StackRadar

CVE-2024-50602

Medium

Advisory

Published 27 Oct 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.010
62nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,287
of 17,790 indexed, latest versions
Container images
1,293
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,287 of 17,790 indexed charts deploy, on 1,293 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+27 more2.1.0-4ubuntu1.4+esm10, 2.1.0-7ubuntu0.16.04.5+esm10, 2.2.5-3ubuntu0.9+esm2, 2.2.9-1ubuntu0.8+4 more938
expatapk2.5.0-r0, 2.5.0-r1, 2.5.0-r2, 2.5.0-r4+3 more2.6.4-r0220
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+14 more0:2.2.5-16.el8_10, 0:2.5.0-2.el9_4.2, 0:2.5.0-3.el9_5.1134
pythonbitnami3.11.11-0, 3.12.8-03.9.212
python-3.12apk3.12.0-r13.12.8-r01
OSV records
ALPINE-CVE-2024-50602BIT-python-2024-50602CGA-8hv9-chc6-m8mcCGA-h7g8-992h-qr83DEBIAN-CVE-2024-50602RHSA-2024:11200RHSA-2024:9502RHSA-2024:9541UBUNTU-CVE-2024-50602DLA-4145-1RLSA-2024:9502
Also known as
BIT-libpython-2024-50602, BIT-python-min-2024-50602, CGA-rf44-r3rp-vh3g, CGA-rmvw-44qh-5jcf, RHSA-2025:3350, USN-7145-1

Charts affected

1,287 by stars
ChartLatestAffected imagesRadar Score
kuttleokgoloveVerified publisher2.0.01 of 1See more

kuttle okgolove 2.0.0

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
library/python:3.7-alpinef3d31c8677d0
expat@2.5.0-r1
2.6.4-r0

Open the chart page →

797
automx2oleds-helm-chartsVerified publisher1.0.51 of 1See more

automx2 oleds-helm-charts 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
oled01/automx2:2025.1.105d3e398e675
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

5,360
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.5

Open the chart page →

9,062
apicurioone-acre-fundVerified publisher2.3.03 of 5See more

apicurio one-acre-fund 2.3.0

3 of the 5 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
expat@2.2.5-11.el8
0:2.2.5-16.el8_10
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
expat@2.2.5-11.el8
0:2.2.5-16.el8_10
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

18,667
commonground-gatewayopencatalogi1.5.32 of 7See more

commonground-gateway opencatalogi 1.5.3

2 of the 7 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/commonground-gateway-nginx:latestb72cf734d85f
expat@2.5.0-r1
2.6.4-r0
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

9,747
opentickopenchartVerified publisher0.1.01 of 1See more

opentick openchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
library/nginx:1.25.5a484819eb602
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

5,699
mockserveropen-charts1.1.01 of 1See more

mockserver open-charts 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
mockserver/mockserver:5.15.00f9ef78c9489
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7

Open the chart page →

1,258
anchore-engineopencloudcx1.13.01 of 2See more

anchore-engine opencloudcx 1.13.0

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.10.0bde9eedf639d
expat@2.2.5-4.el8
0:2.2.5-16.el8_10

Open the chart page →

18,032
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
expat@2.2.5-3
2.2.5-3ubuntu0.9+esm2
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

63,280
comacopencord1.0.03 of 9See more

comac opencord 1.0.0

3 of the 9 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
omecproject/onos-progran:1.0.05715e5648aa0
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

88,653
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

26,246
freeradiusopencord1.0.41 of 1See more

freeradius opencord 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.0.2121c8bfa904d8
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

15,718
mcord-cdn-remoteopencord0.1.62 of 2See more

mcord-cdn-remote opencord 0.1.6

2 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
woojoong/wowza:latestec230db19652
expat@2.2.5-3
2.2.5-3ubuntu0.9+esm2

Open the chart page →

42,655
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

29,156
omec-control-planeopencord0.1.312 of 8See more

omec-control-plane opencord 0.1.31

2 of the 8 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
omecproject/c3po-hssdb:master-latest28a90cc26716
expat@2.2.9-1build1
2.2.9-1ubuntu0.8
omecproject/mme-exporter:paging-latestbcc5f19fd676
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

