StackRadar

CVE-2025-9714

Medium

Advisory

Published 4 Sept 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.2
base score, highest
EPSS
0.002
5th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
947
of 17,787 indexed, latest versions
Container images
1,032
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 947 of 17,787 indexed charts deploy, on 1,032 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+49 more2.9.1+dfsg1-3ubuntu4.13+esm9, 2.9.3+dfsg1-1ubuntu0.7+esm10, 2.9.4+dfsg1-6.1ubuntu1.9+esm5, 2.9.10+dfsg-5ubuntu0.20.04.10+esm2+5 more710
libxml2rpm2.9.1-6.el7_2.3, 2.9.1-6.el7_9.6, 2.9.1-6.el7.4, 2.9.1-6.el7.5+30 more0:2.9.1-6.el7_9.14, 0:2.9.7-21.el8_10.4, 0:2.9.13-3.el9_2.10, 0:2.9.13-13.el9_4+1 more322
OSV records
DEBIAN-CVE-2025-9714RHSA-2025:22162RHSA-2025:22163RHSA-2025:22376RHSA-2026:11349RHSA-2026:22420RLSA-2025:22376RLSA-2026:11349UBUNTU-CVE-2025-9714DLA-4319-1
Also known as
RHSA-2025:22377, RHSA-2026:14832, RHSA-2026:14858, RHSA-2026:15967, USN-7743-1

Charts affected

947 by stars
ChartLatestAffected imagesRadar Score
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

10,741
fibfibonacci-cluster-appsVerified publisher1.0.01 of 5See more

fib fibonacci-cluster-apps 1.0.0

1 of the 5 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
golenski/db-init:1.0.086ca17cd3063
libxml2@2.9.10+dfsg-6.7+deb11u5
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

16,927
infrafibonacci-cluster-infraVerified publisher1.0.01 of 4See more

infra fibonacci-cluster-infra 1.0.0

1 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/postgres:16.4e62fbf9d3e2b
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

12,454
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
libxml2@2.9.7-13.el8
0:2.9.7-21.el8_10.4

Open the chart page →

6,936
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
libxml2@2.9.10+dfsg-5ubuntu0.20.04.10
2.9.10+dfsg-5ubuntu0.20.04.10+esm2
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

64,489
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4

Open the chart page →

8,528
consent-facadefiware0.1.11 of 1See more

consent-facade fiware 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/seamware/consent-facade:0.0.14be844c750c7e
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.4

Open the chart page →

2,475
contract-managementfiware3.5.361 of 1See more

contract-management fiware 3.5.36

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/contract-management:3.3.122bcfcf874451
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.4

Open the chart page →

2,411
credentials-config-servicefiware2.6.41 of 1See more

credentials-config-service fiware 2.6.4

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
libxml2@2.9.7-18.el8_10.1
0:2.9.7-21.el8_10.4

Open the chart page →

2,293
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.4

Open the chart page →

4,536
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libxml2@2.9.7-13.el8
0:2.9.7-21.el8_10.4

Open the chart page →

11,835
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
libxml2@2.9.7-13.el8
0:2.9.7-21.el8_10.4

Open the chart page →

7,019
orionfiware1.6.112 of 2See more

orion fiware 1.6.11

2 of the 2 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/orion-ld:1.10.0b7ee7569a9a8
libxml2@2.9.7-21.el8_10.3
0:2.9.7-21.el8_10.4
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
libxml2@2.9.7-9.el8
0:2.9.7-21.el8_10.4

Open the chart page →

10,637
tm-forum-apifiware0.17.1519 of 19See more

tm-forum-api fiware 0.17.15

19 of the 19 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/tmforum-account:1.18.06b25aac03414
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-agreement:1.18.081e7025dc16d
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-customer-bill-management:1.18.0dee901f1f75d
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-customer-management:1.18.0d3519cebecd0
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-party-catalog:1.18.07d6969a7393a
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-party-role:1.18.052db89f17863
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-product-catalog:1.18.0e409338726da
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-product-inventory:1.18.03a5d6dd30f1d
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-product-ordering-management:1.18.042c81c291f6f
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-quote:1.18.0d9ca3a334352
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-resource-catalog:1.18.0b0d853627c59
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-resource-function-activation:1.18.062a5acb63fd1
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-resource-inventory:1.18.0553b4a47730b
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-resource-order-management:1.18.0dd1778ad6203
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-service-catalog:1.18.074b0fad9e155
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-service-inventory:1.18.04be54e8cb5c0
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-service-order-management:1.18.0d2091785d544
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-software-management:1.18.01b74a2f7ba67
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4
quay.io/fiware/tmforum-usage-management:1.18.042f190c42926
libxml2@2.9.7-21.el8_10.1
0:2.9.7-21.el8_10.4

Open the chart page →

35,112
trusted-issuers-listfiware0.18.71 of 1See more

trusted-issuers-list fiware 0.18.7

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-list:0.9.13c886ce5c056
libxml2@2.9.13-12.el9_6
0:2.9.13-14.el9_7

