StackRadar

CVE-2026-58055

Medium

Advisory

Published 28 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.003
17th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,680
of 17,787 indexed, latest versions
Container images
1,610
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: nghttp2 security update

Carried by container images the latest versions of 1,680 of 17,787 indexed charts deploy, on 1,610 images.

Affected packageAffected versionsFixed inImages
nghttp2deb1.30.0-1ubuntu1, 1.40.0-1build1, 1.40.0-1ubuntu0.1, 1.40.0-1ubuntu0.2+20 more1.43.0-1ubuntu0.4, 1.59.0-1ubuntu0.4, 1.64.0-1.1+e2, 1.64.0-1.1ubuntu1.2+1 more1,206
nghttp2apk1.63.0-r0, 1.64.0-r1, 1.66.0-r1, 1.68.0-r0+2 more1.70.0-r011
nghttp2rpm1.33.0-1.el8, 1.33.0-1.el8_0.1, 1.33.0-3.el8_2.1, 1.33.0-3.el8_2.2+18 more0:1.33.0-6.el8_10.3, 0:1.43.0-6.el9_8.2, 0:1.68.0-3.el10_2.2, 1.64.0-150700.3.6.1+2 more393
OSV records
CGA-43r8-f2xj-r388CGA-7g67-8qrj-cr3qDEBIAN-CVE-2026-58055RHSA-2026:54650RHSA-2026:54662RHSA-2026:55804RLSA-2026:54650RLSA-2026:54662RLSA-2026:55804UBUNTU-CVE-2026-58055ECHO-401a-73df-0d29openSUSE-SU-2026:11156-1SUSE-SU-2026:22630-1SUSE-SU-2026:4029-1
Also known as
CGA-8pjw-3mvg-2x6m, CGA-mrwp-fgwh-65q5, USN-8495-1

Charts affected

1,680 by stars
ChartLatestAffected imagesRadar Score
quickwitkfirfer0.7.21 of 1See more

quickwit kfirfer 0.7.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

3,492
web-chartkgw-ktcloudlab0.1.01 of 1See more

web-chart kgw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
kiaekiae0.1.61 of 9See more

kiae kiae 0.1.6

1 of the 9 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
istio/pilot:1.15.2db08d6963975
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

19,208
graphiti-mcpkiberonlabs0.1.21 of 1See more

graphiti-mcp kiberonlabs 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

3,284
cdashkitwareVerified publisher0.19.02 of 3See more

cdash kitware 0.19.0

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
nghttp2@1.52.0-1+deb12u2
no fix listed
kitware/cdash:v5.3.0d7767d9b9da4
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

12,131
kollectkollectVerified publisher0.20.01 of 1See more

kollect kollect 0.20.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
nghttp2@1.52.0-1+deb12u3
no fix listed

Open the chart page →

1,807
longhornkomailo-helm-charts0.6.03 of 3See more

longhorn komailo-helm-charts 0.6.0

3 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
nghttp2@1.64.0-150700.3.3.1
1.64.0-150700.3.6.1
longhornio/longhorn-share-manager:v1.12.1efaf47aeb4e8
nghttp2@1.64.0-150700.3.3.1
1.64.0-150700.3.6.1
longhornio/longhorn-ui:v1.12.103a3ce6673df
nghttp2@1.64.0-150700.3.3.1
1.64.0-150700.3.6.1

Open the chart page →

555
nginx-chartkosunjo-nginx0.1.01 of 1See more

nginx-chart kosunjo-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
kpingkpingOfficialVerified publisher0.3.51 of 1See more

kping kping 0.3.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kayrosuno/kping:latestf3bd44b29b0d
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

2,229
kubeflowkromanow94-kubeflow0.5.13 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

3 of the 30 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kubeflow/model-registry:v0.2.95783f6db428f
nghttp2@1.33.0-6.el8_10.1
0:1.33.0-6.el8_10.3
library/python:3.7eedf63967cdb
nghttp2@1.52.0-1
no fix listed
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
nghttp2@1.52.0-1+deb12u1
no fix listed