40,825
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

12,942
onos-progranopencord1.2.71 of 2See more

onos-progran opencord 1.2.7

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
muluder/prograncontrollermcord:0.1.843b597a93da7
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

38,902
ponsimv2opencord1.2.31 of 2See more

ponsimv2 opencord 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
voltha/voltha-tester:1.7.0655c3048a602
expat@2.1.0-7ubuntu0.16.04.4
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

12,626
sebaopencord1.0.06 of 17See more

seba opencord 1.0.0

6 of the 17 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
tpdock/freeradius:2.2.93da600c95a49
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
voltha/voltha-cli:1.6.0c4e41e92f046
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
voltha/voltha-envoy:1.6.059ab2a00f712
expat@2.1.0-4ubuntu1.4
2.1.0-4ubuntu1.4+esm10
voltha/voltha-netconf:1.6.037f80524c207
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
voltha/voltha-ofagent:1.6.09ee8c1f4428c
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10
voltha/voltha-voltha:1.6.0ff596b62de59
expat@2.1.0-7ubuntu0.16.04.3
2.1.0-7ubuntu0.16.04.5+esm10

Open the chart page →

93,946
voltha-infraopencord2.14.03 of 10See more

voltha-infra opencord 2.14.0

3 of the 10 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
atomix/atomix:3.1.127738ff4f5c63
expat@2.2.10-2
2.2.10-2+deb11u7
freeradius/freeradius-server:3.0.2121c8bfa904d8
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2
voltha/voltha-onos:5.1.8e038acb950d3
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

41,101
opencost-parquet-exporteropencostVerified publisher0.3.11 of 1See more

opencost-parquet-exporter opencost 0.3.1

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

11,051
openldapopenldap0.1.11 of 2See more

openldap openldap 0.1.1

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ldapaccountmanager/lam:8.0.1d46cf25d1dda
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7

Open the chart page →

5,294
minioopenobserve5.0.71 of 2See more

minio openobserve 5.0.7

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
expat@2.2.5-10.el8_7.1
0:2.2.5-16.el8_10

Open the chart page →

7,471
akeyless-api-gatewayopenshift1.41.21 of 1See more

akeyless-api-gateway openshift 1.41.2

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
akeyless/base-rhel:0.0.14ba8900a0061
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

12,185
bpjstk-serviceopenshift1.0.06 of 6See more

bpjstk-service openshift 1.0.0

6 of the 6 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
andrianrf/backoffice:latest047a7837651e
expat@2.2.5-13.el8_10
0:2.2.5-16.el8_10
andrianrf/backoffice-be:latest6036614803d4
expat@2.5.0-1.el9
0:2.5.0-3.el9_5.1
andrianrf/bpjstk-service:latest46abe878d9d8
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
andrianrf/bpjstk-simulator:latestb63fdb51d39d
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
andrianrf/iso-client:latestba560086ce15
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
andrianrf/iso-server:latest7da47f525c7d
expat@2.5.0-1.el9
0:2.5.0-3.el9_5.1

Open the chart page →

35,116
canvas-oamportalopenshift4.0.01 of 1See more

canvas-oamportal openshift 4.0.0

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/oam:4.0.0ed8fd2062548
expat@2.2.5-13.el8_10
0:2.2.5-16.el8_10

Open the chart page →

7,519
chatbot-ai-sampleopenshift0.1.62 of 4See more

chatbot-ai-sample openshift 0.1.6

2 of the 4 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/ai-lab/llamacpp_python:latest70d138997acd
expat@2.5.0-2.el9_4.1
0:2.5.0-2.el9_4.2
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
expat@2.5.0-2.el9_4
0:2.5.0-2.el9_4.2

Open the chart page →

19,051
flomesh-consoleopenshift0.70.0-30-ubi82 of 2See more

flomesh-console openshift 0.70.0-30-ubi8

2 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
expat@2.2.5-10.el8
0:2.2.5-16.el8_10
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
expat@2.2.5-10.el8
0:2.2.5-16.el8_10

