Skip to content

Weekly audit refresh: 27531642510#63

Open
github-actions[bot] wants to merge 1 commit into
mainfrom
chore/weekly-audit-refresh
Open

Weekly audit refresh: 27531642510#63
github-actions[bot] wants to merge 1 commit into
mainfrom
chore/weekly-audit-refresh

Conversation

@github-actions

Copy link
Copy Markdown
Contributor

CVE delta

Net change

Severity Added Removed Net
Critical 15 0 +15
High 305 6 +299
Medium 784 9 +775
Low 490 0 +490

Changed images: 41 of 44

Per-image detail

adguard-adguardhome-v0.107.76

  • Added: C:0 H:2 M:7 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-40898 (MEDIUM) — github.com/quic-go/quic-go
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • ...and 11 more

baserow-baserow-2.2.2

  • Added: C:0 H:10 M:15 L:11
  • Removed: C:0 H:1 M:0 L:0
    • [NEW]:
      • CVE-2026-11822 (HIGH) — libsqlite3-0
      • CVE-2026-11824 (HIGH) — libsqlite3-0
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-44486 (HIGH) — axios
      • CVE-2026-44487 (HIGH) — axios
      • CVE-2026-44488 (HIGH) — axios
      • CVE-2026-44496 (HIGH) — axios
      • CVE-2026-45447 (HIGH) — libssl3t64
      • ...and 28 more
    • [FIXED]:
      • CVE-2026-6732 (HIGH) — libxml2

deluan-navidrome-0.61.2

  • Added: C:0 H:1 M:2 L:0
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-42507 (MEDIUM) — stdlib

docker.io-alpine-3.23.4

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

docker.io-caddy-2.11.3

  • Added: C:0 H:2 M:6 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 10 more

docker.io-library-postgres-18.4-alpine3.23

  • Added: C:0 H:2 M:6 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 10 more

docker.io-louislam-uptime-kuma-2.3.2

  • Added: C:12 H:191 M:242 L:101
  • Removed: C:0 H:1 M:1 L:0
    • [NEW]:
      • CVE-2026-10931 (CRITICAL) — chromium
      • CVE-2026-10966 (CRITICAL) — chromium
      • CVE-2026-10971 (CRITICAL) — chromium
      • CVE-2026-10972 (CRITICAL) — chromium
      • CVE-2026-10974 (CRITICAL) — chromium
      • CVE-2026-10990 (CRITICAL) — chromium
      • CVE-2026-11002 (CRITICAL) — chromium
      • CVE-2026-11029 (CRITICAL) — chromium
      • ...and 538 more
    • [FIXED]:
      • CVE-2026-6732 (HIGH) — libxml2
      • CVE-2026-7930 (MEDIUM) — chromium

docker.io-mariadb-12.2.2

  • Added: C:0 H:2 M:5 L:8
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libssl3t64
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libssl3t64
      • CVE-2026-40226 (MEDIUM) — libsystemd0
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-45445 (MEDIUM) — libssl3t64
      • CVE-2026-34180 (LOW) — libssl3t64
      • ...and 7 more

docker.io-mongo-8.3.2

  • Added: C:0 H:2 M:5 L:8
  • Removed: C:0 H:0 M:3 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libssl3t64
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libssl3t64
      • CVE-2026-40226 (MEDIUM) — libsystemd0
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-45445 (MEDIUM) — libssl3t64
      • CVE-2026-34180 (LOW) — libssl3t64
      • ...and 7 more
    • [FIXED]:
      • CVE-2026-2219 (MEDIUM) — dpkg
      • CVE-2026-4878 (MEDIUM) — libcap2
      • CVE-2026-5958 (MEDIUM) — sed

docker.io-rabbitmq-4.3.0-alpine

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

docker.io-redis-8.6.3-alpine

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

docuseal-docuseal-3.0.0

  • Added: C:0 H:4 M:8 L:11
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-32740 (HIGH) — libheif
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-47736 (HIGH) — puma
      • CVE-2026-47737 (HIGH) — puma
      • CVE-2026-32738 (MEDIUM) — libheif
      • CVE-2026-32739 (MEDIUM) — libheif
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • ...and 15 more

