StackRadar

CVE-2022-49043

High

Advisory

Published 26 Jan 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.003
18th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
599
of 17,787 indexed, latest versions
Container images
660
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 599 of 17,787 indexed charts deploy, on 660 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+26 more2.9.1+dfsg1-3ubuntu4.13+esm7, 2.9.3+dfsg1-1ubuntu0.7+esm7, 2.9.4+dfsg1-6.1ubuntu1.9+esm2, 2.9.10+dfsg-5ubuntu0.20.04.8+3 more437
libxml2rpm2.9.7-5.el8, 2.9.7-7.el8, 2.9.7-8.el8, 2.9.7-9.el8+17 more0:2.9.7-18.el8_10.2, 0:2.9.13-6.el9_5.1223
OSV records
DEBIAN-CVE-2022-49043UBUNTU-CVE-2022-49043RHSA-2025:1350RHSA-2025:1517RLSA-2025:1517
Also known as
RHSA-2025:1516, USN-7240-1, USN-7302-1

Charts affected

599 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

660 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.8
1
domainmod/domainmod:4.23.04017bfe4c597
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
dragonflyoss/client:v0.1.82edf3e921f4e0
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
2.9.4+dfsg1-6.1ubuntu1.9+esm2
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
2.9.4+dfsg1-6.1ubuntu1.9+esm2
1
emqx/ecp-ui:2.5.1e33e9816f147
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
engrmth/bnkr:2.1.06d8464e6f0e8
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.8
1
felipecs8/app-db-connection-test:v129e06c9c6385
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
fiware/mintaka:0.7.092a3c5cf43c0
libxml2@2.9.7-13.el8
0:2.9.7-18.el8_10.2
1
fiware/mintaka:latestefc6793388cc
libxml2@2.9.7-13.el8
0:2.9.7-18.el8_10.2
1
fnzv/dump1090:latestb3079b95c336
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.5
1
galaxy/galaxy-init:v18.010267bad550e6
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm7
1
galaxy/galaxy-stable:v18.018e577a626dfd
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm7
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.9+esm2
1
gethue/hue:4.11.011b649636e68
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
2.9.10+dfsg-5ubuntu0.20.04.8
1
gethue/hue:4.10.05702b2c37ff9
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.9+esm2
1
guacamole/guacamole:1.5.50f62f6d17ab3
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.5
1
gulacedia/web-dvwa-new:v367b467d961ca
libxml2@2.9.14+dfsg-1.2
2.9.14+dfsg-1.3~deb12u2
1
gurolakman/oam:4.0.0ed8fd2062548
libxml2@2.9.7-18.el8_10.1
0:2.9.7-18.el8_10.2
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
gurolakman/ussigw-core:1.0.48739565c3ea2
libxml2@2.9.7-18.el8_9
0:2.9.7-18.el8_10.2
1
haugene/transmission-openvpn:4.0059216cfae4b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.8
1
haveagitgat/tdarr:2.00.181256348872ce
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.8
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
libxml2@2.9.10+dfsg-5
2.9.10+dfsg-5ubuntu0.20.04.8
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
2.9.10+dfsg-5ubuntu0.20.04.8
1
hazegoodlife/haaze:veggiesite50f02d2d5d4d
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
hazegoodlife/haaze:milksite8d4c63169e14
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
hazelcast/management-center:5.3.2f9d34300d330
libxml2@2.9.7-16.el8_8.1
0:2.9.7-18.el8_10.2
1
hecrom/myweatherangularclient:1.3.11bb0372939c19
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm7
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
libxml2@2.9.7-15.el8_7.1
0:2.9.7-18.el8_10.2
1
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
libxml2@2.9.7-15.el8_7.1
0:2.9.7-18.el8_10.2
1
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
libxml2@2.9.7-15.el8_7.1
0:2.9.7-18.el8_10.2
1
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
libxml2@2.9.7-7.el8
0:2.9.7-18.el8_10.2
1
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
libxml2@2.9.7-7.el8
0:2.9.7-18.el8_10.2
1
ibmcom/ibm-enterprise-mongodb-ppc64le:4.4d28bf361327a
libxml2@2.9.7-8.el8
0:2.9.7-18.el8_10.2
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm7
1
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
libxml2@2.9.7-5.el8
0:2.9.7-18.el8_10.2
1
ibmcom/skydive:0.22.0395e60cc6e3d
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm2
1
inseefrlab/shelly:cloudshell31f04ca7436b
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.5
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.8
1
intel/multimodal-data-visualization-streaming:3.01a89327e499b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.8
1
intelowlproject/intelowl:v6.6.10b22e547ea6b
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1
jaedb/iris:latest048cfbf58d57
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.