StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,981
of 17,790 indexed, latest versions
Container images
2,121
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,981 of 17,790 indexed charts deploy, on 2,121 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,813
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0296
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,981 by stars
ChartLatestAffected imagesRadar Score
monitoringcluster-deploy0.3.01 of 11See more

monitoring cluster-deploy 0.3.0

1 of the 11 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

8,219
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

9,219
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
xz-utils@5.8.1-1
5.8.1-1+deb13u1
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

7,193
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
xz-utils@5.8.1-1
5.8.1-1+deb13u1
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

6,982
clusterplexclusterplexVerified publisher1.1.101 of 3See more

clusterplex clusterplex 1.1.10

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,935
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

4,648
door-agentcnoVerified publisher3.0.152 of 15See more

door-agent cno 3.0.15

2 of the 15 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
library/docker:27-dindaa3df78ecf32
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

19,454
ms-basecodedesignplus-chartsVerified publisher0.0.321 of 1See more

ms-base codedesignplus-charts 0.0.32

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
nginxdemos/hello:0.4b28d1e16c676
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,292
codehubcodehubVerified publisher6.2.183 of 5See more

codehub codehub 6.2.18

3 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/postgresql:latest42a8200d3597
xz-utils@5.4.1-1
5.4.1-1+deb12u1
jupyterhub/jupyterhub:5.4.63974ba945e65
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

13,312
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,797
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,395
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

5,409
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

8,011
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

8,011
ConvertServiceWeb-Helm-Buildconvertserviceweb-helm-build0.1.11 of 7See more

ConvertServiceWeb-Helm-Build convertserviceweb-helm-build 0.1.1

1 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3.11.5-management1b0f675d2f24
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,157
cortezacorteza1.1.02 of 3See more

corteza corteza 1.1.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,441
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,691
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,220
bitcoincosmicrocks2.0.32 of 2See more

bitcoin cosmicrocks 2.0.3

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/knots:29.2.knots20251010d7db5cd4079b
xz@5.6.2-r1
5.8.3-r0
ghcr.io/esomore/bitcoin-prometheus-exporter:masterded173632986
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

927
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,983
ociscosmicrocks0.7.01 of 2See more

ocis cosmicrocks 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
owncloud/ocis:7.1.388e7c854517d
xz@5.6.2-r1
5.8.3-r0

Open the chart page →

1,932
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

14,642
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,282
grafana-mcpcowboysysopVerified publisher2.0.01 of 1See more

grafana-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,210
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,042
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

6,214
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

4,797
qdrantcowboysysopVerified publisher3.0.01 of 1See more

qdrant cowboysysop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.4.166ee661d5241
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,049
rediscowboysysopVerified publisher21.2.61 of 1See more

redis cowboysysop 21.2.6

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,644
logstream-mastercriblio2.9.91 of 1See more

logstream-master criblio 2.9.9

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
cribl/cribl:3.0.2762747cb6796
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

9,296
piwigocronce0.0.61 of 1See more

piwigo cronce 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mathieuruellan/piwigo:latest04572c8a1b04
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

1,084
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,883
pagescrypticcode-helmchart1.0.02 of 3See more

pages crypticcode-helmchart 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,242
csghubcsghubVerified publisher2.4.38 of 34See more

csghub csghub 2.4.3

8 of the 34 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
xz@5.6.3-r0
5.8.3-r0
opencsghq/agenticflow:ee-v0.6-52f03fead54db
xz-utils@5.4.1-1
5.4.1-1+deb12u1
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
opencsghq/kubectl:latestb6d87e1048c2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

59,452
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
opencsghq/csgship-portal:v1.2.1865814dc87a1
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

11,544
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
firefart/requesttracker:5.0.40d6249906d8c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

15,419
wazuhcsic-charts0.1.02 of 4See more

wazuh csic-charts 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wazuh/wazuh-dashboard:4.4.11787550d2358
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
wazuh/wazuh-manager:4.4.121994f40e0da
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

