StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,680
of 17,787 indexed, latest versions
Container images
1,610
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,680 of 17,787 indexed charts deploy, on 1,610 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,206
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more393
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,680 by stars
ChartLatestAffected imagesRadar Score
mac-ouirm3lVerified publisher1.25.01 of 1See more

mac-oui rm3l 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
rm3l/mac-oui:1.8.03a5e1f95c132
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3

Open the chart page →

1,975
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

10,159
kimai2robjuz5.0.141 of 2See more

kimai2 robjuz 5.0.14

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kimai/kimai2:2.67.03084f1e5ecdc
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

4,508
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

6,085
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

7,767
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

6,918
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

7,567
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
nghttp2@1.40.0-1ubuntu0.1
no fix listed

Open the chart page →

13,028
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

5,321
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

13,562
kyoorubxkubeVerified publisher0.1.103 of 9See more

kyoo rubxkube 0.1.10

3 of the 9 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
nghttp2@1.52.0-1+deb12u2
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
nghttp2@1.52.0-1+deb12u2
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

30,310
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

38,115
immichsecustorVerified publisher2.0.51 of 1See more

immich secustor 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

3,011
sentry-k8ssentry-k8sVerified publisher1.4.12 of 11See more

sentry-k8s sentry-k8s 1.4.1

2 of the 11 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.6.683dbca3efd2a
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3
ghcr.io/getsentry/snuba:26.7.210f8d164109b
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

16,194
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
nghttp2@1.52.0-1+deb12u2
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

11,545
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

2,185
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

2,185
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

4,250
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

4,920
altinity-clickhouse-operatorslamdev0.1.22 of 2See more

altinity-clickhouse-operator slamdev 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.20.08f0f582d41f0
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
altinity/metrics-exporter:0.20.01a46d104406d
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

6,420
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
nghttp2@1.40.0-1build1
no fix listed
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
nghttp2@1.40.0-1build1
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

46,028
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

7,157
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.41 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

4,390
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

5,688
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

10,405
splunk-operatorstakaterVerified publisher0.0.61 of 2See more

splunk-operator stakater 0.0.6

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
splunk/splunk-operator:2.0.0c4e0d3146226
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

11,459
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

24,984
stornxstornxVerified publisher1.1.12 of 9See more

stornx stornx 1.1.1

2 of the 9 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
alazidis/stornx:1.1.1602d4f7f090c
nghttp2@1.52.0-1+deb12u2
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

11,683
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

2,874
strimzi-drain-cleanerstrimzi1.6.11 of 1See more

strimzi-drain-cleaner strimzi 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

520
strimzi-drain-cleanerstrimzi-drain-cleaner1.6.11 of 1See more

strimzi-drain-cleaner strimzi-drain-cleaner 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

520
supabasesupabse0.8.02 of 11See more

supabase supabse 0.8.0

2 of the 11 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
supabase/realtime:v2.102.3aa1c92c0cf32
nghttp2@1.52.0-1+deb12u3
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

18,213
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

3,253
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
apptaxmd-helm-chart0.0.21 of 1See more

app taxmd-helm-chart 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
nghttp2@1.64.0-1.1+deb13u1+dhi2
no fix listed

Open the chart page →

2,553
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
nghttp2@1.52.0-1
no fix listed

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
nghttp2@1.52.0-1
no fix listed

Open the chart page →

9,108
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4

Open the chart page →

4,061
typemilltypemill-helm-chart2.2.02 of 2See more

typemill typemill-helm-chart 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kixote/typemilldigest-pinned4e9dff179519
nghttp2@1.64.0-1.1+deb13u1
no fix listed
kixote/typemilldigest-pinned628f79a08cc7
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

5,402
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

3,804
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

3,804
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

12,137
varnish-ingress-controllervarnish-ingress-controllerVerified publisher0.5.01 of 1See more

varnish-ingress-controller varnish-ingress-controller 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
mariusm/vingress:0.5.0b3db186c3d72
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,282
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

4,058
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

5,239
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
nghttp2@1.40.0-1ubuntu0.1
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

26,843
waldurwaldur-chartsVerified publisher8.1.21 of 3See more

waldur waldur-charts 8.1.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
opennode/waldur-mastermind:8.1.24c82b15d9042
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