Open the chart page →

68,994
kron-aapm-agentkron-aapm-agent1.1.01 of 1See more

kron-aapm-agent kron-aapm-agent 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.1.07feef7d2ab42
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

8,922
adventureworkskronkltdVerified publisher0.1.01 of 1See more

adventureworks kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
chriseaton/adventureworks:latest54c3384ce701
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

4,462
fileserverkronkltdVerified publisher0.3.101 of 1See more

fileserver kronkltd 0.3.10

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
duck1123/lnd-fileserver:latest9d6fb247b714
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

3,769
mindsdbkronkltdVerified publisher0.1.01 of 1See more

mindsdb kronkltd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
mindsdb/mindsdb:latest163011c09299
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

9,652
rtlkronkltdVerified publisher0.1.01 of 2See more

rtl kronkltd 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
duck1123/cert-downloader:latest0e29f19fa67c
nghttp2@1.43.0-1build3
1.43.0-1ubuntu0.4

Open the chart page →

5,644
aapm-servicekron-pam-aapm-helmcharts1.2.51 of 1See more

aapm-service kron-pam-aapm-helmcharts 1.2.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
krontechnology/aapm-service:1.1.39dd602db8baa
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

2,645
kron-aapm-agentkron-pam-aapm-helmcharts1.2.51 of 1See more

kron-aapm-agent kron-pam-aapm-helmcharts 1.2.5

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
krontechnology/aapm-agent:1.8.41cc7d5be6529
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

2,746
web-chartktcloudhelm0.1.01 of 1See more

web-chart ktcloudhelm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
web-chartktcloudlab0.1.01 of 1See more

web-chart ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
web-chartktcloudlabstudent0.1.01 of 1See more

web-chart ktcloudlabstudent 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
web-chartktcloudljw0.1.01 of 1See more

web-chart ktcloudljw 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

1,839
authorino-operatorkuadrantOfficialVerified publisher0.26.01 of 1See more

authorino-operator kuadrant 0.26.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/kuadrant/authorino-operator:v0.26.003b2acc469f4
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

237
kubeadapt-k8s-pulsekubeadaptVerified publisher1.0.11 of 1See more

kubeadapt-k8s-pulse kubeadapt 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,422
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

3,988
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

7,457
aperagkubeblocksVerified publisher0.0.0-nightly1 of 3See more

aperag kubeblocks 0.0.0-nightly

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apecloud/aperag:v0.0.0-nightly8ac9947a2c84
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

8,455
smartfs-csi-driverkubeblocksVerified publisher0.1.21 of 6See more

smartfs-csi-driver kubeblocks 0.1.2

1 of the 6 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
nghttp2@1.33.0-5.el8_8
0:1.33.0-6.el8_10.3

Open the chart page →

9,249
listener-operatorkubedoopVerified publisher0.4.01 of 6See more

listener-operator kubedoop 0.4.0

1 of the 6 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

4,430
secret-operatorkubedoopVerified publisher0.4.01 of 5See more

secret-operator kubedoop 0.4.0

1 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/zncdatadev/tools:1.0.0-kubedoop0.0.0-dev382fca2054c9
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

4,378
kubemacpoolkubemacpoolVerified publisher0.3.01 of 1See more

kubemacpool kubemacpool 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2

Open the chart page →

1,624
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

7,196
kube-ovnkube-ovn-test1.14.01 of 1See more

kube-ovn kube-ovn-test 1.14.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kubeovn/kube-ovn:v1.14.06722b54eb5c0
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4

Open the chart page →

4,991
firefly-iiikubernetes-homelab-helm-chartsVerified publisher0.1.31 of 3See more

firefly-iii kubernetes-homelab-helm-charts 0.1.3

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.6.6ae69fdd95cde
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

