ubi9e99aed151fc5
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-collector:3.9.8-ubi9a9b91fd62c94
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-enterprise:3.9.8-ubi9c392a36a4ef7
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-enterprise-frontend:3.9.8-ubi98dd9de6b6190
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-gateway:3.9.8-ubi99e314c29a61f
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-plugin-connector:3.9.8-ubi91848d8f1f144
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-plugin-crd:3.9.8-ubi96f4e0e5f6e5a
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-plugin-daemon-serverless:3.9.8-ubi9d2b8df196d08
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-plugin-manager:3.9.8-ubi9207b343013a0
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-ee-web:3.9.8-ubi9ba1dd1d0bcea
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
nghttp2@1.59.0-1ubuntu0.3
1.59.0-1ubuntu0.4
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.