StackRadar

CVE-2026-14164

High

Advisory

Published 30 Jun 2026In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
41st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
166
of 17,781 indexed, latest versions
Container images
195
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: libarchive security update

Carried by container images the latest versions of 166 of 17,781 indexed charts deploy, on 195 images.

Affected packageAffected versionsFixed inImages
libarchiverpm3.5.3-3.el9, 3.5.3-4.el9, 3.5.3-4.el9.0.1, 3.5.3-5.el9_6+4 more0:3.5.3-11.el9_8, 0:3.7.7-10.el10_2148
libarchivedeb3.4.0-2ubuntu1, 3.4.0-2ubuntu1.2, 3.4.0-2ubuntu1.5, 3.6.0-1ubuntu1+16 more3.4.0-2ubuntu1.5+esm3, 3.6.0-1ubuntu1.8, 3.6.2-1+deb12u5, 3.7.2-2ubuntu0.8+1 more47
OSV records
DEBIAN-CVE-2026-14164RHSA-2026:52674RHSA-2026:52675RLSA-2026:52674RLSA-2026:52675UBUNTU-CVE-2026-14164
Also known as
RHSA-2026:58558, RHSA-2026:58573, RHSA-2026:58574, USN-8581-1

Charts affected

166 by stars
ChartLatestAffected imagesRadar Score
difydoubanVerified publisher0.10.01 of 6See more

dify douban 0.10.0

1 of the 6 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
libarchive@3.7.2-2ubuntu0.5
3.7.2-2ubuntu0.8

Open the chart page →

19,391
pxc-operatorpercona1.20.11 of 1See more

pxc-operator percona 1.20.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-xtradb-cluster-operator:1.20.0ac4d0995c71e
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

392
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
libarchive@3.7.2-2ubuntu0.7
3.7.2-2ubuntu0.8

Open the chart page →

22,002
volsyncbackube-helm-chartsVerified publisher0.16.01 of 1See more

volsync backube-helm-charts 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/backube/volsync:0.16.00d03a6aad575
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

1,346
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.01 of 5See more

openproject openproject-helm-charts 13.11.0

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
openproject/openproject:17.8.0-slim48952034215d
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

19,926
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

6,328
polarisapache-polarisOfficialVerified publisher1.3.0-incubating1 of 1See more

polaris apache-polaris 1.3.0-incubating

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apache/polaris:lateste66366e783f1
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

455
paperless-ngxpaperless-ngxVerified publisher0.3.221 of 3See more

paperless-ngx paperless-ngx 0.3.22

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

8,489
nessienessie0.108.41 of 1See more

nessie nessie 0.108.4

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/projectnessie/nessie:0.108.4c0f42874c810
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

204
redis-enterprise-operatorredis-enterprise-operator-officialOfficialVerified publisher8.0.18-111 of 1See more

redis-enterprise-operator redis-enterprise-operator-official 8.0.18-11

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
redislabs/operator:8.0.18-119078e713bb6a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

896
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libarchive@3.6.0-1ubuntu1.7
3.6.0-1ubuntu1.8

Open the chart page →

2,878
truenas-csptruenas-cspVerified publisher1.2.45 of 11See more

truenas-csp truenas-csp 1.2.4

5 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/csi-driver:v3.2.0ef7f4e1544fa
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/csi-extensions:v1.2.1189146672a7ac
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-group-provisioner:v1.0.107bf9d8f16a5d
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-group-snapshotter:v1.0.10caeaaffe7e2b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
quay.io/hpestorage/volume-mutator:v1.3.109e98b2e697bd
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

5,759
alloy-operatorgrafana0.7.11 of 1See more

alloy-operator grafana 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

401
codetogethercodetogether1.4.251 of 1See more

codetogether codetogether 1.4.25

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
codetogether/codetogether:latest4348c8a38752
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

7,450
hpe-cosi-driverhpe-storageVerified publisher2.0.01 of 2See more

hpe-cosi-driver hpe-storage 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

