StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,977
of 17,781 indexed, latest versions
Container images
2,118
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,977 of 17,781 indexed charts deploy, on 2,118 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,811
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0295
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,977 by stars
ChartLatestAffected imagesRadar Score
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,333
cap-captcha-serverf3k-techVerified publisher0.21.01 of 1See more

cap-captcha-server f3k-tech 0.21.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
tiago2/cap:2.159f5ae4e261e
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,664
fastapi-microservice-appfast-api-microservice-app1.3.03 of 4See more

fastapi-microservice-app fast-api-microservice-app 1.3.0

3 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
xz-utils@5.4.1-1
5.4.1-1+deb12u1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
omkara25/simple-microservice-app-user-service:v2d62cba548580
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

9,562
federidfederidOfficialVerified publisher0.1.21 of 1See more

federid federid 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
federid/webhook:0.1.0fbfb7c6510a7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,064
taigafermosit0.0.112 of 7See more

taiga fermosit 0.0.11

2 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
xz-utils@5.8.1-1
5.8.1-1+deb13u1
taigaio/taiga-protected:latestfd4568a97a59
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

8,496
zabbix-server-mysqlfermosit3.0.23 of 4See more

zabbix-server-mysql fermosit 3.0.2

3 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

12,840
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

12,908
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,377
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

35,305
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

15,653
lazylibrariangeek-cookbookVerified publisher7.4.21 of 1See more

lazylibrarian geek-cookbook 7.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/lazylibrarian:version-1152df82f93d2560e233
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

11,662
omada-controllergeek-cookbookVerified publisher4.4.21 of 1See more

omada-controller geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

11,553
ombigeek-cookbookVerified publisher11.5.21 of 1See more

ombi geek-cookbook 11.5.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,136
protonmail-bridgegeek-cookbookVerified publisher5.4.21 of 1See more

protonmail-bridge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

8,029
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

11,558
sabnzbdgeek-cookbookVerified publisher9.4.21 of 1See more

sabnzbd geek-cookbook 9.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,231
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

13,025
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

15,856
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
haveagitgat/tdarr_node:2.00.101e3f9328327d
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

31,000
valheimgeek-cookbookVerified publisher4.4.21 of 1See more

valheim geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/lloesche/valheim-server:latest20fde516ce31
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

4,879
wireguardgeek-cookbookVerified publisher1.4.21 of 1See more

wireguard geek-cookbook 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

7,660
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.32 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

2 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.8512bb8a21483
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
library/postgres:15.38775adb39f0d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

15,562
geo-checkergeo-checkerVerified publisher5.0.01 of 1See more

geo-checker geo-checker 5.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ymuski/geo-checker:5.0.05ba7fd8c7bdc
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,455
ghostfolioghostfolioVerified publisher0.5.41 of 3See more

ghostfolio ghostfolio 0.5.4

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghostfolio/ghostfolio:3.7.0e3c6ab53e49b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,123
leantimegissilabs1.3.02 of 2See more

leantime gissilabs 1.3.0

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
leantime/leantime:3.3.3ad4bfb0699d3
xz@5.6.2-r0
5.8.3-r0
library/mariadb:10.6.218a16204dc96c
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,416
meta-monitoringgrafana1.3.01 of 2See more

meta-monitoring grafana 1.3.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.4.306bdcbb51fc2
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,518
IMgrycapOfficialVerified publisher1.8.01 of 3See more

IM grycap 1.8.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/grycap/im:latest06a16d4f279f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

4,132
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

10,072
haproxy-redis-sentinelhaproxy-redis-sentinelVerified publisher0.1.32 of 2See more

haproxy-redis-sentinel haproxy-redis-sentinel 0.1.3

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/haproxy:3.1-bookworm49a0a0d6f0b8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,277
harp-proxyharp0.8.11 of 1See more

harp-proxy harp 0.8.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
makersquad/harp-proxy:0.8.1a40dd258c527
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,374
hawkhawk1.1.52 of 4See more

hawk hawk 1.1.5

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

13,610
clickstackhdx-oss-v21.1.11 of 5See more

clickstack hdx-oss-v2 1.1.1

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mongo:5.0.32-focal3b6c281e1c08
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,711
app-blueprinthelm-app-blueprintVerified publisher0.2.11 of 1See more

app-blueprint helm-app-blueprint 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.27-alpine65e3e85dbaed
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