Open the chart page →

9,968
fsmopenshift0.1.8-ubi.61 of 6See more

fsm openshift 0.1.8-ubi.6

1 of the 6 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
expat@2.2.5-10.el8
0:2.2.5-16.el8_10

Open the chart page →

16,563
orion-ldopenshift1.0.32 of 2See more

orion-ld openshift 1.0.3

2 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
expat@2.2.5-4.el8
0:2.2.5-16.el8_10
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
expat@2.2.5-4.el8
0:2.2.5-16.el8_10

Open the chart page →

14,727
osm-edgeopenshift1.2.1-ubi81 of 7See more

osm-edge openshift 1.2.1-ubi8

1 of the 7 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
expat@2.2.5-10.el8
0:2.2.5-16.el8_10

Open the chart page →

19,471
redhat-springboot-restopenshift0.0.11 of 1See more

redhat-springboot-rest openshift 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7

Open the chart page →

3,066
redhat-trusted-application-pipelineopenshift1.0.21 of 2See more

redhat-trusted-application-pipeline openshift 1.0.2

1 of the 2 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
expat@2.5.0-1.el9
0:2.5.0-3.el9_5.1

Open the chart page →

8,643
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

13,612
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

11,740
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

13,573
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

13,556
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

13,460
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
expat@2.2.5-11.el8
0:2.2.5-16.el8_10

Open the chart page →

13,105
open-vpnopenvpn0.0.11 of 1See more

open-vpn openvpn 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

15,602
openwhiskopenwhisk1.0.01 of 10See more

openwhisk openwhisk 1.0.0

1 of the 10 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
openwhisk/ow-utils:1.0.0c80dba0de3aa
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2

Open the chart page →

36,252
opslevelopslevelVerified publisher2025.1.221 of 10See more

opslevel opslevel 2025.1.22

1 of the 10 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2023-02-28T00-12-59Zc631532a394e
expat@2.2.5-10.el8_7.1
0:2.2.5-16.el8_10

Open the chart page →

5,658
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
expat@2.1.0-4ubuntu1.4
2.1.0-4ubuntu1.4+esm10

Open the chart page →

26,364
grrosdfir-infrastructureVerified publisher1.0.31 of 5See more

grr osdfir-infrastructure 1.0.3

1 of the 5 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

11,021
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.01 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

1 of the 40 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

72,547
lokiot-container-kit1.0.11 of 5See more

loki ot-container-kit 1.0.1

1 of the 5 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.24-alpinebe76a26e238d
expat@2.6.2-r0
2.6.4-r0

Open the chart page →

4,844
pgaot-container-kit1.0.31 of 6See more

pga ot-container-kit 1.0.3

1 of the 6 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.26.1b8d5067137fe
expat@2.5.0-r2
2.6.4-r0

Open the chart page →

5,143
vmot-container-kit0.0.31 of 7See more

vm ot-container-kit 0.0.3

1 of the 7 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
expat@2.6.2-r0
2.6.4-r0

Open the chart page →

5,418
radiusp2p-avs0.1.01 of 1See more

radius p2p-avs 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
theradius/loggia:0.463ba348546ec
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

12,440
ungatep2p-avs0.1.02 of 3See more

ungate p2p-avs 0.1.0

2 of the 3 container images this version deploys carry CVE-2024-50602.

Container imageDigestPackageFixed in
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
expat@2.5.0-1
2.5.0-1+deb12u2
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

