StackRadar

CVE-2026-89157

Medium

Advisory

Published 11 Sept 2026In the index since 12 Sept 2026
Severity
Medium
worst across findings
CVSS
5.7
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,283
of 17,792 indexed, latest versions
Container images
2,222
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 2,283 of 17,792 indexed charts deploy, on 2,222 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+10 more10.42-1+deb12u1, 10.46-1~deb13u22,222
OSV records
DEBIAN-CVE-2026-89157UBUNTU-CVE-2026-89157
Trending
Rank 4 in indexed charts, since 12 Sept 2026. See the ranking →

Charts affected

2,283 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.11 of 3See more

argo-cd argo 10.9.1

1 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
pcre2@10.46-1build1
no fix listed

Open the chart page →

2,996
jenkinsjenkinsciOfficialVerified publisher5.9.621 of 2See more

jenkins jenkinsci 5.9.62

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

2,538
ciliumciliumOfficialVerified publisher1.20.22 of 3See more

cilium cilium 1.20.2

2 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.22939231d0d3e
pcre2@10.46-1build1
no fix listed
quay.io/cilium/cilium-envoy:v1.37.6-1789133542-cbec91f666af0bf742da986d43832932dbb26b82af7382699576
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

997
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm74566c6910d1
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

3,226
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

4,610
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
pcre2@10.42-1
10.42-1+deb12u1
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
pcre2@10.42-1
10.42-1+deb12u1
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

8,915
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
pcre2@10.39-3ubuntu0.1
no fix listed

Open the chart page →

6,670
authentikgoauthentikOfficialVerified publisher2026.8.21 of 1See more

authentik goauthentik 2026.8.2

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,302
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
artifacthub/tracker:v1.23.05368d21a6e5c
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

10,861
alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

1,161
argo-cdargo-cd-oci10.9.11 of 3See more

argo-cd argo-cd-oci 10.9.1

1 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.3dd3f47d5a5e4
pcre2@10.46-1build1
no fix listed

Open the chart page →

2,996
jupyterhubjupyterhubOfficialVerified publisher4.4.22 of 7See more

jupyterhub jupyterhub 4.4.2

2 of the 7 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
pcre2@10.42-1
10.42-1+deb12u1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

8,146
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

30,529
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

11,393
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

5,428
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

1,199
openebsopenebsOfficialVerified publisher4.6.12 of 35See more

openebs openebs 4.6.1

2 of the 35 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
pcre2@10.42-4ubuntu2.1
no fix listed
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

24,143
backstagebackstageOfficialVerified publisher2.10.11 of 1See more

backstage backstage 2.10.1

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
ghcr.io/backstage/backstage:latest792e262ea504
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,226
rediscloudpirates-redisVerified publisher0.35.01 of 1See more

redis cloudpirates-redis 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

985
jiraatlassian-data-centerVerified publisher2.0.151 of 2See more

jira atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
atlassian/jira-software:11.3.11e5548cd4eea8
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

1,625
mlflowcommunity-chartsVerified publisher1.11.71 of 1See more

mlflow community-charts 1.11.7

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
burakince/mlflow:3.16.0ab4b566644b9
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

648
qdrantqdrantOfficialVerified publisher1.19.11 of 1See more

qdrant qdrant 1.19.1

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

836
apisixapisix2.17.02 of 3See more

apisix apisix 2.17.0

2 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
pcre2@10.42-4ubuntu2.1
no fix listed
bitnamilegacy/etcd:latest99b408c15272
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

3,136
dagsterdagsterVerified publisher1.13.232 of 5See more

dagster dagster 1.13.23

2 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
dagster/dagster-celery-k8s:1.13.230505973033e1
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
dagster/user-code-example:1.13.235a358fd3509f
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

3,524
zabbixzabbix-communityVerified publisher7.1.05 of 5See more

zabbix zabbix-community 7.1.0

5 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
pcre2@10.42-4ubuntu2.1
no fix listed
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
pcre2@10.42-4ubuntu2.1
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
pcre2@10.42-4ubuntu2.1
no fix listed
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

13,946
keycloakcloudpirates-keycloakVerified publisher0.21.372 of 3See more

keycloak cloudpirates-keycloak 0.21.37

2 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
library/postgres:18.64ef4dbc939d6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