13,944
cspconsolecspconsole1.3.115 of 5See more

cspconsole cspconsole 1.3.11

5 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
cspconsole/config-provider:1.0.365524a26a6c23
xz-utils@5.4.1-1
5.4.1-1+deb12u1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
xz-utils@5.4.1-1
5.4.1-1+deb12u1
cspconsole/report-collector:1.0.15839750248193b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
cspconsole/report-processor:1.0.279a2d8840bfdf
xz-utils@5.4.1-1
5.4.1-1+deb12u1
library/nginx:1.28-alpinea8b39bd9cf0f
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

12,394
cypikcypik-app0.1.01 of 2See more

cypik cypik-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

7,548
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

16,683
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,440
daejeon_2-3daejeon2-30.1.01 of 2See more

daejeon_2-3 daejeon2-3 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
clsen2024/daejeon_2-3:latest1156cd87c8fb
xz@5.6.1-r3
5.8.3-r0

Open the chart page →

1,141
dakeradakera-helmVerified publisher0.11.1071 of 3See more

dakera dakera-helm 0.11.107

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/dakera-ai/dakera-dashboard:0.3.292e059589f7f7
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

3,983
pagesdalston-pages1.0.02 of 3See more

pages dalston-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,242
pagesdaman-dell-kuber1.0.02 of 3See more

pages daman-dell-kuber 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,242
damap-chartdamapVerified publisher0.3.02 of 5See more

damap-chart damap 0.3.0

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/damap-org/damap-backend:5.0.0f3d0c7d35498
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

14,322
dapr-agentsdapr-agents-devVerified publisher0.1.53 of 31See more

dapr-agents dapr-agents-dev 0.1.5

3 of the 31 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:1.30.98c06e1ba643a
xz@5.8.1-r0
5.8.3-r0
mcp/grafana:latest9362bcf6aa0e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

22,355
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

5,841
pgcatdasmeta0.1.31 of 2See more

pgcat dasmeta 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,162
proxysqldasmeta1.2.31 of 1See more

proxysql dasmeta 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
proxysql/proxysql:2.7.3a4d6c35c2949
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,881

Container images carrying it

2,121 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/onos-progran:1.0.05715e5648aa0
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omecproject/openmme:master-latest64776cb9edb3
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
omkara25/simple-microservice-app-user-service:v2d62cba548580
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ondrejsika/counter:latestd95eaeee2172
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
onosproject/onos:2.2.144914a8d4b3f
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
onyxdotapp/onyx-backend:latest473fdffe4e67
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
oomk8s/ubuntu-init:1.0.03adf3d21ad3b
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
opea/asr:1.025dd26d9cd09
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/chatqna:1.038c51b791efa
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/chatqna-conversation-ui:v0.9bdb9ec215872
xz@5.6.2-r0
5.8.3-r0
1
opea/codegen:1.058f91683892d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codegen-ui:1.02bee4eb66f3e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codetrans:1.0e2436483b73d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codetrans-ui:1.03ef121f34610
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/docsum:1.03eaa91849512
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/docsum-ui:1.07f854e9bffaf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/guardrails-tgi:1.0262c6048aab8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/guardrails-tgi:latestf68bec6a1271
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/speecht5:1.0249afad3d268
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/tts:1.0257ae94709e9
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/web-retriever-chroma:1.0fe08165d7770
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
openbas/caldera-server:5.1.0a277796d9724
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
openbas/platform:2.0.5d986d80b0a75
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csgship-portal:v1.2.1865814dc87a1
xz@5.6.3-r1
5.8.3-r0
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/kubectl:latestb6d87e1048c2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opendatacube/explorer:latest120457ffcd69
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
opendatacube/pipelines:wofs-1.225d810e8504b8
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/restcube:latest91870111837c
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/wms:latest1b90cdf68831
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/wps:latest80df355a660b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
openelevation/open-elevation:latest82fb21612e86
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
openkm/openkm-ce:6.3.113bc465a7461b
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
opennms/sentinel:36.0.288869082a14f
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1
1
opennode/waldur-site-agent:1.0.76d2e3b97c8d2
xz@5.6.2-r0
5.8.3-r0
1
openproject/hocuspocus:release-338001b288dc1359dfb5
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
openthread/otbr:latestf307f59f6432
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
1
openvino/model_server:2025.2.11e7cd1d70cc1
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.