StackRadar

CVE-2026-78409

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,590
of 17,821 indexed, latest versions
Container images
2,577
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,590 of 17,821 indexed charts deploy, on 2,577 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+45 moreno fix listed2,483
util-linuxapk2.42-r0, 2.42.1-r02.42.3-r094
OSV records
ALPINE-CVE-2026-78409DEBIAN-CVE-2026-78409UBUNTU-CVE-2026-78409

Charts affected

2,590 by stars
ChartLatestAffected imagesRadar Score
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

11,978
gitvotegitvoteVerified publisher1.5.01 of 6See more

gitvote gitvote 1.5.0

1 of the 6 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
util-linux@2.41-5
no fix listed

Open the chart page →

5,695
apimgraviteeioVerified publisher4.12.192 of 4See more

apim graviteeio 4.12.19

2 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
graviteeio/apim-gateway:4.12.19-debian05fd67a93056
util-linux@2.41.5-0+deb13u1
no fix listed
graviteeio/apim-management-api:4.12.19-debian27374522cd04
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

5,002
nacosgujunxiang0.1.51 of 1See more

nacos gujunxiang 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
nacos/nacos-server:latest1c191c30c8cd
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

1,923
terrariahalkeye0.4.21 of 2See more

terraria halkeye 0.4.2

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ryshe/terraria:latestb1c89f7f359a
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,270
netbirdhelmforgeVerified publisher1.0.102 of 4See more

netbird helmforge 1.0.10

2 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
util-linux@2.41.5-0+deb13u1
no fix listed
netbirdio/netbird-server:0.78.13086534361a1
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

3,110
redishelmforgeVerified publisher3.0.01 of 1See more

redis helmforge 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,010
simple-krr-dashboardhelm-simple-krr-dashboardVerified publisher1.6.22 of 3See more

simple-krr-dashboard helm-simple-krr-dashboard 1.6.2

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
robustadev/krr:v1.30.0b8d782e568c7
util-linux@1:4.16.0-2+really2.41-5
no fix listed
ghcr.io/devops-ia/simple-krr-dashboard:1.6.34c625eff5410
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

2,279
typesensehmphuVerified publisher0.1.61 of 1See more

typesense hmphu 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
typesense/typesense:0.23.03accb727cbe2
util-linux@2.27.1-6ubuntu3.10
no fix listed

Open the chart page →

3,896
home-assistanthome-assistantVerified publisher0.5.102 of 3See more

home-assistant home-assistant 0.5.10

2 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.14.1fef0de769dcd
util-linux@2.42.1-r0
2.42.3-r0
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

2,361
infrahub-enterpriseinfrahub-enterpriseVerified publisher4.19.24 of 5See more

infrahub-enterprise infrahub-enterprise 4.19.2

4 of the 5 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
util-linux@2.38.1-5+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
util-linux@2.38.1-5+deb12u3
no fix listed
library/neo4j:2026.05.0-enterprise2caf944aa4a5
util-linux@2.41-5
no fix listed

Open the chart page →

10,778
coreinstill-aiOfficialVerified publisher0.1.753 of 15See more

core instill-ai 0.1.75

3 of the 15 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
instill/artifact-backend:b28766ac4a393e601ed
util-linux@2.41-5
no fix listed
instill/mgmt-backend:d0933d4ebe12f77a3f9
util-linux@2.41-5
no fix listed
instill/model-backend:611f0f2e980125e5ba5
util-linux@2.41-5
no fix listed

Open the chart page →

31,162
dayz-dedicated-serverjespernohrVerified publisher0.1.21 of 3See more

dayz-dedicated-server jespernohr 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
util-linux@2.39.3-9ubuntu6.1
no fix listed

Open the chart page →

4,552
calibre-webk8s-home-lab-repo9.1.11 of 1See more

calibre-web k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

4,593
wireguardk8s-home-lab-repo1.6.01 of 1See more

wireguard k8s-home-lab-repo 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

7,554
webdavk8s-webdavVerified publisher0.0.71 of 1See more

webdav k8s-webdav 0.0.7

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/httpd:2.4454942557d44
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,239
klancesklances0.1.41 of 1See more

klances klances 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
util-linux@2.41-5
no fix listed

Open the chart page →

1,765
kraken-cikraken-ciVerified publisher1.7.361 of 10See more

kraken-ci kraken-ci 1.7.36

1 of the 10 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/redis:6e7b96daa9a18
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,313
radondb-mysqlkubesphere-testVerified publisher1.0.11 of 3See more

radondb-mysql kubesphere-test 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
xenondb/percona:5.7.330e26872a2b67
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

