StackRadar

CVE-2026-83368

High

Advisory

Published 17 Sept 2026In the index since 18 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
71
of 17,805 indexed, latest versions
Container images
61
deployed by those charts
Fix available
None
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 71 of 17,805 indexed charts deploy, on 61 images.

Affected packageAffected versionsFixed inImages
openjdk-8deb8u151-b12-0ubuntu0.16.04.2, 8u171-b11-0ubuntu0.16.04.1, 8u191-b12-2ubuntu0.16.04.1, 8u212-b03-0ubuntu1.18.04.1+12 moreno fix listed23
openjdk-ltsdeb11.0.3+7-1ubuntu2~18.04.1, 11.0.8+10-0ubuntu1~18.04.1, 11.0.11+9-0ubuntu2~20.04, 11.0.13+8-0ubuntu1~20.04+7 moreno fix listed17
openjdk-17deb17.0.3+7-0ubuntu0.20.04.1, 17.0.8+7-1~22.04, 17.0.9+9-1~20.04, 17.0.10+7-1~22.04.1+7 moreno fix listed14
openjdk-21deb21.0.5+11-1ubuntu1~24.04, 21.0.7+6~us1-0ubuntu1~24.04, 21.0.11+10-1~24.04.2, 21.0.11+10-1~26.04.2+2 moreno fix listed11
openjdk-25deb25.0.3+9-2~24.04.2, 25.0.3+9-2~26.04.2, 25.0.4+7-1~26.04no fix listed3
OSV records
UBUNTU-CVE-2026-83368

Charts affected

71 by stars
ChartLatestAffected imagesRadar Score
discord-experiencebotjfwenischVerified publisher0.7.41 of 1See more

discord-experiencebot jfwenisch 0.7.4

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
no fix listed

Open the chart page →

7,896
steamcmd-managerjfwenischVerified publisher0.4.51 of 1See more

steamcmd-manager jfwenisch 0.4.5

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openjdk-21@21.0.5+11-1ubuntu1~24.04
no fix listed

Open the chart page →

6,657
webtoolsjfwenischVerified publisher0.1.41 of 1See more

webtools jfwenisch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openjdk-21@21.0.5+11-1ubuntu1~24.04
no fix listed

Open the chart page →

6,638
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
openjdk-21@21.0.7+6~us1-0ubuntu1~24.04
no fix listed

Open the chart page →

62,809
unifik8sonlabVerified publisher0.3.71 of 1See more

unifi k8sonlab 0.3.7

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
openjdk-17@17.0.15+6~us1-0ubuntu1~20.04
no fix listed

Open the chart page →

7,445
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
no fix listed

Open the chart page →

11,352
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed

Open the chart page →

96,742
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
no fix listed

Open the chart page →

15,924
smilencsaVerified publisher1.1.01 of 23See more

smile ncsa 1.1.0

1 of the 23 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openjdk-8@8u382-ga-1~20.04.1
no fix listed

Open the chart page →

265,360
onedevonedev11.9.01 of 1See more

onedev onedev 11.9.0

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
1dev/server:11.9.0cd5b12fe5471
openjdk-lts@11.0.26+4-1ubuntu1~24.04
no fix listed

Open the chart page →

6,148
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
no fix listed
no fix listed

Open the chart page →

63,720
unifiqaoruVerified publisher1.1.31 of 2See more

unifi qaoru 1.1.3

1 of the 2 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
linuxserver/unifi-network-application:10.6.101-ls145ccadcad5c640
openjdk-25@25.0.4+7-1~26.04
no fix listed

Open the chart page →

3,487
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
no fix listed

Open the chart page →

15,613
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
openjdk-8@8u312-b07-0ubuntu1~18.04
no fix listed

Open the chart page →

14,619
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
no fix listed

Open the chart page →

71,563
the0the0Verified publisher0.9.81 of 9See more

the0 the0 0.9.8

1 of the 9 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
openjdk-17@17.0.20+8-1~24.04
no fix listed

Open the chart page →

7,503
openunison-operatortremolo3.0.311 of 1See more

openunison-operator tremolo 3.0.31

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
openjdk-21@21.0.12+8-1~24.04
no fix listed

Open the chart page →

1,009
orchestratremolo3.1.562 of 5See more

orchestra tremolo 3.1.56

2 of the 5 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
openjdk-21@21.0.12+8-1~24.04
no fix listed
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
openjdk-21@21.0.12+8-1~24.04
no fix listed

Open the chart page →

2,974
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
openjdk-17@17.0.11+9-1
no fix listed

Open the chart page →

45,468
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed

Open the chart page →

14,498
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-83368.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed

