StackRadar

CVE-2025-9714

Medium

Advisory

Published 4 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.2
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
955
of 17,787 indexed, latest versions
Container images
1,038
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 955 of 17,787 indexed charts deploy, on 1,038 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+49 more2.9.1+dfsg1-3ubuntu4.13+esm9, 2.9.3+dfsg1-1ubuntu0.7+esm10, 2.9.4+dfsg1-6.1ubuntu1.9+esm5, 2.9.10+dfsg-5ubuntu0.20.04.10+esm2+5 more714
libxml2rpm2.9.1-6.el7_2.3, 2.9.1-6.el7_9.6, 2.9.1-6.el7.4, 2.9.1-6.el7.5+30 more0:2.9.1-6.el7_9.14, 0:2.9.7-21.el8_10.4, 0:2.9.13-3.el9_2.10, 0:2.9.13-13.el9_4+1 more324
OSV records
DEBIAN-CVE-2025-9714RHSA-2025:22162RHSA-2025:22163RHSA-2025:22376RHSA-2026:11349RHSA-2026:22420RLSA-2025:22376RLSA-2026:11349UBUNTU-CVE-2025-9714DLA-4319-1
Also known as
RHSA-2025:22377, RHSA-2026:14832, RHSA-2026:14858, RHSA-2026:15967, USN-7743-1

Charts affected

955 by stars
ChartLatestAffected imagesRadar Score
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

11,855
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

10,418
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
libxml2@2.9.10+dfsg-5
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

24,355
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm5

Open the chart page →

26,996
theme-parkgeek-cookbookVerified publisher1.2.21 of 1See more

theme-park geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/theme-park:v1.7.3f8a5ec8f4669
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,286
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

11,909
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

17,996
pgbouncerglassflowVerified publisher0.1.01 of 1See more

pgbouncer glassflow 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/pgbouncer:1.23.192356da09704
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

3,085
glpiglpi-chart0.1.11 of 3See more

glpi glpi-chart 0.1.1

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
vdiogov/glpi-conteiner:latest6945f84f0058
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

12,270
opentelemetry-demogpg-dev0.33.83 of 27See more

opentelemetry-demo gpg-dev 0.33.8

3 of the 27 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

47,117
video-analytics-demogpu-operator0.1.91 of 3See more

video-analytics-demo gpu-operator 0.1.9

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

15,780
mimir-openshift-experimentalgrafana2.1.02 of 4See more

mimir-openshift-experimental grafana 2.1.0

2 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.4
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.4

Open the chart page →

17,759
pyroscope-monitoringgrafana0.1.11 of 6See more

pyroscope-monitoring grafana 0.1.1

1 of the 6 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
libxml2@2.9.13-10.el9_6
0:2.9.13-14.el9_7

Open the chart page →

8,226
hatchet-hahatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-ha hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

7,374
hatchet-stackhatchetOfficialVerified publisher0.18.01 of 8See more

hatchet-stack hatchet 0.18.0

1 of the 8 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

7,374
heliconehelicone0.1.421 of 14See more

helicone helicone 0.1.42

1 of the 14 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

23,472
hello-worldhello-world-pponyVerified publisher0.3.01 of 1See more

hello-world hello-world-ppony 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/nginx:1.25.49ff236ed47fe
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

5,851
helm-airportshelm-airports0.1.01 of 7See more

helm-airports helm-airports 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
libxml2@2.9.10+dfsg-6.7+deb11u7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

12,696
airports-postgreshelm-airports-dan0.1.01 of 1See more

airports-postgres helm-airports-dan 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
libxml2@2.9.10+dfsg-6.7+deb11u7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,026
helm-airportshelm-airports-dan0.1.01 of 7See more

helm-airports helm-airports-dan 0.1.0

1 of the 7 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
libxml2@2.9.10+dfsg-6.7+deb11u7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

5,573
airports-postgreshelm-airports-postgres0.1.01 of 1See more

airports-postgres helm-airports-postgres 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
postgis/postgis:latest01a6a70e41e6
libxml2@2.9.10+dfsg-6.7+deb11u7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,026
ditto-operatorhelm-chartsVerified publisher0.3.01 of 1See more

ditto-operator helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4

Open the chart page →

2,673
hawkbit-operatorhelm-chartsVerified publisher0.1.41 of 1See more

hawkbit-operator helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ctron/hawkbit-operator:0.1.48fdea8f76499
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.4

Open the chart page →

5,791
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4

Open the chart page →

24,174
streamsheetshelm-chartsVerified publisher0.2.35 of 8See more

streamsheets helm-charts 0.2.3

5 of the 8 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4

Open the chart page →

89,949
nginx-charthelm-chart-sample-app0.1.01 of 1See more

nginx-chart helm-chart-sample-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
rraahul/test:latestbfe2c1183bc0
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

4,596
chart-bookhelm-deploy-book0.1.01 of 3See more

chart-book helm-deploy-book 0.1.0

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
dannielkil/book-frontend:latest937993927694
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

8,618
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

18,923
immichhelmforgeVerified publisher1.2.81 of 5See more

immich helmforge 1.2.8

1 of the 5 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
libxml2@2.9.14+dfsg-1.3~deb12u4
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