1,648
kanister-operatorkanister0.118.01 of 1See more

kanister-operator kanister 0.118.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,145
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
libarchive@3.4.0-2ubuntu1.5
3.4.0-2ubuntu1.5+esm3

Open the chart page →

11,582
psmdb-operatorpercona1.23.11 of 1See more

psmdb-operator percona 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.23.0feaff989e253
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2

Open the chart page →

246
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

6,328
seldon-core-operatorseldon1.19.01 of 1See more

seldon-core-operator seldon 1.19.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
seldonio/seldon-core-operator:1.19.0544e3bf71bd1
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

841
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

4,626
migrationadeptia-connect-migrationVerified publisher4.8.11 of 1See more

migration adeptia-connect-migration 4.8.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
adeptiainc/adeptia-connect-migration:4.8.1f1087da3da0b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

451
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

1,819
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

19,691
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libarchive@3.7.4-4
no fix listed

Open the chart page →

12,037
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

5,880
self-hostbitwarden2.4.01 of 11See more

self-host bitwarden 2.4.0

1 of the 11 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libarchive@3.7.2-2ubuntu0.6
3.7.2-2ubuntu0.8

Open the chart page →

5,190
cockroachdb-operator-chartcockroachdbv21.0.01 of 1See more

cockroachdb-operator-chart cockroachdbv2 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
cockroachdb/cockroachdb-operator-v2:v1.0.04335d8bcbd3d
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

825
cp-schema-registrycp-schema-registryVerified publisher1.0.01 of 1See more

cp-schema-registry cp-schema-registry 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/cp-schema-registry:8.1.1-msk-iam-auth2.3.530d1a445acc7
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,864
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5

Open the chart page →

13,761
developer-operatordeveloper-operatorVerified publisher2.1.21 of 1See more

developer-operator developer-operator 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
registry.gitlab.com/xrow-public/developer-operator/developer-operator-controller:2.1.2301847adfe16
libarchive@3.5.3-5.el9_6
0:3.5.3-11.el9_8

Open the chart page →

1,828
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5

Open the chart page →

11,458
games-on-whalesgeek-cookbookVerified publisher1.8.21 of 7See more

games-on-whales geek-cookbook 1.8.2

1 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

35,305
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
haveagitgat/tdarr_node:2.00.101e3f9328327d
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

31,000
hpe-greenlake-file-csi-driverhpe-storageVerified publisher2.6.42 of 7See more

hpe-greenlake-file-csi-driver hpe-storage 2.6.4

2 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

6,095
kokukokuVerified publisher1.0.02 of 7See more

koku koku 1.0.0

2 of the 7 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

12,019
photoprismmmontesVerified publisher0.14.01 of 1See more

photoprism mmontes 0.14.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
photoprism/photoprism:251130db16ee6b1ba3
libarchive@3.7.7-0ubuntu3
no fix listed

Open the chart page →

11,103
netobserv-operatornetobservOfficialVerified publisher1.12.01 of 1See more

netobserv-operator netobserv 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/netobserv/network-observability-operator:1.12.0-communityb05d21a015b0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

322
octopuso7studios-octopus-helm-chartsOfficialVerified publisher1.2.31 of 5See more

octopus o7studios-octopus-helm-charts 1.2.3

1 of the 5 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.20.1d09453ce7886
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

6,091
opencveopencve1.2.01 of 3See more

opencve opencve 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
cleveritcz/opencve:1.5.0c75c1636e0b7
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

2,097
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngxdigest-pinnedaa810a36942c
libarchive@3.7.4-4+deb13u1
no fix listed

Open the chart page →

8,489
patch-operatorpatch-operator0.1.111 of 2See more

patch-operator patch-operator 0.1.11

1 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

7,807
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
rm3l/dev-feed-api:latest9a7f732245a3
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8

