StackRadar

CVE-2026-5928

High

Advisory

Published 20 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,445
of 17,790 indexed, latest versions
Container images
2,477
deployed by those charts
Fix available
2 of 4
affected packages

CVE-2026-5928 affecting package glibc 2.38-21

Carried by container images the latest versions of 2,445 of 17,790 indexed charts deploy, on 2,477 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+59 more2.35-0ubuntu3.14, 2.39-0ubuntu8.8, 2.41-12+deb13u2+e4, 2.41-12+deb13u4+1 more2,425
glibcapk2.37-r7, 2.38-r6, 2.39-r7, 2.40-r1+8 more2.43-r722
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcrpm2.38-16.azl3, 2.38-18.azl3, 2.38-20.azl3no fix listed23
OSV records
CGA-2gxw-5ffj-x2phDEBIAN-CVE-2026-5928UBUNTU-CVE-2026-5928AZL-83087ECHO-c634-adb4-1dbe
Also known as
CGA-482r-2xq8-f4x9, CGA-52fm-fh87-3chx, CGA-7rhh-qh9f-p756, CGA-8q82-f5j8-fh3w, CGA-cr8c-r5h5-5gc4, CGA-fwmr-xqf9-976q, CGA-h6w5-gmvw-7p3j, CGA-h8hx-28hx-583g, CGA-mff9-49w3-8vxq, CGA-q7rf-9pqj-g4hq, CGA-r747-wj6f-v7p4, CGA-vrh7-vv5q-5295, CGA-wxh3-3r3r-49wr, CGA-x688-wmjw-qhpm, CGA-xqv8-j654-32r2, USN-8611-1

Charts affected

2,445 by stars
ChartLatestAffected imagesRadar Score
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
glibc@2.31-0ubuntu9.14
no fix listed

Open the chart page →

12,166
memcachedcloudpirates-memcachedVerified publisher0.14.91 of 1See more

memcached cloudpirates-memcached 0.14.9

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,074
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

3,050
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

5,943
cortexcortex3.3.82 of 4See more

cortex cortex 3.3.8

2 of the 4 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
glibc@2.41-12+deb13u3
2.41-12+deb13u4
library/nginx:1.3105b8cb60c354
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,948
valkeygroundhog2k2.3.41 of 1See more

valkey groundhog2k 2.3.4

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

829
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.14

Open the chart page →

4,954
docmosthelmforgeVerified publisher1.2.123 of 4See more

docmost helmforge 1.2.12

3 of the 4 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
docmost/docmost:0.96.0b56947fcfd08
glibc@2.41-12+deb13u3
2.41-12+deb13u4
library/postgres:18.6-trixie4ef4dbc939d6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
library/redis:8.10.1298e5b3bc566
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

4,113
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

4,215
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
glibc@2.41-12+deb13u2
2.41-12+deb13u4

Open the chart page →

2,924
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,307
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

8,692
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,266
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,231
passboltpassbolt2.1.15 of 6See more

passbolt passbolt 2.1.1

5 of the 6 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
glibc@2.36-9+deb12u10
no fix listed
library/haproxy:3.4.10f597665a2a6
glibc@2.41-12+deb13u3
2.41-12+deb13u4
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

13,523
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14

Open the chart page →

2,955
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

2,377
thehivestrangebee-helmOfficialVerified publisher1.0.74 of 7See more

thehive strangebee-helm 1.0.7

4 of the 7 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
glibc@2.36-9+deb12u9
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
glibc@2.36-9+deb12u10
no fix listed
strangebee/thehive:5.8.0-1a7f7b05fba24
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

16,220
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

14,327
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

7,947
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,402
kubedbappscodeVerified publisher2026.7.105 of 8See more

kubedb appscode 2026.7.10

5 of the 8 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-crd-manager:v0.21.09506a6cb98d1
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
glibc@2.36-9+deb12u14
no fix listed
ghcr.io/kubedb/kubedb-webhook-server:v0.42.0f7dcade6523b
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

4,145
cloudflaredartur9010Verified publisher1.0.91 of 3See more

cloudflared artur9010 1.0.9

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2026.3.06b599ca3e974
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

3,008
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

2,722
alb-controllerazure-application-gateway-for-containers1.12.11 of 3See more

alb-controller azure-application-gateway-for-containers 1.12.1

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
mcr.microsoft.com/application-lb/images/alb-controller-crds:1.12.14dcf198fcb7c
glibc@2.38-20.azl3
no fix listed

Open the chart page →

221
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
glibc@2.41-12+deb13u3
2.41-12+deb13u4
baserow/web-frontend:2.3.3566d24c7d9f5
glibc@2.41-12+deb13u3
2.41-12+deb13u4
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
glibc@2.36-9+deb12u7
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
glibc@2.36-9+deb12u8
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

17,413
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
glibc@2.31-0ubuntu9.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

