StackRadar

CVE-2026-73281

Low

Advisory

Published 11 Aug 2026In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.5
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
359
of 17,781 indexed, latest versions
Container images
342
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 359 of 17,781 indexed charts deploy, on 342 images.

Affected packageAffected versionsFixed inImages
opensshdeb1:6.6p1-2ubuntu2, 1:6.6p1-2ubuntu2.13, 1:7.2p2-4ubuntu2.2, 1:7.2p2-4ubuntu2.4+49 more1:8.9p1-3ubuntu0.17, 1:9.6p1-3ubuntu13.19, 1:10.2p1-2ubuntu3.6313
opensshapk10.3_p1-r010.3_p1-r129
OSV records
ALPINE-CVE-2026-73281DEBIAN-CVE-2026-73281UBUNTU-CVE-2026-73281
Also known as
USN-8721-1

Charts affected

359 by stars
ChartLatestAffected imagesRadar Score
jenkinstnh2.7.11 of 2See more

jenkins tnh 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

4,423
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
openssh@1:9.2p1-2
no fix listed

Open the chart page →

14,358
browserlessvictorlane0.2.01 of 1See more

browserless victorlane 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19

Open the chart page →

4,305
jenkinswebencryptor1.9.181 of 1See more

jenkins webencryptor 1.9.18

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
openssh@1:10.0p1-7+deb13u4
no fix listed

Open the chart page →

2,476
argocd-image-updaterwenerme1.3.11 of 1See more

argocd-image-updater wenerme 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
quay.io/argoprojlabs/argocd-image-updater:v1.3.0cb009167015c
openssh@10.3_p1-r0
10.3_p1-r1

Open the chart page →

718
gitlab-runnerwenerme0.92.11 of 1See more

gitlab-runner wenerme 0.92.1

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
openssh@10.3_p1-r0
10.3_p1-r1

Open the chart page →

904
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

5,542
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-73281.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
openssh@1:8.9p1-3ubuntu0.10
1:8.9p1-3ubuntu0.17

Open the chart page →

14,100

Container images carrying it

342 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
openssh@1:8.9p1-3ubuntu0.10
1:8.9p1-3ubuntu0.17
1
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19
1
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19
1
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19
1
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
openssh@1:10.2p1-2ubuntu3.2
1:10.2p1-2ubuntu3.6
1
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
openssh@1:10.2p1-2ubuntu3.2
1:10.2p1-2ubuntu3.6
1
seafileltd/seafile-mc:9.0.106693911bcc40
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
seafileltd/seafile-mc:10.0.170628f29c663
openssh@1:8.2p1-4ubuntu0.7
no fix listed
1
seafileltd/seafile-mc:9.0.97ac833196f60
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
openssh@1:8.9p1-3ubuntu0.10
1:8.9p1-3ubuntu0.17
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
seldonio/locust-core:0.81d0da98a2d76
openssh@1:7.2p2-4ubuntu2.8
no fix listed
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
openssh@1:9.2p1-2+deb12u3
no fix listed
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
openssh@1:9.2p1-2+deb12u3
no fix listed
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
openssh@1:9.2p1-2
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
openssh@1:9.2p1-2
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
openssh@1:10.0p1-7+deb13u4
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
openssh@1:10.0p1-7+deb13u4
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2api:3.86f56d239d280
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2auth:3.833ecfda16608
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2notifier:3.8f190a6212195
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2rulesengine:3.8259503496ff9
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2scheduler:3.8b1de2055c362
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2stream:3.81c8904a3bf67
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2timersengine:3.81bf35bfaf00c
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
stackstorm/st2workflowengine:3.819fdfffdbba8
openssh@1:8.2p1-4ubuntu0.9
no fix listed
1
statcan/ckan:2.93921305425b8
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
openssh@1:9.2p1-2+deb12u2
no fix listed
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
openssh@1:8.9p1-3ubuntu0.7
1:8.9p1-3ubuntu0.17
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openssh@1:8.2p1-4ubuntu0.7
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
openssh@1:9.2p1-2+deb12u6
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
openssh@1:9.2p1-2+deb12u6
no fix listed
1
teknas09/bird-pod:latest12a1fa85c4aa
openssh@1:9.2p1-2+deb12u2
no fix listed
1
theradius/loggia:0.463ba348546ec
openssh@1:9.2p1-2+deb12u2
no fix listed
1
thongngo3301/stakefish:latesta341af5976e3
openssh@1:9.2p1-2
no fix listed
1
treskon/portrait-pythonruntime:DEV-latest694c098bcb52
openssh@10.3_p1-r0
10.3_p1-r1
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
openssh@1:9.2p1-2+deb12u5
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.