StackRadar

CVE-2026-14164

High

Advisory

Published 30 Jun 2026In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
166
of 17,781 indexed, latest versions
Container images
195
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libarchive security update

Carried by container images the latest versions of 166 of 17,781 indexed charts deploy, on 195 images.

Affected packageAffected versionsFixed inImages
libarchiverpm3.5.3-3.el9, 3.5.3-4.el9, 3.5.3-4.el9.0.1, 3.5.3-5.el9_6+4 more0:3.5.3-11.el9_8, 0:3.7.7-10.el10_2148
libarchivedeb3.4.0-2ubuntu1, 3.4.0-2ubuntu1.2, 3.4.0-2ubuntu1.5, 3.6.0-1ubuntu1+16 more3.4.0-2ubuntu1.5+esm3, 3.6.0-1ubuntu1.8, 3.6.2-1+deb12u5, 3.7.2-2ubuntu0.8+1 more47
OSV records
DEBIAN-CVE-2026-14164RHSA-2026:52674RHSA-2026:52675RLSA-2026:52674RLSA-2026:52675UBUNTU-CVE-2026-14164
Also known as
RHSA-2026:58558, RHSA-2026:58573, RHSA-2026:58574, USN-8581-1

Charts affected

166 by stars
ChartLatestAffected imagesRadar Score
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
libarchive@3.7.2-2ubuntu0.5
3.7.2-2ubuntu0.8

Open the chart page →

19,391
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

392
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
libarchive@3.7.2-2ubuntu0.7
3.7.2-2ubuntu0.8

Open the chart page →

22,002
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

1,346
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.01 of 5See more

openproject openproject-helm-charts 13.11.0

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
openproject/openproject:17.8.0-slim48952034215d
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

19,926
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

6,328
polarisapache-polarisOfficialVerified publisher1.3.0-incubating1 of 1See more

polaris apache-polaris 1.3.0-incubating

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apache/polaris:lateste66366e783f1
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

455
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

8,489
nessienessie0.108.41 of 1See more

nessie nessie 0.108.4

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/projectnessie/nessie:0.108.4c0f42874c810
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

204
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

896
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libarchive@3.6.0-1ubuntu1.7
3.6.0-1ubuntu1.8

Open the chart page →

2,878
truenas-csptruenas-cspVerified publisher1.2.45 of 11See more

truenas-csp truenas-csp 1.2.4

5 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/csi-extensions:v1.2.1189146672a7ac
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-group-provisioner:v1.0.107bf9d8f16a5d
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-group-snapshotter:v1.0.10caeaaffe7e2b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-mutator:v1.3.109e98b2e697bd
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

5,759
alloy-operatorgrafana0.7.11 of 1See more

alloy-operator grafana 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

401
codetogethercodetogether1.4.251 of 1See more

codetogether codetogether 1.4.25

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
codetogether/codetogether:latest4348c8a38752
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

7,450
hpe-cosi-driverhpe-storageVerified publisher2.0.01 of 2See more

hpe-cosi-driver hpe-storage 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

1,648
kanister-operatorkanister0.118.01 of 1See more

kanister-operator kanister 0.118.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,145
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
libarchive@3.4.0-2ubuntu1.5
3.4.0-2ubuntu1.5+esm3

Open the chart page →

11,582
psmdb-operatorpercona1.23.11 of 1See more

psmdb-operator percona 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.23.0feaff989e253
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2

Open the chart page →

246
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

6,328
seldon-core-operatorseldon1.19.01 of 1See more

seldon-core-operator seldon 1.19.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
seldonio/seldon-core-operator:1.19.0544e3bf71bd1
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

841
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

4,626
migrationadeptia-connect-migrationVerified publisher4.8.11 of 1See more

migration adeptia-connect-migration 4.8.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
adeptiainc/adeptia-connect-migration:4.8.1f1087da3da0b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

451
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

1,819
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

19,691
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libarchive@3.7.4-4
no fix listed

Open the chart page →

12,037
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

5,880
self-hostbitwarden2.4.01 of 11See more

self-host bitwarden 2.4.0

1 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libarchive@3.7.2-2ubuntu0.6
3.7.2-2ubuntu0.8

Open the chart page →

5,190
cockroachdb-operator-chartcockroachdbv21.0.01 of 1See more

cockroachdb-operator-chart cockroachdbv2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
cockroachdb/cockroachdb-operator-v2:v1.0.04335d8bcbd3d
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