4,870
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

15,984
cockroachdbwenerme22.0.31 of 3See more

cockroachdb wenerme 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
cockroachdb/cockroach-self-signer-cert:1.1007a49acec18d
nghttp2@1.33.0-6.el8_10.2
0:1.33.0-6.el8_10.3

Open the chart page →

763

Container images carrying it

1,610 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
pozetroninc/keydb:v6.0.1653ae64f29da8
nghttp2@1.30.0-1ubuntu1
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
nghttp2@1.52.0-1+deb12u1
no fix listed
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
nghttp2@1.52.0-1+deb12u1
no fix listed
1
prefecthq/prefect:3.8.6-python3.11f518ebb9c353
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
pretix/standalone:2026.7.05df3b7aa852e
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
nghttp2@1.64.0-1.1
no fix listed
1
project2team4/react:latest3ff031a08887
nghttp2@1.40.0-1build1
no fix listed
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
1
prowlercloud/prowler-api:5.31.14f252d579be2
nghttp2@1.52.0-1+deb12u3
no fix listed
1
pschichtel/mindustry-server:v145.1b543e9c2d371
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
pschiffe/pdns-admin:0.4.137ebba8c2b8f
nghttp2@1.43.0-6.el9_7.1
0:1.43.0-6.el9_8.2
1
psorab/elibrary:latest53b68896c4ce
nghttp2@1.40.0-1build1
no fix listed
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
nghttp2@1.40.0-1build1
no fix listed
1
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
quickwit/quickwit:v0.8.1d29332bdadcc
nghttp2@1.52.0-1+deb12u1
no fix listed
1
qumine/minecraft-server:v0.1.15c0b650d51132
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
1
rabeh/apibootspring:1.0941007b6946e
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
rancher/harvester-csi-driver:v0.2.9f9099b5ef8cb
nghttp2@1.64.0-160000.3.1
1.64.0-160000.4.1
1
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
nghttp2@1.64.0-160000.3.1
1.64.0-160000.4.1
1
razorbladex401/dayz:latest6a4d79248e7d
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
razzy10/product-service:latest702e411956db
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
readysettech/sqp:latest588f3507280e
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
readysettech/sqp-duckdb:latest67a83203ce60
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
reallibrephotos/librephotos-proxy:1.0.398a13dabbadc
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
redash/redash:25.8.000d813437db5
nghttp2@1.52.0-1+deb12u2
no fix listed
1
redash/redash:26.3.0c5c9148f5c38
nghttp2@1.52.0-1+deb12u2
no fix listed
1
redimp/otterwiki:2778bf30da3da
nghttp2@1.52.0-1+deb12u3
no fix listed
1
redislabs/operator:8.0.18-119078e713bb6a
nghttp2@1.43.0-6.el9_7.1
0:1.43.0-6.el9_8.2
1
redpandadata/redpanda:latest468bd13a9f2b
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
replicated/replicated-sdk:1.0.0-beta.318751b4963250
nghttp2@1.63.0-r0
1.70.0-r0
1
resurfaceio/resurface:3.7.84d5cda2f64109
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
rezachalak/bzen-mongo:1.0.034f694325191
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
nghttp2@1.52.0-1+deb12u2
no fix listed
1
rm3l/dev-feed-api:latest9a7f732245a3
nghttp2@1.43.0-5.el9_2.1
0:1.43.0-6.el9_8.2
1
rm3l/mac-oui:1.8.03a5e1f95c132
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
nghttp2@1.40.0-1build1
no fix listed
1
robotshop/rs-mongodb:latest119b545823cd
nghttp2@1.40.0-1build1
no fix listed
1
robustadev/kubewatch:v2.9.00457a51e36e8
nghttp2@1.63.0-r0
1.70.0-r0
1
rocketchat/freeswitch:stablecfba5c20a5cc
nghttp2@1.52.0-1+deb12u2
no fix listed
1
rosette/root-rli:7.23.21.c82.0a4467d3bb211
nghttp2@1.33.0-6.el8_10.2
0:1.33.0-6.el8_10.3
1
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
rtuszik/photon-docker:2.4.021549c60f9e6
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
santisbon/speedtest:latest8ee3a1697227
nghttp2@1.52.0-1
no fix listed
1
sarwansharma/minio:v359d1da9385d1
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
nghttp2@1.52.0-1+deb12u1
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
nghttp2@1.52.0-1
no fix listed
1
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.