StackRadar

CVE-2026-69220

High

Advisory

Published 18 Aug 2026In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.7
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
78
of 17,781 indexed, latest versions
Container images
92
deployed by those charts
Fix available
1 of 1
affected package

RabbitMQ Java client ValueReader: Unbounded recursive table/array nesting causes StackOverflowError DoS

Carried by container images the latest versions of 78 of 17,781 indexed charts deploy, on 92 images.

Affected packageAffected versionsFixed inImages
amqp-clientmaven4.8.0, 4.11.3, 4.12.0, 5.0.0+21 more5.33.192
OSV records
GHSA-93j5-89vc-pph4

Charts affected

78 by stars
ChartLatestAffected imagesRadar Score
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
openbas/platform:2.0.5d986d80b0a75
amqp-client@5.26.0
5.33.1

Open the chart page →

25,017
eoloplanthttpd-eoloplant0.1.02 of 7See more

eoloplant httpd-eoloplant 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
amqp-client@5.13.1
5.33.1
codeurjc/server:v1.0310bea5b1ee7
amqp-client@5.10.0
5.33.1

Open the chart page →

32,205
eoloserverihuertas2021-vmartinp2021-helm0.1.02 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
amqp-client@5.10.0
5.33.1
huertaslopez/i.huertas.2021-v.martinp.2021-planner:2.0.0e2c18bd65472
amqp-client@5.13.1
5.33.1

Open the chart page →

27,721
pinotinseefrlab0.2.01 of 2See more

pinot inseefrlab 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
apachepinot/pinot:latest-jdk110018bb04ced7
amqp-client@5.12.0
5.33.1

Open the chart page →

10,777
filebot-botluiscajl0.0.111 of 1See more

filebot-bot luiscajl 0.0.11

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
amqp-client@5.13.1
5.33.1

Open the chart page →

3,679
lavandaluiscajl0.0.1343 of 5See more

lavanda luiscajl 0.0.134

3 of the 5 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
amqp-client@5.9.0
5.33.1
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
amqp-client@5.9.0
5.33.1
lavandadelpatio/tmdb:0.0.2f36af885e915
amqp-client@5.10.0
5.33.1

Open the chart page →

18,248
tmdbluiscajl0.2.41 of 1See more

tmdb luiscajl 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
lavandadelpatio/tmdb:latestded9377636e9
amqp-client@5.17.1
5.33.1

Open the chart page →

2,234
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
hugohg34/planner:0.0.2171f61e8d7e2
amqp-client@5.13.1
5.33.1

Open the chart page →

29,588
resource-processormicroservices-learningVerified publisher1.2.01 of 1See more

resource-processor microservices-learning 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
amqp-client@5.17.1
5.33.1

Open the chart page →

3,683
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
amqp-client@5.17.1
5.33.1

Open the chart page →

5,129
Practica_4_helmmy-heml-appVerified publisher0.1.02 of 7See more

Practica_4_helm my-heml-app 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
adagber/planner:v1.0e5c1ed097752
amqp-client@5.13.1
5.33.1
codeurjc/server:v1.0310bea5b1ee7
amqp-client@5.10.0
5.33.1

Open the chart page →

27,721
file-system-ms-helm-chartnotesprojectchart0.1.01 of 2See more

file-system-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
vlebediantsev/file-system-ms-final:latest10393a89b4a8
amqp-client@5.15.0
5.33.1

Open the chart page →

5,875
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
vlebediantsev/logic-ms:latestdf8bf38c535b
amqp-client@5.15.0
5.33.1

Open the chart page →

6,852
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
amqp-client@5.5.3
5.33.1

Open the chart page →

9,005
p4p40.1.02 of 7See more

p4 p4 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
amqp-client@5.13.1
5.33.1
mastercloudapps/server:v2.23f3d24dfe2686
amqp-client@5.10.0
5.33.1

Open the chart page →

27,537
myappp4-helm0.1.01 of 6See more

myapp p4-helm 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
fjvela/urjc-fjvela-worker:1.0.170cebf67bd66
amqp-client@5.7.3
5.33.1

Open the chart page →

19,720
apache-knox-helmpfisterer-knox0.1.111 of 1See more

apache-knox-helm pfisterer-knox 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
farberg/apache-knox-docker:1.6.14b4a22487394
amqp-client@5.10.0
5.33.1

Open the chart page →

6,237
Practica_4_helmpr04helm0.1.02 of 7See more

Practica_4_helm pr04helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
amqp-client@5.10.0
5.33.1
pcarrascoponce/planner:v1.0981fc482442c
amqp-client@5.13.1
5.33.1

Open the chart page →

27,558
practica-helmpractica-helm0.1.01 of 7See more

practica-helm practica-helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
slagattollas/planner-practica:latestcecd95e31486
amqp-client@5.10.0
5.33.1

Open the chart page →

28,484
producer-helmproducer-app-helm-chart0.1.01 of 1See more

producer-helm producer-app-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
j4ckhunter/producer:1.006ba447609b12
amqp-client@5.14.2
5.33.1

Open the chart page →

2,564
reportportalreportportal5.7.22 of 8See more

reportportal reportportal 5.7.2

2 of the 8 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
reportportal/service-api:5.7.29df41f8fb320
amqp-client@5.7.3
5.33.1
reportportal/service-jobs:5.7.2dc166c58485a
amqp-client@5.10.0
5.33.1

Open the chart page →

25,737
retail-store-sample-orders-chartstacksimplifyVerified publisher2.0.01 of 1See more

retail-store-sample-orders-chart stacksimplify 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-orders:1.3.0e85f034bcf48
amqp-client@5.25.0
5.33.1

