StackRadar

CVE-2026-64231

Medium

Advisory

Published 27 Jul 2026In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
22
of 17,803 indexed, latest versions
Container images
24
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 22 of 17,803 indexed charts deploy, on 24 images.

Affected packageAffected versionsFixed inImages
linuxdeb5.15.0-46.49, 5.15.0-53.59, 5.15.0-100.110, 5.15.0-118.128+13 more6.8.0-139.13924
OSV records
UBUNTU-CVE-2026-64231
Also known as
USN-8729-1

Charts affected

22 by stars
ChartLatestAffected imagesRadar Score
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
linux@6.8.0-88.89
6.8.0-139.139

Open the chart page →

19,654
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
linux@6.8.0-124.124
6.8.0-139.139

Open the chart page →

22,306
seafiledatamateVerified publisher0.6.01 of 6See more

seafile datamate 0.6.0

1 of the 6 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
datamate/seafile-professional:11.0.202dd66b722464
linux@5.15.0-153.163
no fix listed

Open the chart page →

27,465
geonode-k8sgeonode-k8sVerified publisher2.0.01 of 10See more

geonode-k8s geonode-k8s 2.0.0

1 of the 10 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
linux@5.15.0-181.191
no fix listed

Open the chart page →

14,147
nominatimrobjuz6.4.21 of 4See more

nominatim robjuz 6.4.2

1 of the 4 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
mediagis/nominatim:5.3.27923a8e67197
linux@6.8.0-124.124
6.8.0-139.139

Open the chart page →

8,826
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
linux@5.15.0-118.128
no fix listed

Open the chart page →

10,918
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
linux@6.8.0-134.134
6.8.0-139.139

Open the chart page →

3,823
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
linux@6.8.0-57.59
6.8.0-139.139

Open the chart page →

5,813
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
linux@5.15.0-143.153
no fix listed

Open the chart page →

12,553
opsopsVerified publisher1.2.02 of 2See more

ops ops 1.2.0

2 of the 2 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
shaowenchen/ops-controller-manager:latest26da43bb5b66
linux@5.15.0-186.196
no fix listed
shaowenchen/ops-server:latest315444f703f4
linux@5.15.0-153.163
no fix listed

Open the chart page →

9,214
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
linux@6.8.0-136.136
6.8.0-139.139

Open the chart page →

24,012
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
linux@5.15.0-124.134
no fix listed

Open the chart page →

7,519
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
6.8.0-139.139

Open the chart page →

2,993
nethermindethersphereVerified publisher0.2.11 of 1See more

nethermind ethersphere 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
nethermind/nethermind:1.14.615517708c3b6
linux@5.15.0-53.59
no fix listed

Open the chart page →

4,977
homebridgejespernohrVerified publisher0.2.01 of 1See more

homebridge jespernohr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
6.8.0-139.139

Open the chart page →

2,276
kubernetes-netskope-publisherkubernetes-netskope-publisherVerified publisher1.5.01 of 2See more

kubernetes-netskope-publisher kubernetes-netskope-publisher 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
linux@5.15.0-186.196
no fix listed

Open the chart page →

3,606
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
linux@5.15.0-130.140
no fix listed

Open the chart page →

6,969
homebridgelbenicio-communityVerified publisher0.1.151 of 1See more

homebridge lbenicio-community 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
6.8.0-139.139

Open the chart page →

2,276
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed

Open the chart page →

12,867
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed

Open the chart page →

12,867
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.04 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

4 of the 40 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
linux@6.8.0-136.136
6.8.0-139.139
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
linux@6.8.0-136.136
6.8.0-139.139
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
linux@6.8.0-136.136
6.8.0-139.139
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
linux@6.8.0-136.136
6.8.0-139.139

Open the chart page →

72,857
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-64231.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
linux@5.15.0-100.110
no fix listed

Open the chart page →

9,495

Container images carrying it

24 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
6.8.0-139.139
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed
2
datamate/seafile-professional:11.0.202dd66b722464
linux@5.15.0-153.163
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
linux@5.15.0-181.191
no fix listed
1
gethue/hue:latest7d5c1b9f8a79
linux@5.15.0-143.153
no fix listed
1
josh5/unmanic:0.2.64d49c4816260
linux@5.15.0-100.110
no fix listed
1
kusionstack/kusion:v0.14.0126c8f0b0976
linux@5.15.0-130.140
no fix listed
1
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
linux@6.8.0-124.124
6.8.0-139.139
1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
linux@6.8.0-88.89
6.8.0-139.139
1
mediagis/nominatim:5.3.27923a8e67197
linux@6.8.0-124.124
6.8.0-139.139
1
mlikiowa/napcat-docker:latest1336a777f9a4
linux@5.15.0-124.134
no fix listed
1
nethermind/nethermind:1.14.615517708c3b6
linux@5.15.0-53.59
no fix listed
1
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
linux@5.15.0-186.196
no fix listed
1
qonstrukt/php:8.4-v8-apache089af7925aa1
linux@6.8.0-136.136
6.8.0-139.139
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
linux@5.15.0-118.128
no fix listed
1
shaowenchen/ops-controller-manager:latest26da43bb5b66
linux@5.15.0-186.196
no fix listed
1
shaowenchen/ops-server:latest315444f703f4
linux@5.15.0-153.163
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
6.8.0-139.139
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
linux@6.8.0-57.59
6.8.0-139.139
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
linux@6.8.0-136.136
6.8.0-139.139
1
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
linux@6.8.0-136.136
6.8.0-139.139
1
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
linux@6.8.0-136.136
6.8.0-139.139
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
linux@6.8.0-136.136
6.8.0-139.139
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
linux@6.8.0-134.134
6.8.0-139.139
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.