StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,663
of 17,790 indexed, latest versions
Container images
1,596
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,663 of 17,790 indexed charts deploy, on 1,596 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,194
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more391
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,663 by stars
ChartLatestAffected imagesRadar Score
ibm-object-storage-pluginibm-charts1.1.52 of 2See more

ibm-object-storage-plugin ibm-charts 1.1.5

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
nghttp2@1.33.0-1.el8_0.1
0:1.33.0-6.el8_10.3
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
nghttp2@1.33.0-1.el8_0.1
0:1.33.0-6.el8_10.3

Open the chart page →

12,460
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

12,632
ibm-ucv-prodibm-helm5.2.62 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

2 of the 16 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2fac502149c40
nghttp2@1.52.0-1+deb12u2
no fix listed
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
nghttp2@1.33.0-1.el8
0:1.33.0-6.el8_10.3

Open the chart page →

11,975
nextjsicoretechVerified publisher1.2.01 of 1See more

nextjs icoretech 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
monitoring-stackict-platformVerified publisher0.4.01 of 13See more

monitoring-stack ict-platform 0.4.0

1 of the 13 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

9,597
iframelyiframelyVerified publisher2.3.51 of 1See more

iframely iframely 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

3,181
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
codeurjc/weatherservice:v1.0b9e2f7234349
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
library/mongo:5.0.6-focal8e70544b6c76
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

27,812
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

9,032
ikigaiikigai-chartVerified publisher0.0.94 of 58See more

ikigai ikigai-chart 0.0.9

4 of the 58 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
jupyterhub/k8s-hub:1.2.0e4770285aaf7
nghttp2@1.40.0-1build1
no fix listed
kuberay/operator:v1.0.04e6ac8a3a2c4
nghttp2@1.33.0-5.el8_8
0:1.33.0-6.el8_10.3
library/zookeeper:3.8-temurin55d1e5b2e601
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

37,844
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

11,838
web-chartimcherry57780.1.01 of 1See more

web-chart imcherry5778 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
onechartimioVerified publisher0.76.01 of 1See more

onechart imio 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

16,226
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

5,360
infisicalinfisical-charts0.4.21 of 3See more

infisical infisical-charts 0.4.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
infisical/infisical:latest02082bf13163
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,954
influxdb-enterpriseinfluxdata0.2.12 of 2See more

influxdb-enterprise influxdata 0.2.1

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/influxdb:1.12.3-meta8812029260b5
nghttp2@1.52.0-1+deb12u2
no fix listed
library/influxdb:1.12.3-datab0f9fc41ed79
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

5,736
influxdbinfluxdb20.1.01 of 1See more

influxdb influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/influxdb:latestf75e48af0598
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

2,237
op-stackinfradao0.0.11 of 1See more

op-stack infradao 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
cloudshellinseefrlab4.3.01 of 2See more

cloudshell inseefrlab 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
inseefrlab/shelly:cloudshell31f04ca7436b
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4

Open the chart page →

10,542
evi-miniointelVerified publisher3.0.32 of 2See more

evi-minio intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

7,457
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

18,137
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

3,570
tcs-issuerintelVerified publisher0.5.01 of 2See more

tcs-issuer intel 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
intel/trusted-certificate-issuer:0.5.0591a9db4a427
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

5,996
intelowlintelowl-helm6.6.1-01-06-20261 of 5See more

intelowl intelowl-helm 6.6.1-01-06-2026

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
intelowlproject/intelowl:v6.6.10b22e547ea6b
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

16,558
interbtc-parachaininterlay0.4.131 of 1See more

interbtc-parachain interlay 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
interlayhq/interbtc:latesta66d0e35e70f
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

3,195
polkabtc-parachaininterlay0.2.411 of 4See more

polkabtc-parachain interlay 0.2.41

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
interlayhq/interbtc:latesta66d0e35e70f
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

3,937
inventreeinventreeOfficialVerified publisher0.4.282 of 2See more

inventree inventree 0.4.28

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
inventree/inventree:1.5.4a946ec09da3e
nghttp2@1.64.0-1.1+deb13u1
no fix listed
library/nginx:stabled5792f71a949
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