11,080
middlewarehelmforgeVerified publisher1.2.61 of 4See more

middleware helmforge 1.2.6

1 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
middlewareeng/middleware:0.3.1747d880812f1
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

9,704
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
2.12.7+dfsg+really2.9.14-2.1+deb13u2

Open the chart page →

4,741
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

11,441
openaevhelm-openbasVerified publisher2.0.51 of 7See more

openaev helm-openbas 2.0.5

1 of the 7 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

7,502
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

25,099
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
libxml2@2.9.13+dfsg-1ubuntu0.7
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

6,076
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

5,114
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

14,350
postgreshomeenterpriseinc0.9.01 of 1See more

postgres homeenterpriseinc 0.9.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/postgres:14.0db927beee892
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

949
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

14,629
hammerspace-csihscsi1.2.81 of 6See more

hammerspace-csi hscsi 1.2.8

1 of the 6 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
hammerspaceinc/csi-plugin:v1.2.8-rc2395bee4504fc
libxml2@2.9.13-12.el9_6
0:2.9.13-14.el9_7

Open the chart page →

4,440
eoloplanthttpd-eoloplant0.1.02 of 7See more

eoloplant httpd-eoloplant 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.4
codeurjc/weatherservice:v1.0b9e2f7234349
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.4

Open the chart page →

32,336
nexus3huangchengwu-helm-chart0.1.01 of 1See more

nexus3 huangchengwu-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
sonatype/nexus3:3.53.04bd975493104
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.4

Open the chart page →

4,462
ibm-app-navigatoribm-charts1.0.15 of 5See more

ibm-app-navigator ibm-charts 1.0.1

5 of the 5 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/app-nav-api:1.0.1ce9d2a564273
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/app-nav-controller:1.0.1ee4624ba513d
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/app-nav-init:1.0.1240ff499eb5b
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/app-nav-ui:1.0.1e2a86997b36b
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/app-nav-was-controller:1.0.1a6748792da26
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14

Open the chart page →

32,911
ibm-business-automation-insights-devibm-charts3.2.06 of 6See more

ibm-business-automation-insights-dev ibm-charts 3.2.0

6 of the 6 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/bai-admin-dev:19.0.202d882f2836e
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/bai-elasticsearch-dev:19.0.25441dba2fa00
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/bai-flink-dev:19.0.2e31ff09e8aad
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/bai-flink-zookeeper-dev:19.0.258548034cf55
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/bai-init-dev:19.0.2b138f1eac0b1
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14
ibmcom/bai-setup-dev:19.0.2b8e8df11072d
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14

Open the chart page →

39,343
ibm-object-storage-pluginibm-charts1.1.52 of 2See more

ibm-object-storage-plugin ibm-charts 1.1.5

2 of the 2 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.4
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
libxml2@2.9.7-7.el8
0:2.9.7-21.el8_10.4

Open the chart page →

12,460
ibm-open-libertyibm-charts1.10.01 of 1See more

ibm-open-liberty ibm-charts 1.10.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
openliberty/open-liberty:javaee8-ubi-min6f9278b8b2cc
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14

Open the chart page →

2,062
ibm-open-liberty-springibm-charts1.10.01 of 1See more

ibm-open-liberty-spring ibm-charts 1.10.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
openliberty/open-liberty:springBoot2-ubi-minc649524bc428
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14

Open the chart page →

2,062
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.9+esm5

Open the chart page →

12,632
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm10

Open the chart page →

25,184
ibm-voice-gateway-devibm-charts3.1.01 of 2See more

ibm-voice-gateway-dev ibm-charts 3.1.0

1 of the 2 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ibmcom/voice-gateway-mr:1.0.5.00762ab1df6c1
libxml2@2.9.1-6.el7_2.3
0:2.9.1-6.el7_9.14

Open the chart page →

4,504

Container images carrying it

1,038 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/codingducksrl/wordpress:6.0.23113c0960507
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/berichtservice-nginx:latest833d26df3840
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/eav-component-nginx:latestd785c893096c
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/education-component-nginx:latest38900bc76ee0
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/skeleton-pip:devce1ebe9387a2
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/user-component-nginx:latestb721579df8c3
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/waardepapieren-nginx:latestaf31cf6cd59f
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
1
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/kubectl:1.25e37d61b5277c
libxml2@2.9.7-18.el8_9
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
libxml2@2.9.13-12.el9_6
0:2.9.13-14.el9_7
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
2.12.7+dfsg+really2.9.14-2.1+deb13u2
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
libxml2@2.9.7-15.el8
0:2.9.7-21.el8_10.4
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libxml2@2.9.13-2.el9
0:2.9.13-14.el9_7
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
2.9.4+dfsg1-6.1ubuntu1.9+esm5
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
1
ghcr.io/facebook/threatexchange/hma:1.0.1784d09c6b75a7
libxml2@2.9.10+dfsg-6.7+deb11u6
2.9.10+dfsg-6.7+deb11u9
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
libxml2@2.9.14+dfsg-1.3~deb12u4
2.9.14+dfsg-1.3~deb12u5
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.