Open the chart page →

9,837
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
libarchive@3.6.2-1+deb12u3
3.6.2-1+deb12u5

Open the chart page →

7,740
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3

Open the chart page →

6,817
strimzi-drain-cleanerstrimzi1.6.11 of 1See more

strimzi-drain-cleaner strimzi 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

502
strimzi-drain-cleanerstrimzi-drain-cleaner1.6.11 of 1See more

strimzi-drain-cleaner strimzi-drain-cleaner 1.6.1

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
quay.io/strimzi/drain-cleaner:1.6.15fb28e9f30d0
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8

Open the chart page →

502
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3

Open the chart page →

26,657
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
libarchive@3.4.0-2ubuntu1
3.4.0-2ubuntu1.5+esm3

Open the chart page →

25,443
aerospike-kubernetes-operatoraerospike4.5.01 of 1See more

aerospike-kubernetes-operator aerospike 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-14164.

Container imageDigestPackageFixed in
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
libarchive@3.7.7-8.el10_1
0:3.7.7-10.el10_2

Open the chart page →

598

Container images carrying it

195 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libarchive@3.5.3-3.el9
0:3.5.3-11.el9_8
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
libarchive@3.5.3-5.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/grafana/alloy-operator:1.12.14ee4b71cf16a
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/grafana/alloy-operator:1.8.1ae85d68749c7
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
ghcr.io/it-at-m/dave-admin-portal/dave-adminportal:10.0.0cbff8141302f
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-backend/dave-backend:10.0.0f66413e62afc
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-document-storage/dave-document-storage:10.0.09c7fc07330c9
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-eai/dave-eai:10.0.0fd93e0d125b3
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-frontend/dave-frontend:10.0.0a49fdb8d6f1b
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-geodata-eai/dave-geodata-eai:10.0.06a3fe3136856
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/dave-selfservice-portal/dave-selfserviceportal:10.0.0d352df1b94b6
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/kf-app-eai:1.0.65de339b3d537
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/wjh-rechner:1.0.0bc70cdb5a01a
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
ghcr.io/it-at-m/zammad-ldap-sync:dev10de22c8cbce
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
ghcr.io/kanisterio/controller:0.118.0d22616a5998b
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/kluster-manager/cluster-gateway:v1.12.158bed8d1e7fc
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/kluster-manager/cluster-gateway-manager:v1.12.1f22cae0e6cf3
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/kluster-manager/managed-serviceaccount:v0.10.0fc256885915b
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/kluster-manager/registration-operator:v1.2.00cbced8e6240
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
ghcr.io/microboxlabs/miot-calendar:latest-jvm7157cdc0bf5b
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/microboxlabs/miot-srv:latest4ec11d229028
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/microboxlabs/miot-srv:latest5796553b41ae
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libarchive@3.6.2-1+deb12u1
3.6.2-1+deb12u5
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
libarchive@3.7.4-4
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
libarchive@3.7.4-4
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libarchive@3.7.4-4
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
libarchive@3.6.2-1
3.6.2-1+deb12u5
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
libarchive@3.7.4-4
no fix listed
1
ghcr.io/projectnessie/nessie:0.92.19efe3c74d55f
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
ghcr.io/projectnessie/nessie:0.108.4c0f42874c810
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
libarchive@3.7.2-2ubuntu0.6
3.7.2-2ubuntu0.8
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.5+esm3
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libarchive@3.6.0-1ubuntu1.7
3.6.0-1ubuntu1.8
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libarchive@3.7.2-2ubuntu0.6
3.7.2-2ubuntu0.8
1
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.0-1-ubi99026dbbf280d
libarchive@3.5.3-6.el9_6
0:3.5.3-11.el9_8
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
libarchive@3.5.3-4.el9
0:3.5.3-11.el9_8
1
quay.io/backube/volsync:0.16.00d03a6aad575
libarchive@3.5.3-9.el9_7
0:3.5.3-11.el9_8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.