StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,680
of 17,787 indexed, latest versions
Container images
1,610
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,680 of 17,787 indexed charts deploy, on 1,610 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,206
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more393
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,680 by stars
ChartLatestAffected imagesRadar Score
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

35,058
fhir-serverlinuxforhealth0.9.11 of 2See more

fhir-server linuxforhealth 0.9.1

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/linuxforhealth/fhir-schematool:5.1.1f62cefee6ef6
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3

Open the chart page →

1,052
litellmlitellm-helm0.2.01 of 1See more

litellm litellm-helm 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/berriai/litellm-database:litellm_stable_release_branch-v1.75.5-stableab63d26a8a2c
nghttp2@1.66.0-r1
1.70.0-r0

Open the chart page →

4,390
litlyxlitlyx0.2.01 of 5See more

litlyx litlyx 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:8.0.11dca8d11fe467
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

7,915
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

7,216
voice-biometricslumenvox2.0.11 of 26See more

voice-biometrics lumenvox 2.0.1

1 of the 26 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
lumenvox/cloud-binary-storage:2.0.053decadc102d
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

71,216
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

5,747
magentomagento3.2.33 of 12See more

magento magento 3.2.3

3 of the 12 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.10.05b0bc1b88f0c
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.6.1
longhornio/longhorn-share-manager:v1.10.09f6e5e3be8ab
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.6.1
longhornio/longhorn-ui:v1.10.0e60f36161511
nghttp2@1.64.0-150700.1.5
1.64.0-150700.3.6.1

Open the chart page →

13,582
Practica_4_Recuperacion_helmmca-03-02-practica4-recuperacionVerified publisher1.0.11 of 6See more

Practica_4_Recuperacion_helm mca-03-02-practica4-recuperacion 1.0.1

1 of the 6 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:4.2.358b25d51baa1
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

19,192
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,764
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

6,915
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
nghttp2@1.64.0-1.1ubuntu1
1.64.0-1.1ubuntu1.2

Open the chart page →

11,108
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

13,763
redminemt1905027.3.41 of 3See more

redmine mt190502 7.3.4

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/redmine:6.1.204ac44a2595b
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

7,552
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
n3uronn3uronVerified publisher0.3.51 of 1See more

n3uron n3uron 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,896
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

3,729
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
bitnamilegacy/elasticsearch:8.12.215d4647fd491
nghttp2@1.52.0-1+deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

37,441
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

340
monitorneuvectorchartsVerified publisher2.11.11 of 1See more

monitor neuvectorcharts 2.11.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
neuvector/prometheus-exporter:1.0.181d78ed4eef40
nghttp2@1.64.0-150700.3.3.1
1.64.0-150700.3.6.1

Open the chart page →

203
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

14,324
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

6,110
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

5,051
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
nghttp2@1.52.0-1
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

14,862
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_8.2

Open the chart page →

2,097
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

5,833
opikopikOfficialVerified publisher2.2.611 of 13See more

opik opik 2.2.61

1 of the 13 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

14,422
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

9,049
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

3,694
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

8,510
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

6,890
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_8.2

Open the chart page →

7,833
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

7,075
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

7,616
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
matomopockostVerified publisher1.3.01 of 3See more

matomo pockost 1.3.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
pockost/matomo:5.13.07f5d293cbe4e
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

5,102
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
nghttp2@1.40.0-1build1
no fix listed
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

31,949
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,487
prowlerprowler-appVerified publisher0.0.91 of 5See more

prowler prowler-app 0.0.9

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
prowlercloud/prowler-api:5.31.14f252d579be2
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

8,203
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,022
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

6,835
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

7,466
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

4,252
reportportalreportportal-ioOfficialVerified publisher26.8.121 of 15See more

reportportal reportportal-io 26.8.12

1 of the 15 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

11,943
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

7,487
rke2-ingress-nginxrke2-charts4.15.1101 of 2See more

rke2-ingress-nginx rke2-charts 4.15.110

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
rancher/nginx-ingress-controller:v1.14.5-hardened26cbc1e932b5b
nghttp2@1.64.0-160000.3.1
1.64.0-160000.4.1

Open the chart page →

739
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
nghttp2@1.43.0-5.el9_2.1
0:1.43.0-6.el9_8.2

Open the chart page →

9,885

Container images carrying it

1,610 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/it-at-m/dave-selfservice-portal/dave-selfserviceportal:10.0.0d352df1b94b6
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_8.2
1
ghcr.io/it-at-m/zammad-ldap-sync:dev10de22c8cbce
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
nghttp2@1.30.0-1ubuntu1
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
nghttp2@1.59.0-1ubuntu0.1
1.59.0-1ubuntu0.4
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
nghttp2@1.52.0-1+deb12u2
no fix listed
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
nghttp2@1.40.0-1ubuntu0.1
no fix listed
1
ghcr.io/k8snetworkplumbingwg/multus-dynamic-networks-controller:v0.3.72a2bb32c0ea8
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3
1
ghcr.io/kagent-dev/doc2vec/mcp:1.1.14ace1de323f4a
nghttp2@1.68.0-r0
1.70.0-r0
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
nghttp2@1.40.0-1ubuntu0.3
no fix listed
1
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
nghttp2@1.52.0-1+deb12u3
no fix listed
1
ghcr.io/kluster-manager/cluster-gateway:v1.12.158bed8d1e7fc
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
ghcr.io/kluster-manager/cluster-gateway-manager:v1.12.1f22cae0e6cf3
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2
1
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3
1
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
ghcr.io/kluster-manager/multicluster-controlplane:latest6de40f528be9
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3
1
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
nghttp2@1.30.0-1ubuntu1
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
nghttp2@1.40.0-1ubuntu0.3
no fix listed
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
nghttp2@1.64.0-1.1
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
nghttp2@1.52.0-1+deb12u2
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
nghttp2@1.40.0-1build1
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
nghttp2@1.40.0-1build1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.