Open the chart page →

28,798

Container images carrying it

61 by charts deploying them

A fixed version is listed for 0 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
no fix listed
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
no fix listed
4
gchq/hdfs:3.3.35ec58edbb2db
openjdk-8@8u442-b06~us1-0ubuntu1~24.04
no fix listed
3
jacobalberty/unifi:v10.0.162896c0ab82d33
openjdk-17@17.0.15+6~us1-0ubuntu1~20.04
no fix listed
3
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
no fix listed
3
apache/tika:2.9.2.1-fullae0b86d3c4d0
openjdk-17@17.0.11+9-1
no fix listed
2
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openjdk-17@17.0.3+7-0ubuntu0.20.04.1
no fix listed
2
mbentley/omada-controller:4.3f4e682274bed
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
no fix listed
2
nacos/nacos-server:latest1c191c30c8cd
openjdk-17@17.0.20+8-1~26.04
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
openjdk-21@21.0.7+6~us1-0ubuntu1~24.04
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
openjdk-21@21.0.12+8-1~24.04
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
openjdk-lts@11.0.26+4-1ubuntu1~24.04
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
openjdk-8@8u392-ga-1~20.04
no fix listed
1
anguda/ant-media:2.5c435285fc241
openjdk-lts@11.0.18+10-0ubuntu1~20.04.1
no fix listed
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
openjdk-lts@11.0.13+8-0ubuntu1~20.04
no fix listed
1
apache/tika:latest-full80072bb73dd3
openjdk-25@25.0.3+9-2~26.04.2
no fix listed
1
apache/tika:3.3.1.090b7fa1dc018
openjdk-21@21.0.11~8ea-1
no fix listed
1
apache/tika:2.9.0.092d055a84e9e
openjdk-17@17.0.8+7-1~22.04
no fix listed
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed
1
cheyang/distributed-tf:1.6.046cc34755493
openjdk-8@8u151-b12-0ubuntu0.16.04.2
no fix listed
1
gchq/accumulo:2.0.1c460bb587d6d
openjdk-8@8u442-b06~us1-0ubuntu1~24.04
no fix listed
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
openjdk-8@8u171-b11-0ubuntu0.16.04.1
no fix listed
1
jacobalberty/unifi:v7.1.664a3616625dda
openjdk-8@8u312-b07-0ubuntu1~18.04
no fix listed
1
jacobalberty/unifi:v7.4.162b3edc809a3ff
openjdk-lts@11.0.19+7~us1-0ubuntu1~18.04.1
no fix listed
1
jacobalberty/unifi:5.10.19c409924e2463
openjdk-8@8u191-b12-2ubuntu0.16.04.1
no fix listed
1
linuxserver/unifi-controller:8.0.240ae315a3a456
openjdk-17@17.0.9+9-1~20.04
no fix listed
1
linuxserver/unifi-controller:7.3.83ab105cc50322
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
no fix listed
1
linuxserver/unifi-network-application:10.6.101-ls145ccadcad5c640
openjdk-25@25.0.4+7-1~26.04
no fix listed
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
no fix listed
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
openjdk-8@8u342-b07-0ubuntu1~20.04
no fix listed
1
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
no fix listed
1
rundeck/rundeck:3.2.74d64fe56f767
openjdk-8@8u252-b09-1~16.04
no fix listed
1
rundeck/rundeck:3.0.16b13e8059ad72
openjdk-8@8u191-b12-2ubuntu0.16.04.1
no fix listed
1
selenium/hub:4.48.0-20260905d47c27474cb4
openjdk-21@21.0.12+8-1~24.04
no fix listed
1
selenium/node-chrome:4.48.0-202609055ac71fd8dd1e
openjdk-21@21.0.12+8-1~24.04
no fix listed
1
selenium/node-firefox:4.48.0-2026090574a5c1c90f95
openjdk-21@21.0.12+8-1~24.04
no fix listed
1
sismics/docs:v1.10f4b0ef019cf1
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
no fix listed
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
openjdk-8@8u382-ga-1~20.04.1
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
openjdk-lts@11.0.19+7~us1-0ubuntu1~20.04.1
no fix listed
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
openjdk-8@8u151-b12-0ubuntu0.16.04.2
no fix listed
1
wavefronthq/proxy:9.2d1064d28f6eb
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
no fix listed
1
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
openjdk-17@17.0.20+8-1~24.04
no fix listed
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
openjdk-8@8u372-ga~us1-0ubuntu1~18.04
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
openjdk-21@21.0.5+11-1ubuntu1~24.04
no fix listed
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
openjdk-21@21.0.5+11-1ubuntu1~24.04
no fix listed
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
openjdk-lts@11.0.11+9-0ubuntu2~20.04
no fix listed
1
ghcr.io/kubelauncher/cassandrab66aba320083
openjdk-17@17.0.19+10-1~26.04.2
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.