StackRadar

CVE-2025-7425

High

Advisory

Published 10 Jul 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.004
29th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
732
of 17,787 indexed, latest versions
Container images
807
deployed by those charts
Fix available
2 of 4
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 732 of 17,787 indexed charts deploy, on 807 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+40 more2.9.1+dfsg1-3ubuntu4.13+esm10, 2.9.3+dfsg1-1ubuntu0.7+esm11, 2.9.4+dfsg1-6.1ubuntu1.9+esm6, 2.9.10+dfsg-5ubuntu0.20.04.10+esm3+4 more495
libxml2rpm2.9.1-6.el7_2.3, 2.9.1-6.el7_9.6, 2.9.1-6.el7.4, 2.9.1-6.el7.5+28 more0:2.9.1-6.el7_9.12, 0:2.9.7-21.el8_10.2, 0:2.9.13-11.el9_6, 2.13.8-3.1291
libxsltdeb1.1.39-0exp1build1, 1.1.39-0exp1ubuntu0.24.04.2, 1.1.39-0exp1ubuntu0.24.04.3, 1.1.45-0.1no fix listed24
libxsltapk1.1.45-r3no fix listed3
OSV records
CGA-393j-mrfx-mmvpRHSA-2025:12447RHSA-2025:12450RHSA-2025:13464RLSA-2025:12447UBUNTU-CVE-2025-7425DSA-5990-1openSUSE-SU-2025:15363-1
Also known as
CGA-j6x2-xhvh-29pw, RHSA-2025:13308, RHSA-2025:13310, RHSA-2025:13311, RHSA-2025:13312, RHSA-2025:13313, RHSA-2025:13314, USN-7852-1, USN-7852-2, USN-7896-1

Charts affected

732 by stars
ChartLatestAffected imagesRadar Score
galaxy-depscloudve1.1.11 of 7See more

galaxy-deps cloudve 1.1.1

1 of the 7 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

10,531
galaxy-stablecloudve2.0.02 of 5See more

galaxy-stable cloudve 2.0.0

2 of the 5 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm10
galaxy/galaxy-stable:v18.018e577a626dfd
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm10

Open the chart page →

70,895
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.9+esm6

Open the chart page →

14,270
door-agentcnoVerified publisher3.0.151 of 15See more

door-agent cno 3.0.15

1 of the 15 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
beopenit/door-helm:v3.0.1b4d9f9bee224
libxml2@2.9.7-16.el8_8.1
0:2.9.7-21.el8_10.2

Open the chart page →

19,338
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

13,220
sumoconsensys0.4.1451 of 4See more

sumo consensys 0.4.145

1 of the 4 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
libxml2@2.9.7-13.el8
0:2.9.7-21.el8_10.2

Open the chart page →

5,958
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

14,559
kubernetes-mcpcowboysysopVerified publisher2.0.01 of 1See more

kubernetes-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
libxml2@2.9.13-10.el9_6
0:2.9.13-11.el9_6

Open the chart page →

1,797
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

3,009
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

4,770
cp-helm-chartscp-helm-charts0.6.17 of 8See more

cp-helm-charts cp-helm-charts 0.6.1

7 of the 8 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
confluentinc/cp-zookeeper:6.1.078c190f4472c
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2

Open the chart page →

58,857
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
libxml2@2.9.1-6.el7.5
0:2.9.1-6.el7_9.12

Open the chart page →

4,624
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

3,860
csghubcsghubVerified publisher2.4.31 of 34See more

csghub csghub 2.4.3

1 of the 34 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opencsghq/kubectl:latestb6d87e1048c2
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

58,897
cypikcypik-app0.1.01 of 2See more

cypik cypik-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

7,503
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

16,604
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
libxml2@2.9.13+dfsg-1ubuntu0.4
2.9.13+dfsg-1ubuntu0.10

Open the chart page →

5,398
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
razzy10/product-service:latest702e411956db
libxml2@2.9.13-10.el9_6
0:2.9.13-11.el9_6

Open the chart page →

3,547
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm6

Open the chart page →

27,728
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.9+esm6

Open the chart page →

18,863
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.6

Open the chart page →

6,123
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.6

Open the chart page →

5,974
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm6

Open the chart page →

22,405
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
libxml2@2.9.13+dfsg-1ubuntu0.7
2.9.13+dfsg-1ubuntu0.10

