StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,979
of 17,790 indexed, latest versions
Container images
2,118
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,979 of 17,790 indexed charts deploy, on 2,118 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,812
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0294
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,979 by stars
ChartLatestAffected imagesRadar Score
excalidrawkubitodevVerified publisher1.0.31 of 1See more

excalidraw kubitodev 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
excalidraw/excalidraw:latestf7ee194addd6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

840
penpotkubitodevVerified publisher1.2.12 of 5See more

penpot kubitodev 1.2.1

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
penpotapp/backend:2.2.147853d9bb9dd
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
penpotapp/exporter:2.2.15c835ffd87ab
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

17,002
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.43 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

3 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

20,299
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

3,460
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,879
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

2,501
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,143
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,373
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

16,537
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,842
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

26,371
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

2,113
pageslatif-pages1.0.02 of 3See more

pages latif-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,233
pageslavanya-pages1.0.02 of 3See more

pages lavanya-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,233
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

32,893
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,270
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,448
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

4,632
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,456
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,130
amplinguamatics0.12.01 of 4See more

amp linguamatics 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,105
data-factorylinguamatics1.0.11 of 4See more

data-factory linguamatics 1.0.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,105
delugelinkding0.2.31 of 1See more

deluge linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/deluge:libtorrentv1-2.2.0-ls40052eac68ccc0
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

1,432
excalidrawlinkding0.2.31 of 1See more

excalidraw linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
excalidraw/excalidraw:latestf7ee194addd6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

840
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

37,518
webdavlinuxoid690.1.01 of 1See more

webdav linuxoid69 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxoid69/webdav:1.26.2-r065bacf19caa7
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

1,081
calendar-apiliturgical0.1.51 of 1See more

calendar-api liturgical 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,557
liturgical-apiliturgical0.2.111 of 1See more

liturgical-api liturgical 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-api:1.0.12637bdcebdd8d
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,004
liturgical-appliturgical0.9.01 of 1See more

liturgical-app liturgical 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

953
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,773
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,233
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

12,034
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,615
zigbee2mqttlmatfyVerified publisher0.1.141 of 2See more

zigbee2mqtt lmatfy 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.7.260a295b40f4e
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,392
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,845
local-businesslocal-business0.1.01 of 1See more

local-business local-business 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
alakaganaguathoork/local-business:latest7eb27b0f4a5a
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

947
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

7,516
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

32,893
nightingalelogic3579Verified publisher0.3.12 of 6See more

nightingale logic3579 0.3.1

2 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
flashcatcloud/nightingale:8.5.1421acb36181b
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

9,021
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,674
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,970
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

23,255
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

5,910
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,032
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,836
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/media-storage:f6d861a026208b8c2359
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/transcoder:627e21dcb4a0327029e6
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

58,225
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

27,282
hyperglassm0nsterrr-hyperglassVerified publisher4.2.12 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
xz@5.6.1-r3
5.8.3-r0

Open the chart page →

4,659
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,615
kea-exporterm0nsterrr-kea-exporterVerified publisher2.2.11 of 1See more

kea-exporter m0nsterrr-kea-exporter 2.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,042

Container images carrying it

2,118 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/seaweedfs:3.87.0-debian-12-r10cb31d0fc356
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnamilegacy/valkey:latest0384ca2eec63
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnamilegacy/valkey:8.1.3-debian-12-r34f0191fba7d3
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnamilegacy/valkey:8.1.3-debian-12-r1a185655855b3
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnami/mariadb:11.7.216a7dae804fb
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
bitnami/memcached:1.6.38dd8f2cba9a5b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnami/mongodb:8.0.8b3bd5b6be9a0
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
bitnami/redis:7.4.24e65bf641805
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
blackducksoftware/blackduck-alert-db:8.4.06310fac39d53
xz@5.8.2-r0
5.8.3-r0
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
blockstream/bitcoind:27.29472492530e3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
bmeares/meerschaum:2.8.48e9c5bacaa82
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
bnjbvr/kresus:0.22.137e216b182c8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
boky/postfix:5.1.0aafc77238423
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
boky/postfix:4.4.0f3f247fd4252
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
boxcutter/meshcmd:1.1.384e13f01bcab
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
budibase/database:2.1.0d90f656261c9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
calltelemetry/web:0.8.1-rc7205d13269e350
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
camunda/camunda-bpm-platform:latestbcc5bb0542df
xz@5.8.1-r0
5.8.3-r0
1
camunda/zeebe:8.4.5ab5abc09e407
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
carlosmz87/test_helm_frontend:latest79f4b528f42a
xz@5.6.2-r0
5.8.3-r0
1
castlemock/castlemock:latestb7f3f1527ba9
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
castopod/castopod:1.12.101fd37280cbb2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
castopod/castopod:1.15.54e4f0440520f
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
cbioportal/cbioportal:6.4.1-web-shenandoah08debbd2dbf9
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
xz@5.2.3-lp151.4.3.1
5.8.3-1.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
xz@5.2.3-lp151.4.3.1
5.8.3-1.1
1
chaerr/kridge:demo-operator-v0.1.266833deec017
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
chainsafe/lodestar:v1.27.07b9fe4aa8073
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
chandanteekinavar/findery-market-frontend:1.06de5bd44a325
xz@5.6.3-r0
5.8.3-r0
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2
1
chetangautamm/repo:sipp.v3e7f7049e1544
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
cheveo/azp-agent:1.0.282240f890884
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
cheyang/distributed-tf:1.6.046cc34755493
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
chibisafe/chibisafe-server:latest3da4fcbc1a18
xz@5.8.1-r0
5.8.3-r0
1
chocobozzz/peertube:v8.1.5052712130691
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
chriseaton/adventureworks:latest54c3384ce701
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
chromadb/chroma:1.5.7fc8dc8e11fb2
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
circleci/runner:launch-agent9bdc62f02162
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
ciscolabs/msm-nc:0710202336d02faad958
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
citizenstig/httpbin:latestb81c818ccb86
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
ciuse99/suggestarr:v1.0.20d72768245ef5
xz@5.6.3-r0
5.8.3-r0
1
ckan/ckan-solr:2.11-solr9ef8e5d3e6be1
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ckulka/baikal:0.10.1-nginx434bdd162247
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
clickhouse/clickhouse-server:24.81ffa82edee00
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.