StackRadar

CVE-2026-59845

Medium

Advisory

Published 21 Jul 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
666
of 17,787 indexed, latest versions
Container images
575
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 666 of 17,787 indexed charts deploy, on 575 images.

Affected packageAffected versionsFixed inImages
libsshdeb0.6.3-4.3, 0.6.3-4.3ubuntu0.2, 0.8.0~20170825.94fa1e38-1ubuntu0.2, 0.8.0~20170825.94fa1e38-1ubuntu0.5+23 more0.9.6-2ubuntu0.22.04.8, 0.10.6-2ubuntu0.5, 0.11.3-1ubuntu2.1, 0.11.5-0+deb13u1575
OSV records
DEBIAN-CVE-2026-59845UBUNTU-CVE-2026-59845
Also known as
USN-8699-1

Charts affected

666 by stars
ChartLatestAffected imagesRadar Score
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
libssh@0.10.6-2ubuntu0.1
0.10.6-2ubuntu0.5

Open the chart page →

7,696
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libssh@0.9.3-2ubuntu2.2
no fix listed

Open the chart page →

11,444
pageswalter1.0.01 of 3See more

pages walter 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
libssh@0.9.3-2ubuntu2.1
no fix listed

Open the chart page →

20,233
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
libssh@0.9.3-2ubuntu2.2
no fix listed

Open the chart page →

11,167
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.8

Open the chart page →

6,272
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libssh@0.9.3-2ubuntu2.3
no fix listed

Open the chart page →

9,225
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libssh@0.9.3-2ubuntu2.3
no fix listed

Open the chart page →

9,225
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
library/mongo:4.44be76f674fc4
libssh@0.9.3-2ubuntu2.5
no fix listed

Open the chart page →

28,699
kubernetes-dashboardwenerme7.14.01 of 5See more

kubernetes-dashboard wenerme 7.14.0

1 of the 5 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5

Open the chart page →

3,517
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
libssh@0.9.3-2ubuntu2.2
no fix listed

Open the chart page →

15,287
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.8

Open the chart page →

9,296
elasticsearchwiremindVerified publisher8.19.01 of 1See more

elasticsearch wiremind 8.19.0

1 of the 1 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5

Open the chart page →

2,229
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
libssh@0.9.3-2ubuntu2.5
no fix listed

Open the chart page →

6,323
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.8

Open the chart page →

14,172
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5

Open the chart page →

13,197
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-59845.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
libssh@0.9.6-2ubuntu0.22.04.7
0.9.6-2ubuntu0.22.04.8

Open the chart page →

7,916

Container images carrying it

575 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.8
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.8
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
libssh@0.9.6-2ubuntu0.22.04.4
0.9.6-2ubuntu0.22.04.8
1
ghcr.io/zazukoians/qlever-server:v0.10.0f10fd24b2290
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libssh@0.9.6-2ubuntu0.22.04.7
0.9.6-2ubuntu0.22.04.8
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
libssh@0.10.6-2ubuntu0.2
0.10.6-2ubuntu0.5
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.8
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
libssh@0.10.6-2ubuntu0.2
0.10.6-2ubuntu0.5
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libssh@0.9.3-2ubuntu2.1
no fix listed
1
quay.io/aerokube/keygen:1.0.1578934444f04
libssh@0.9.6-2ubuntu0.22.04.3
0.9.6-2ubuntu0.22.04.8
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.8
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
libssh@0.10.6-2build2
0.10.6-2ubuntu0.5
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
libssh@0.10.6-2ubuntu0.1
0.10.6-2ubuntu0.5
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
libssh@0.9.6-2ubuntu0.22.04.1
0.9.6-2ubuntu0.22.04.8
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.8
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
libssh@0.9.6-2build1
0.9.6-2ubuntu0.22.04.8
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
libssh@0.10.6-2ubuntu0.4
0.10.6-2ubuntu0.5
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
libssh@0.9.3-2ubuntu2.1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.