Open the chart page →

6,172
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm6

Open the chart page →

24,335
datadog-operatordatadog-test0.1.21 of 1See more

datadog-operator datadog-test 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
datadog/operator:0.3.117f08a860090
libxml2@2.9.1-6.el7.4
0:2.9.1-6.el7_9.12

Open the chart page →

3,980
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.2

Open the chart page →

7,486
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

10,090
dellhw_exporterdellhw-exporterVerified publisher1.0.11 of 1See more

dellhw_exporter dellhw-exporter 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6

Open the chart page →

3,191
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
2.9.10+dfsg-5ubuntu0.20.04.10+esm3

Open the chart page →

14,856
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

9,607
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
2.9.13+dfsg-1ubuntu0.10

Open the chart page →

12,949
devtron-enterprisedevtron48.0.01 of 28See more

devtron-enterprise devtron 48.0.0

1 of the 28 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

68,240
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

3,891
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

9,607
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
2.9.13+dfsg-1ubuntu0.10

Open the chart page →

12,949
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.2

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.01 of 28See more

devtron-enterprise devtron-labs 48.0.0

1 of the 28 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

32,902
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

3,891
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

4,046
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

7,141
ownclouddjjudas21Verified publisher0.3.231 of 3See more

owncloud djjudas21 0.3.23

1 of the 3 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

10,035
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.6

Open the chart page →

16,954
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
libxml2@2.12.7+dfsg+really2.9.14-2.1
2.12.7+dfsg+really2.9.14-2.1+deb13u1

Open the chart page →

5,174
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u4

Open the chart page →

14,627
dnation-kubernetes-monitoring-stackdnationcloud4.0.22 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

2 of the 17 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2

Open the chart page →

21,641
doris-foundationdbdorisVerified publisher25.8.01 of 4See more

doris-foundationdb doris 25.8.0

1 of the 4 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6

Open the chart page →

3,167
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
libxml2@2.9.13+dfsg-1ubuntu0.2
2.9.13+dfsg-1ubuntu0.10

Open the chart page →

24,917
drogue-cloud-coredrogue-iotVerified publisher0.7.1120 of 22See more

drogue-cloud-core drogue-iot 0.7.11

20 of the 22 container images this version deploys carry CVE-2025-7425.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libxml2@2.9.13-2.el9
0:2.9.13-11.el9_6
quay.io/keycloak/keycloak:20.0054ef67eb7da
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.2

Open the chart page →

55,666

Container images carrying it

807 by charts deploying them

A fixed version is listed for 2 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
libxml2@2.9.7-18.el8_9
0:2.9.7-21.el8_10.2
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
libxml2@2.9.13-6.el9_5.2
0:2.9.13-11.el9_6
1
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.2
1
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
libxml2@2.9.7-12.el8_5
0:2.9.7-21.el8_10.2
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.2
1
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
libxml2@2.9.13-10.el9_6
0:2.9.13-11.el9_6
1
quay.io/maximilianopizarro/nfl-api-bills:1.0.1b596a4687bb0
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/maximilianopizarro/nfl-wallet-api-customers:1.0.1d50c80a85b35
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/maximilianopizarro/nfl-wallet-api-raiders:1.0.1f9c71dc2bc5f
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
libxml2@2.9.13-6.el9_5.2
0:2.9.13-11.el9_6
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
libxml2@2.9.13-6.el9_5.2
0:2.9.13-11.el9_6
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libxml2@2.9.7-12.el8_5
0:2.9.7-21.el8_10.2
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libxml2@2.9.7-5.el8
0:2.9.7-21.el8_10.2
1
quay.io/minio/directpv:v4.0.84560083eb77d
libxml2@2.9.7-16.el8_8.1
0:2.9.7-21.el8_10.2
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.2
1
quay.io/mittwald/brudi-operator:v0.2.3edb322094359
libxml2@2.9.7-16.el8_8.1
0:2.9.7-21.el8_10.2
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.2
1
quay.io/openshift/origin-cli:4.66722d5041b47
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.2
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.2
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
libxml2@2.9.7-13.el8_6.4
0:2.9.7-21.el8_10.2
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7+esm11
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.2
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
libxml2@2.9.13-3.el9_2.1
0:2.9.13-11.el9_6
1
quay.io/redhat-cop/cert-utils-operator:v1.3.120290e7b2800a
libxml2@2.9.7-18.el8_9
0:2.9.7-21.el8_10.2
1
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.2
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.2
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
libxml2@2.9.13-6.el9_4
0:2.9.13-11.el9_6
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
libxml2@2.9.7-16.el8
0:2.9.7-21.el8_10.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.