Search:
| Image | Mirrored | Release | Binary/Package | Dependency | Vulnerability ID (CVE) | Severity | Status | Justification (for status not affected) | Type (language or OS) |
|---|---|---|---|---|---|---|---|---|---|
| registry.rancher.com/suse-observability/clickhouse-backup:2.6.43-7c9dc1f5-main-52 | false | Observability v2.10.0 | bin/clickhouse-backup | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/clickhouse-backup:2.6.43-7c9dc1f5-main-52 | false | Observability v2.10.0 | bin/clickhouse-backup | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/clickhouse-backup:2.6.43-7c9dc1f5-main-52 | false | Observability v2.10.0 | bin/clickhouse-backup | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/local/bin/kubectl | stdlib@v1.25.9 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/local/bin/kubectl | stdlib@v1.25.9 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/local/bin/kubectl | stdlib@v1.25.9 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/local/bin/kubectl | stdlib@v1.25.9 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.10.0-6159e1ba-release-176 | false | Observability v2.10.0 | bin/elasticsearch_exporter | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.10.0-6159e1ba-release-176 | false | Observability v2.10.0 | bin/elasticsearch_exporter | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/hadoop:3.4.3-java21-9-6cb836e0-release-386 | false | Observability v2.10.0 | Java | io.netty:netty-codec-dns@4.1.127.Final | CVE-2026-42579 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hadoop:3.4.3-java21-9-6cb836e0-release-386 | false | Observability v2.10.0 | Java | io.netty:netty-codec-dns@4.1.127.Final | CVE-2026-42579 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-master:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-master:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-master:2.5-7.14.12 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-regionserver:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-regionserver:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/hbase-regionserver:2.5-7.14.12 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/jmx-exporter:0.20.0-58a72255-315-release | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/jmx-exporter:0.20.0-58a72255-315-release | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/kafka:3.9.2-7c9dc1f5-main-39 | false | Observability v2.10.0 | Java | io.netty:netty-codec@4.1.125.Final | CVE-2026-42583 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/kafka:3.9.2-7c9dc1f5-main-39 | false | Observability v2.10.0 | Java | org.apache.zookeeper:zookeeper@3.8.4 | CVE-2026-24281 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/kafka:3.9.2-7c9dc1f5-main-39 | false | Observability v2.10.0 | Java | org.apache.zookeeper:zookeeper@3.8.4 | CVE-2026-24308 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/kafka:3.9.2-7c9dc1f5-main-39 | false | Observability v2.10.0 | Java | org.codehaus.plexus:plexus-utils@3.5.1 | CVE-2025-67030 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/kafka:3.9.2-7c9dc1f5-main-39 | false | Observability v2.10.0 | Java | org.eclipse.jetty:jetty-http@9.4.57.v20241219 | CVE-2026-2332 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.8 | false | Observability v2.10.0 | kafkaup-operator | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.8 | false | Observability v2.10.0 | kafkaup-operator | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.8 | false | Observability v2.10.0 | kafkaup-operator | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.8 | false | Observability v2.10.0 | kafkaup-operator | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kafkaup-operator:0.0.8 | false | Observability v2.10.0 | kafkaup-operator | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:e78c10a7-720-release | false | Observability v2.10.0 | usr/bin/kubernetes-rbac-agent | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:e78c10a7-720-release | false | Observability v2.10.0 | usr/bin/kubernetes-rbac-agent | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:e78c10a7-720-release | false | Observability v2.10.0 | usr/bin/kubernetes-rbac-agent | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:e78c10a7-720-release | false | Observability v2.10.0 | usr/bin/kubernetes-rbac-agent | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/kubernetes-rbac-agent:e78c10a7-720-release | false | Observability v2.10.0 | usr/bin/kubernetes-rbac-agent | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.5.1-7c9dc1f5-main-28 | false | Observability v2.10.0 | usr/bin/nginx-prometheus-exporter | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.5.1-7c9dc1f5-main-28 | false | Observability v2.10.0 | usr/bin/nginx-prometheus-exporter | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.5.1-7c9dc1f5-main-28 | false | Observability v2.10.0 | usr/bin/nginx-prometheus-exporter | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.5.1-7c9dc1f5-main-28 | false | Observability v2.10.0 | usr/bin/nginx-prometheus-exporter | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/nginx-prometheus-exporter:1.5.1-7c9dc1f5-main-28 | false | Observability v2.10.0 | usr/bin/nginx-prometheus-exporter | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/s3proxy:3.1.0-7c9dc1f5-main-15 | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/s3proxy:3.1.0-7c9dc1f5-main-15 | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/spotlight:5.2.0-snapshot.194 | false | Observability v2.10.0 | Python | urllib3@2.6.3 | CVE-2026-44431 | HIGH | affected | python-pkg | |
