StackRadar

CVE-2026-78409

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,545
of 17,813 indexed, latest versions
Container images
2,523
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,545 of 17,813 indexed charts deploy, on 2,523 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+45 moreno fix listed2,429
util-linuxapk2.42-r0, 2.42.1-r02.42.3-r094
OSV records
ALPINE-CVE-2026-78409DEBIAN-CVE-2026-78409UBUNTU-CVE-2026-78409

Charts affected

2,545 by stars
ChartLatestAffected imagesRadar Score
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,885
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.0491b0578c049
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

5,513
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

3,863
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

8,069
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

8,069
filesystem-exportercontainerooVerified publisher1.5.21 of 1See more

filesystem-exporter containeroo 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,289
ConvertServiceWeb-Helm-Buildconvertserviceweb-helm-build0.1.12 of 7See more

ConvertServiceWeb-Helm-Build convertserviceweb-helm-build 0.1.1

2 of the 7 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/rabbitmq:3.11.5-management1b0f675d2f24
util-linux@2.34-0.1ubuntu9.3
no fix listed
library/redis:latest298e5b3bc566
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

10,248
cortezacorteza1.1.02 of 3See more

corteza corteza 1.1.0

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
util-linux@2.37.2-4ubuntu3.4
no fix listed
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

8,494
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

4,711
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
util-linux@2.41-5
no fix listed

Open the chart page →

2,250
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
util-linux@2.39.3-9ubuntu6.4
no fix listed

Open the chart page →

57,863
dev-code-servercosmoVerified publisher0.0.72 of 2See more

dev-code-server cosmo 0.0.7

2 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/docker:dind5efed980cba3
util-linux@2.42.1-r0
2.42.3-r0
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

14,858
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,312
grafana-mcpcowboysysopVerified publisher2.0.01 of 1See more

grafana-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,254
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,084
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

6,875
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

4,839
qdrantcowboysysopVerified publisher3.0.01 of 1See more

qdrant cowboysysop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.4.166ee661d5241
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

3,079
rediscowboysysopVerified publisher21.2.61 of 1See more

redis cowboysysop 21.2.6

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,675
logstream-leadercriblio4.20.01 of 1See more

logstream-leader criblio 4.20.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cribl/cribl:4.20.0dddc9c0f2a52
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

887
logstream-mastercriblio2.9.91 of 1See more

logstream-master criblio 2.9.9

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cribl/cribl:3.0.2762747cb6796
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

9,318
logstream-workergroupcriblio4.20.01 of 1See more

logstream-workergroup criblio 4.20.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cribl/cribl:4.20.0dddc9c0f2a52
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

887
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,924
pagescrypticcode-helmchart1.0.02 of 3See more

pages crypticcode-helmchart 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,279
csghubcsghubVerified publisher2.5.010 of 34See more

csghub csghub 2.5.0

10 of the 34 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/redis:7.4.1171da9275c5f3
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/agenticflow:ee-v0.6.5-241cba9c366f1
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/csgbot:v0.6.9-ee7d0271e26521
util-linux@2.41-5
no fix listed
opencsghq/csghub-portal:v2.5.0-ee1cb36b49151e
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/csghub-server:v2.5.0-ee587046575c2c
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/csghub-xnet:v2.5.0-ee86ea22f495c7
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
util-linux@2.38.1-5+deb12u1
no fix listed
opencsghq/gitlab-shell:v19.2.580a65ac370da
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/label-studio:v2.5.047e22aa71870
util-linux@2.41.5-0+deb13u1
no fix listed
opencsghq/postgres:15.19b98600564e07
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

50,026
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/redis:7.4.1171da9275c5f3
util-linux@2.38.1-5+deb12u3
no fix listed
opencsghq/postgres:15.19b98600564e07
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

12,026
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
util-linux@2.41.5-0+deb13u1
no fix listed
opencsghq/postgres:15.19b98600564e07
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

