StackRadar

CVE-2022-34169

High

Advisory

Published 19 Jul 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.810
100th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
54
of 17,781 indexed, latest versions
Container images
51
deployed by those charts
Fix available
4 of 4
affected packages

Apache Xalan Java XSLT library integer truncation issue when processing malicious XSLT stylesheets

Carried by container images the latest versions of 54 of 17,781 indexed charts deploy, on 51 images.

Affected packageAffected versionsFixed inImages
xalanmaven2.7.1, 2.7.1.jbossorg-4, 2.7.1.jbossorg-5, 2.7.22.7.328
openjdk-8deb8u151-b12-0ubuntu0.16.04.2, 8u171-b11-0ubuntu0.16.04.1, 8u191-b12-2ubuntu0.16.04.1, 8u212-b03-0ubuntu1.18.04.1+5 more8u342-b07-0ubuntu1~16.04, 8u342-b07-0ubuntu1~18.04, 8u342-b07-0ubuntu1~20.0413
openjdk-ltsdeb11.0.3+7-1ubuntu2~18.04.1, 11.0.8+10-0ubuntu1~18.04.1, 11.0.11+9-0ubuntu2~20.04, 11.0.13+8-0ubuntu1~20.04+1 more11.0.16+8-0ubuntu1~18.04, 11.0.16+8-0ubuntu1~20.0410
openjdk-17deb17.0.3+7-0ubuntu0.20.04.117.0.4+8-1~20.041
OSV records
GHSA-9339-86wc-4qgfUBUNTU-CVE-2022-34169
Also known as
BIT-java-2022-34169, BIT-java-min-2022-34169, BIT-jre-2022-34169, USN-5546-1, USN-5546-2

Charts affected

54 by stars
ChartLatestAffected imagesRadar Score
keycloakcodecentricVerified publisher18.10.01 of 3See more

keycloak codecentric 18.10.0

1 of the 3 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
xalan@2.7.1.jbossorg-5
2.7.3

Open the chart page →

7,713
milvusmilvus4.0.311 of 5See more

milvus milvus 4.0.31

1 of the 5 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

32,259
microcksmicrocksOfficialVerified publisher0.8.0-helm-3.kube-1.171 of 5See more

microcks microcks 0.8.0-helm-3.kube-1.17

1 of the 5 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
microcks/microcks:0.8.0e3a3e0c67b09
xalan@2.7.1
2.7.3

Open the chart page →

10,732
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u342-b07-0ubuntu1~20.04

Open the chart page →

11,782
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
xalan@2.7.2
2.7.3

Open the chart page →

8,636
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
xalan@2.7.2
2.7.3

Open the chart page →

10,530
oesopsmxVerified publisher4.0.321 of 25See more

oes opsmx 4.0.32

1 of the 25 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
openjdk-8@8u222-b10-1ubuntu1~16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

107,811
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

24,488
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

77,687
geoserver-cloudcamptocamp20.0.52 of 11See more

geoserver-cloud camptocamp2 0.0.5

2 of the 11 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
xalan@2.7.2
2.7.3
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
xalan@2.7.2
2.7.3

Open the chart page →

84,444
geoserverCloudcamptocamp20.0.62 of 11See more

geoserverCloud camptocamp2 0.0.6

2 of the 11 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
xalan@2.7.2
2.7.3
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
xalan@2.7.2
2.7.3

Open the chart page →

84,444
distributed-jmetercloudnativeapp1.0.11 of 1See more

distributed-jmeter cloudnativeapp 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
pedrocesarti/jmeter-docker:3.314851f144f57
xalan@2.7.2
2.7.3

Open the chart page →

4,532
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u342-b07-0ubuntu1~16.04

Open the chart page →

36,094
jmeterjmeterVerified publisher1.2.51 of 1See more

jmeter jmeter 1.2.5

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
liukunup/jmeter:5.59c079617a81b
xalan@2.7.2
2.7.3

Open the chart page →

2,067
shinyproxyremche0.6.61 of 2See more

shinyproxy remche 0.6.6

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
remche/shinyproxy:2.6.18bcda8a04d3b
xalan@2.7.2
2.7.3

Open the chart page →

3,958
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
xalan@2.7.2
2.7.3

Open the chart page →

7,529
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
11.0.16+8-0ubuntu1~18.04

Open the chart page →

15,970
keycloakaccount-serviceVerified publisher18.4.51 of 2See more

keycloak account-service 18.4.5

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
xalan@2.7.1.jbossorg-5
2.7.3

Open the chart page →

7,713
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

77,706
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
xalan@2.7.1.jbossorg-5
2.7.3

