StackRadar

CVE-2026-58472

High

Advisory

Published 7 Jul 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.002
13th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
505
of 17,787 indexed, latest versions
Container images
490
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 505 of 17,787 indexed charts deploy, on 490 images.

Affected packageAffected versionsFixed inImages
wgetdeb1.15-1ubuntu1, 1.15-1ubuntu1.14.04.1, 1.15-1ubuntu1.14.04.4, 1.17.1-1ubuntu1.3+17 more1.15-1ubuntu1.14.04.5+esm2, 1.17.1-1ubuntu1.5+esm3, 1.19.4-1ubuntu2.2+esm3, 1.20.3-1ubuntu2.1+esm2+3 more486
wgetapk1.25.0-r4, 1.25.0-r161.25.0-r154
OSV records
DEBIAN-CVE-2026-58472CGA-4r22-ccq9-ch88CGA-qpgw-7fv8-2792UBUNTU-CVE-2026-58472
Also known as
USN-8543-1

Charts affected

505 by stars
ChartLatestAffected imagesRadar Score
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2026-58472.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
wget@1.21.3-1+deb12u1
no fix listed

Open the chart page →

9,117
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2026-58472.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.3

Open the chart page →

9,248
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-58472.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3

Open the chart page →

14,100
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-58472.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
wget@1.21.3-1+b2
no fix listed

Open the chart page →

13,677
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-58472.

Container imageDigestPackageFixed in
yandex/clickhouse-server:21.3.204eccfffb01d7
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1+esm2

Open the chart page →

9,207

Container images carrying it

490 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
openwhisk/ow-utils:1.0.0c80dba0de3aa
wget@1.19.4-1ubuntu2.2
1.19.4-1ubuntu2.2+esm3
1
opsmx11/issuegen:v2.1.05c50ca123d88
wget@1.15-1ubuntu1.14.04.4
1.15-1ubuntu1.14.04.5+esm2
1
outlinewiki/outline:0.82.0494dfb9249a6
wget@1.21.3-1+b2
no fix listed
1
outlinewiki/outline:1.10.1832051f039b4
wget@1.25.0-2
no fix listed
1
owncloud/server:10.15.051d9b74fc2a8
wget@1.20.3-1ubuntu2.1
1.20.3-1ubuntu2.1+esm2
1
owncloud/server:10.16.274c53d341076
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
pangeo/base-notebook:2024.01.155fbe688a4f80
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.3
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
wget@1.21.3-1+deb12u1
no fix listed
1
photoprism/photoprism:220629-jammy2954334adbda
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.3
1
photoprism/photoprism:260601650c6ad5a651
wget@1.25.0-2ubuntu4
1.25.0-2ubuntu4.2
1
photoprism/photoprism:251130db16ee6b1ba3
wget@1.25.0-2ubuntu3
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
pretix/standalone:2026.7.05df3b7aa852e
wget@1.25.0-2
no fix listed
1
project2team4/react:latest3ff031a08887
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1+esm2
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
prowlercloud/prowler-api:5.31.14f252d579be2
wget@1.21.3-1+deb12u1
no fix listed
1
proxysql/proxysql:3.0.8947a7abad45b
wget@1.25.0-2
no fix listed
1
proxysql/proxysql:2.7.3a4d6c35c2949
wget@1.21.3-1+b2
no fix listed
1
pschichtel/mindustry-server:v145.1b543e9c2d371
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
qumine/minecraft-server:v0.1.15c0b650d51132
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.3
1
rabeh/apibootspring:1.0941007b6946e
wget@1.21.2-2ubuntu1
1.21.2-2ubuntu1.3
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
wget@1.19.4-1ubuntu2.2
1.19.4-1ubuntu2.2+esm3
1
resouer/redis-slave:v2e2f198b49ba7
wget@1.15-1ubuntu1.14.04.1
1.15-1ubuntu1.14.04.5+esm2
1
rocketchat/freeswitch:stablecfba5c20a5cc
wget@1.21.3-1+deb12u1
no fix listed
1
rrobetti/ojp:0.1.0-beta1141bd88232b
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
rtuszik/photon-docker:2.4.021549c60f9e6
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
rundeck/rundeck:3.2.74d64fe56f767
wget@1.17.1-1ubuntu1.5
1.17.1-1ubuntu1.5+esm3
1
rundeck/rundeck:3.0.16b13e8059ad72
wget@1.17.1-1ubuntu1.4
1.17.1-1ubuntu1.5+esm3
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
wget@1.21.3-1+b2
no fix listed
1
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
wget@1.21.4-1ubuntu4.1
1.21.4-1ubuntu4.3
1
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
wget@1.25.0-2ubuntu4
1.25.0-2ubuntu4.2
1
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
wget@1.25.0-2ubuntu4
1.25.0-2ubuntu4.2
1
scrapinghub/splash:3.4.1a5f89bc84606
wget@1.19.4-1ubuntu2.2
1.19.4-1ubuntu2.2+esm3
1
seafileltd/seafile-mc:9.0.106693911bcc40
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1+esm2
1
seafileltd/seafile-mc:10.0.170628f29c663
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1+esm2
1
seafileltd/seafile-mc:9.0.97ac833196f60
wget@1.20.3-1ubuntu2
1.20.3-1ubuntu2.1+esm2
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
wget@1.20.3-1ubuntu1
1.20.3-1ubuntu2.1+esm2
1
shaowenchen/ops-server:latest315444f703f4
wget@1.21.2-2ubuntu1.1
1.21.2-2ubuntu1.3
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
wget@1.21.3-1+b2
no fix listed
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
wget@1.21.3-1+b2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.