StackRadar

CVE-2026-89160

Medium

Advisory

Published 11 Sept 2026In the index since 12 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.002
12th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,244
of 17,821 indexed, latest versions
Container images
2,255
deployed by those charts
Fix available
1 of 2
affected packages

CVE-2026-89160 affecting package nmap 7.95-5

Carried by container images the latest versions of 2,244 of 17,821 indexed charts deploy, on 2,255 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+10 more10.42-1+deb12u1, 10.46-1~deb13u22,254
nmaprpm7.95-4.azl3no fix listed1
OSV records
DEBIAN-CVE-2026-89160UBUNTU-CVE-2026-89160AZL-101745
Trending
Rank 17 in indexed charts, since 12 Sept 2026. See the ranking →

Charts affected

2,244 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,255 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
lis314/project-zomboid-docker:latestaa2089c37920
pcre2@10.42-1
10.42-1+deb12u1
1
livekit/ingress:v1.2.21ab01641b366
pcre2@10.39-3ubuntu0.1
no fix listed
1
lmacka/snappass:2.1.293f5c048b7d4
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
localstack/localstack:3.19d278167f2b7
pcre2@10.42-1
10.42-1+deb12u1
1
localstack/localstack-pro:latest4aef81c53168
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
locustio/locust:2.24.151d866285170
pcre2@10.42-1
10.42-1+deb12u1
1
logiqai/flash:v3.10.265b996bc7bdc
pcre2@10.42-1
10.42-1+deb12u1
1
longhornio/upgrade-responder:v0.2.05875cef29348
pcre2@10.34-7ubuntu0.1
no fix listed
1
louislam/its-mytabs:1.7.02e478d3170bd
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
louislam/uptime-kuma:2.2.1-slim059b49d64739
pcre2@10.42-1
10.42-1+deb12u1
1
louislam/uptime-kuma:2.0.24c364ef96aad
pcre2@10.42-1
10.42-1+deb12u1
1
louislam/uptime-kuma:2.4.091e963bfda56
pcre2@10.42-1
10.42-1+deb12u1
1
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
pcre2@10.42-1
10.42-1+deb12u1
1
louislam/uptime-kuma:2.5.5c74379ac4509
pcre2@10.42-1
10.42-1+deb12u1
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
pcre2@10.34-7
no fix listed
1
luligu/matterbridge:3.0.28f97884bebc2
pcre2@10.42-1
10.42-1+deb12u1
1
luligu/matterbridge:3.10.9c01108d904ec
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-assure-identity:2.0.0147854a3c916
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-audit:2.0.079428add7f38
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-deployment:2.0.0ea8110886d38
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-management-api:2.0.0b9a23345eabd
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
pcre2@10.34-7
no fix listed
1
lumenvox/cloud-voice-verifier:2.0.014170ad34903
pcre2@10.34-7
no fix listed
1
machines/filestash:latest0b8fc005e52e
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
makemake1337/blutgang:latest8a55174fc830
pcre2@10.42-1
10.42-1+deb12u1
1
makeplane/plane-mcp-server:v0.3.071b7252adef0
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
makersquad/harp-proxy:0.8.1a40dd258c527
pcre2@10.42-1
10.42-1+deb12u1
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
pcre2@10.34-7ubuntu0.1
no fix listed
1
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
maponyacharles/sceptreai:api-0.1.127b37b092130a
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
maptiler/server:4.8.07e206140057b
pcre2@10.34-7ubuntu0.1
no fix listed
1
marcoimme/oidcmock:latestb6035c0721a8
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
mariusm/vingress:0.5.0b3db186c3d72
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
martinhelmich/typo3:12.4c83a4f3fd7ae
pcre2@10.42-1
10.42-1+deb12u1
1
mathesar/mathesar:0.12.0091757cb01fe
pcre2@10.42-1
10.42-1+deb12u1
1
matrixdotorg/synapse:v1.161.06b95dd129e35
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
pcre2@10.42-1
10.42-1+deb12u1
1
matterlabs/external-node:9734bf2-17870579939295dadc06bdf3b
pcre2@10.42-1
10.42-1+deb12u1
1
matterlabs/external-node:v24.0.06cbfea4c694a
pcre2@10.42-1
10.42-1+deb12u1
1
mautic/mautic:7-apacheeb8cc73d97e1
pcre2@10.42-1
10.42-1+deb12u1
1
mawad98/backstage-pyactions:demo99422c56a274
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
mbround18/valheim:3.1.070bd4da591cd
pcre2@10.39-3ubuntu0.1
no fix listed
1
mcp/kubernetes:latest5ffbf7f0a8aa
pcre2@10.42-1
10.42-1+deb12u1
1
mediagis/nominatim:5.3.27923a8e67197
pcre2@10.42-4ubuntu2.1
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.