Open the chart page →

13,352
axelor-open-suiteaxelor-open-suiteVerified publisher7.2.581 of 2See more

axelor-open-suite axelor-open-suite 7.2.58

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
xalan@2.7.2
2.7.3

Open the chart page →

9,722
geoservercamptocamp20.0.32 of 12See more

geoserver camptocamp2 0.0.3

2 of the 12 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
xalan@2.7.2
2.7.3
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
xalan@2.7.2
2.7.3

Open the chart page →

88,335
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u342-b07-0ubuntu1~16.04

Open the chart page →

36,094
gocdcloudnativeapp1.9.21 of 2See more

gocd cloudnativeapp 1.9.2

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
gocd/gocd-server:v19.3.02da45cb09d57
xalan@2.7.2
2.7.3

Open the chart page →

9,144
hlf-couchdbcloudnativeapp1.0.61 of 1See more

hlf-couchdb cloudnativeapp 1.0.6

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/fabric-couchdb:0.4.10c65891b6c237
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

33,963
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

23,665
seleniumcloudnativeapp1.0.81 of 1See more

selenium cloudnativeapp 1.0.8

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u342-b07-0ubuntu1~20.04

Open the chart page →

11,782
unificloudnativeapp0.4.21 of 1See more

unifi cloudnativeapp 0.4.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
jacobalberty/unifi:5.10.19c409924e2463
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04

Open the chart page →

22,442
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openjdk-17@17.0.3+7-0ubuntu0.20.04.1
17.0.4+8-1~20.04

Open the chart page →

7,963
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openjdk-17@17.0.3+7-0ubuntu0.20.04.1
17.0.4+8-1~20.04

Open the chart page →

7,963
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u342-b07-0ubuntu1~20.04

Open the chart page →

11,782
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
openjdk-8@8u252-b09-1~16.04
8u342-b07-0ubuntu1~16.04

Open the chart page →

19,802
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
openjdk-8@8u292-b10-0ubuntu1~18.04
8u342-b07-0ubuntu1~18.04

Open the chart page →

19,215
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

17,702
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
xalan@2.7.1
2.7.3

Open the chart page →

27,949
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
11.0.16+8-0ubuntu1~18.04

Open the chart page →

26,944
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.81 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

1 of the 5 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
jingking/geonetwork-hnap:4.2.843e74ab234e1
xalan@2.7.1
2.7.3

Open the chart page →

34,754
ibm-microclimateibm-charts0.1.03 of 8See more

ibm-microclimate ibm-charts 0.1.0

3 of the 8 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
xalan@2.7.2
2.7.3
ibmcom/microclimate-portal:latested5505e5c7ec
xalan@2.7.2
2.7.3
ibmcom/microclimate-theia:lateste17bdccc5030
xalan@2.7.2
2.7.3

Open the chart page →

57,669
ibm-ws-dyn-agent-devibm-charts1.0.01 of 1See more

ibm-ws-dyn-agent-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
xalan@2.7.1
2.7.3

Open the chart page →

19,295
ikigaiikigai-chartVerified publisher0.0.91 of 58See more

ikigai ikigai-chart 0.0.9

1 of the 58 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
xalan@2.7.2
2.7.3

Open the chart page →

37,671
daveit-at-mOfficialVerified publisher0.2.151 of 11See more

dave it-at-m 0.2.15

1 of the 11 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
xalan@2.7.2
2.7.3

Open the chart page →

15,089
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

15,675
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
8u342-b07-0ubuntu1~18.04
11.0.16+8-0ubuntu1~18.04

Open the chart page →

63,223
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04

Open the chart page →

15,520
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
xalan@2.7.1
2.7.3

Open the chart page →

6,907
atlassian-confluencesomeblackmagic3.4.11 of 1See more

atlassian-confluence someblackmagic 3.4.1

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
atlassian/confluence-server:7.10.03b9222ab32ef
xalan@2.7.2
2.7.3

Open the chart page →

13,605
atlassian-jirasomeblackmagic3.3.21 of 1See more

atlassian-jira someblackmagic 3.3.2

1 of the 1 container images this version deploys carry CVE-2022-34169.

