StackRadar

CVE-2026-89162

Low

Advisory

Published 11 Sept 2026In the index since 12 Sept 2026
Severity
Low
worst across findings
CVSS
2.9
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,664
of 17,797 indexed, latest versions
Container images
1,391
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,664 of 17,797 indexed charts deploy, on 1,391 images.

Affected packageAffected versionsFixed inImages
pcre2deb10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+9 more10.46-1~deb13u21,391
OSV records
DEBIAN-CVE-2026-89162UBUNTU-CVE-2026-89162
Trending
Rank 8 in indexed charts, since 12 Sept 2026. See the ranking →

Charts affected

1,664 by stars
ChartLatestAffected imagesRadar Score
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
pcre2@10.39-3ubuntu0.1
no fix listed

Open the chart page →

9,340
elasticsearchwiremindVerified publisher8.19.01 of 1See more

elasticsearch wiremind 8.19.0

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

2,242
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
pcre2@10.34-7ubuntu0.1
no fix listed

Open the chart page →

6,336
wordpress-alpinewordpress-alpine1.5.182 of 6See more

wordpress-alpine wordpress-alpine 1.5.18

2 of the 6 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/mariadb:12.3.2628f228f0fd5
pcre2@10.42-4ubuntu2.1
no fix listed
library/memcached:1.6.45dc561d52bb8a
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

4,080
Wordpresswordpress-mariadb1.0.22 of 2See more

Wordpress wordpress-mariadb 1.0.2

2 of the 2 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/mariadb:ltsdd9b303aed4f
pcre2@10.42-4ubuntu2.1
no fix listed
library/wordpress:latest5a93c470ae82
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

5,713
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
pcre2@10.39-3ubuntu0.1
no fix listed

Open the chart page →

14,218
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
pcre2@10.42-4ubuntu2.1
no fix listed

Open the chart page →

13,813
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
pcre2@10.42-4ubuntu2
no fix listed

Open the chart page →

2,152
nginx-chartxxoznge-nginx0.1.01 of 1See more

nginx-chart xxoznge-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,861
helm-demoyahoon-helm-demoVerified publisher1.0.01 of 1See more

helm-demo yahoon-helm-demo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,311
my-nginx-appyasser-nginx-app0.1.01 of 1See more

my-nginx-app yasser-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,861
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
pcre2@10.46-1~deb13u1
10.46-1~deb13u2

Open the chart page →

1,861
clickhousezloi-space1.2.01 of 3See more

clickhouse zloi-space 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
yandex/clickhouse-server:21.3.204eccfffb01d7
pcre2@10.34-7
no fix listed

Open the chart page →

9,272
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2026-89162.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
pcre2@10.39-3ubuntu0.1
no fix listed

Open the chart page →

7,936

Container images carrying it

1,391 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
pcre2@10.39-3ubuntu0.1
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
pcre2@10.46-1build1
no fix listed
1
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
pcre2@10.45-1
10.46-1~deb13u2
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
pcre2@10.45-1
10.46-1~deb13u2
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/microboxlabs/miot-harness:0.1.0d548e9ae4b84
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/moghtech/komodo-core:2.3.3bca73d0eee14
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/monicahq/monica-next:main8be69156acbb
pcre2@10.45-1
10.46-1~deb13u2
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
pcre2@10.39-3ubuntu0.1
no fix listed
1
ghcr.io/mskazemi/kubeintellect:2.5.0b5d7681d1b9d
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
pcre2@10.42-4ubuntu2
no fix listed
1
ghcr.io/netbox-community/netbox:v4.7.13f6ab3c93e4e
pcre2@10.46-1build1
no fix listed
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/nmshd/backbone-admin-cli:7.2.1f7d095c04a75
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/nowakeai/svc-lb-mux:0.1.37d8fb8e996b6
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/obeone/ollama-exporter:latestf43af285c6e0
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/obeone/parcelapp-mcp:0.2.17073131db60b
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/observal/observal-api:1.13.1153b8b893232
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-03:0.0.0-2026-08-173e56bdd1b90d
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/openappsec/openappsec-waf-webhook:1.1.345b979b962043
pcre2@10.46-1~deb13u1
10.46-1~deb13u2
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
pcre2@10.42-4ubuntu2.1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
pcre2@10.42-4ubuntu2.1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.