StackRadar

CVE-2026-6475

High

Advisory

Published 14 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.003
25th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
266
of 17,781 indexed, latest versions
Container images
242
deployed by those charts
Fix available
9 of 13
affected packages

PostgreSQL pg_basebackup and pg_rewind can overwrite unrelated files of origin superuser choice

Carried by container images the latest versions of 266 of 17,781 indexed charts deploy, on 242 images.

Affected packageAffected versionsFixed inImages
postgresql-15deb15.3-0+deb12u1, 15.3-1.pgdg120+1, 15.4-2.pgdg120+1, 15.5-0+deb12u1+11 more15.18-0+deb12u1109
postgresqlbitnami11.8.0-10, 11.12.0-7, 14.4.0-0, 14.4.0-11+25 more14.23.030
postgresql-17deb17.5-1, 17.5-1.pgdg130+1, 17.6-0+deb13u1, 17.6-1build1+5 more17.10-0+deb13u1, 17.10-0ubuntu0.25.10.130
postgresql-12deb12.7-0ubuntu0.20.04.1, 12.8-0ubuntu0.20.04.1, 12.9-0ubuntu0.20.04.1, 12.11-0ubuntu0.20.04.1+2 moreno fix listed17
postgresql-14deb14.3-1.pgdg22.04+1, 14.4-0ubuntu0.22.04.1, 14.5-0ubuntu0.22.04.1, 14.6-1.pgdg22.04+1+5 more14.23-0ubuntu0.22.04.113
PostgreSQLbitnami15.3.0, 15.4.0, 15.5.0-42, 16.0.0+6 more14.23.011
postgresql18apk18.1-r0, 18.2-r0, 18.3-r018.4-r011
postgresql17apk17.2-r0, 17.4-r0, 17.5-r0, 17.6-r0+2 more17.10-r010
postgresql-10deb10.6-0ubuntu0.18.04.1, 10.10-0ubuntu0.18.04.1, 10.12-0ubuntu0.18.04.1, 10.14-0ubuntu0.18.04.1+1 moreno fix listed6
postgresql-16deb16.2-1ubuntu4, 16.6-0ubuntu0.24.04.1, 16.9-0ubuntu0.24.04.1, 16.10-0ubuntu0.24.04.1+1 more16.14-0ubuntu0.24.04.16
postgresql16apk16.3-r0, 16.9-r016.14-r05
postgresql-9.5deb9.5.10-0ubuntu0.16.04, 9.5.14-0ubuntu0.16.04no fix listed3
postgresql-9.3deb9.3.22-0ubuntu0.14.04no fix listed1
OSV records
ALPINE-CVE-2026-6475BIT-postgresql-2026-6475DEBIAN-CVE-2026-6475UBUNTU-CVE-2026-6475
Also known as
USN-8294-1

Charts affected

266 by stars
ChartLatestAffected imagesRadar Score
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.1.0-debian-11-r1529e3dd0e7e7a
postgresql@16.1.0-14
PostgreSQL@16.1.0
14.23.0
14.23.0

Open the chart page →

3,195
giteagiteaOfficialVerified publisher12.7.01 of 4See more

gitea gitea 12.7.0

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1

Open the chart page →

8,811
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
postgresql-17@17.6-0+deb13u1
17.10-0+deb13u1

Open the chart page →

5,366
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
postgresql-14@14.4-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

9,145
weblateweblateOfficialVerified publisher0.5.361 of 3See more

weblate weblate 0.5.36

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
postgresql@17.5.0-14
14.23.0

Open the chart page →

6,699
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
postgresql@16.3.0-3
PostgreSQL@16.3.0-3
14.23.0
14.23.0

Open the chart page →

19,391
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.3.0-debian-11-r7cc301eef7436
postgresql@15.3.0-3
PostgreSQL@15.3.0
14.23.0
14.23.0

Open the chart page →

22,002
oncallgrafana1.16.51 of 12See more

oncall grafana 1.16.5

1 of the 12 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
grafana/oncall:v1.16.5499851658393
postgresql17@17.6-r0
17.10-r0

Open the chart page →

16,251
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.02 of 5See more

openproject openproject-helm-charts 13.11.0

2 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
postgresql@15.4.0-6
PostgreSQL@15.4.0
14.23.0
14.23.0
openproject/hocuspocus:release-338001b288dc1359dfb5
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1

Open the chart page →

19,926
zabbixcetic3.1.32 of 5See more

zabbix cetic 3.1.3

2 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

33,725
chatwootchatwootVerified publisher2.0.241 of 3See more

chatwoot chatwoot 2.0.24

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
postgresql@14.4.0-0
14.23.0

Open the chart page →

9,203
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
postgresql-15@15.7-0+deb12u1
15.18-0+deb12u1

Open the chart page →

6,543
stacks-blockchain-apihirosystemsVerified publisher6.5.11 of 5See more

stacks-blockchain-api hirosystems 6.5.1

1 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
postgresql@15.4.0-6
PostgreSQL@15.4.0
14.23.0
14.23.0