Open the chart page →

1,701
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
libxml2@2.9.7-13.el8
0:2.9.7-21.el8_10.4

Open the chart page →

7,087
mission-controlflanksourceVerified publisher0.1.3361 of 8See more

mission-control flanksource 0.1.336

1 of the 8 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
libxml2@2.9.14+dfsg-1.3~deb12u4
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

8,902
dump1090fnzv0.2.81 of 1See more

dump1090 fnzv 0.2.8

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
fnzv/dump1090:latestb3079b95c336
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

4,077
maxscalefour-allportalVerified publisher4.1.162 of 3See more

maxscale four-allportal 4.1.16

2 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:10.6.12-debian-11-r1643a70df0e7c6
libxml2@2.9.10+dfsg-6.7+deb11u3
2.9.10+dfsg-6.7+deb11u9
mariadb/maxscale:23.02.256c5e0908148
libxml2@2.9.7-16.el8
0:2.9.7-21.el8_10.4

Open the chart page →

6,611
simple-websitefour-allportalVerified publisher1.0.21 of 1See more

simple-website four-allportal 1.0.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/nginx:1.23.3f4e3b6489888
libxml2@2.9.10+dfsg-6.7+deb11u3
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

831
plexfydrah-charts2.2.01 of 1See more

plex fydrah-charts 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
libxml2@2.9.3+dfsg1-1ubuntu0.7
2.9.3+dfsg1-1ubuntu0.7+esm10

Open the chart page →

8,965
aptlyg0dscookie0.4.01 of 2See more

aptly g0dscookie 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/nginx:1.212bcabc23b454
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

3,481
icinga2g0dscookie0.2.01 of 1See more

icinga2 g0dscookie 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

4,428
passboltg0dscookie0.5.21 of 2See more

passbolt g0dscookie 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
libxml2@2.9.10+dfsg-6.7+deb11u3
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

7,940
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

13,241
guacamolegabibbo970.3.01 of 3See more

guacamole gabibbo97 0.3.0

1 of the 3 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
2.12.7+dfsg+really2.9.14-2.1+deb13u2

Open the chart page →

6,412
accumulogaffer2.2.12 of 4See more

accumulo gaffer 2.2.1

2 of the 4 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
gchq/accumulo:2.0.1c460bb587d6d
libxml2@2.9.14+dfsg-1.3ubuntu3.1
2.9.14+dfsg-1.3ubuntu3.5
gchq/hdfs:3.3.35ec58edbb2db
libxml2@2.9.14+dfsg-1.3ubuntu3.1
2.9.14+dfsg-1.3ubuntu3.5

Open the chart page →

16,892
gaffer-road-trafficgaffer2.2.11 of 8See more

gaffer-road-traffic gaffer 2.2.1

1 of the 8 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
libxml2@2.9.14+dfsg-1.3ubuntu3.1
2.9.14+dfsg-1.3ubuntu3.5

Open the chart page →

9,342
fulcrumgaloymoney0.5.171 of 1See more

fulcrum galoymoney 0.5.17

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
cculianu/fulcrum:v1.9.76445fb75abea
libxml2@2.9.10+dfsg-6.7+deb11u4
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

430
galoy-depsgaloymoney0.10.201 of 9See more

galoy-deps galoymoney 0.10.20

1 of the 9 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
libxml2@2.9.7-18.el8_9
0:2.9.7-21.el8_10.4

Open the chart page →

11,961
fulcrumgaloymoney20.5.171 of 1See more

fulcrum galoymoney2 0.5.17

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
cculianu/fulcrum:v1.9.76445fb75abea
libxml2@2.9.10+dfsg-6.7+deb11u4
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

430
galoy-depsgaloymoney20.10.201 of 9See more

galoy-deps galoymoney2 0.10.20

1 of the 9 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.39.002f6f143fc6d
libxml2@2.9.7-18.el8_9
0:2.9.7-21.el8_10.4

Open the chart page →

11,961
airsonicgeek-cookbookVerified publisher6.4.21 of 1See more

airsonic geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

18,230
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

14,659
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
2.9.4+dfsg1-6.1ubuntu1.9+esm5

Open the chart page →

19,215
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

16,123
changedetection-iogeek-cookbookVerified publisher1.5.21 of 1See more

changedetection-io geek-cookbook 1.5.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,950
cryptofoliogeek-cookbookVerified publisher1.4.21 of 1See more

cryptofolio geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,493
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
2.9.4+dfsg1-6.1ubuntu1.9+esm5

Open the chart page →

13,551
double-takegeek-cookbookVerified publisher2.3.21 of 1See more

double-take geek-cookbook 2.3.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
jakowenko/double-take:1.6.0b858bac9e32a
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

12,222
jackettgeek-cookbookVerified publisher11.7.21 of 1See more

jackett geek-cookbook 11.7.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

9,698
jellyfingeek-cookbookVerified publisher9.5.31 of 1See more

jellyfin geek-cookbook 9.5.3

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.8.1ee24f4459a40
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9