Open the chart page →

1,223
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
amqp-client@5.5.3
5.33.1

Open the chart page →

13,767
netforge-besvtechVerified publisher0.0.21 of 3See more

netforge-be svtech 0.0.2

1 of the 3 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
conductoross/conductor:3.31.09fba127693e6
amqp-client@5.21.0
5.33.1

Open the chart page →

4,674
zipkin-gcpt3n1.0.01 of 1See more

zipkin-gcp t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
openzipkin/zipkin-gcp:0.15.2b5d51d1144e2
amqp-client@4.11.3
5.33.1

Open the chart page →

4,538
thingsboardthingsboardVerified publisher0.1.34 of 12See more

thingsboard thingsboard 0.1.3

4 of the 12 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
amqp-client@4.8.0
5.33.1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
amqp-client@4.8.0
5.33.1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
amqp-client@4.8.0
5.33.1
thingsboard/tb-node:3.4.1645f43b688f7
amqp-client@4.8.0
5.33.1

Open the chart page →

25,394
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
amqp-client@5.13.1
5.33.1

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-69220.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
amqp-client@5.13.1
5.33.1

Open the chart page →

28,605

Container images carrying it

92 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
hugohg34/planner:0.0.2171f61e8d7e2
amqp-client@5.13.1
5.33.1
1
j4ckhunter/consumer:1.00bb7a429e3e75
amqp-client@5.14.2
5.33.1
1
j4ckhunter/producer:1.006ba447609b12
amqp-client@5.14.2
5.33.1
1
labs64/auditflowc7b26d3ca11c
amqp-client@5.30.0
5.33.1
1
lavandadelpatio/automated-download-films:0.0.2094e225a5a6f8
amqp-client@5.9.0
5.33.1
1
lavandadelpatio/automated-download-shows:0.0.492de3c3426d2
amqp-client@5.9.0
5.33.1
1
lavandadelpatio/filebot-bot:0.0.1-SNAPSHOTd2cba20aa4d8
amqp-client@5.13.1
5.33.1
1
lavandadelpatio/tmdb:latestded9377636e9
amqp-client@5.17.1
5.33.1
1
lavandadelpatio/tmdb:0.0.2f36af885e915
amqp-client@5.10.0
5.33.1
1
library/logstash:7.17.817a4f64e9cf5
amqp-client@5.9.0
5.33.1
1
library/logstash:9.1.233eae14f0867
amqp-client@5.25.0
5.33.1
1
lourdesmorente/new-planner:1.0.0608745878cdb
amqp-client@5.13.1
5.33.1
1
maksimkavalenka/microservices-learning.resource-processor:latest64a25afb8748
amqp-client@5.17.1
5.33.1
1
maksimkavalenka/microservices-learning.resource-service:latest13ad9bb170a0
amqp-client@5.17.1
5.33.1
1
molynx/planner:v1441c9f52f092
amqp-client@5.13.1
5.33.1
1
openbas/platform:2.0.5d986d80b0a75
amqp-client@5.26.0
5.33.1
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
amqp-client@5.16.0
5.33.1
1
openzipkin/zipkin:2.24197a9692f6a9
amqp-client@4.12.0
5.33.1
1
openzipkin/zipkin:2.21.060c3970df479
amqp-client@4.11.3
5.33.1
1
openzipkin/zipkin-gcp:0.15.2b5d51d1144e2
amqp-client@4.11.3
5.33.1
1
oscarsotosanchez/planner:v1.0730c00a099b8
amqp-client@5.10.0
5.33.1
1
pcarrascoponce/planner:v1.0981fc482442c
amqp-client@5.13.1
5.33.1
1
reportportal/service-api:5.7.29df41f8fb320
amqp-client@5.7.3
5.33.1
1
reportportal/service-api:5.15.4bf193091525a
amqp-client@5.25.0
5.33.1
1
reportportal/service-authorization:5.15.16a954407b417
amqp-client@5.25.0
5.33.1
1
reportportal/service-jobs:5.15.299d27d58d6b4
amqp-client@5.25.0
5.33.1
1
reportportal/service-jobs:5.7.2dc166c58485a
amqp-client@5.10.0
5.33.1
1
slagattollas/planner-practica:latestcecd95e31486
amqp-client@5.10.0
5.33.1
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
amqp-client@4.8.0
5.33.1
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
amqp-client@4.8.0
5.33.1
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
amqp-client@4.8.0
5.33.1
1
thingsboard/tb-node:3.4.1645f43b688f7
amqp-client@4.8.0
5.33.1
1
thingsboard/tb-node:3.6.0f40a542832c4
amqp-client@4.8.0
5.33.1
1
thingsboard/tb-postgres:latest2d17e4e36edc
amqp-client@5.22.0
5.33.1
1
torrespro/mca-worker:2.0.06d3bd305a1ba
amqp-client@5.7.3
5.33.1
1
traccar/traccar:6.7-alpine621c8d6d46fd
amqp-client@5.25.0
5.33.1
1
trinodb/trino:405ee80ab5eeab2
amqp-client@5.5.3
5.33.1
1
vlebediantsev/file-system-ms-final:latest10393a89b4a8
amqp-client@5.15.0
5.33.1
1
vlebediantsev/logic-ms:latestdf8bf38c535b
amqp-client@5.15.0
5.33.1
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
amqp-client@5.18.0
5.33.1
1
public.ecr.aws/aws-containers/retail-store-sample-orders:1.3.0e85f034bcf48
amqp-client@5.25.0
5.33.1
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
amqp-client@5.18.0
5.33.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.