StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,667
of 17,790 indexed, latest versions
Container images
1,598
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,667 of 17,790 indexed charts deploy, on 1,598 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,195
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more392
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,667 by stars
ChartLatestAffected imagesRadar Score
miot-modulithmicroboxlabs0.6.01 of 1See more

miot-modulith microboxlabs 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-srv:latest5796553b41ae
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

1,433
modulariotmicroboxlabs0.9.01 of 4See more

modulariot microboxlabs 0.9.0

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-srv:latest4ec11d229028
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

2,277
microcks-operatormicrocksVerified publisher0.0.111 of 1See more

microcks-operator microcks 0.0.11

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

1,279
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

12,862
folding-at-homemidokura-communityVerified publisher0.0.31 of 1See more

folding-at-home midokura-community 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
linuxserver/foldingathome:7.6.219a997426d71e
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4

Open the chart page →

2,938
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

11,254
teimilvus-helm1.6.01 of 1See more

tei milvus-helm 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,063
mini-blogmini-blog-helm0.1.01 of 3See more

mini-blog mini-blog-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

12,637
minio-operatorminio-operator4.3.71 of 2See more

minio-operator minio-operator 4.3.7

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

6,085
MINTmint8.0.23 of 15See more

MINT mint 8.0.2

3 of the 15 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
nghttp2@1.40.0-1ubuntu0.3
no fix listed
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

42,983
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
localstack/localstack-pro:latest4aef81c53168
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

10,639
standard-application-stackmintel11.4.11 of 12See more

standard-application-stack mintel 11.4.1

1 of the 12 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
localstack/localstack:latest3fe5b51caec8
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

10,515
simplewebappmlohrVerified publisher1.1.01 of 1See more

simplewebapp mlohr 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

7,775
mongodbmmontesVerified publisher0.5.01 of 1See more

mongodb mmontes 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:4.4.1305678ae4e5e1
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

7,148
reporting-nifi-processor-svcmojaloop0.0.21 of 3See more

reporting-nifi-processor-svc mojaloop 0.0.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:6.0.271a63fc2438e
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

6,220
mongo-compassmongo-compass-webVerified publisher1.1.41 of 1See more

mongo-compass mongo-compass-web 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.1f4f8fe4e21f1
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

1,771
mongo-compassmongo-compass-web-helm1.1.01 of 1See more

mongo-compass mongo-compass-web-helm 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.054f2112602ee
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

2,306
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.01 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

5,217
enterprise-operatormongodb-helm-charts1.33.01 of 1See more

enterprise-operator mongodb-helm-charts 1.33.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/mongodb/mongodb-enterprise-operator-ubi:1.33.0b05101723412
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

1,554
moodlemoodle1.0.31 of 2See more

moodle moodle 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
cloudtooling/moodle:5.2.3f4f04e0fc401
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

3,717
camera-viewermoreillonVerified publisher0.2.12 of 4See more

camera-viewer moreillon 0.2.1

2 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
moreillon/camera-viewer:lateste418cc694bd5
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

11,694
group-managermoreillonVerified publisher0.4.42 of 3See more

group-manager moreillon 0.4.4

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
moreillon/group-manager-front:v3.3.1c9f85db3baa5
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

9,886
mqtt-loggermoreillonVerified publisher0.3.11 of 5See more

mqtt-logger moreillon 0.3.1

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

10,998
user-manager-mongodbmoreillonVerified publisher0.6.23 of 4See more

user-manager-mongodb moreillon 0.6.2

3 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
moreillon/user-manager-front:v5.0.3b067dbbbb6af
nghttp2@1.52.0-1
no fix listed
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
nghttp2@1.52.0-1
no fix listed

Open the chart page →

23,263
user-manager-neo4jmoreillonVerified publisher0.9.74 of 6See more

user-manager-neo4j moreillon 0.9.7

4 of the 6 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
moreillon/group-manager-front:v3.3.1c9f85db3baa5
nghttp2@1.52.0-1+deb12u1
no fix listed
moreillon/user-manager:v5.0.2e1c9bfab5c16
nghttp2@1.52.0-1
no fix listed
moreillon/user-manager-front:v5.1.06597e6b98d21
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

30,195
genericmorremeyer8.0.01 of 1See more

generic morremeyer 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:1.25.167f9a4f10d14
nghttp2@1.52.0-1
no fix listed

Open the chart page →

5,602
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

15,731
filestashmt1905024.0.01 of 1See more

filestash mt190502 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
machines/filestash:latest0b8fc005e52e
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

3,377
nightscoutmt1905021.1.01 of 3See more

nightscout mt190502 1.1.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
nghttp2@1.40.0-1ubuntu0.3
no fix listed

Open the chart page →

6,646
paperless-ngxmt1905027.6.141 of 4See more

paperless-ngx mt190502 7.6.14

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

11,860
vaultwardenmt1905027.3.41 of 3See more

vaultwarden mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
vaultwarden/server:1.35.443498a94b22f
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

