StackRadar

CVE-2026-89510

High

Advisory

Published 11 Sept 2026In the index since 18 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
131
of 17,803 indexed, latest versions
Container images
141
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 131 of 17,803 indexed charts deploy, on 141 images.

Affected packageAffected versionsFixed inImages
linuxdeb4.15.0-38.41, 4.15.0-46.49, 4.15.0-50.54, 4.15.0-74.84+81 moreno fix listed141
OSV records
UBUNTU-CVE-2026-89510

Charts affected

131 by stars
ChartLatestAffected imagesRadar Score
games-on-whalesangelnu2.0.01 of 7See more

games-on-whales angelnu 2.0.0

1 of the 7 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
linux@5.4.0-81.91
no fix listed

Open the chart page →

113,781
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
linux@5.15.0-91.101
no fix listed

Open the chart page →

83,638
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
linux@5.4.0-144.161
no fix listed

Open the chart page →

72,862
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
linux@5.4.0-136.153
no fix listed

Open the chart page →

70,424
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
linux@4.15.0-144.148
no fix listed

Open the chart page →

83,011
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
linux@6.8.0-60.63
no fix listed

Open the chart page →

68,447
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
linux@4.15.0-213.224
no fix listed

Open the chart page →

62,428
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
linux@5.4.0-65.73
no fix listed

Open the chart page →

86,680
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
linux@4.15.0-106.107
no fix listed

Open the chart page →

76,586
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
no fix listed

Open the chart page →

53,250
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
linux@4.15.0-50.54
no fix listed

Open the chart page →

93,624
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
linux@4.15.0-117.118
no fix listed

Open the chart page →

80,703
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
linux@4.15.0-46.49
no fix listed

Open the chart page →

88,672
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
linux@4.15.0-50.54
no fix listed

Open the chart page →

90,231
eg-edge-stackdatawire0.0.11 of 7See more

eg-edge-stack datawire 0.0.1

1 of the 7 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
linux@4.15.0-112.113
no fix listed

Open the chart page →

77,853
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
linux@5.4.0-152.169
no fix listed

Open the chart page →

72,223
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
linux@5.15.0-52.58
no fix listed

Open the chart page →

111,395
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
linux@5.15.0-52.58
no fix listed

Open the chart page →

110,396
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:main-localda995c129e2f
linux@6.8.0-138.138
no fix listed

Open the chart page →

47,013
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
linux@6.8.0-38.38
no fix listed

Open the chart page →

87,945
seafileeleksbai0.1.11 of 3See more

seafile eleksbai 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.106693911bcc40
linux@5.4.0-135.152
no fix listed

Open the chart page →

88,064
flywayeosc-lot-1Verified publisher0.7.01 of 3See more

flyway eosc-lot-1 0.7.0

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
flyway/flyway:9.1545b5d7cdc75a
linux@5.4.0-144.161
no fix listed

Open the chart page →

68,313
nethermindethersphereVerified publisher0.2.11 of 1See more

nethermind ethersphere 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
nethermind/nethermind:1.14.615517708c3b6
linux@5.15.0-53.59
no fix listed

Open the chart page →

84,388
business-api-ecosystemfiware1.1.01 of 4See more

business-api-ecosystem fiware 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
linux@5.4.0-216.236
no fix listed

Open the chart page →

108,383
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
linux@5.4.0-89.100
no fix listed

Open the chart page →

82,980
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
linux@5.4.0-80.90
no fix listed

Open the chart page →

96,390
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
linux@6.8.0-39.39
no fix listed

Open the chart page →

78,760
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
linux@5.15.0-130.140
no fix listed

Open the chart page →

61,394
heliconehelicone0.1.421 of 14See more

helicone helicone 0.1.42

1 of the 14 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
linux@5.4.0-200.220
no fix listed

Open the chart page →

72,363
7dtdhelm-7dtd0.1.01 of 1See more

7dtd helm-7dtd 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
vinanrra/7dtd-server:v0.4.4f9534490bd2b
linux@4.15.0-204.215
no fix listed

Open the chart page →

62,635
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
linux@5.4.0-189.209
no fix listed

Open the chart page →

69,307
komgahelmforgeVerified publisher1.4.151 of 1See more

komga helmforge 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
linux@7.0.0-29.29
no fix listed

Open the chart page →

29,969
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
linux@5.4.0-135.152
no fix listed

Open the chart page →

71,556
ikigaiikigai-chartVerified publisher0.0.91 of 58See more

ikigai ikigai-chart 0.0.9

1 of the 58 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:1.2.0e4770285aaf7
linux@5.4.0-89.100
no fix listed

Open the chart page →

108,761
gmaintelVerified publisher0.1.01 of 1See more

gma intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
linux@5.4.0-131.147
no fix listed

Open the chart page →

71,556
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
linux@5.4.0-120.136
no fix listed

Open the chart page →

84,573
map5gintelVerified publisher1.0.01 of 1See more

map5g intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
linux@5.4.0-131.147
no fix listed

Open the chart page →

71,556
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
linux@5.4.0-122.138
no fix listed

Open the chart page →

77,320
homebridgejespernohrVerified publisher0.2.01 of 1See more

homebridge jespernohr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
no fix listed

Open the chart page →

29,715
valheim-serverk8s-chartsVerified publisher1.3.01 of 1See more

valheim-server k8s-charts 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
mbround18/valheim:3.1.070bd4da591cd
linux@5.15.0-133.144
no fix listed

Open the chart page →

57,344
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
linux@6.8.0-60.63
no fix listed

Open the chart page →

62,809
huekatool1.0.81 of 1See more

hue katool 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
gethue/hue:4.11.011b649636e68
linux@5.4.0-136.153
no fix listed

Open the chart page →

79,018
allurekfirfer0.1.81 of 2See more

allure kfirfer 0.1.8

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.21.08a4d7e9308de
linux@4.15.0-204.215
no fix listed

Open the chart page →

64,463
kovi-appkovi-charts0.8.11 of 1See more

kovi-app kovi-charts 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
kennethreitz/httpbin:latest599fe5e50731
linux@4.15.0-38.41
no fix listed

Open the chart page →

81,497
kubernetes-netskope-publisherkubernetes-netskope-publisherVerified publisher1.5.01 of 2See more

kubernetes-netskope-publisher kubernetes-netskope-publisher 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
linux@5.15.0-186.196
no fix listed

Open the chart page →

35,292
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
linux@5.4.0-77.86
no fix listed

Open the chart page →

86,937
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
linux@5.15.0-130.140
no fix listed

Open the chart page →

59,153
homebridgelbenicio-communityVerified publisher0.1.151 of 1See more

homebridge lbenicio-community 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
no fix listed

Open the chart page →

29,715
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
linux@5.4.0-100.113
no fix listed

Open the chart page →

86,968
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-89510.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
linux@4.15.0-191.202
no fix listed

Open the chart page →

67,705

Container images carrying it

141 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
gotson/komga:1.26.36c2a967bbe9a
linux@7.0.0-29.29
no fix listed
2
homebridge/homebridge:latest77c685a40911
linux@6.8.0-138.138
no fix listed
2
istio/kubectl:1.5.10dbb7726d1bf0
linux@4.15.0-112.113
no fix listed
2
istio/proxyv2:1.10.3a78b7a165744
linux@4.15.0-147.151
no fix listed
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
linux@5.4.0-131.147
no fix listed
2
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
linux@5.4.0-182.202
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
linux@6.8.0-60.63
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
linux@5.15.0-52.58
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
linux@5.4.0-81.91
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
linux@4.15.0-126.129
no fix listed
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
linux@4.15.0-101.102
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
linux@6.8.0-94.96
no fix listed
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
linux@7.0.0-28.28
no fix listed
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
linux@7.0.0-29.29
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
linux@4.15.0-188.199
no fix listed
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
linux@6.8.0-138.138
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
linux@5.4.0-90.101
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
linux@5.4.0-91.102
no fix listed
1
assistiot/open_api_backend:1.1.230812ba93555
linux@5.15.0-91.101
no fix listed
1
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
linux@5.4.0-144.161
no fix listed
1
atlassian/bamboo:12.1.114af4bb6c8d46
linux@6.8.0-139.139
no fix listed
1
atlassian/bitbucket:10.2.705933f2b1cfd
linux@6.8.0-139.139
no fix listed
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
linux@5.4.0-136.153
no fix listed
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
linux@5.4.0-81.91
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
linux@5.4.0-65.73
no fix listed
1
cloudve/janis-terminal:latestaf56e77ca587
linux@4.15.0-106.107
no fix listed
1
countly/countly-server:25.05.4e3c238248f99
linux@5.4.0-189.209
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
linux@5.15.0-153.163
no fix listed
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
linux@5.4.0-122.138
no fix listed
1
dongjiang1989/lxcfs:v6.0.34bf9ae391948
linux@5.4.0-216.236
no fix listed
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
linux@5.4.0-216.236
no fix listed
1
flyway/flyway:9.1545b5d7cdc75a
linux@5.4.0-144.161
no fix listed
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
linux@4.15.0-204.215
no fix listed
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
linux@4.15.0-191.202
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
linux@5.15.0-181.191
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
linux@4.15.0-117.118
no fix listed
1
gethue/hue:4.11.011b649636e68
linux@5.4.0-136.153
no fix listed
1
gethue/hue:4.10.05702b2c37ff9
linux@4.15.0-144.148
no fix listed
1
gethue/hue:latest7d5c1b9f8a79
linux@5.15.0-143.153
no fix listed
1
grpl/grapple-cli:0.2.127c00aafee6629
linux@6.8.0-39.39
no fix listed
1
haveagitgat/tdarr:2.00.181256348872ce
linux@5.4.0-109.123
no fix listed
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
linux@5.4.0-163.180
no fix listed
1
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
linux@5.4.0-200.220
no fix listed
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
linux@4.15.0-135.139
no fix listed
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
linux@5.4.0-120.136
no fix listed
1
intel/multimodal-data-visualization-streaming:3.01a89327e499b
linux@5.4.0-122.138
no fix listed
1
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
linux@5.4.0-125.141
no fix listed
1
istio/install-cni:1.10.32232f365aed6
linux@4.15.0-147.151
no fix listed
1
istio/operator:1.10.3655eefa11c84
linux@4.15.0-147.151
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.