StackRadar

CVE-2026-73282

Medium

Advisory

Published 11 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.002
6th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
353
of 17,787 indexed, latest versions
Container images
336
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 353 of 17,787 indexed charts deploy, on 336 images.

Affected packageAffected versionsFixed inImages
opensshdeb1:6.6p1-2ubuntu2, 1:6.6p1-2ubuntu2.13, 1:7.2p2-4ubuntu2.2, 1:7.2p2-4ubuntu2.4+49 more1:8.9p1-3ubuntu0.17, 1:9.6p1-3ubuntu13.19, 1:10.2p1-2ubuntu3.6307
opensshapk10.3_p1-r010.3_p1-r129
OSV records
ALPINE-CVE-2026-73282DEBIAN-CVE-2026-73282UBUNTU-CVE-2026-73282
Also known as
USN-8721-1

Charts affected

353 by stars
ChartLatestAffected imagesRadar Score
gitlab-runnerwenerme0.92.11 of 1See more

gitlab-runner wenerme 0.92.1

1 of the 1 container images this version deploys carry CVE-2026-73282.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
openssh@10.3_p1-r0
10.3_p1-r1

Open the chart page →

904
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2026-73282.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
openssh@1:9.2p1-2+deb12u2
no fix listed

Open the chart page →

5,542
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-73282.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
openssh@1:8.9p1-3ubuntu0.10
1:8.9p1-3ubuntu0.17

Open the chart page →

14,100

Container images carrying it

336 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
voltha/voltha-cli:1.6.0c4e41e92f046
openssh@1:7.2p2-4ubuntu2.6
no fix listed
1
wettyoss/wetty:latest7423b3d40ba2
openssh@10.3_p1-r0
10.3_p1-r1
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
openssh@1:8.9p1-3ubuntu0.10
1:8.9p1-3ubuntu0.17
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
openssh@1:9.2p1-2+deb12u3
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
openssh@1:9.2p1-2+deb12u3
no fix listed
1
yetiplatform/yeti:2.9.09bcbe2650a14
openssh@1:10.0p1-7+deb13u4
no fix listed
1
yetiplatform/yeti:latest9c3006cedcca
openssh@1:10.0p1-7+deb13u4
no fix listed
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openssh@1:7.6p1-4ubuntu0.3
no fix listed
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/appscode/operator-shard-manager:v0.0.64a16c6ccecb8
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/appscode/outboxsyncer:v0.5.0150baab6115d
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/appscode/pgoutbox:v0.0.4a96e06ec5e9f
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssh@1:8.2p1-4ubuntu0.5
no fix listed
1
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
openssh@1:9.6p1-3ubuntu13.19
no fix listed
1
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
openssh@1:9.6p1-3ubuntu13.18
1:9.6p1-3ubuntu13.19
1
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
openssh@1:9.2p1-2+deb12u1
no fix listed
1
ghcr.io/esphome/esphome:latest000c5ee5ee96
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/esphome/esphome:2026.4.078a82d810709
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/grycap/im:latest06a16d4f279f
openssh@1:9.6p1-3ubuntu13.14
1:9.6p1-3ubuntu13.19
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
openssh@1:8.2p1-4ubuntu0.5
no fix listed
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/itzg/minecraft-server:latestc1a267d9ed6d
openssh@1:9.6p1-3ubuntu13.19
no fix listed
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
openssh@1:9.2p1-2+deb12u5
no fix listed
1
ghcr.io/k8up-io/k8up:v2.16.029458113b8b6
openssh@10.3_p1-r0
10.3_p1-r1
1
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
openssh@1:10.0p1-7
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
openssh@1:8.2p1-4ubuntu0.4
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
openssh@1:8.2p1-4ubuntu0.2
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
openssh@1:10.0p1-7+deb13u1
no fix listed
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
openssh@1:10.0p1-7+deb13u4
no fix listed
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
openssh@1:9.6p1-3ubuntu13.3
1:9.6p1-3ubuntu13.19
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
openssh@1:9.2p1-2+deb12u3
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
openssh@1:9.2p1-2+deb12u7
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
openssh@1:9.2p1-2+deb12u6
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.