StackRadar

CVE-2026-6637

High

Advisory

Published 14 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
266
of 17,781 indexed, latest versions
Container images
242
deployed by those charts
Fix available
9 of 13
affected packages

PostgreSQL refint allows stack buffer overflow and SQL injection

Carried by container images the latest versions of 266 of 17,781 indexed charts deploy, on 242 images.

Affected packageAffected versionsFixed inImages
postgresql-15deb15.3-0+deb12u1, 15.3-1.pgdg120+1, 15.4-2.pgdg120+1, 15.5-0+deb12u1+11 more15.18-0+deb12u1109
postgresqlbitnami11.8.0-10, 11.12.0-7, 14.4.0-0, 14.4.0-11+25 more14.23.030
postgresql-17deb17.5-1, 17.5-1.pgdg130+1, 17.6-0+deb13u1, 17.6-1build1+5 more17.10-0+deb13u1, 17.10-0ubuntu0.25.10.130
postgresql-12deb12.7-0ubuntu0.20.04.1, 12.8-0ubuntu0.20.04.1, 12.9-0ubuntu0.20.04.1, 12.11-0ubuntu0.20.04.1+2 moreno fix listed17
postgresql-14deb14.3-1.pgdg22.04+1, 14.4-0ubuntu0.22.04.1, 14.5-0ubuntu0.22.04.1, 14.6-1.pgdg22.04+1+5 more14.23-0ubuntu0.22.04.113
PostgreSQLbitnami15.3.0, 15.4.0, 15.5.0-42, 16.0.0+6 more14.23.011
postgresql18apk18.1-r0, 18.2-r0, 18.3-r018.4-r011
postgresql17apk17.2-r0, 17.4-r0, 17.5-r0, 17.6-r0+2 more17.10-r010
postgresql-10deb10.6-0ubuntu0.18.04.1, 10.10-0ubuntu0.18.04.1, 10.12-0ubuntu0.18.04.1, 10.14-0ubuntu0.18.04.1+1 moreno fix listed6
postgresql-16deb16.2-1ubuntu4, 16.6-0ubuntu0.24.04.1, 16.9-0ubuntu0.24.04.1, 16.10-0ubuntu0.24.04.1+1 more16.14-0ubuntu0.24.04.16
postgresql16apk16.3-r0, 16.9-r016.14-r05
postgresql-9.5deb9.5.10-0ubuntu0.16.04, 9.5.14-0ubuntu0.16.04no fix listed3
postgresql-9.3deb9.3.22-0ubuntu0.14.04no fix listed1
OSV records
ALPINE-CVE-2026-6637BIT-postgresql-2026-6637DEBIAN-CVE-2026-6637UBUNTU-CVE-2026-6637
Also known as
USN-8294-1

Charts affected

266 by stars
ChartLatestAffected imagesRadar Score
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.10-r0

Open the chart page →

11,335
dataflowcsghubVerified publisher2.5.01 of 7See more

dataflow csghub 2.5.0

1 of the 7 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opencsghq/psql:latest57def8e77d0f
postgresql17@17.2-r0
17.10-r0

Open the chart page →

6,632
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1

Open the chart page →

15,380
pgcatdasmeta0.1.31 of 2See more

pgcat dasmeta 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1

Open the chart page →

3,139
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
postgresql-15@15.16-0+deb12u1
15.18-0+deb12u1

Open the chart page →

5,062
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
postgresql-10@10.10-0ubuntu0.18.04.1
no fix listed

Open the chart page →

27,728
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
postgresql-10@10.14-0ubuntu0.18.04.1
no fix listed

Open the chart page →

18,863
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1

Open the chart page →

6,123
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
postgresql-16@16.6-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1

Open the chart page →

5,974
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
postgresql-10@10.6-0ubuntu0.18.04.1
no fix listed

Open the chart page →

22,405
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
postgresql-14@14.18-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

6,172
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
postgresql-10@10.10-0ubuntu0.18.04.1
no fix listed

Open the chart page →

24,335
private-action-runnerdatadogVerified publisher1.28.11 of 1See more

private-action-runner datadog 1.28.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
postgresql-16@16.13-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1

Open the chart page →

2,125
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
postgresql-15@15.10-0+deb12u1
15.18-0+deb12u1

Open the chart page →

10,090
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1

Open the chart page →

6,075
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

30,031
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

29,033
devtron-enterprisedevtron48.0.01 of 28See more

devtron-enterprise devtron 48.0.0

1 of the 28 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
postgresql-15@15.14-0+deb12u1
15.18-0+deb12u1