4,701
backendmulti-chart-app0.1.01 of 1See more

backend multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
frontendmulti-chart-app0.1.01 of 1See more

frontend multi-chart-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
my-multi-chart-appmulti-chart-app0.1.01 of 2See more

my-multi-chart-app multi-chart-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

3,823
multusmultusVerified publisher0.2.01 of 2See more

multus multus 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3

Open the chart page →

1,852
mum-discord-botmum-discord-botVerified publisher0.3.71 of 1See more

mum-discord-bot mum-discord-bot 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

13,711
pagesmuthu-pages1.0.02 of 3See more

pages muthu-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nghttp2@1.40.0-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

20,233
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

12,861
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

12,861
my-app-namemy-app-name0.0.21 of 1See more

my-app-name my-app-name 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
viniciusfcf/gitops-quarkus-app-jvm:latestbba8ee1b5cd5
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

9,149
elasticsearch-chartmy-elasticsearch0.1.01 of 2See more

elasticsearch-chart my-elasticsearch 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

9,341
my-helm-chartmy-helm-charts-2024Verified publisher0.1.01 of 1See more

my-helm-chart my-helm-charts-2024 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
shamimkuet/nginx:1.0.2b82902a76a04
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

5,383
Practica_4_helmmy-heml-appVerified publisher0.1.03 of 7See more

Practica_4_helm my-heml-app 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
codeurjc/weatherservice:v1.0b9e2f7234349
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
library/mongo:5.0.6-focal8e70544b6c76
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

27,812
nginx-chartmyk8scharts1.0.01 of 1See more

nginx-chart myk8scharts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
nginx-appmy-nginx-app0.1.31 of 1See more

nginx-app my-nginx-app 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
influxdbmy-personal-influxdb20.1.01 of 1See more

influxdb my-personal-influxdb2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,772
helloworldmysql2s3bk0.1.01 of 1See more

helloworld mysql2s3bk 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
mystoremystore-chart0.1.02 of 3See more

mystore mystore-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
hazegoodlife/haaze:veggiesite50f02d2d5d4d
nghttp2@1.52.0-1+deb12u2
no fix listed
hazegoodlife/haaze:milksite8d4c63169e14
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

8,776

Container images carrying it

1,598 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2api:3.86f56d239d280
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2auth:3.833ecfda16608
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2notifier:3.8f190a6212195
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2rulesengine:3.8259503496ff9
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2scheduler:3.8b1de2055c362
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2stream:3.81c8904a3bf67
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2timersengine:3.81bf35bfaf00c
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2web:3.809989a26c8b7
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stackstorm/st2workflowengine:3.819fdfffdbba8
nghttp2@1.40.0-1ubuntu0.2
no fix listed
1
stakater/workshop-operator:v0.0.3897bf456cc97c
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
stalwartlabs/stalwart:v0.16.1425001929f36a
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
stalwartlabs/stalwart:v0.16.22388dcb75a707
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
stashapp/stash-box:latesta534c8afdf39
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
statcan/ckan:2.93921305425b8
nghttp2@1.40.0-1build1
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
nghttp2@1.40.0-1build1
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
substratusai/verba:v0.4.0-baseURL261695be635eb
nghttp2@1.52.0-1+deb12u1
no fix listed
1
supabase/logflare:latest49bfe526f1b4
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
supabase/realtime:v2.102.3aa1c92c0cf32
nghttp2@1.52.0-1+deb12u3
no fix listed
1
supabase/realtime:v2.33.8d207e6e23ad3
nghttp2@1.52.0-1+deb12u1
no fix listed
1
supabase/realtime:latestd3aa0c86c7b3
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
supabase/studio:20241021-9f9b08326d8070c55e9
nghttp2@1.52.0-1+deb12u1
no fix listed
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
nghttp2@1.52.0-1+deb12u3
no fix listed
1
supabase/studio:latest94a2a9d2906e
nghttp2@1.52.0-1+deb12u3
no fix listed
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
nghttp2@1.43.0-1ubuntu0.1
1.43.0-1ubuntu0.4
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
nghttp2@1.52.0-1+deb12u1
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
nghttp2@1.52.0-1+deb12u2
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
nghttp2@1.52.0-1+deb12u2
no fix listed
1
tautulli/tautulli:latest670e68dd9efc
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
teknas09/bird-pod:latest12a1fa85c4aa
nghttp2@1.52.0-1+deb12u1
no fix listed
1
tenureai/tenure:v1.0.285f5b222df9a5
nghttp2@1.64.0-1.1+deb13u1+dhi2
no fix listed
1
theradius/loggia:0.463ba348546ec
nghttp2@1.52.0-1+deb12u1
no fix listed
1
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
nghttp2@1.64.0-1.1
no fix listed
1
thijsvanloef/palworld-server-docker:v2.5.0b4ac9ee22483
nghttp2@1.64.0-1.1
no fix listed
1
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
thingsboard/tbmq-node:2.4.070661025dba5
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
thmmniii/fbs-core:v1.27.15438517d9fc2
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.