StackRadar

CVE-2026-89157

High

Advisory

Published 11 Sept 2026In the index since 12 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,270
of 17,813 indexed, latest versions
Container images
2,246
deployed by those charts
Fix available
1 of 2
affected packages

CVE-2026-89157 affecting package nmap 7.95-5

Carried by container images the latest versions of 2,270 of 17,813 indexed charts deploy, on 2,246 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+10 more10.42-1+deb12u1, 10.46-1~deb13u22,245
nmaprpm7.95-4.azl3no fix listed1
OSV records
DEBIAN-CVE-2026-89157UBUNTU-CVE-2026-89157AZL-101748
Trending
Rank 9 in indexed charts, since 12 Sept 2026. See the ranking →

Charts affected

2,270 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,246 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/python:3.8d41127070014
pcre2@10.42-1
10.42-1+deb12u1
1
library/python:3.9da5aee29682d
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/rabbitmq:3.12.100742852455ad
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/rabbitmq:3.11.5-management1b0f675d2f24
pcre2@10.34-7ubuntu0.1
no fix listed
1
library/rabbitmq:4.3.6-management534e4fefc5f0
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/rabbitmq:4.3.667bad329974a
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/rabbitmq:4.2.87561d672fae4
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/rabbitmq:4.3.6-managementde62d9901fb7
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/rabbitmq:4.3.4-managementeb5295d08332
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/redis:8.6.2009cc37796fb
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/redis:8.8.0234c902a2db4
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/redis:7.0.15352c1fdadc91
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.4.03906b477e4b6
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.8.1-trixie3eafabb4c93f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/redis:8.2.24521b581dbdd
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.6.34d25e2fe601f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/redis:8.2.15fa2edb1e408
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:7.2:7.2-bookworm74566c6910d1
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis83edc2b8e9ff
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.48df317692c59
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/redis:8.0.2b43d2dcbbdb1
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:7.4.1bb142a9c18ac
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.0.3be0a135f1955
pcre2@10.42-1
10.42-1+deb12u1
1
library/redis:8.2.3d31852005202
pcre2@10.42-1
10.42-1+deb12u1
1
library/redmine:6.1.204ac44a2595b
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/sonarqube:10.7.0-community0842dcd4c8f8
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/sonarqube:10.0.0-communityef9723cf4fe4
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/telegraf:1.27507a3eecf809
pcre2@10.42-1
10.42-1+deb12u1
1
library/tomcat:11.0.25-jdk17-temurin-noble9e1d2afa6898
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/ubuntu:22.04b8b6ee6aa931
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/varnish:7.5.04d0bb287d87b
pcre2@10.42-1
10.42-1+deb12u1
1
library/wordpress:6.4.3-apache8ae66efb09a2
pcre2@10.42-1
10.42-1+deb12u1
1
library/wordpress:6.9.4-fpmad4a8bae2eb4
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/wordpress:php8.1-apachef73396626d2f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
library/xwiki:lts-postgres-tomcat56490ac14a31
pcre2@10.42-4ubuntu2.1
no fix listed
1
library/zookeeper:3.8-temurin55d1e5b2e601
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/zookeeper:3.9.57d0f24ebb67b
pcre2@10.39-3ubuntu0.1
no fix listed
1
library/zookeeper:3.9.4dfa9ba46d14b
pcre2@10.39-3ubuntu0.1
no fix listed
1
libretranslate/libretranslate:v1.9.61de2d7056bb8
pcre2@10.42-1
10.42-1+deb12u1
1
linuxserver/calibre-web:0.6.24241009026e6f
pcre2@10.42-4ubuntu2.1
no fix listed
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
pcre2@10.34-7
no fix listed
1
linuxserver/code-server:4.10.1a5e43a05ae79
pcre2@10.39-3ubuntu0.1
no fix listed
1
linuxserver/foldingathome:8.5.67477f6455f47
pcre2@10.42-4ubuntu2.1
no fix listed
1
linuxserver/foldingathome:7.6.219a997426d71e
pcre2@10.42-4ubuntu2
no fix listed
1
linuxserver/jellyfin:10.7.72427dde159a2
pcre2@10.34-7
no fix listed
1
linuxserver/plex:1.43.22785a6ad64d3
pcre2@10.42-4ubuntu2.1
no fix listed
1
linuxserver/plex:1.25.24a13ced2326c
pcre2@10.34-7
no fix listed
1
linuxserver/unifi-controller:8.0.240ae315a3a456
pcre2@10.34-7ubuntu0.1
no fix listed
1
linuxserver/unifi-controller:7.3.83ab105cc50322
pcre2@10.34-7ubuntu0.1
no fix listed
1
linuxserver/unifi-network-application:10.6.106-ls1467f15f34937ce
pcre2@10.46-1build1
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.