5,757
istio-aws-private-ingress-customizedistio-aws-private-ingress-customized1.0.01 of 1See more

istio-aws-private-ingress-customized istio-aws-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

5,570
istio-azure-private-ingress-customizedistio-azure-private-ingress-customized1.0.01 of 1See more

istio-azure-private-ingress-customized istio-azure-private-ingress-customized 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/proxyv2:1.18.0757d28c24100
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

5,570
ztunnelistio-ztunnelVerified publisher1.25.01 of 1See more

ztunnel istio-ztunnel 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/ztunnel:1.25.005f3972d80a9
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

2,497
daveit-at-mOfficialVerified publisher0.2.158 of 11See more

dave it-at-m 0.2.15

8 of the 11 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
nghttp2@1.52.0-1+deb12u2
no fix listed
ghcr.io/it-at-m/dave-admin-portal/dave-adminportal:10.0.0cbff8141302f
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-document-storage/dave-document-storage:10.0.09c7fc07330c9
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-eai/dave-eai:10.0.0fd93e0d125b3
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-frontend/dave-frontend:10.0.0a49fdb8d6f1b
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-geodata-eai/dave-geodata-eai:10.0.06a3fe3136856
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
ghcr.io/it-at-m/dave-selfservice-portal/dave-selfserviceportal:10.0.0d352df1b94b6
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

15,245
kf-app-eaiit-at-mOfficialVerified publisher0.1.71 of 1See more

kf-app-eai it-at-m 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

1,965
wjh-rechnerit-at-mOfficialVerified publisher1.0.41 of 1See more

wjh-rechner it-at-m 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_8.2

Open the chart page →

3,487
zammad-ldap-syncit-at-mVerified publisher0.6.51 of 1See more

zammad-ldap-sync it-at-m 0.6.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/zammad-ldap-sync:dev10de22c8cbce
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

1,364
dynamic-ip-loadbalancer-controlleritsmethemojoVerified publisher0.1.01 of 1See more

dynamic-ip-loadbalancer-controller itsmethemojo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/buildpack-deps:curl04907bdd423b
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,692
tekton-git-listeneritsmethemojoVerified publisher0.1.11 of 1See more

tekton-git-listener itsmethemojo 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/buildpack-deps:scmac978b783657
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,178
opencloudjacobcolvinVerified publisher0.2.37 of 13See more

opencloud jacobcolvin 0.2.3

7 of the 13 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
nghttp2@1.52.0-1+deb12u2
no fix listed
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
nghttp2@1.52.0-1+deb12u2
no fix listed
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
nghttp2@1.52.0-1+deb12u2
no fix listed
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
nghttp2@1.52.0-1+deb12u2
no fix listed
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
nghttp2@1.52.0-1+deb12u2
no fix listed
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

45,392
web-chartjaeeyun-ktcloudlab0.1.01 of 1See more

web-chart jaeeyun-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
nginx-chartjaeki-nginx0.1.01 of 1See more

nginx-chart jaeki-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

10,816
jasperjasperVerified publisher1.0.2031 of 2See more

jasper jasper 1.0.203

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

9,148
jasper-uijasperVerified publisher1.0.341 of 1See more

jasper-ui jasper 1.0.34

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/cjmalloy/jasper-ui:v1.3.623246dc2160efe
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,571
esphomejeffrescVerified publisher0.2.21 of 1See more

esphome jeffresc 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/esphome/esphome:2026.4.078a82d810709
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

5,066
jellyfinjellyfin-helm10.9.101 of 1See more

jellyfin jellyfin-helm 10.9.10

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.9.1079fb3d73a3e9
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

4,097
jellyfinjellyfin--jellyfin-helm3.0.01 of 1See more

jellyfin jellyfin--jellyfin-helm 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.717285f9cce63
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

2,967
jx-app-anchorejenkins-x0.0.41 of 2See more

jx-app-anchore jenkins-x 0.0.4

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.7.1ed9b3badd17c
nghttp2@1.33.0-1.el8_0.1
0:1.33.0-6.el8_10.3