4,465
fluentdfluent0.6.01 of 1See more

fluentd fluent 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,029
graylogkong-zVerified publisher3.0.331 of 5See more

graylog kong-z 3.0.33

1 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
graylog/graylog:7.2.0-beta.3-1bf3e1e7b7352
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

2,704
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

1,991
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

5,593
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,766
netboxnetboxOfficialVerified publisher8.3.791 of 5See more

netbox netbox 8.3.79

1 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
ghcr.io/netbox-community/netbox:v4.7.13f6ab3c93e4e
pcre2@10.46-1build1
no fix listed

Open the chart page →

1,017
valkeyvalkeyVerified publisher0.12.01 of 1See more

valkey valkey 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

836
postgrescloudpirates-postgresVerified publisher0.20.51 of 1See more

postgres cloudpirates-postgres 0.20.5

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,667
openldap-stack-hahelm-openldapVerified publisher4.3.32 of 5See more

openldap-stack-ha helm-openldap 4.3.3

2 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
pcre2@10.42-1
10.42-1+deb12u1
library/debian:latestf324c7ff5432
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

5,983
zammadzammadOfficialVerified publisher18.2.13 of 5See more

zammad zammad 18.2.1

3 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
library/postgres:18.4a02db8cac496
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
library/redis:8.10.1298e5b3bc566
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

6,476
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
pcre2@10.42-1
10.42-1+deb12u1
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

6,442
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

3,371
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
pcre2@10.39-3build1
no fix listed

Open the chart page →

9,217
rabbitmqcloudpirates-rabbitmqVerified publisher0.21.271 of 2See more

rabbitmq cloudpirates-rabbitmq 0.21.27

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/rabbitmq:4.3.5-management57bddb6fbc34
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

865
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

711
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
pcre2@10.34-7
no fix listed
milvusdb/milvus:v2.2.13a3a55e1c1497
pcre2@10.34-7
no fix listed

Open the chart page →

32,523
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
pcre2@10.42-4ubuntu2
no fix listed

Open the chart page →

3,537
mesherymesheryOfficialVerified publisher1.0.701 of 1See more

meshery meshery 1.0.70

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest44b64ee128fb
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

1,445
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

10,700
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
pcre2@10.46-1build1
no fix listed
penpotapp/mcp:2.17.284f3f07ead11
pcre2@10.46-1build1
no fix listed

Open the chart page →

4,440
signozsignoz0.142.01 of 5See more

signoz signoz 0.142.0

1 of the 5 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.1034ecb436b687
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

7,566
weblateweblateOfficialVerified publisher0.5.363 of 3See more

weblate weblate 0.5.36

3 of the 3 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
pcre2@10.42-1
10.42-1+deb12u1
bitnamilegacy/redis:latest5927ff3702df
pcre2@10.42-1
10.42-1+deb12u1
weblate/weblate:2026.9.1.0990720d1737a
pcre2@10.46-1build1
no fix listed

Open the chart page →

6,826
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
pcre2@10.42-1
10.42-1+deb12u1

Open the chart page →

2,824
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-89157.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,667

Container images carrying it

2,222 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
pcre2@10.39-3ubuntu0.1
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
pcre2@10.42-1
10.42-1+deb12u1
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
pcre2@10.42-4ubuntu2.1
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
pcre2@10.39-3+ubuntu20.04.1+deb.sury.org+2
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/aerokube/keygen:1.0.1578934444f04
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
pcre2@10.46-1build1
no fix listed
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
pcre2@10.39-3build1
no fix listed
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/argoprojlabs/gitops-promoter:v0.39.0de07cc7c72b6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
pcre2@10.39-3ubuntu0.1
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
pcre2@10.46-1build1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/maxiv/pieeat:0.9.3099715479210
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/mittwald/kube-mail:latest04f1099241fc
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
pcre2@10.42-4ubuntu2.1
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/opstree/fluent-bit:5.0.3391eef5a68ff
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
pcre2@10.46-1build1
no fix listed
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
pcre2@10.42-1
10.42-1+deb12u1
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
pcre2@10.42-1
10.42-1+deb12u1
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
pcre2@10.42-4ubuntu2.1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.