Open the chart page →

1,381
lidarrgeek-cookbookVerified publisher14.2.21 of 1See more

lidarr geek-cookbook 14.2.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

14,283
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5

Open the chart page →

12,958
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

12,076
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

27,949
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

19,503
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

15,730
qbittorrentgeek-cookbookVerified publisher13.5.21 of 1See more

qbittorrent geek-cookbook 13.5.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.10+esm2

Open the chart page →

11,807
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2025-9714.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.9

Open the chart page →

10,379

Container images carrying it

1,032 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
11
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7+esm10
11
codeurjc/weatherservice:v1.0b9e2f7234349
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.4
10
codeurjc/server:v1.0310bea5b1ee7
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.4
8
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
6
library/nginx:1.21:1.21.62bcabc23b454
libxml2@2.9.10+dfsg-6.7+deb11u2
2.9.10+dfsg-6.7+deb11u9
6
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm10
6
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
6
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
5
postgis/postgis:latest01a6a70e41e6
libxml2@2.9.10+dfsg-6.7+deb11u7
2.9.10+dfsg-6.7+deb11u9
5
artifacthub/postgres:latest4fd34fa635cc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
2.12.7+dfsg+really2.9.14-2.1+deb13u2
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
4
bitnamilegacy/postgresql:16233f361c5819
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
4
bitnamilegacy/postgresql:15.4.0-debian-11-r455dba7e6a514d
libxml2@2.9.10+dfsg-6.7+deb11u4
2.9.10+dfsg-6.7+deb11u9
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm10
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7+esm10
4
library/nginx:1.27.1287ff321f9e3
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
4
library/postgres:134689940c6838
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
2.12.7+dfsg+really2.9.14-2.1+deb13u2
4
mastercloudapps/server:v2.23f3d24dfe2686
libxml2@2.9.7-15.el8_7.1
0:2.9.7-21.el8_10.4
4
mastercloudapps/weatherservice:v1.23de859d29c116
libxml2@2.9.7-13.el8_6.1
0:2.9.7-21.el8_10.4
4
opea/llm-tgi:1.00c25aab3f106
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
4
quay.io/strimzi/operator:0.37.052f376e64b9b
libxml2@2.9.7-16.el8_8.1
0:2.9.7-21.el8_10.4
4
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
3
bitnamilegacy/postgresql:15.3.0-debian-11-r7cc301eef7436
libxml2@2.9.10+dfsg-6.7+deb11u4
2.9.10+dfsg-6.7+deb11u9
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
3
ciscolabs/rtsp-client:latesta7b60ec88285
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
2.9.10+dfsg-5ubuntu0.20.04.10+esm2
3
ciscolabs/rtsp-server:latestb59fc10bb821
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
2.9.10+dfsg-5ubuntu0.20.04.10+esm2
3
gchq/hdfs:3.3.35ec58edbb2db
libxml2@2.9.14+dfsg-1.3ubuntu3.1
2.9.14+dfsg-1.3ubuntu3.5
3
guacamole/guacamole:1.6.0f344085e618b
libxml2@2.9.14+dfsg-1.3ubuntu3.3
2.9.14+dfsg-1.3ubuntu3.5
3
library/nginx:1.25:1.25.5a484819eb602
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
3
library/postgres:14.13162a6ead070
libxml2@2.9.10+dfsg-6.7
2.9.10+dfsg-6.7+deb11u9
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libxml2@2.9.7-8.el8
0:2.9.7-21.el8_10.4
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7+esm10
3
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
libxml2@2.9.10+dfsg-6.7+deb11u1
2.9.10+dfsg-6.7+deb11u9
3
siddharth67/block-buster-dev:7.6.04e1151ea5774
libxml2@2.9.10+dfsg-6.7+deb11u3
2.9.10+dfsg-6.7+deb11u9
3
signoz/zookeeper:3.7.1fcc4a3288154
libxml2@2.9.10+dfsg-6.7+deb11u4
2.9.10+dfsg-6.7+deb11u9
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libxml2@2.9.14+dfsg-1.2
2.9.14+dfsg-1.3~deb12u5
3
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
2.9.13+dfsg-1ubuntu0.9
3
quay.io/devtron/clair:4.3.675fb847ac045
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libxml2@2.9.14+dfsg-1.3~deb12u4
2.9.14+dfsg-1.3~deb12u5
3
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
libxml2@2.9.7-13.el8_6.2
0:2.9.7-21.el8_10.4
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
libxml2@2.9.7-9.el8_4.2
0:2.9.7-21.el8_10.4
3
apache/nifi-registry:1.26.07cdfd8deec92
libxml2@2.9.13+dfsg-1ubuntu0.4
2.9.13+dfsg-1ubuntu0.9
2
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libxml2@2.9.13-12.el9_6
0:2.9.13-14.el9_7
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.5
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
libxml2@2.9.14+dfsg-1.3~deb12u1
2.9.14+dfsg-1.3~deb12u5
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
libxml2@2.9.14+dfsg-1.3~deb12u2
2.9.14+dfsg-1.3~deb12u5
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.