| registry.rancher.com/suse-observability/spotlight:5.2.0-snapshot.194 | false | Observability v2.10.0 | Python | urllib3@2.6.3 | CVE-2026-44432 | HIGH | affected | python-pkg | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec@4.1.131.Final | CVE-2026-42583 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-dns@4.1.131.Final | CVE-2026-42579 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-33870 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-42584 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http2@4.1.131.Final | CVE-2026-33871 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http2@4.1.131.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-console:2.5-7.14.12 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-hbase:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-hbase:2.5-7.14.12 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackgraph-hbase:2.5-7.14.12 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-correlate:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-kafka-to-es:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-receiver:2.10.0 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | java-21-openjdk | java-21-openjdk@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | java-21-openjdk-headless | java-21-openjdk-headless@21.0.10.0-150600.3.23.1 | SUSE-SU-2026:1705-1 | HIGH | affected | sles | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2021-22569 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | com.google.protobuf:protobuf-java@2.5.0 | CVE-2024-7254 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec@4.1.131.Final | CVE-2026-42583 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec@4.1.132.Final | CVE-2026-42583 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-dns@4.1.131.Final | CVE-2026-42579 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-dns@4.1.132.Final | CVE-2026-42579 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-33870 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-42584 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.131.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.132.Final | CVE-2026-42584 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http@4.1.132.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http2@4.1.131.Final | CVE-2026-33871 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http2@4.1.131.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | io.netty:netty-codec-http2@4.1.132.Final | CVE-2026-42587 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/stackstate-server:2.10.0-2.5 | false | Observability v2.10.0 | usr/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | github.com/prometheus/prometheus@v0.311.2-0.20260410083055-07c6232d159b | CVE-2026-42151 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | github.com/prometheus/prometheus@v0.311.2-0.20260410083055-07c6232d159b | CVE-2026-42154 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | stdlib@v1.25.9 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | stdlib@v1.25.9 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | stdlib@v1.25.9 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | stdlib@v1.25.9 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/sts-opentelemetry-collector:v0.0.34 | false | Observability v2.10.0 | usr/bin/sts-opentelemetry-collector | stdlib@v1.25.9 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-borg:20260507044720-101894e0 | false | Observability v2.10.0 | usr/local/bin/borg | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-borg:20260507044720-101894e0 | false | Observability v2.10.0 | usr/local/bin/borg | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-borg:20260507044720-101894e0 | false | Observability v2.10.0 | usr/local/bin/borg | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-borg:20260507044720-101894e0 | false | Observability v2.10.0 | usr/local/bin/borg | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-borg:20260507044720-101894e0 | false | Observability v2.10.0 | usr/local/bin/borg | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-mcp:20260507043331-5a52d75b | false | Observability v2.10.0 | suse-observability-mcp | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-mcp:20260507043331-5a52d75b | false | Observability v2.10.0 | suse-observability-mcp | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-mcp:20260507043331-5a52d75b | false | Observability v2.10.0 | suse-observability-mcp | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-mcp:20260507043331-5a52d75b | false | Observability v2.10.0 | suse-observability-mcp | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/suse-observability-mcp:20260507043331-5a52d75b | false | Observability v2.10.0 | suse-observability-mcp | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/tephra-server:2.5-7.14.12 | false | Observability v2.10.0 | Java | org.apache.thrift:libthrift@0.15.0 | CVE-2026-43869 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | victoria-metrics-prod | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/victoria-metrics:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | victoria-metrics-prod | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmagent-prod | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmagent:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmagent-prod | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/sts-toolbox | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/supercronic-linux-amd64 | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/vmbackup-prod | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/vmbackup-prod | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmrestore-prod | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/vmrestore:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmrestore-prod | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/workload-observer:99fb2e74-184-release | false | Observability v2.10.0 | usr/bin/workload-observer | stdlib@v1.26.2 | CVE-2026-33811 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/workload-observer:99fb2e74-184-release | false | Observability v2.10.0 | usr/bin/workload-observer | stdlib@v1.26.2 | CVE-2026-33814 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/workload-observer:99fb2e74-184-release | false | Observability v2.10.0 | usr/bin/workload-observer | stdlib@v1.26.2 | CVE-2026-39820 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/workload-observer:99fb2e74-184-release | false | Observability v2.10.0 | usr/bin/workload-observer | stdlib@v1.26.2 | CVE-2026-39836 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/workload-observer:99fb2e74-184-release | false | Observability v2.10.0 | usr/bin/workload-observer | stdlib@v1.26.2 | CVE-2026-42499 | HIGH | affected | gobinary | |
| registry.rancher.com/suse-observability/zookeeper:3.9.5-7c9dc1f5-main-28 | false | Observability v2.10.0 | Java | io.netty:netty-codec@4.1.130.Final | CVE-2026-42583 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/zookeeper:3.9.5-7c9dc1f5-main-28 | false | Observability v2.10.0 | Java | org.eclipse.jetty:jetty-http@9.4.58.v20250814 | CVE-2026-2332 | HIGH | affected | jar | |
| registry.rancher.com/suse-observability/clickhouse-backup:2.6.43-7c9dc1f5-main-52 | false | Observability v2.10.0 | bin/clickhouse-backup | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/clickhouse-backup:2.6.43-7c9dc1f5-main-52 | false | Observability v2.10.0 | bin/clickhouse-backup | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/container-tools:1.8.6-7c9dc1f5-main-55 | false | Observability v2.10.0 | usr/local/bin/kubectl | stdlib@v1.25.9 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.10.0-6159e1ba-release-176 | false | Observability v2.10.0 | bin/elasticsearch_exporter | stdlib@v1.26.2 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.10.0-6159e1ba-release-176 | false | Observability v2.10.0 | bin/elasticsearch_exporter | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/elasticsearch-exporter:v1.10.0-6159e1ba-release-176 | false | Observability v2.10.0 | bin/elasticsearch_exporter | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | victoria-metrics-prod | stdlib@v1.26.2 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | victoria-metrics-prod | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/victoria-metrics:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | victoria-metrics-prod | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmagent-prod | stdlib@v1.26.2 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmagent-prod | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmagent:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmagent-prod | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/vmbackup-prod | stdlib@v1.26.2 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/vmbackup-prod | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmbackup:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | usr/local/bin/vmbackup-prod | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmrestore-prod | stdlib@v1.26.2 | CVE-2026-33811 | none | not affected | vulnerable code not in execute path | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmrestore-prod | stdlib@v1.26.2 | CVE-2026-39820 | none | not affected | vulnerable code not present | gobinary |
| registry.rancher.com/suse-observability/vmrestore:v1.142.0-7c9dc1f5-main-16 | false | Observability v2.10.0 | vmrestore-prod | stdlib@v1.26.2 | CVE-2026-42499 | none | not affected | vulnerable code not present | gobinary |