Open the chart page →

68,240
devtron-enterprisedevtron-labs48.0.01 of 28See more

devtron-enterprise devtron-labs 48.0.0

1 of the 28 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
postgresql-15@15.14-0+deb12u1
15.18-0+deb12u1

Open the chart page →

68,240
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
postgresql@17.5.0-9
14.23.0

Open the chart page →

4,046
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1

Open the chart page →

14,627
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
postgresql-14@14.6-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1

Open the chart page →

24,917
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
postgresql-14@14.3-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1

Open the chart page →

30,699
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
postgresql-17@17.6-0+deb13u1
17.10-0+deb13u1

Open the chart page →

13,391
heimdallegebackVerified publisher2.0.41 of 1See more

heimdall egeback 2.0.4

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
linuxserver/heimdall:2.6.371597f4461e4
postgresql16@16.9-r0
16.14-r0

Open the chart page →

1,664
rommernail-romm1.0.11 of 1See more

romm ernail-romm 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
rommapp/romm:4.4.1b909e95d1aab
postgresql17@17.7-r0
17.10-r0

Open the chart page →

2,896
doraethereum-helm-chartsVerified publisher1.0.121 of 2See more

dora ethereum-helm-charts 1.0.12

1 of the 2 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:15.3.0-debian-11-r7cc301eef7436
postgresql@15.3.0-3
PostgreSQL@15.3.0
14.23.0
14.23.0

Open the chart page →

2,991
fairwinds-insightsfairwinds-stableVerified publisher10.1.101 of 13See more

fairwinds-insights fairwinds-stable 10.1.10

1 of the 13 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
alpine/psql:18.339824ef2b7fc
postgresql18@18.3-r0
18.4-r0

Open the chart page →

3,797
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1

Open the chart page →

10,741
firefly-iiifirefly-iii1.10.11 of 1See more

firefly-iii firefly-iii 1.10.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1

Open the chart page →

5,039
firefly-iii-stackfirefly-iii0.10.22 of 4See more

firefly-iii-stack firefly-iii 0.10.2

2 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
fireflyiii/core:version-6.5.9fe4ecec4c2ba
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1

Open the chart page →

10,260
importerfirefly-iii1.6.01 of 1See more

importer firefly-iii 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
fireflyiii/data-importer:version-2.2.3ab52bf932546
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1

Open the chart page →

4,829
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1

Open the chart page →

64,489
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
postgresql-15@15.14-1.pgdg12+1
15.18-0+deb12u1

Open the chart page →

8,902
borgmaticgabe565Verified publisher0.10.11 of 1See more

borgmatic gabe565 0.10.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
postgresql17@17.2-r0
17.10-r0

Open the chart page →

2,438
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
postgresql-12@12.12-0ubuntu0.20.04.1
no fix listed

Open the chart page →

27,949
octoboxhalkeye0.1.11 of 1See more

octobox halkeye 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
octoboxio/octobox:latestd909041c46eb
postgresql18@18.1-r0
18.4-r0

Open the chart page →

3,255
hatchet-hahatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-ha hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

7,344
hatchet-stackhatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-stack hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

7,344
heliconehelicone0.1.421 of 14See more

helicone helicone 0.1.42

1 of the 14 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1

Open the chart page →

24,995
helixhelix1.4.31 of 2See more

helix helix 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
postgresql-15@15.16-0+deb12u1
15.18-0+deb12u1

Open the chart page →

5,568
castopodhelmforgeVerified publisher1.2.71 of 3See more

castopod helmforge 1.2.7

1 of the 3 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
castopod/castopod:1.15.54e4f0440520f
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1

Open the chart page →

9,342
chiefonboardinghelmforgeVerified publisher1.1.141 of 3See more

chiefonboarding helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1

Open the chart page →

10,849
jupyterhubhelmforgeVerified publisher1.0.61 of 3See more

jupyterhub helmforge 1.0.6

1 of the 3 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
postgresql-15@15.16-0+deb12u1
15.18-0+deb12u1

Open the chart page →

5,341
middlewarehelmforgeVerified publisher1.2.61 of 4See more

middleware helmforge 1.2.6

1 of the 4 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
middlewareeng/middleware:0.3.1747d880812f1
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1

Open the chart page →

9,653
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
postgresql-15@15.6-0+deb12u1
15.18-0+deb12u1

Open the chart page →

12,607
openaevhelm-openbasVerified publisher2.0.51 of 7See more

openaev helm-openbas 2.0.5

1 of the 7 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

7,437
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
postgresql@17.6.0-2
14.23.0

Open the chart page →

25,017
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
postgresql-14@14.10-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1

Open the chart page →

14,290
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-6637.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1

Open the chart page →

16,384

Container images carrying it

242 by charts deploying them

A fixed version is listed for 9 of the 13 affected packages.