Open the chart page →

9,853
jx-app-jenkinsjenkins-x0.0.151 of 2See more

jx-app-jenkins jenkins-x 0.0.15

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,487
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

12,856
dayz-dedicated-server-razorbladex401jespernohrVerified publisher1.0.31 of 1See more

dayz-dedicated-server-razorbladex401 jespernohr 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
razorbladex401/dayz:latest6a4d79248e7d
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

5,256
discord-experiencebotjfwenischVerified publisher0.7.41 of 1See more

discord-experiencebot jfwenisch 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

7,842

Container images carrying it

1,596 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
seafileltd/seafile-mc:10.0.170628f29c663
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
seafileltd/seafile-mc:9.0.97ac833196f60
nghttp2@1.40.0-1build1
no fix listed
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
nghttp2@1.40.0-1build1
no fix listed
1
seldonio/seldon-core-operator:1.19.0544e3bf71bd1
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
shamimkuet/nginx:1.0.2b82902a76a04
nghttp2@1.52.0-1+deb12u1
no fix listed
1
shaowenchen/ops-server:latest315444f703f4
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
signalen/backend:2.50.14760256000738
nghttp2@1.52.0-1+deb12u3
no fix listed
1
sigp/siren:v3.0.42c219b04758e
nghttp2@1.52.0-1+deb12u2
no fix listed
1
sigscale/cse:latest67d0c886516b
nghttp2@1.52.0-1+deb12u3
no fix listed
1
sigscale/ocs:latest3c1bdc9732e2
nghttp2@1.52.0-1+deb12u3
no fix listed
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
nghttp2@1.52.0-1+deb12u1
no fix listed
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
nghttp2@1.52.0-1+deb12u1
no fix listed
1
sismics/docs:v1.10f4b0ef019cf1
nghttp2@1.30.0-1ubuntu1
no fix listed
1
sissbruecker/linkding:1.46.20c0a9a04c7eb
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sissbruecker/linkding:1.35.00c5dddf0b37c
nghttp2@1.52.0-1+deb12u1
no fix listed
1
sissbruecker/linkding:1.41.0-plusa222fb777e1f
nghttp2@1.52.0-1+deb12u2
no fix listed
1
slagattollas/weatherservice-practica:latest68e7f56393fc
nghttp2@1.30.0-1ubuntu1
no fix listed
1
snipe/snipe-it:v8.3.1141ebf2386fe
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
snipe/snipe-it:v6.0.1455fb7636a98c
nghttp2@1.40.0-1build1
no fix listed
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
nghttp2@1.52.0-1
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
nghttp2@1.52.0-1
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
nghttp2@1.52.0-1
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
nghttp2@1.52.0-1
no fix listed
1
softwaremill/bootzooka:latest845b5e8f8056
nghttp2@1.68.0-2ubuntu0.1
1.68.0-2ubuntu0.2
1
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
nghttp2@1.52.0-1+deb12u3
no fix listed
1
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
nghttp2@1.52.0-1+deb12u3
no fix listed
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
nghttp2@1.40.0-1build1
no fix listed
1
somnathmore/custom-nginx:v2bdfc06cad4ec
nghttp2@1.52.0-1+deb12u1
no fix listed
1
sonatype/nexus3:3.53.04bd975493104
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
sonatype/nexus3:3.58.1586060431b64
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
nghttp2@1.64.0-1.1
no fix listed
1
speckle/speckle-preview-service:2.26.3092384dba45d
nghttp2@1.52.0-1+deb12u2
no fix listed
1
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
nghttp2@1.52.0-1+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
nghttp2@1.52.0-1+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
nghttp2@1.52.0-1+deb12u2
no fix listed
1
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
nghttp2@1.52.0-1+deb12u2
no fix listed
1
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
nghttp2@1.52.0-1+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
nghttp2@1.52.0-1+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
nghttp2@1.52.0-1+deb12u1
no fix listed
1
splunk/splunk-operator:2.0.0c4e0d3146226
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
sslhep/servicex_app:v1.8.51d12f943cec5
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.