CVE-2026-77408
CriticalAdvisory
Published 17 Sept 2026In the index since 18 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 9.1
- base score, highest
- EPSS
- 0.004
- 35th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 124
- of 17,803 indexed, latest versions
- Container images
- 98
- deployed by those charts
- Fix available
- 1 of 1
- affected package
RabbitMQ amqp091-go: Silent Data Truncation and State Corruption via Shortstr Integer Overflow
Carried by container images the latest versions of 124 of 17,803 indexed charts deploy, on 98 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| github.com/ | v1.1.0, v1.5.0, v1.6.1, v1.7.0+5 more | 1.13.0 | 98 |
- OSV records
- GHSA-j497-x9hr-x34x
- Trending
- Rank 30 in indexed charts, since 18 Sept 2026. See the ranking →
Charts affected
124 by stars
Container images carrying it
98 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| minio/ | 14cea493d9a3 | github.com/ | 1.13.0 | 15 |
| quay.io/ | 1dce27c494a1 | github.com/ | 1.13.0 | 7 |
| otel/ | 799dc6cf12c9 | github.com/ | 1.13.0 | 6 |
| ghcr.io/ | 6d4c9fe66e4f | github.com/ | 1.13.0 | 4 |
| ghcr.io/ | 824d6d78d451 | github.com/ | 1.13.0 | 4 |
| cloudpirates/ | 8dc02a7e5093 | github.com/ | 1.13.0 | 3 |
| tykio/ | 0e03b94c153d | github.com/ | 1.13.0 | 3 |
| tykio/ | 3e907e675bf9 | github.com/ | 1.13.0 | 3 |
| devopsfaith/ | f8bdaa8a1a43 | github.com/ | 1.13.0 | 2 |
| otel/ | 125bdbeb7590 | github.com/ | 1.13.0 | 2 |
| shlinkio/ | 666cc24edf72 | github.com/ | 1.13.0 | 2 |
| quay.io/ | fa07b2c9ece6 | github.com/ | 1.13.0 | 2 |
| quay.io/ | 6262bc9a2730 | github.com/ | 1.13.0 | 2 |
| quay.io/ | 8e5e9490cd50 | github.com/ | 1.13.0 | 2 |
| quay.io/ | a0a002cb113c | github.com/ | 1.13.0 | 2 |
| airbyte/ | fdae972eaf0e | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 0b60b6565ab2 | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 0f7c8ac484ac | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 5501c419f42e | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 5bb0aa825d16 | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 6dabb4a2088c | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 8935e75fa5d1 | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | 952f86d1116c | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | ba9f3b4b0b00 | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | c0ede65eb88e | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | cce234b4381a | github.com/ | 1.13.0 | 1 |
| bitnamilegacy/ | d7cd0e172c4c | github.com/ | 1.13.0 | 1 |
| cleanstart/ | 544bdb8811e1 | github.com/ | 1.13.0 | 1 |
| ddosify/ | 181965edb12e | github.com/ | 1.13.0 | 1 |
| ddosify/ | a97a1b8a66af | github.com/ | 1.13.0 | 1 |
| devopsfaith/ | 4c678c224f67 | github.com/ | 1.13.0 | 1 |
| devopsfaith/ | 9219cda867e2 | github.com/ | 1.13.0 | 1 |
| dragonflyoss/ | c3ef7f10698d | github.com/ | 1.13.0 | 1 |
| dragonflyoss/ | 523785c77787 | github.com/ | 1.13.0 | 1 |
| falcosecurity/ | 1976da721518 | github.com/ | 1.13.0 | 1 |
| flanksource/ | 689687a7cf95 | github.com/ | 1.13.0 | 1 |
| getconvoy/ | f4934cc05e31 | github.com/ | 1.13.0 | 1 |
| grafana/ | 09d8c3ce4f3a | github.com/ | 1.13.0 | 1 |
| hyperledgerk8s/ | ed0b0c56f1ea | github.com/ | 1.13.0 | 1 |
| instill/ | b53eaa51c523 | github.com/ | 1.13.0 | 1 |
| kubeshop/ | d8e1af6aca99 | github.com/ | 1.13.0 | 1 |
| library/ | 507a3eecf809 | github.com/ | 1.13.0 | 1 |
| lishimeng/ | c79a67657baf | github.com/ | 1.13.0 | 1 |
| lishimeng/ | 3d00485e64dc | github.com/ | 1.13.0 | 1 |
| lishimeng/ | e0b8d2d8ca28 | github.com/ | 1.13.0 | 1 |
| lumenvox/ | 5114f08ab8ef | github.com/ | 1.13.0 | 1 |
| lumenvox/ | 82bf01d9ebec | github.com/ | 1.13.0 | 1 |
| lumenvox/ | dadac2a74be6 | github.com/ | 1.13.0 | 1 |
| lumenvox/ | 38aa8711c9ef | github.com/ | 1.13.0 | 1 |
| lumenvox/ | 35d0b1ac053e | github.com/ | 1.13.0 | 1 |