825
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,864
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5

Open the chart page →

13,761
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
libarchive@3.5.3-5.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,828
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5

Open the chart page →

11,458
games-on-whalesgeek-cookbookVerified publisher1.8.21 of 7See more

games-on-whales geek-cookbook 1.8.2

1 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

35,305
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
haveagitgat/tdarr_node:2.00.101e3f9328327d
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

31,000
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.42 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

2 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

6,095
kokukokuVerified publisher1.0.02 of 7See more

koku koku 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

12,019
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
libarchive@3.7.7-0ubuntu3
no fix listed

Open the chart page →

11,103
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

322
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

6,091
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

2,097
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

8,489
patch-operatorpatch-operator0.1.111 of 2See more

patch-operator patch-operator 0.1.11

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

7,807
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

9,837
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
libarchive@3.6.2-1+deb12u3
3.6.2-1+deb12u5

Open the chart page →

7,740
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3

Open the chart page →

6,817
strimzi-drain-cleanerstrimzi1.6.11 of 1See more

strimzi-drain-cleaner strimzi 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

502
strimzi-drain-cleanerstrimzi-drain-cleaner1.6.11 of 1See more

strimzi-drain-cleaner strimzi-drain-cleaner 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

502
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3

Open the chart page →

26,657
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

25,443
aerospike-kubernetes-operatoraerospike4.5.01 of 1See more

aerospike-kubernetes-operator aerospike 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2

Open the chart page →

598

Container images carrying it

195 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
nutanix/cn-rwx-operator:1.1.00082e0cebd42
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2
1
openkm/openkm-ce:6.3.113bc465a7461b
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
opennms/sentinel:36.0.288869082a14f
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2
1
openproject/openproject:17.8.0-slim48952034215d
libarchive@3.7.4-4+deb13u1
no fix listed
1
owncloud/server:10.15.051d9b74fc2a8
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
percona/percona-postgresql-operator:2.8.06cce2698d3f5
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
percona/percona-server-mongodb-operator:1.23.0feaff989e253
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2
1
percona/percona-server-mysql-operator:1.2.028bfc38c1d4b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
percona/percona-xtradb-cluster-operator:1.14.03232ae01d0ff
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
photoprism/photoprism:260601650c6ad5a651
libarchive@3.8.5-1ubuntu2.1
3.8.5-1ubuntu2.2
1
photoprism/photoprism:251130db16ee6b1ba3
libarchive@3.7.7-0ubuntu3
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
libarchive@3.7.2-2ubuntu0.1
3.7.2-2ubuntu0.8
1
pschiffe/pdns-admin:0.4.137ebba8c2b8f
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
razzy10/product-service:latest702e411956db
libarchive@3.5.3-5.el9_6
0:3.5.3-11.el9_8
1
redislabs/operator:8.0.18-119078e713bb6a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
rm3l/dev-feed-api:latest9a7f732245a3
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
rspamd/rspamd:4.1.4e870599c970d
libarchive@3.7.4-4+deb13u1
no fix listed
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
libarchive@3.6.2-1
3.6.2-1+deb12u5
1
seldonio/seldon-core-operator:1.19.0544e3bf71bd1
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
libarchive@3.7.4-4+deb13u1
no fix listed
1
stashapp/stash-box:latesta534c8afdf39
libarchive@3.7.2-2ubuntu0.4
3.7.2-2ubuntu0.8
1
trinodb/trino:45038c6f24ab1a4
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
veecode/devportalc443520aebf7
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
gcr.io/kasten-images/restorectl:8.0.145a0884f9a90c
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
gcr.io/kubecost1/cost-model:prod-2.5.502b90651367f
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
gcr.io/kubecost1/cost-model:prod-2.6.39e507ac0aebb
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
gcr.io/kubecost1/kubecost-modeling:v0.1.24a2259b098b13
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
gcr.io/kubecost1/kubecost-modeling:v0.1.22a461dc5cb96a
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
ghcr.io/afairgiant/medikeep:v0.69.0766699daa9ac
libarchive@3.6.2-1+deb12u4
3.6.2-1+deb12u5
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5
1
ghcr.io/chmouel/gosmee:v0.32.060b8db1f68cc
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/containers/kubernetes-mcp-server:v0.0.666d650f4bd6ac
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
libarchive@3.7.4-4+deb13u1
no fix listed
1
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.