53,052
headwind-mdmchristianhuthVerified publisher5.10.21 of 2See more

headwind-mdm christianhuth 5.10.2

1 of the 2 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

5,929
routercosmo-routerOfficialVerified publisher0.18.01 of 1See more

router cosmo-router 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/router:0.243.05afcab98d9d7
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

1,686
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
glibc@2.36-9+deb12u10
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

9,208
dagster-user-deploymentsdagsterVerified publisher1.13.221 of 1See more

dagster-user-deployments dagster 1.13.22

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
dagster/user-code-example:1.13.225947f9ae481c
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

955
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.14

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
glibc@2.36-9+deb12u7
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
glibc@2.36-9+deb12u7
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
glibc@2.36-9+deb12u7
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.14

Open the chart page →

27,426
dialdialOfficialVerified publisher7.2.01 of 4See more

dial dial 7.2.0

1 of the 4 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
glibc@2.41-12+deb13u1
2.41-12+deb13u4

Open the chart page →

2,186
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,626
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.8

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.04 of 10See more

geonode-k8s geonode-k8s 2.0.0

4 of the 10 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.14
geopython/pycsw:3.0.0-beta284662ea6b78b
glibc@2.36-9+deb12u13
no fix listed
library/memcached:1.6.40cc523a19da58
glibc@2.41-12+deb13u1
2.41-12+deb13u4
library/redis:8.4.03906b477e4b6
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

14,112
gitops-promotergitops-promoterOfficialVerified publisher0.17.01 of 2See more

gitops-promoter gitops-promoter 0.17.0

1 of the 2 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/gitops-promoter:v0.38.19c8a510dc25e
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,917
glpiglpi-conteiner0.1.02 of 3See more

glpi glpi-conteiner 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
glibc@2.41-12+deb13u3
2.41-12+deb13u4
vdiogov/glpi-conteiner:latest6945f84f0058
glibc@2.36-9+deb12u7
no fix listed

Open the chart page →

12,359
grafana-mcpgrafana-communityVerified publisher0.23.21 of 1See more

grafana-mcp grafana-community 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.2f87fa67a561f
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

1,090
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

4,172
karakeephelmforgeVerified publisher1.2.91 of 3See more

karakeep helmforge 1.2.9

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

9,557
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

3,664
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

1,649
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

2,050
openctihelm-openctiVerified publisher3.0.91 of 8See more

opencti helm-opencti 3.0.9

1 of the 8 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

3,407
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
apache/hertzbeat-collector:1.8.0a2bab1be574c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
library/postgres:159b1d34adbce1
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

14,181
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
glibc@2.36-9+deb12u9
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
glibc@2.36-9+deb12u10
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
glibc@2.36-9+deb12u10
no fix listed
library/neo4j:2026.05.06c162e2432f8
glibc@2.41-12+deb13u3
2.41-12+deb13u4

Open the chart page →

10,522
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8

Open the chart page →

1,729
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-5928.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

6,350

Container images carrying it

2,477 by charts deploying them

A fixed version is listed for 2 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.14
1
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
glibc@2.31-0ubuntu9.9
no fix listed
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
glibc@2.36-9+deb12u13
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
glibc@2.36-9+deb12u8
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
glibc@2.41-12
2.41-12+deb13u4
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
glibc@2.41-12+deb13u1
2.41-12+deb13u4
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
glibc@2.36-9+deb12u3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
glibc@2.41-12+deb13u2
2.41-12+deb13u4
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
glibc@2.35-0ubuntu3.9
2.35-0ubuntu3.14
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
glibc@2.41-12
2.41-12+deb13u4
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
glibc@2.36-9+deb12u10
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
glibc@2.27-3ubuntu1.6
no fix listed
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
glibc@2.36-9+deb12u14
no fix listed
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
glibc@2.36-9+deb12u7
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.14
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
glibc@2.41-12
2.41-12+deb13u4
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
glibc@2.43-2ubuntu2
2.43-2ubuntu2.3
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.8
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.8
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
glibc@2.36-9+deb12u9
no fix listed
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
glibc@2.41-12+deb13u1
2.41-12+deb13u4
1
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
glibc@2.36-9
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
glibc@2.36-9+deb12u14
no fix listed
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
glibc@2.27-3ubuntu1.6
no fix listed
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
glibc@2.27-3ubuntu1.6
no fix listed
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
glibc@2.36-9+deb12u14
no fix listed
1
ghcr.io/schaka/janitorr:native-stable7cfe1e0c41da
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.8
1
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
glibc@2.36-9+deb12u9
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/sebadob/rauthy:0.35.2a73dbf58359f
glibc@2.36-9+deb12u14
no fix listed
1
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
glibc@2.36-9+deb12u7
no fix listed
1
ghcr.io/sergelogvinov/fluentd:1.19.33273d13f1e75
glibc@2.41-12+deb13u3
2.41-12+deb13u4
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.