840
guacamolehelmforgeVerified publisher1.5.22 of 5See more

guacamole helmforge 1.5.2

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
library/postgres:17.5-bookwormfbcea1bd13b6
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,716
helmuphelmupVerified publisher0.1.03 of 3See more

helmup helmup 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
sirrend/helmup-engine:0.1.13699e79e3d4e2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
sirrend/helmup-notifications-service:0.1.3997866417011
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

16,514
hiverhiverVerified publisher0.1.451 of 10See more

hiver hiver 0.1.45

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hiversh/gateway:0.1.45839226cc6e41
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

21,672
htnn-controllerhtnnVerified publisher0.5.01 of 1See more

htnn-controller htnn 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

4,300
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

12,397
cyberchefhv-helm-repo0.3.31 of 1See more

cyberchef hv-helm-repo 0.3.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,109
iceberg-resticeberg-rest-fixture0.0.11 of 2See more

iceberg-rest iceberg-rest-fixture 0.0.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,470
backendikusi-bk-chart1.0.32 of 3See more

backend ikusi-bk-chart 1.0.3

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
xz-utils@5.8.1-1
5.8.1-1+deb13u1
kyovint/kyoimgusers:1.0.080084149156e
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

5,940
odooimioVerified publisher3.0.21 of 3See more

odoo imio 3.0.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/nginx:1.29.8-alpine5616878291a2
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

3,068
immichimmich-helm0.3.04 of 4See more

immich immich-helm 0.3.0

4 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:8.1.481db6d39e1bb
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

15,712
valkey-clusterinnagoVerified publisher1.1.01 of 2See more

valkey-cluster innago 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:8.0.1c5d4f082b76d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,622
elasticinseefrlab2.2.02 of 2See more

elastic inseefrlab 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.35e6ac15bf6a5
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
library/kibana:7.17.3e2e2031c15be
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,284
iris-webappiris-webapp0.2.42 of 2See more

iris-webapp iris-webapp 0.2.4

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3.12-management-alpine0b44fbcc3a4b
xz@5.6.2-r0
5.8.3-r0
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,764
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,400
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,475
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,421
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

10,421

Container images carrying it

2,118 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ciscolabs/rtsp-server:latestb59fc10bb821
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
3
codeurjc/planner:v1.0800cf520c245
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
3
dgraph/dgraph:v21.12.03b55ea83fffe
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
envoyproxy/envoy:v1.31.02bf7f042e396
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
3
gchq/hdfs:3.3.35ec58edbb2db
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
3
guacamole/guacamole:1.6.0f344085e618b
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
3
jacobalberty/unifi:v10.0.162896c0ab82d33
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
3
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
xz@5.6.2-r0
5.8.3-r0
3
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
xz@5.6.3-r0
5.8.3-r0
3
langflowai/langflow:1.12.0:latest65796601f3fc
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1
3
library/nginx:1.25:1.25.5a484819eb602
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
library/postgres:15.7-alpine:15.7-alpine3.20468d34fefd63
xz@5.6.1-r3
5.8.3-r0
3
mcp/grafana:latest9362bcf6aa0e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
3
selenium/hub:3.141.5902f251d48d5f
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
3
sigp/lighthouse:latest-amd6450f66cfebb6d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
3
xenondb/percona:5.7.330e26872a2b67
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
3
quay.io/devtron/ai-agent:0.0.16545dac92173
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
xz-utils@5.4.1-1
5.4.1-1+deb12u1
3
alazidis/kube-netlag:1.1.00e8c84152201
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
2
alpine/k8s:1.32.12048f8d9c8cc7
xz@5.8.2-r0
5.8.3-r0
2
apache/nifi-registry:1.26.07cdfd8deec92
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
2
apache/rocketmq:5.4.0319cd8a81ed1
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
bitnamilegacy/etcd:latest99b408c15272
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
bitnamilegacy/redis:latest5927ff3702df
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
blockstack/stacks-core:3.2.0.0.0f79944317326
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.