Open the chart page →

8,364
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1

Open the chart page →

5,987
litellm-helmlitellm1.100.11 of 2See more

litellm-helm litellm 1.100.1

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
postgresql@16.2.0-2
PostgreSQL@16.2.0-2
14.23.0
14.23.0

Open the chart page →

5,003
flagsmithflagsmithOfficialVerified publisher0.83.01 of 4See more

flagsmith flagsmith 0.83.0

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.3.0-debian-11-r7cc301eef7436
postgresql@15.3.0-3
PostgreSQL@15.3.0
14.23.0
14.23.0

Open the chart page →

2,110
prefect-serverprefectVerified publisher2026.9.32126051 of 2See more

prefect-server prefect 2026.9.3212605

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
postgresql@14.13.0-20
14.23.0

Open the chart page →

5,786
ilumilumOfficialVerified publisher6.7.32 of 19See more

ilum ilum 6.7.3

2 of the 19 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.1.0-debian-11-r2504f3b0dfdb15
postgresql@16.1.0-34
PostgreSQL@16.1.0-34
14.23.0
14.23.0
bitnamilegacy/postgresql:16233f361c5819
postgresql@16.6.0-1
14.23.0

Open the chart page →

23,228
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
postgresql-17@17.5-1
17.10-0+deb13u1

Open the chart page →

5,634
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

8,489
zabbix-serveraekondratievVerified publisher1.0.62 of 4See more

zabbix-server aekondratiev 1.0.6

2 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
postgresql-12@12.8-0ubuntu0.20.04.1
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
postgresql-12@12.8-0ubuntu0.20.04.1
no fix listed

Open the chart page →

30,668
convoyconvoyVerified publisher3.7.131 of 3See more

convoy convoy 3.7.13

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

5,896
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1

Open the chart page →

2,901
baserowbaserow-chartVerified publisher1.0.561 of 6See more

baserow baserow-chart 1.0.56

1 of the 6 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
postgresql@16.4.0-12
14.23.0

Open the chart page →

17,263
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

5,870
infrahubinfrahubVerified publisher4.33.21 of 5See more

infrahub infrahub 4.33.2

1 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
postgresql@14.13.0-20
14.23.0

Open the chart page →

10,428
kubeflowkubeflow1.6.21 of 45See more

kubeflow kubeflow 1.6.2

1 of the 45 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
library/python:3.7eedf63967cdb
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1

Open the chart page →

96,941
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
postgresql@16.6.0-1
14.23.0

Open the chart page →

5,779
alerta-webalerta-webVerified publisher0.1.121 of 2See more

alerta-web alerta-web 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
postgresql@15.2.0-4
14.23.0

Open the chart page →

3,569
convertigoconvertigoOfficialVerified publisher8.4.31 of 5See more

convertigo convertigo 8.4.3

1 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
postgresql-15@15.10-1.pgdg120+1
15.18-0+deb12u1

Open the chart page →

17,404
cosmocosmo-platformOfficialVerified publisher0.20.01 of 10See more

cosmo cosmo-platform 0.20.0

1 of the 10 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
postgresql@15.4.0-6
PostgreSQL@15.4.0
14.23.0
14.23.0

Open the chart page →

28,839
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1

Open the chart page →

9,316
healthchecksgabe565Verified publisher0.17.01 of 1See more

healthchecks gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
postgresql17@17.4-r0
17.10-r0

Open the chart page →

2,286
infrahub-enterpriseinfrahub-enterpriseVerified publisher4.19.21 of 5See more

infrahub-enterprise infrahub-enterprise 4.19.2

1 of the 5 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
postgresql@14.13.0-20
14.23.0

Open the chart page →

10,530
coreinstill-aiOfficialVerified publisher0.1.751 of 15See more

core instill-ai 0.1.75

1 of the 15 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.28cfde8170c92f
postgresql18@18.2-r0
18.4-r0

Open the chart page →

30,816
home-assistantk8s-home-lab-repo16.3.11 of 1See more

home-assistant k8s-home-lab-repo 16.3.1

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
postgresql18@18.2-r0
18.4-r0

Open the chart page →

4,634
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
postgresql@17.5.0-14
14.23.0

Open the chart page →

4,060
nominatimrobjuz6.4.11 of 4See more

nominatim robjuz 6.4.1

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
postgresql@16.4.0-12
14.23.0

Open the chart page →

8,690
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
postgresql-14@14.18-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

5,751
thingsboard-clusterthingsboard-cluster-bettaVerified publisher0.2.261 of 6See more

thingsboard-cluster thingsboard-cluster-betta 0.2.26

1 of the 6 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.0.0-debian-11-r3b8a21df9b747
PostgreSQL@16.0.0
14.23.0

Open the chart page →

14,566
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
postgresql@15.4.0-6
PostgreSQL@15.4.0
14.23.0
14.23.0

Open the chart page →

28,534
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
postgresql-10@10.15-0ubuntu0.18.04.1
no fix listed

Open the chart page →

18,137
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
postgresql-17@17.6-0+deb13u1
17.10-0+deb13u1

Open the chart page →

12,037
psonoankra-chartsVerified publisher1.2.01 of 2See more

psono ankra-charts 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
psono/psono-server:5.0.03b974b43ea03
postgresql16@16.3-r0
16.14-r0