Container imageDigestPackageFixed inUsed by
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
postgresql-15@15.16-0+deb12u1
15.18-0+deb12u1
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
postgresql-12@12.11-0ubuntu0.20.04.1
no fix listed
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
postgresql-17@17.7-0+deb13u1
17.10-0+deb13u1
1
statcan/ckan:2.93921305425b8
postgresql-12@12.7-0ubuntu0.20.04.1
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
postgresql-15@15.6-0+deb12u1
15.18-0+deb12u1
1
sysnet4admin/colosseum-cms:loge74b43c7f492
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
teknas09/bird-pod:latest12a1fa85c4aa
postgresql-15@15.6-0+deb12u1
15.18-0+deb12u1
1
temporalio/admin-tools:1.26.237e2e33dbd7b
postgresql16@16.3-r0
16.14-r0
1
temporalio/admin-tools:1.29.1-tctl-1.18.4-cli-1.5.0a3a52e6ca122
postgresql17@17.5-r0
17.10-r0
1
temporalio/admin-tools:1.28cfde8170c92f
postgresql18@18.2-r0
18.4-r0
1
theradius/loggia:0.463ba348546ec
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1
1
thongngo3301/stakefish:latesta341af5976e3
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
postgresql-14@14.7-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
postgresql-14@14.6-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
postgresql-14@14.3-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1
1
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1
1
tpdock/freeradius:2.2.93da600c95a49
postgresql-9.5@9.5.10-0ubuntu0.16.04
no fix listed
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
postgresql-15@15.10-0+deb12u1
15.18-0+deb12u1
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
postgresql-14@14.11-1.pgdg22.04+1
14.23-0ubuntu0.22.04.1
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
vabene1111/recipes:2.3.50f8d061895e9
postgresql17@17.7-r0
17.10-r0
1
vaultwarden/server:1.35.443498a94b22f
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1
1
vaultwarden/server:1.34.384fd8a47f58d
postgresql-15@15.13-0+deb12u1
15.18-0+deb12u1
1
vaultwarden/server:1.35.79a8eec71f4a5
postgresql-17@17.9-0+deb13u1
17.10-0+deb13u1
1
vlebediantsev/notes-admin-front:latest007c6670ff48
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
vlebediantsev/notes-project-front:latest945675fd2636
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
postgresql-15@15.3-0+deb12u1
15.18-0+deb12u1
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
postgresql-12@12.8-0ubuntu0.20.04.1
no fix listed
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
postgresql-12@12.8-0ubuntu0.20.04.1
no fix listed
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
postgresql-14@14.5-0ubuntu0.22.04.1
14.23-0ubuntu0.22.04.1
1
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
postgresql-16@16.13-0ubuntu0.24.04.1
16.14-0ubuntu0.24.04.1
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
postgresql-15@15.8-0+deb12u1
15.18-0+deb12u1
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
postgresql17@17.2-r0
17.10-r0
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
postgresql-15@15.10-0+deb12u1
15.18-0+deb12u1
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
postgresql@14.4.0-0
14.23.0
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
postgresql-17@17.7-0+deb13u1
17.10-0+deb13u1
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
postgresql-15@15.12-0+deb12u2
15.18-0+deb12u1
1
ghcr.io/dani-garcia/vaultwarden:1.35.2d89a6d21e361
postgresql-17@17.6-0+deb13u1
17.10-0+deb13u1
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
postgresql-17@17.8-0+deb13u1
17.10-0+deb13u1
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
postgresql-17@17.6-0+deb13u1
17.10-0+deb13u1
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
postgresql-15@15.5-0+deb12u1
15.18-0+deb12u1
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
postgresql-15@15.7-0+deb12u1
15.18-0+deb12u1
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
postgresql-17@17.9-1.pgdg13+1
17.10-0+deb13u1
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
postgresql-15@15.14-1.pgdg12+1
15.18-0+deb12u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.