StackRadar

CVE-2024-8176

High

Advisory

Published 14 Mar 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.013
69th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,077
of 17,781 indexed, latest versions
Container images
1,057
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,077 of 17,781 indexed charts deploy, on 1,057 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+23 more2.4.7-1ubuntu0.6, 2.5.0-1+deb12u2, 2.6.1-2ubuntu0.3696
expatapk2.5.0-r1, 2.5.0-r2, 2.5.0-r4, 2.6.0-r0+4 more2.7.0-r0211
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+17 more0:2.2.5-17.el8_10, 0:2.5.0-3.el9_5.3, 0:2.5.0-5.el9_6150
OSV records
ALPINE-CVE-2024-8176CGA-45r8-c55g-5gv3DEBIAN-CVE-2024-8176RHSA-2025:3531RHSA-2025:3913RHSA-2025:7444RLSA-2025:3531RLSA-2025:3913UBUNTU-CVE-2024-8176
Also known as
CGA-w842-53hm-6m5r, USN-7424-1

Charts affected

1,077 by stars
ChartLatestAffected imagesRadar Score
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
expat@2.2.5-10.el8_7.1
0:2.2.5-17.el8_10

Open the chart page →

2,903
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

40,238
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

23,353
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
expat@2.2.5-3ubuntu0.2
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
expat@2.2.9-1ubuntu0.6
no fix listed
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

22,568
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
expat@2.2.5-11.el8
0:2.2.5-17.el8_10
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
expat@2.2.5-11.el8
0:2.2.5-17.el8_10

Open the chart page →

14,728
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,706
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,706
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
expat@2.2.5-8.el8_6.2
0:2.2.5-17.el8_10

Open the chart page →

13,352
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
expat@2.4.7-1
2.4.7-1ubuntu0.6

Open the chart page →

10,061
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6

Open the chart page →

18,277
resource-provisioningassist-iot-resource-provisioning1.0.02 of 7See more

resource-provisioning assist-iot-resource-provisioning 1.0.0

2 of the 7 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/resource-provisioning_api:1.0.044a37b00d4f8
expat@2.5.0-r1
2.7.0-r0
assistiot/resource-provisioning_im:1.0.0a942dc14030a
expat@2.5.0-r2
2.7.0-r0

Open the chart page →

8,032
sdn-controllerassist-iot-sdn-controller2.4.01 of 1See more

sdn-controller assist-iot-sdn-controller 2.4.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/sdn_controller:2.4.0ea254b6d8a31
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

7,936
semantic-translationassist-iot-semantic-translation1.0.11 of 1See more

semantic-translation assist-iot-semantic-translation 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/semantic_translation:latest2a2587804717
expat@2.5.0-r1
2.7.0-r0

Open the chart page →

505
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
expat@2.5.0-1
2.5.0-1+deb12u2
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
expat@2.5.0-1
2.5.0-1+deb12u2
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

45,363
traffic-classificationassist-iot-traffic-classification2.0.01 of 2See more

traffic-classification assist-iot-traffic-classification 2.0.0

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/traffic-classification_api:2.0.0e32b87786142
expat@2.6.2-r0
2.7.0-r0

Open the chart page →

1,166
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

9,412
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

6,297
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
kuzwolka/aws9:news3e8880fbbb96
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
kuzwolka/aws9:blog4a7707410bf1
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
kuzwolka/aws9:shop84a9d9766345
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

18,344
aws-secrets-synchronizeraws-secrets-synchronizer0.2.11 of 1See more

aws-secrets-synchronizer aws-secrets-synchronizer 0.2.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/reezogit/aws-secrets-synchronizer:0.2.1111ed7cf7b39
expat@2.5.0-r1
2.7.0-r0

Open the chart page →

956
axosyslog-collectoraxosyslogVerified publisher0.8.11 of 1See more

axosyslog-collector axosyslog 0.8.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/axoflow/axosyslog:4.5.0aa7831e207cd
expat@2.5.0-r1
2.7.0-r0

Open the chart page →

1,516
azp-agentazp-agent1.2.01 of 1See more

azp-agent azp-agent 1.2.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
cheveo/azp-agent:1.0.282240f890884
expat@2.4.7-1ubuntu0.5
2.4.7-1ubuntu0.6