7,406
kubevpnkubevpn-charts2.11.91 of 1See more

kubevpn kubevpn-charts 2.11.9

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/kubenetworks/kubevpn:v2.11.93feb9da85270
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,689
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

59,088
machinarislib42Verified publisher0.2.01 of 1See more

machinaris lib42 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/guydavis/machinaris:test50a71a30f18e
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

33,981
lightsteplightstepsatellite1.2.41 of 1See more

lightstep lightstepsatellite 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
util-linux@2.27.1-6ubuntu3.6
no fix listed

Open the chart page →

15,533
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

7,966
mariadbmariadbVerified publisher0.4.01 of 1See more

mariadb mariadb 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
util-linux@2.37.2-4ubuntu3.6
no fix listed

Open the chart page →

2,340
memgraph-high-availabilitymemgraphVerified publisher1.4.11 of 2See more

memgraph-high-availability memgraph 1.4.1

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.1bd3fe13228f4
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

1,258
kubecostmesosphere-stable0.37.52 of 9See more

kubecost mesosphere-stable 0.37.5

2 of the 9 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.30.5744f84cf7493
util-linux@2.38.1-5+deb12u1
no fix listed
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
util-linux@2.37.2-4ubuntu3
no fix listed

Open the chart page →

17,907
mogenius-operatormogeniusOfficialVerified publisher2.30.01 of 2See more

mogenius-operator mogenius 2.30.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2c123e3715db6
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

960
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,276
mariadbnicholaswildeVerified publisher1.0.61 of 1See more

mariadb nicholaswilde 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/mariadb:version-110.4.21mariabionic7a94d7e89f52
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

9,669
observalobservalVerified publisher1.13.14 of 8See more

observal observal 1.13.1

4 of the 8 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3810861a2e2d0
util-linux@2.37.2-4ubuntu3.5
no fix listed
library/postgres:16f1c3376c26f2
util-linux@2.41.5-0+deb13u1
no fix listed
ghcr.io/observal/observal-api:1.13.1153b8b893232
util-linux@2.41-5
no fix listed
ghcr.io/observal/observal-web:1.13.1738acf65cba7
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

6,224
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
util-linux@2.39.3-9ubuntu6.3
no fix listed
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
util-linux@2.27.1-6ubuntu3.6
no fix listed
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
util-linux@2.41-5
no fix listed

Open the chart page →

101,186
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
jbtronics/part-db1:latestfd68338829ed
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,379
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,902
phpmyadminphpmyadminVerified publisher1.0.31 of 1See more

phpmyadmin phpmyadmin 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,718
prometheus-prefect-exporterprefectVerified publisher2026.9.162012261 of 1See more

prometheus-prefect-exporter prefect 2026.9.16201226

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
prefecthq/prometheus-prefect-exporter:4.1.06e0e79cabdc2
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

861
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,524
repoflowrepoflow-helm-public0.9.14 of 8See more

repoflow repoflow-helm-public 0.9.1

4 of the 8 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
util-linux@2.37.2-4ubuntu3.4
no fix listed
library/elasticsearch:8.15.0310b9fc03b06
util-linux@2.34-0.1ubuntu9.6
no fix listed
library/postgres:16.24aea012537ed
util-linux@2.38.1-5+deb12u1
no fix listed
nginxinc/nginx-unprivileged:1.31.3-alpinef972e5322b97
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

12,704
nominatimrobjuz6.4.22 of 4See more

nominatim robjuz 6.4.2

2 of the 4 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
util-linux@2.38.1-5+deb12u1
no fix listed
mediagis/nominatim:5.3.27923a8e67197
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

50,868
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
util-linux@2.39.3-9ubuntu6.4
no fix listed

Open the chart page →

6,435
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

100,687
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

3,490
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
util-linux@2.41-5
no fix listed

Open the chart page →

3,474
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
util-linux@2.41-5
no fix listed

Open the chart page →

6,017
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,408
spartanspartan0.9.11 of 1See more

spartan spartan 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,580
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

5,945
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

72,232
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

7,148
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2026-78409.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
util-linux@2.41-5
no fix listed
pretix/standalone:2026.7.05df3b7aa852e
util-linux@2.41-5
no fix listed
valkey/valkey:9.1.08e8d64b405ce
util-linux@2.41-5
no fix listed

Open the chart page →

10,248

Container images carrying it

2,577 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

No deployed image carries CVE-2026-78409.

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.