4,416
flaresolverrkubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

flaresolverr kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

33,591
scrutinykubernetes-homelab-helm-chartsVerified publisher0.2.22 of 3See more

scrutiny kubernetes-homelab-helm-charts 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/influxdb:2.8571eb4514977
nghttp2@1.52.0-1+deb12u3
no fix listed
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

5,519
uptime-kumakubernetes-homelab-helm-chartsVerified publisher0.1.21 of 1See more

uptime-kuma kubernetes-homelab-helm-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.2.1-slim059b49d64739
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

6,363
vaultwardenkubernetes-homelab-helm-chartsVerified publisher0.1.11 of 1See more

vaultwarden kubernetes-homelab-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1ebdfe70701c6
nghttp2@1.64.0-1.1+deb13u1
no fix listed

Open the chart page →

2,032
kubernetes-kiosk-chromiumkubernetes-kiosk-chromium0.1.21 of 1See more

kubernetes-kiosk-chromium kubernetes-kiosk-chromium 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

28,558
kubernetes-nmstatekubernetes-nmstateVerified publisher0.87.01 of 1See more

kubernetes-nmstate kubernetes-nmstate 0.87.0

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/nmstate/kubernetes-nmstate-operator:v0.87.04dce694f01ea
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

372
brudi-operatorkubernetes-replicator0.2.31 of 1See more

brudi-operator kubernetes-replicator 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3

Open the chart page →

3,622
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

14,368
mongodbkubesphere-testVerified publisher0.3.21 of 2See more

mongodb kubesphere-test 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/mongo:4.2.16ca49afbcb2b
nghttp2@1.30.0-1ubuntu1
no fix listed

Open the chart page →

9,628
mysqlkubesphere-testVerified publisher1.0.21 of 3See more

mysql kubesphere-test 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
xenondb/percona:5.7.330e26872a2b67
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

7,381
xenondbkubesphere-testVerified publisher1.0.01 of 3See more

xenondb kubesphere-test 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
xenondb/percona:5.7.330e26872a2b67
nghttp2@1.40.0-1build1
no fix listed

Open the chart page →

7,381
forkliftkubevirt-forkliftVerified publisher0.3.01 of 2See more

forklift kubevirt-forklift 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
quay.io/kubev2v/forklift-operator:release-2.1268657c36c086
nghttp2@1.43.0-6.el9_8.1
0:1.43.0-6.el9_8.2

Open the chart page →

1,435
network-enforcerkubewardenVerified publisher0.1.21 of 3See more

network-enforcer kubewarden 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0.4ca08b7d2df5b
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

2,470
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
library/wordpress:php8.1-apachef73396626d2f
nghttp2@1.64.0-1.1
no fix listed

Open the chart page →

8,634
penpotkubitodevVerified publisher1.2.12 of 5See more

penpot kubitodev 1.2.1

2 of the 5 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
penpotapp/backend:2.2.147853d9bb9dd
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
penpotapp/exporter:2.2.15c835ffd87ab
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

17,002
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.42 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

2 of the 9 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
nghttp2@1.64.0-1.1
no fix listed
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
nghttp2@1.52.0-1+deb12u2
no fix listed

Open the chart page →

20,299
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-58055.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4

