StackRadar

CVE-2026-89158

Medium

Advisory

Published 11 Sept 2026In the index since 12 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.002
13th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,244
of 17,821 indexed, latest versions
Container images
2,255
deployed by those charts
Fix available
1 of 2
affected packages

CVE-2026-89158 affecting package nmap 7.95-5

Carried by container images the latest versions of 2,244 of 17,821 indexed charts deploy, on 2,255 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+10 more10.42-1+deb12u1, 10.46-1~deb13u22,254
nmaprpm7.95-4.azl3no fix listed1
OSV records
DEBIAN-CVE-2026-89158UBUNTU-CVE-2026-89158AZL-101751
Trending
Rank 16 in indexed charts, since 12 Sept 2026. See the ranking →

Charts affected

2,244 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,255 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/python:3.7eedf63967cdb
pcre2@10.42-1
10.42-1+deb12u1
2
library/rabbitmq:4.1.0-management935b3f84c1e4
pcre2@10.42-4ubuntu2.1
no fix listed
2
library/rabbitmq:3.12.1-managementf020c06da226
pcre2@10.39-3ubuntu0.1
no fix listed
2
library/rabbitmq:4.3.5-management:4-management:managementffd1b50c522a
pcre2@10.42-4ubuntu2.1
no fix listed
2
library/redis:6:6.2143f7bfc2358
pcre2@10.42-1
10.42-1+deb12u1
2
library/redis:7.2.3a7cee7c8178f
pcre2@10.42-1
10.42-1+deb12u1
2
library/redis:8.2.2f0957bcaa75f
pcre2@10.42-1
10.42-1+deb12u1
2
library/redmine:6.1.3-trixief474a901faec
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
library/wordpress:6.8.3-apache:6.8-apache30bff39330d1
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
library/zookeeper:3.9.57d0f24ebb67b
pcre2@10.39-3ubuntu0.1
no fix listed
2
localstack/localstack:latest4abc29e923e5
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
locustio/locust:2.32.2a0d4b88e42c1
pcre2@10.42-1
10.42-1+deb12u1
2
longhornio/longhorn-manager:v1.2.3dca34321452c
pcre2@10.34-7
no fix listed
2
louislam/uptime-kuma:2.5.4917318f9d7be
pcre2@10.42-1
10.42-1+deb12u1
2
louislam/uptime-kuma:2.3.29aeb4e51d038
pcre2@10.42-1
10.42-1+deb12u1
2
louislam/uptime-kuma:2.5.0a8610b3b4c38
pcre2@10.42-1
10.42-1+deb12u1
2
memgraph/memgraph:3.13.1bd3fe13228f4
pcre2@10.42-4ubuntu2.1
no fix listed
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
pcre2@10.34-7
no fix listed
2
moreillon/group-manager-front:v3.3.1c9f85db3baa5
pcre2@10.42-1
10.42-1+deb12u1
2
moreillon/user-manager:v5.0.2e1c9bfab5c16
pcre2@10.42-1
10.42-1+deb12u1
2
moreillon/user-manager-front:v5.0.3b067dbbbb6af
pcre2@10.42-1
10.42-1+deb12u1
2
nacos/nacos-server:latest1c191c30c8cd
pcre2@10.46-1build1
no fix listed
2
nginxinc/nginx-unprivileged:stablecb92301e719d
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
obolnetwork/charon:v1.10.0278c7e2897b6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
pcre2@10.34-7
no fix listed
2
opea/embedding-tei:1.05c9639de61c1
pcre2@10.42-1
10.42-1+deb12u1
2
opea/reranking-tei:1.0e48613afb191
pcre2@10.42-1
10.42-1+deb12u1
2
opea/retriever-redis:1.0eb746b263705
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
pcre2@10.42-1
10.42-1+deb12u1
2
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
pcre2@10.42-1
10.42-1+deb12u1
2
opencsghq/label-studio:v2.5.047e22aa71870
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
opendatacube/ows:latest668cbb41473c
pcre2@10.42-4ubuntu2
no fix listed
2
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
pcre2@10.42-1
10.42-1+deb12u1
2
patrikx3/p3x-redis-ui:latestf19eb45b0694
pcre2@10.42-1
10.42-1+deb12u1
2
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
pgvector/pgvector:0.8.6-pg16-bookworm:pg16ccc6e83d6e35
pcre2@10.42-1
10.42-1+deb12u1
2
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
pcre2@10.39-3ubuntu0.1
no fix listed
2
polyaxon/polyaxon-agent:2.17.0da877a2647fc
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
polyaxon/polyaxon-cli:2.17.0297ed47ed63a
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
proxysql/proxysql:3.0.110e95d1b7cc32
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
qdrant/qdrant:v1.19.112364fe851b9
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
pcre2@10.42-1
10.42-1+deb12u1
2
quickwit/quickwit:v0.8.2363ff56ce456
pcre2@10.42-1
10.42-1+deb12u1
2
rajnandan1/kener:3.2.1930407afca731
pcre2@10.42-1
10.42-1+deb12u1
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
pcre2@10.39-3ubuntu0.1
no fix listed
2
redis/redis-stack-server:7.4.0:7.4.0-v172035434f455
pcre2@10.39-3ubuntu0.1
no fix listed
2

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.