Container imageDigestPackageFixed in
atlassian/jira-software:8.14.037bc46cbec1a
xalan@2.7.2
2.7.3

Open the chart page →

13,079

Container images carrying it

51 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
4
selenium/hub:3.141.5902f251d48d5f
openjdk-8@8u292-b10-0ubuntu1~20.04
8u342-b07-0ubuntu1~20.04
3
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
xalan@2.7.2
2.7.3
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
xalan@2.7.2
2.7.3
2
hookiesolutions/webhookie:latest0629694246ba
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openjdk-17@17.0.3+7-0ubuntu0.20.04.1
17.0.4+8-1~20.04
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
xalan@2.7.1.jbossorg-5
2.7.3
2
apachepulsar/pulsar:2.10.03b262ab7a7d9
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04
1
apachepulsar/pulsar:2.9.0d056c89b7131
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04
1
apachepulsar/pulsar:2.8.2d538416d5afe
openjdk-lts@11.0.13+8-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04
1
assistiot/identity-manager_kc:latest0df4b4fa899a
xalan@2.7.1.jbossorg-5
2.7.3
1
atlassian/confluence-server:7.10.03b9222ab32ef
xalan@2.7.2
2.7.3
1
atlassian/jira-software:8.14.037bc46cbec1a
xalan@2.7.2
2.7.3
1
atlassian/jira-software:9.7.264a75aa4ec4e
xalan@2.7.2
2.7.3
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04
1
cheyang/distributed-tf:1.6.046cc34755493
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u342-b07-0ubuntu1~16.04
1
dremio/dremio-oss:24.1.080ed2e3b7c43
xalan@2.7.2
2.7.3
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
xalan@2.7.2
2.7.3
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
xalan@2.7.2
2.7.3
1
gocd/gocd-server:v19.3.02da45cb09d57
xalan@2.7.2
2.7.3
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
openjdk-8@8u171-b11-0ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
xalan@2.7.1
2.7.3
1
ibmcom/microclimate-file-watcher:latestab3fd1fdfa18
xalan@2.7.2
2.7.3
1
ibmcom/microclimate-portal:latested5505e5c7ec
xalan@2.7.2
2.7.3
1
ibmcom/microclimate-theia:lateste17bdccc5030
xalan@2.7.2
2.7.3
1
jacobalberty/unifi:v7.1.664a3616625dda
openjdk-8@8u312-b07-0ubuntu1~18.04
8u342-b07-0ubuntu1~18.04
1
jacobalberty/unifi:5.10.19c409924e2463
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
xalan@2.7.1
2.7.3
1
library/logstash:7.17.817a4f64e9cf5
xalan@2.7.2
2.7.3
1
library/sonarqube:6.7.6-community0ae5169e3d0f
xalan@2.7.2
2.7.3
1
liukunup/jmeter:5.59c079617a81b
xalan@2.7.2
2.7.3
1
microcks/microcks:0.8.0e3a3e0c67b09
xalan@2.7.1
2.7.3
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
openjdk-8@8u212-b03-0ubuntu1.18.04.1
openjdk-lts@11.0.3+7-1ubuntu2~18.04.1
8u342-b07-0ubuntu1~18.04
11.0.16+8-0ubuntu1~18.04
1
openkm/openkm-ce:6.3.113bc465a7461b
xalan@2.7.1
2.7.3
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
xalan@2.7.2
2.7.3
1
pedrocesarti/jmeter-docker:3.314851f144f57
xalan@2.7.2
2.7.3
1
pmoscode/axelor-open-suite:v7.2.57a58f4d762f5c
xalan@2.7.2
2.7.3
1
project2team4/react:latest3ff031a08887
openjdk-lts@11.0.14.1+1-0ubuntu1~20.04
11.0.16+8-0ubuntu1~20.04
1
remche/shinyproxy:2.6.18bcda8a04d3b
xalan@2.7.2
2.7.3
1
rundeck/rundeck:3.2.74d64fe56f767
openjdk-8@8u252-b09-1~16.04
8u342-b07-0ubuntu1~16.04
1
rundeck/rundeck:3.0.16b13e8059ad72
openjdk-8@8u191-b12-2ubuntu0.16.04.1
8u342-b07-0ubuntu1~16.04
1
sismics/docs:v1.10f4b0ef019cf1
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
11.0.16+8-0ubuntu1~18.04
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
openjdk-8@8u151-b12-0ubuntu0.16.04.2
8u342-b07-0ubuntu1~16.04
1
wavefronthq/proxy:9.2d1064d28f6eb
openjdk-lts@11.0.8+10-0ubuntu1~18.04.1
11.0.16+8-0ubuntu1~18.04
1
xetusoss/archiva:v2.2.588f25242b9ee
xalan@2.7.1
2.7.3
1
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
xalan@2.7.2
2.7.3
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
openjdk-lts@11.0.11+9-0ubuntu2~20.04
11.0.16+8-0ubuntu1~20.04
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
openjdk-8@8u292-b10-0ubuntu1~18.04
8u342-b07-0ubuntu1~18.04
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
xalan@2.7.1.jbossorg-4
2.7.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.