fnsys-dockhand-v1.0.29

  • Added: C:0 H:6 M:6 L:0
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-27140 (HIGH) — docker-cli-buildx
      • CVE-2026-32280 (HIGH) — docker-cli-buildx
      • CVE-2026-32281 (HIGH) — docker-cli-buildx
      • CVE-2026-32283 (HIGH) — docker-cli-buildx
      • CVE-2026-39821 (HIGH) — docker-cli-buildx
      • CVE-2026-42504 (HIGH) — docker-cli-buildx
      • CVE-2026-27145 (MEDIUM) — docker-cli-buildx
      • CVE-2026-32288 (MEDIUM) — docker-cli-buildx
      • ...and 4 more

freshrss-freshrss-1.29.1-alpine

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

ghcr.io-goauthentik-server-2026.2.3

  • Added: C:0 H:11 M:37 L:20
  • Removed: C:0 H:1 M:0 L:0
    • [NEW]:
      • CVE-2026-11822 (HIGH) — libsqlite3-0
      • CVE-2026-11824 (HIGH) — libsqlite3-0
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libssl-dev
      • CVE-2026-46243 (HIGH) — linux-libc-dev
      • CVE-2026-46244 (HIGH) — linux-libc-dev
      • CVE-2026-46316 (HIGH) — linux-libc-dev
      • CVE-2026-46319 (HIGH) — linux-libc-dev
      • ...and 60 more
    • [FIXED]:
      • CVE-2026-6732 (HIGH) — libxml2

ghcr.io-open-webui-open-webui-0.9.5

  • Added: C:1 H:11 M:43 L:19
  • Removed: C:0 H:1 M:0 L:0
    • [NEW]:
      • CVE-2026-49261 (CRITICAL) — libmariadb-dev
      • CVE-2025-38349 (HIGH) — linux-libc-dev
      • CVE-2026-11822 (HIGH) — libsqlite3-0
      • CVE-2026-11824 (HIGH) — libsqlite3-0
      • CVE-2026-25087 (HIGH) — pyarrow
      • CVE-2026-45447 (HIGH) — libssl-dev
      • CVE-2026-46243 (HIGH) — linux-libc-dev
      • CVE-2026-46319 (HIGH) — linux-libc-dev
      • ...and 66 more
    • [FIXED]:
      • CVE-2026-6732 (HIGH) — libxml2

ghcr.io-stoatchat-api-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-crond-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-events-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-file-server-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-for-web-0b94704

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

ghcr.io-stoatchat-gifbox-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-livekit-server-v1.9.13

  • Added: C:0 H:2 M:6 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 10 more

ghcr.io-stoatchat-proxy-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-pushd-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-stoatchat-voice-ingress-v0.13.6

  • Added: C:0 H:1 M:2 L:7
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3
      • CVE-2026-34182 (MEDIUM) — libssl3
      • CVE-2026-45445 (MEDIUM) — libssl3
      • CVE-2026-34180 (LOW) — libssl3
      • CVE-2026-42766 (LOW) — libssl3
      • CVE-2026-42767 (LOW) — libssl3
      • CVE-2026-42770 (LOW) — libssl3
      • CVE-2026-45446 (LOW) — libssl3
      • ...and 2 more

ghcr.io-wg-easy-wg-easy-15.3.0

  • Added: C:0 H:2 M:6 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 10 more

ghcr.io-ylianst-meshcentral-1.1.59-mongodb

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

ghcr.io-zulip-zulip-server-12.0-0

  • Added: C:1 H:20 M:287 L:40
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-43304 (CRITICAL) — linux-libc-dev
      • CVE-2025-54518 (HIGH) — linux-libc-dev
      • CVE-2025-71315 (HIGH) — linux-libc-dev
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-43084 (HIGH) — linux-libc-dev
      • CVE-2026-43186 (HIGH) — linux-libc-dev
      • CVE-2026-43284 (HIGH) — linux-libc-dev
      • CVE-2026-43500 (HIGH) — linux-libc-dev
      • ...and 340 more

lscr.io-linuxserver-jellyfin-10.11.9

  • Added: C:0 H:1 M:3 L:8
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3t64
      • CVE-2026-34182 (MEDIUM) — libssl3t64
      • CVE-2026-40226 (MEDIUM) — libsystemd0
      • CVE-2026-45445 (MEDIUM) — libssl3t64
      • CVE-2026-34180 (LOW) — libssl3t64
      • CVE-2026-40228 (LOW) — libsystemd0
      • CVE-2026-42766 (LOW) — libssl3t64
      • CVE-2026-42767 (LOW) — libssl3t64
      • ...and 4 more

