CVE-2026-90354
MediumAdvisory
Published 18 Sept 2026In the index since 19 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.5
- base score, highest
- EPSS
- 0.002
- 7th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 101
- of 17,828 indexed, latest versions
- Container images
- 102
- deployed by those charts
- Fix available
- None
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 101 of 17,828 indexed charts deploy, on 102 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| linuxdeb | 3.13.0-46.77, 3.13.0-126.175, 3.13.0-149.199, 3.13.0-170.220+66 more | no fix listed | 102 |
- OSV records
- UBUNTU-CVE-2026-90354
Charts affected
101 by stars
| Chart | Latest | Affected images | Radar Score |
|---|
Container images carrying it
102 by charts deploying them
A fixed version is listed for 0 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| public.ecr.aws/ | efcecf98b912 | linux | no fix listed | 1 |
| registry.gitlab.com/ | 7b6e87514259 | linux | no fix listed | 1 |