27,597

Container images carrying it

1,293 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
openproject/hocuspocus:release-338001b288dc1359dfb5
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
openspeedtest/latest:v2.0.0d4d62f4b7d85
expat@2.5.0-r0
2.6.4-r0
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
expat@2.2.9-1ubuntu0.6
2.2.9-1ubuntu0.8
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
expat@2.2.9-1ubuntu0.6
2.2.9-1ubuntu0.8
1
openthread/otbr:latestf307f59f6432
expat@2.2.5-3ubuntu0.9
2.2.5-3ubuntu0.9+esm2
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
expat@2.2.5-3ubuntu0.2
2.2.5-3ubuntu0.9+esm2
1
openzaak/open-notificaties:1.3.02e65313b9b10
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7
1
openzaak/open-zaak:1.6.02ca2ea6e0ae9
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7
1
opsmx11/issuegen:v2.1.05c50ca123d88
expat@2.1.0-4ubuntu1.4
2.1.0-4ubuntu1.4+esm10
1
otel/opentelemetry-ebpf-kernel-collector:v0.10.269e19991e328
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
1
owncloud/server:10.15.051d9b74fc2a8
expat@2.2.9-1ubuntu0.6
2.2.9-1ubuntu0.8
1
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
1
pecan/web:1.7.2814d678c5550
expat@2.2.10-2
2.2.10-2+deb11u7
1
penpotapp/backend:2.2.147853d9bb9dd
expat@2.4.7-1ubuntu0.4
2.4.7-1ubuntu0.5
1
penpotapp/exporter:2.2.15c835ffd87ab
expat@2.4.7-1ubuntu0.4
2.4.7-1ubuntu0.5
1
penpotapp/frontend:2.2.18974882a0542
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
1
phan2410/dummy-service:0.0.89c6ed6de26ca
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
phntom/binaryvision-tlo-static:0.0.4e8b9ac93a3dd
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7
1
phntom/email-manager:0.1.22d8e2a9f2f085
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
1
phntom/external-dns-host-network:0.0.123adadbac8443
expat@2.2.10-2+deb11u4
2.2.10-2+deb11u7
1
phntom/mattermost-defaultbackend:6.4.0c318dc90a4bf
expat@2.2.10-2
2.2.10-2+deb11u7
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.5
1
phntom/postgresql-backup-s3:1.0.2249b6488f618b
expat@2.5.0-r0
2.6.4-r0
1
photoprism/photoprism:220629-jammy2954334adbda
expat@2.4.7-1
2.4.7-1ubuntu0.5
1
photoprism/photoprism:240711-cefc6fd632ca74
expat@2.6.1-2build1
2.6.1-2ubuntu0.2
1
phpmyadmin/phpmyadmin:5.138437e021deb
expat@2.2.10-2+deb11u3
2.2.10-2+deb11u7
1
phsmith/rundeck-exporter:2.6.10265a7616ae8
expat@2.5.0-r1
2.6.4-r0
1
pihole/pihole:2023.05.0b83258064f54
expat@2.2.10-2+deb11u5
2.2.10-2+deb11u7
1
pk910/powfaucet:v2-stable3dcae6a62896
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
expat@2.2.5-3.el8
0:2.2.5-16.el8_10
1
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
expat@2.2.5-11.el8
0:2.2.5-16.el8_10
1
pnnlmiscscripts/k8s-node-image:1.22.17-nginx-362b3ae9b5ec25
expat@2.6.2-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image:1.24.17-nginx-23952d87cca3d2
expat@2.6.2-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image:1.23.17-nginx-36a5ee1dea30e4
expat@2.6.2-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image:1.21.14-nginx-36c19a40d7435d
expat@2.6.2-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.28.15-nginx-72b91d6a46e06
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.25.16-nginx-772c202c43c0aa
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.24.17-nginx-882c8dc938b2f9
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.27.16-nginx-306e1a36d646a3
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.23.17-nginx-3479ada675515f
expat@2.5.0-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.26.15-nginx-579785e5b82334
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.22.17-nginx-34b85e437ae261
expat@2.5.0-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.21.14-nginx-33fa8f5906d36a
expat@2.5.0-r0
2.6.4-r0
1
pnnlmiscscripts/k8s-node-image9:1.29.10-nginx-7fcd82530bc8b
expat@2.6.3-r0
2.6.4-r0
1
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
expat@2.2.5-11.el8
0:2.2.5-16.el8_10
1
postgis/postgis:15-3.3-alpine4738bee21eb6
expat@2.5.0-r1
2.6.4-r0
1
postgis/postgis:17-3.4-alpine5a1dbedac34e
expat@2.6.3-r0
2.6.4-r0
1
praravind1801/helmimages:3.0.0f29d637b9ce1
expat@2.5.0-1
2.5.0-1+deb12u2
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
expat@2.5.0-1
2.5.0-1+deb12u2
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.