6,987
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

15,426
wazuhcsic-charts0.1.02 of 4See more

wazuh csic-charts 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
wazuh/wazuh-dashboard:4.4.11787550d2358
util-linux@2.34-0.1ubuntu9.3
no fix listed
wazuh/wazuh-manager:4.4.121994f40e0da
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

14,006
csi-driver-ipfscsi-driver-ipfs0.2.01 of 6See more

csi-driver-ipfs csi-driver-ipfs 0.2.0

1 of the 6 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/ptrvsrg/csi-driver-ipfs:latest97d2d9ccd7a5
util-linux@2.42-r0
2.42.3-r0

Open the chart page →

3,700
cspconsolecspconsole1.3.114 of 5See more

cspconsole cspconsole 1.3.11

4 of the 5 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
util-linux@2.38.1-5+deb12u3
no fix listed
cspconsole/csp-control-center:1.0.1046dda4a31bd6
util-linux@2.38.1-5+deb12u3
no fix listed
cspconsole/report-collector:1.0.15839750248193b
util-linux@2.38.1-5+deb12u3
no fix listed
cspconsole/report-processor:1.0.279a2d8840bfdf
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

12,535
cypikcypik-app0.1.02 of 2See more

cypik cypik-app 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed
library/nginx:1.25a484819eb602
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

7,566
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,885
irods-csi-drivercyverse0.12.01 of 4See more

irods-csi-driver cyverse 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
cyverse/irods-csi-driver:v0.12.0aa69d105b292
util-linux@2.37.2-4ubuntu3.6
no fix listed

Open the chart page →

5,309
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

16,844
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

5,497
nginx-chartdaeho12Verified publisher0.1.01 of 1See more

nginx-chart daeho12 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,885
dakeradakera-helmVerified publisher0.11.1072 of 3See more

dakera dakera-helm 0.11.107

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/dakera-ai/dakera:0.11.101af610992a416
util-linux@2.41-5
no fix listed
ghcr.io/dakera-ai/dakera-mcp:0.10.11a3d48418b14a
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,029
pagesdalston-pages1.0.02 of 3See more

pages dalston-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,279
pagesdaman-dell-kuber1.0.02 of 3See more

pages daman-dell-kuber 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,279
damap-chartdamapVerified publisher0.3.04 of 5See more

damap-chart damap 0.3.0

4 of the 5 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8f29984bd1e22
util-linux@2.41.5-0+deb13u1
no fix listed
library/postgres:16f1c3376c26f2
util-linux@2.41.5-0+deb13u1
no fix listed
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
util-linux@2.39.3-9ubuntu6.5
no fix listed
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
util-linux@2.41-5
no fix listed

Open the chart page →

14,808
nvidia-gpu-exporterdanchevVerified publisher1.0.31 of 1See more

nvidia-gpu-exporter danchev 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/utkuozdemir/nvidia_gpu_exporter:1.5.0d75967a4dd72
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

1,250
dapr-agentsdapr-agents-devVerified publisher0.1.53 of 31See more

dapr-agents dapr-agents-dev 0.1.5

3 of the 31 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0
library/redis:6.2143f7bfc2358
util-linux@2.38.1-5+deb12u3
no fix listed
mcp/grafana:latest9362bcf6aa0e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

22,721
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

3,665
helm-chart-testdasmeta0.1.41 of 1See more

helm-chart-test dasmeta 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,885
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

5,860
pgcatdasmeta0.1.31 of 2See more

pgcat dasmeta 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,192
proxysqldasmeta1.2.31 of 1See more

proxysql dasmeta 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
proxysql/proxysql:2.7.3a4d6c35c2949
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,912
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,214
sentry-relaydasmeta0.1.21 of 1See more

sentry-relay dasmeta 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
getsentry/relay:24.10.0ba7bf9163219
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,621

Container images carrying it

2,523 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

No deployed image carries CVE-2026-78409.

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.