Open the chart page →

2,388
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
postgresql-12@12.7-0ubuntu0.20.04.1
no fix listed

Open the chart page →

13,145
cert-vaultcert-vaultOfficialVerified publisher2.12.01 of 7See more

cert-vault cert-vault 2.12.0

1 of the 7 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
postgresql@17.4.0-9
14.23.0

Open the chart page →

15,863
typo3christianhuthVerified publisher7.7.01 of 2See more

typo3 christianhuth 7.7.0

1 of the 2 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
martinhelmich/typo3:12.4c83a4f3fd7ae
postgresql-15@15.16-0+deb12u1
15.18-0+deb12u1

Open the chart page →

8,466
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
postgresql-17@17.7-0+deb13u1
17.10-0+deb13u1

Open the chart page →

11,205
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1

Open the chart page →

13,761
datacube-explorerdatacube-charts0.5.321 of 1See more

datacube-explorer datacube-charts 0.5.32

1 of the 1 container images this version deploys carry CVE-2026-6475.

Container imageDigestPackageFixed in
opendatacube/explorer:latest120457ffcd69
postgresql-16@16.10-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1

Open the chart page →

4,854

Container images carrying it

242 by charts deploying them

A fixed version is listed for 9 of the 13 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0
11
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
postgresql@17.5.0-14
14.23.0
5
bitnamilegacy/postgresql:16233f361c5819
postgresql@16.6.0-1
14.23.0
4
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
postgresql@15.4.0-6
PostgreSQL@15.4.0
14.23.0
14.23.0
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
postgresql@17.6.0-0
14.23.0
4
bitnamilegacy/postgresql:15.3.0-debian-11-r7cc301eef7436
postgresql@15.3.0-3
PostgreSQL@15.3.0
14.23.0
14.23.0
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
postgresql@14.13.0-20
14.23.0
3
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.10-r0
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
postgresql@16.6.0-1
14.23.0
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
postgresql-15@15.14-0+deb12u1
15.18-0+deb12u1
3
apache/tika:2.9.2.1-fullae0b86d3c4d0
postgresql-16@16.2-1ubuntu4
16.14-0ubuntu0.24.04.1
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
postgresql@14.4.0-11
14.23.0
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
postgresql@16.4.0-12
14.23.0
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
postgresql-10@10.12-0ubuntu0.18.04.1
no fix listed
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
2
kurento/kurento-media-server:latest03c0d34d0828
postgresql-16@16.10-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1
2
library/python:3.7eedf63967cdb
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
postgresql-9.5@9.5.14-0ubuntu0.16.04
no fix listed
2
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
postgresql-15@15.6-0+deb12u1
15.18-0+deb12u1
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1
2
akaunting/akaunting:3.0.1552811b36ec3a
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
alpine/psql:18.339824ef2b7fc
postgresql18@18.3-r0
18.4-r0
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
postgresql-15@15.4-2.pgdg120+1
15.18-0+deb12u1
1
apache/superset:4.0.1ab9467fd712c
postgresql-15@15.6-0+deb12u1
15.18-0+deb12u1
1
appwrite/appwrite:1.9.01aaa70127114
postgresql18@18.2-r0
18.4-r0
1
arthurjguerra18/revwallet:v0.7.12f540af20b307
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1
1
arunvelsriram/utils:latest655ad18fd8d6
postgresql-16@16.9-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1
1
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
avinash263/pyredis263:latestaa2b8727f1a6
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
baserow/backend:1.31.1e0b3c8130b91
postgresql-15@15.10-0+deb12u1
15.18-0+deb12u1
1
baserow/baserow:1.30.1df0c42eb67e8
postgresql-15@15.10-1.pgdg120+1
15.18-0+deb12u1
1
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
postgresql@16.4.0-10
14.23.0
1
bitnamilegacy/postgresql:16.1.0-debian-11-r2504f3b0dfdb15
postgresql@16.1.0-34
PostgreSQL@16.1.0-34
14.23.0
14.23.0
1
bitnamilegacy/postgresql:16.1.0-debian-11-r1529e3dd0e7e7a
postgresql@16.1.0-14
PostgreSQL@16.1.0
14.23.0
14.23.0
1
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
postgresql@16.3.0-3
PostgreSQL@16.3.0-3
14.23.0
14.23.0
1
bitnamilegacy/postgresql:16.4.03ba6e6f11388
postgresql@16.4.0-20
14.23.0
1
bitnamilegacy/postgresql:15.2.0-debian-11-r113e65a6b89e38
postgresql@15.2.0-4
14.23.0
1
bitnamilegacy/postgresql:15.3.0-debian-11-r775f4cf61668e5
postgresql@15.3.0-9
PostgreSQL@15.3.0
14.23.0
14.23.0
1
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
postgresql@17.5.0-11
14.23.0
1
bitnamilegacy/postgresql:15.5.06887635cc793
postgresql@15.5.0-42
PostgreSQL@15.5.0-42
14.23.0
14.23.0
1
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
postgresql@17.5.0-9
14.23.0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.