memcached-1.6.42-alpine3.23

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

mongo-8.3.2

  • Added: C:0 H:2 M:5 L:8
  • Removed: C:0 H:0 M:3 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libssl3t64
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libssl3t64
      • CVE-2026-40226 (MEDIUM) — libsystemd0
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-45445 (MEDIUM) — libssl3t64
      • CVE-2026-34180 (LOW) — libssl3t64
      • ...and 7 more
    • [FIXED]:
      • CVE-2026-2219 (MEDIUM) — dpkg
      • CVE-2026-4878 (MEDIUM) — libcap2
      • CVE-2026-5958 (MEDIUM) — sed

n8nio-runners-2.22.1

  • Added: C:0 H:2 M:6 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 10 more

nextcloud-33.0.3-fpm-alpine

  • Added: C:0 H:2 M:8 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-32740 (HIGH) — libheif
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-32738 (MEDIUM) — libheif
      • CVE-2026-32739 (MEDIUM) — libheif
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • ...and 12 more

nginx-1.31.0-alpine3.23

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

postgres-18.4

  • Added: C:0 H:4 M:6 L:0
  • Removed: C:0 H:2 M:2 L:0
    • [NEW]:
      • CVE-2026-11822 (HIGH) — libsqlite3-0
      • CVE-2026-11824 (HIGH) — libsqlite3-0
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-48959 (HIGH) — libperl5.40
      • CVE-2025-15649 (MEDIUM) — libperl5.40
      • CVE-2026-11850 (MEDIUM) — libgssapi-krb5-2
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-42250 (MEDIUM) — libbz2-1.0
      • ...and 2 more
    • [FIXED]:
      • CVE-2026-40356 (HIGH) — libgssapi-krb5-2
      • CVE-2026-6732 (HIGH) — libxml2
      • CVE-2026-40355 (MEDIUM) — libgssapi-krb5-2
      • CVE-2026-41989 (MEDIUM) — libgcrypt20

qbittorrentofficial-qbittorrent-nox-5.2.0-1

  • Added: C:0 H:1 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • CVE-2026-45445 (MEDIUM) — libcrypto3
      • CVE-2026-34180 (LOW) — libcrypto3
      • CVE-2026-34181 (LOW) — libcrypto3
      • CVE-2026-42766 (LOW) — libcrypto3
      • ...and 7 more

rabbitmq-4.3.0

  • Added: C:0 H:1 M:3 L:8
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libssl3t64
      • CVE-2026-34182 (MEDIUM) — libssl3t64
      • CVE-2026-40226 (MEDIUM) — libsystemd0
      • CVE-2026-45445 (MEDIUM) — libssl3t64
      • CVE-2026-34180 (LOW) — libssl3t64
      • CVE-2026-40228 (LOW) — libsystemd0
      • CVE-2026-42766 (LOW) — libssl3t64
      • CVE-2026-42767 (LOW) — libssl3t64
      • ...and 4 more

syncthing-syncthing-2.1.0

  • Added: C:0 H:2 M:7 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-42504 (HIGH) — stdlib
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-27145 (MEDIUM) — stdlib
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-40898 (MEDIUM) — github.com/quic-go/quic-go
      • CVE-2026-42507 (MEDIUM) — stdlib
      • CVE-2026-42764 (MEDIUM) — libcrypto3
      • ...and 11 more

towfiqi-serpbear-3.1.0

  • Added: C:1 H:5 M:4 L:10
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-9277 (CRITICAL) — shell-quote
      • CVE-2026-44486 (HIGH) — axios
      • CVE-2026-44487 (HIGH) — axios
      • CVE-2026-44488 (HIGH) — axios
      • CVE-2026-44496 (HIGH) — axios
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • ...and 12 more

vaultwarden-server-1.36.0-alpine

  • Added: C:0 H:1 M:9 L:12
  • Removed: C:0 H:0 M:0 L:0
    • [NEW]:
      • CVE-2026-45447 (HIGH) — libcrypto3
      • CVE-2025-14017 (MEDIUM) — curl
      • CVE-2026-1965 (MEDIUM) — curl
      • CVE-2026-34182 (MEDIUM) — libcrypto3
      • CVE-2026-34183 (MEDIUM) — libcrypto3
      • CVE-2026-3783 (MEDIUM) — curl
      • CVE-2026-3784 (MEDIUM) — curl
      • CVE-2026-3805 (MEDIUM) — curl
      • ...and 14 more

@github-actions github-actions Bot enabled auto-merge (squash) June 15, 2026 07:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant