StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,985
of 17,787 indexed, latest versions
Container images
2,125
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,985 of 17,787 indexed charts deploy, on 2,125 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,816
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0297
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,985 by stars
ChartLatestAffected imagesRadar Score
mcrouterevryfs-ossVerified publisher0.4.01 of 2See more

mcrouter evryfs-oss 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

6,515
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,345
cap-captcha-serverf3k-techVerified publisher0.21.01 of 1See more

cap-captcha-server f3k-tech 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
tiago2/cap:2.159f5ae4e261e
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,676
fastapi-microservice-appfast-api-microservice-app1.3.03 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

3 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
xz-utils@5.4.1-1
5.4.1-1+deb12u1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
omkara25/simple-microservice-app-user-service:v2d62cba548580
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

9,619
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,076
taigafermosit0.0.112 of 7See more

taiga fermosit 0.0.11

2 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
xz-utils@5.8.1-1
5.8.1-1+deb13u1
taigaio/taiga-protected:latestfd4568a97a59
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

8,520
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

12,988
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

12,914
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,438
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

35,464
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

15,717
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

11,684
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

11,579
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,175
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

8,035
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

11,606
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,279
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

13,071
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

15,917
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
haveagitgat/tdarr_node:2.00.101e3f9328327d
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

31,178
valheimgeek-cookbookVerified publisher4.4.21 of 1See more

valheim geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/lloesche/valheim-server:latest20fde516ce31
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

4,893
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

7,698
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.32 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

2 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
library/postgres:15.38775adb39f0d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

15,606
geo-checkergeo-checkerVerified publisher5.0.01 of 1See more

geo-checker geo-checker 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ymuski/geo-checker:5.0.05ba7fd8c7bdc
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,455
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,135
leantimegissilabs1.3.02 of 2See more

leantime gissilabs 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
leantime/leantime:3.3.3ad4bfb0699d3
xz@5.6.2-r0
5.8.3-r0
library/mariadb:10.6.218a16204dc96c
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,458
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,556
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

4,180
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

10,106
haproxy-redis-sentinelhaproxy-redis-sentinelVerified publisher0.1.32 of 2See more

haproxy-redis-sentinel haproxy-redis-sentinel 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/haproxy:3.1-bookworm49a0a0d6f0b8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,295
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,092
hawkhawk1.1.52 of 4See more

hawk hawk 1.1.5

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

13,656
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,750
app-blueprinthelm-app-blueprintVerified publisher0.2.11 of 1See more

app-blueprint helm-app-blueprint 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

840
guacamolehelmforgeVerified publisher1.5.22 of 5See more

guacamole helmforge 1.5.2

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
library/postgres:17.5-bookwormfbcea1bd13b6
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,773
helmuphelmupVerified publisher0.1.03 of 3See more

helmup helmup 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
sirrend/helmup-notifications-service:0.1.3997866417011
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

16,532
hiverhiverVerified publisher0.1.451 of 10See more

hiver hiver 0.1.45

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hiversh/gateway:0.1.45839226cc6e41
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

21,779
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

4,339
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

12,461
cyberchefhv-helm-repo0.3.31 of 1See more

cyberchef hv-helm-repo 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,110
iceberg-resticeberg-rest-fixture0.0.11 of 2See more

iceberg-rest iceberg-rest-fixture 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,509
backendikusi-bk-chart1.0.32 of 3See more

backend ikusi-bk-chart 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
xz-utils@5.8.1-1
5.8.1-1+deb13u1
kyovint/kyoimgusers:1.0.080084149156e
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

5,976
odooimioVerified publisher3.0.21 of 3See more

odoo imio 3.0.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/nginx:1.29.8-alpine5616878291a2
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

3,081
immichimmich-helm0.3.04 of 4See more

immich immich-helm 0.3.0

4 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:8.1.481db6d39e1bb
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

15,749
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:8.0.1c5d4f082b76d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,634
elasticinseefrlab2.2.02 of 2See more

elastic inseefrlab 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
library/kibana:7.17.3e2e2031c15be
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,365
iris-webappiris-webapp0.2.42 of 2See more

iris-webapp iris-webapp 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3.12-management-alpine0b44fbcc3a4b
xz@5.6.2-r0
5.8.3-r0
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,794
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,415
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,489
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,435

Container images carrying it

2,125 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
dpage/pgadmin4:9.252cb72a9e3da
xz@5.6.3-r0
5.8.3-r0
1
dpage/pgadmin4:8.13561c1f8f99f2
xz@5.6.2-r0
5.8.3-r0
1
dragonflyoss/client:v0.1.82edf3e921f4e0
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
dremio/dremio-oss:24.1.080ed2e3b7c43
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
drorivry4/rego:lateste035d49b15ca
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
drpcorg/dshackle:0.54.08858fae1859d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
drumsergio/duplicacy-exporter:0.3.4ca3476077215
xz@5.8.2-r0
5.8.3-r0
1
drumsergio/genieacs:1.2.16.028244054e1bf
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
dserio83/velero-api:0.3.16b3d9115fee2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
dserio83/velero-watchdog:0.1.8d5deae589229
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
duck1123/cert-downloader:latest0e29f19fa67c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
duck1123/lnd-fileserver:latest9d6fb247b714
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
dzikoysk/reposilite:3.5.264128c2d7a6ba
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
eclipseaerios/hlo-allocator:v3.0.03cc1d94cfe96
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/hlo-data-aggregator:v3.0.0b433c2b9f5dc
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/hlo-deployment-engine:v3.0.0d582d39208c7
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/hlo-fe-engine:v3.0.08ed2df4ca692
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/self-awareness-hardware-info:1.4.434b72f45b46a
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eclipseaerios/self-orchestrator:1.2.08b123bec5679
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
eclipseaerios/trust-manager:1.0.0f55442e2c0ed
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
eftechcombr/glpi:php-fpm-12.0.0-rc1f3d0ed01709e
xz@5.8.1-r0
5.8.3-r0
1
elastic/apm-server:7.17.6c7a1c63257d0
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
elastictranscoder/media:627e21dc963ab3858c6b
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
elastictranscoder/media-storage:f6d861a026208b8c2359
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
elastiflow/flow-collector:7.26.0fee67842e16b
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
elautoestopista/aeneabot:4.2.1125ba620d528
xz@5.8.2-r0
5.8.3-r0
1
elautoestopista/raponchi:0.3.0b6f74db9fc81
xz@5.6.1-r3
5.8.3-r0
1
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
emqx/ecp-ui:2.5.1e33e9816f147
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
emqx/emqx:5.8.935b46f7aa7a0
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
enclavenetworks/enclave:latest0a99759300d1
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
engrmth/bnkr:2.1.06d8464e6f0e8
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
envoyproxy/envoy:v1.30.92956bd9de830
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
envoyproxy/envoy:v1.33.056da5afd7df3
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
envoyproxy/envoy:v1.31-latestcaa5b411be16
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
envoyproxy/envoy:v1.34-latestcfc0678bc03c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
envoyproxy/envoy:v1.30.1e596fda6a0ce
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
envoyproxy/envoy:v1.18.2e8b37c1d7578
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
1
erenozcan17/flask_analytics:v3.1c9b6f0dfbffc
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
erenozcan17/react_frontend:v4.56e1b14973f9b
xz@5.8.1-r0
5.8.3-r0
1
erigontech/erigon:v2.61.288706754b627
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
erlangsolutions/mongooseim:6.6.0cc5bf032931f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
escaping/core-keeper-dedicated:latest87fa79255962
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
esphome/esphome:2026.7.44866347cb5b4
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
esphome/esphome:2026.8.285abea33854b
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.