Open the chart page →

6,879

Container images carrying it

1,610 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
nghttp2@1.52.0-1+deb12u1
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
nghttp2@1.52.0-1+deb12u1
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
nghttp2@1.52.0-1+deb12u1
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bitnamilegacy/rabbitmq:4.1.2-debian-12-r074a3d7c747eb
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
nghttp2@1.52.0-1+deb12u1
no fix listed
1
bitnami/mongodb:8.0.8b3bd5b6be9a0
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bmeares/meerschaum:2.8.48e9c5bacaa82
nghttp2@1.52.0-1+deb12u2
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
nghttp2@1.52.0-1+deb12u2
no fix listed
1
boky/postfix:5.1.0aafc77238423
nghttp2@1.64.0-1.1
no fix listed
1
boky/postfix:4.4.0f3f247fd4252
nghttp2@1.52.0-1+deb12u2
no fix listed
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
nghttp2@1.40.0-1build1
no fix listed
1
bsgrigorov/helm-operator:latest45ab095f09c8
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
budibase/database:2.1.0d90f656261c9
nghttp2@1.52.0-1+deb12u2
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
carbone/carbone-ee:full-5.11.0518172cbad49
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
nghttp2@1.52.0-1+deb12u2
no fix listed
1
castlemock/castlemock:latestb7f3f1527ba9
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
castopod/castopod:1.12.101fd37280cbb2
nghttp2@1.52.0-1+deb12u1
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
nghttp2@1.64.0-1.1
no fix listed
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
nghttp2@1.59.0-1ubuntu0.2
1.59.0-1ubuntu0.4
1
cccs/assemblyline-core:4.7.4.stable19c914f21a41d7
nghttp2@1.52.0-1+deb12u3
no fix listed
1
cccs/assemblyline-socketio:4.7.4.stable19caf40394bd17
nghttp2@1.52.0-1+deb12u3
no fix listed
1
cccs/assemblyline-ui:4.7.4.stable190426ed7884a2
nghttp2@1.52.0-1+deb12u3
no fix listed
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
nghttp2@1.39.2-lp151.3.3.1
1.69.0-2.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
nghttp2@1.39.2-lp151.3.3.1
1.69.0-2.1
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
nghttp2@1.43.0-1ubuntu0.3
1.43.0-1ubuntu0.4
1
chetangautamm/repo:sipp.v3e7f7049e1544
nghttp2@1.40.0-1build1
no fix listed
1
cheveo/azp-agent:1.0.282240f890884
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
nghttp2@1.64.0-1.1
no fix listed
1
chocobozzz/peertube:v8.1.5052712130691
nghttp2@1.64.0-1.1+deb13u1
no fix listed
1
chriseaton/adventureworks:latest54c3384ce701
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
circleci/runner:launch-agent9bdc62f02162
nghttp2@1.40.0-1ubuntu0.3
no fix listed
1
ckan/ckan-base:2.12.087ecf3f27ad6
nghttp2@1.52.0-1+deb12u3
no fix listed
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
nghttp2@1.43.0-1ubuntu0.2
1.43.0-1ubuntu0.4
1
ckulka/baikal:0.10.1-nginx434bdd162247
nghttp2@1.52.0-1+deb12u2
no fix listed
1
cleveritcz/opencve:1.5.0c75c1636e0b7
nghttp2@1.43.0-5.el9_3.1
0:1.43.0-6.el9_8.2
1
cloudtooling/moodle:5.2.3f4f04e0fc401
nghttp2@1.52.0-1+deb12u3
no fix listed
1
cloudve/ttyd:latestd79c1c5881c0
nghttp2@1.30.0-1ubuntu1
no fix listed
1
cm2network/squad:latest8cba47f53df5
nghttp2@1.64.0-1.1
no fix listed
1
cockroachdb/cockroach:v22.2.91116820f4134
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
cockroachdb/cockroachdb-operator-v2:v1.0.04335d8bcbd3d
nghttp2@1.43.0-6.el9
0:1.43.0-6.el9_8.2
1
cockroachdb/cockroach-operator:v2.1.0983312754620
nghttp2@1.33.0-3.el8_2.1
0:1.33.0-6.el8_10.3
1
coderenvs/coder-service:1.44.61deffc4670e6
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3
1
coderenvs/timescale:1.44.676fd37fe6830
nghttp2@1.33.0-5.el8_9
0:1.33.0-6.el8_10.3
1
codetogether/codetogether:latest4348c8a38752
nghttp2@1.43.0-5.el9_4.3
0:1.43.0-6.el9_8.2
1
collabora/code:24.04.13.2.101dc4ab83977
nghttp2@1.52.0-1+deb12u2
no fix listed
1
collabora/code:23.05.10.1.105299b452f7f
nghttp2@1.52.0-1+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.