Open the chart page →

3,268
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
expat@2.5.0-1
2.5.0-1+deb12u2

Open the chart page →

6,297
bookinfobasictechno0.1.03 of 6See more

bookinfo basictechno 0.1.0

3 of the 6 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.17.0b8f16a765eea
expat@2.2.9-1ubuntu0.4
no fix listed
istio/examples-bookinfo-reviews-v2:1.17.072f25a55f078
expat@2.2.9-1ubuntu0.4
no fix listed
istio/examples-bookinfo-reviews-v3:1.17.08f92fc1b6592
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

20,671
helm-samplebehnambm-helm-chart1.0.11 of 3See more

helm-sample behnambm-helm-chart 1.0.1

1 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
behnambm/docker-sample:v1bd3ad88afff9
expat@2.6.2-r0
2.7.0-r0

Open the chart page →

2,727
pagesberrutig-pages1.0.02 of 3See more

pages berrutig-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
expat@2.4.7-1ubuntu0.4
2.4.7-1ubuntu0.6

Open the chart page →

7,190
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

7,956
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

22,891
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

10,145
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

13,459
colosseumbook-k8sinfra-v21.0.182 of 5See more

colosseum book-k8sinfra-v2 1.0.18

2 of the 5 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-cms:loge74b43c7f492
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
sysnet4admin/colosseum-prm:log5802bfcd7fed
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

26,996
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

6,220
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
library/cassandra:3.11.65aa8400b4b3b
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

19,229
jenkinsbook-k8sinfra-v25.1.122 of 2See more

jenkins book-k8sinfra-v2 5.1.12

2 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
expat@2.5.0-1
2.5.0-1+deb12u2
kiwigrid/k8s-sidecar:1.26.2e271016441af
expat@2.6.2-r0
2.7.0-r0

Open the chart page →

8,323
kube-prometheus-stackbook-k8sinfra-v265.5.11 of 6See more

kube-prometheus-stack book-k8sinfra-v2 65.5.1

1 of the 6 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
expat@2.6.3-r0
2.7.0-r0

Open the chart page →

6,036
pagesbrian-pages1.0.02 of 3See more

pages brian-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
pagesbrixton-mayuribhavsar23-pages1.0.02 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
pagesbrixton-pages1.0.02 of 3See more

pages brixton-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
expat@2.2.9-1build1
no fix listed

Open the chart page →

11,869
kubevirt-managerbuttahtoastVerified publisher0.1.31 of 1See more

kubevirt-manager buttahtoast 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
kubevirtmanager/kubevirt-manager:1.3.3df3ea27d4a9e
expat@2.6.0-r0
2.7.0-r0

Open the chart page →

1,497
ct-singlecalltelemetry0.8.41 of 7See more

ct-single calltelemetry 0.8.4

1 of the 7 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
calltelemetry/web:0.8.1-rc7205d13269e350
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

10,629
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
geoservercamptocamp20.0.36 of 12See more

geoserver camptocamp2 0.0.3

6 of the 12 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
expat@2.2.9-1build1
no fix listed

Open the chart page →

88,335
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

3,311
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

5,039
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
expat@2.2.5-3ubuntu0.7
no fix listed

Open the chart page →

6,143
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
expat@2.4.7-1ubuntu0.5
2.4.7-1ubuntu0.6

Open the chart page →

5,886
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-8176.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2

Open the chart page →

10,776

Container images carrying it

1,057 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
expat@2.2.5-3ubuntu0.7
no fix listed
1
alpine/helm105741fa6621
expat@2.6.2-r0
2.7.0-r0
1
alpine/k8s:1.27.321b24e6bf801
expat@2.5.0-r1
2.7.0-r0
1
alpine/k8s:1.31.49c4976d47656
expat@2.6.4-r0
2.7.0-r0
1
alpine/k8s:1.30.0bd01dae02676
expat@2.6.2-r0
2.7.0-r0
1
alpine/k8s:1.30.2cd560fce90f7
expat@2.6.2-r0
2.7.0-r0
1
alpine/k8s:1.28.13e5c0b053fed7
expat@2.6.2-r0
2.7.0-r0
1
alpine/k8s:1.32.3eec354133193
expat@2.6.4-r0
2.7.0-r0
1
alpine/k8s:1.28.2fc059f056ad0
expat@2.5.0-r1
2.7.0-r0
1
anchore/anchore-engine:v0.10.0bde9eedf639d
expat@2.2.5-4.el8
0:2.2.5-17.el8_10
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
expat@2.2.5-3.el8
0:2.2.5-17.el8_10
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
expat@2.6.1-2ubuntu0.1
2.6.1-2ubuntu0.3
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
1
andreymileshin/kube-info:v0.1.0f7b300bc9e66
expat@2.6.3-r0
2.7.0-r0
1
andreymileshin/zerossl-issuer:v1.0.0e0825acc9e48
expat@2.6.3-r0
2.7.0-r0
1
andrianrf/backoffice:latest047a7837651e
expat@2.2.5-13.el8_10
0:2.2.5-17.el8_10
1
andrianrf/backoffice-be:latest6036614803d4
expat@2.5.0-1.el9
0:2.5.0-3.el9_5.3
1
andrianrf/iso-server:latest7da47f525c7d
expat@2.5.0-1.el9
0:2.5.0-3.el9_5.3
1
anguda/ant-media:2.5c435285fc241
expat@2.2.9-1ubuntu0.6
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
apache/activemq-artemis:2.37.0bae523439ee3
expat@2.6.1-2build1
2.6.1-2ubuntu0.3
1
apache/airflow:2.8.4-python3.964e58748b6b9
expat@2.5.0-1
2.5.0-1+deb12u2
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u2
1
apache/airflow:2.8.1e5560ad0b86e
expat@2.5.0-1
2.5.0-1+deb12u2
1
apache/camel-k:1.10.43bb13d14f64a
expat@2.2.5-8.el8_6.3
0:2.2.5-17.el8_10
1
apache/druid:29.0.10cef139b6bf1
expat@2.5.0-1
2.5.0-1+deb12u2
1
apache/iotdb:0.13.3-nodeafa47bf1692a
expat@2.2.9-1ubuntu0.4
no fix listed
1
apache/kafka:3.9.0fbc7d7c428e3
expat@2.6.3-r0
2.7.0-r0
1
apache/nifi-registry:1.27.063b8e3e40742
expat@2.4.7-1ubuntu0.3
2.4.7-1ubuntu0.6
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
expat@2.2.9-1build1
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
expat@2.4.7-1ubuntu0.4
2.4.7-1ubuntu0.6
1
apachepulsar/pulsar:2.9.0d056c89b7131
expat@2.2.9-1build1
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
expat@2.2.9-1build1
no fix listed
1
apache/rocketmq:5.3.0434d8398f996
expat@2.6.1-2build1
2.6.1-2ubuntu0.3
1
apache/rocketmq-exporter:0.0.2c8fb51195444
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
1
apache/skywalking-oap-server:9.2.0133d35d2c263
expat@2.4.7-1
2.4.7-1ubuntu0.6
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
expat@2.2.9-1build1
no fix listed
1
apache/skywalking-ui:9.2.0295f1dc87d98
expat@2.4.7-1
2.4.7-1ubuntu0.6
1
apache/skywalking-ui:8.9.180530f0308a5
expat@2.2.9-1build1
no fix listed
1
apache/superset:4.0.1ab9467fd712c
expat@2.5.0-1
2.5.0-1+deb12u2
1
apache/tika:2.9.0.092d055a84e9e
expat@2.4.7-1ubuntu0.2
2.4.7-1ubuntu0.6
1
apecloud/kubeblocks-csi-driver:0.1.3c93655ccb2d7
expat@2.5.0-r1
2.7.0-r0
1
apecloud/smartfs-csi-driver:0.1.1ff2858eab9cc
expat@2.2.5-11.el8
0:2.2.5-17.el8_10
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
expat@2.2.5-4.el8
0:2.2.5-17.el8_10
1
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
expat@2.2.5-11.el8
0:2.2.5-17.el8_10
1
apicurio/apicurio-studio-ui:0.2.62.Final349c845270c2
expat@2.2.5-11.el8
0:2.2.5-17.el8_10
1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
expat@2.2.5-11.el8
0:2.2.5-17.el8_10
1
aquasec/harbor-scanner-trivy:0.31.26e790e233872
expat@2.6.2-r0
2.7.0-r0
1
aquasec/trivy:0.43.1944a04445179
expat@2.5.0-r1
2.7.0-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.