StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,985
of 17,787 indexed, latest versions
Container images
2,125
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,985 of 17,787 indexed charts deploy, on 2,125 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,816
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0297
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,985 by stars
ChartLatestAffected imagesRadar Score
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,066
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.671 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,224
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

107,899
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,858
psmdb-operatorpercona1.23.11 of 1See more

psmdb-operator percona 1.23.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
percona/percona-server-mongodb-operator:1.23.0feaff989e253
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1

Open the chart page →

265
platzioplatz-ioVerified publisher0.6.51 of 2See more

platzio platz-io 0.6.5

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
platzio/backend:v0.6.5d5e5972f344b
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,867
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,079
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
library/elasticsearch:8.15.0310b9fc03b06
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
library/postgres:16.24aea012537ed
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

13,615
nominatimrobjuz6.4.11 of 4See more

nominatim robjuz 6.4.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

8,760
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

6,385
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

24,549
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,466
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,412
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

5,889
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,265
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,814
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

15,525
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

7,064
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,816
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

28,579
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,355
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

18,149
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

4,428
wallarm-ingresswallarmVerified publisher5.3.10-11 of 2See more

wallarm-ingress wallarm 5.3.10-1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wallarm/ingress-controller:5.3.10.1a1fecfdf987e
xz@5.6.2-r1
5.8.3-r0

Open the chart page →

1,301
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,178
wgerwgerOfficialVerified publisher1.0.01 of 8See more

wger wger 1.0.0

1 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wger/server:2.6997ead43aabd
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

8,587
paperless-ngxadnoctemVerified publisher0.4.21 of 5See more

paperless-ngx adnoctem 0.4.2

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

19,769
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

13,683
agentareaagentareaVerified publisher0.0.181 of 16See more

agentarea agentarea 0.0.18

1 of the 16 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:9.0.1546304417fea
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

14,960
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.221 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.22

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,406
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,744
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,615
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,936
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

12,061
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

8,384
psonoankra-chartsVerified publisher1.2.01 of 2See more

psono ankra-charts 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
psono/psono-server:5.0.03b974b43ea03
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

2,387
upcloud-csiankra-chartsVerified publisher0.4.01 of 8See more

upcloud-csi ankra-charts 0.4.0

1 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
alpine/k8s:1.31.137a319b15cfc9
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

14,920
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,378
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

22,233
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,790
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,231
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,722
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,309
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,946
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

77,821
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
hyperledger/fabric-couchdb:0.4.15f6c724592abf
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

77,802
astradnsastradnsVerified publisher0.2.91 of 2See more

astradns astradns 0.2.9

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,541
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

13,199
aramid-indexerbiatec-repoVerified publisher3.9.01 of 5See more

aramid-indexer biatec-repo 3.9.0

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

13,513
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,239

Container images carrying it

2,125 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/lte-softmodem:1.1.0b5ddd36ec20c
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
omecproject/lte-uesoftmodem:1.1.0686f8bc37d8c
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
omecproject/mme-exporter:paging-latestbcc5f19fd676
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
omecproject/ngic-cp:central-cp-multi-upfs-latest24a389a0a4fe
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
omecproject/onos-progran:1.0.05715e5648aa0
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omecproject/openmme:master-latest64776cb9edb3
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
omkara25/simple-microservice-app-order-service:v2.18327546c7aac
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
omkara25/simple-microservice-app-payment-service:v2afff40172b6b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
omkara25/simple-microservice-app-user-service:v2d62cba548580
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ondrejsika/counter:latestd95eaeee2172
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
onosproject/onos:2.2.144914a8d4b3f
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
onyxdotapp/onyx-backend:latest473fdffe4e67
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
oomk8s/ubuntu-init:1.0.03adf3d21ad3b
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
opea/asr:1.025dd26d9cd09
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/chatqna:1.038c51b791efa
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/chatqna-conversation-ui:v0.9bdb9ec215872
xz@5.6.2-r0
5.8.3-r0
1
opea/codegen:1.058f91683892d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codegen-ui:1.02bee4eb66f3e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codetrans:1.0e2436483b73d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/codetrans-ui:1.03ef121f34610
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/docsum:1.03eaa91849512
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/docsum-ui:1.07f854e9bffaf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/guardrails-tgi:1.0262c6048aab8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/guardrails-tgi:latestf68bec6a1271
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/speecht5:1.0249afad3d268
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/tts:1.0257ae94709e9
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opea/web-retriever-chroma:1.0fe08165d7770
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
openbas/caldera-server:5.1.0a277796d9724
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
openbas/platform:2.0.5d986d80b0a75
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opencsghq/csgship-portal:v1.2.1865814dc87a1
xz@5.6.3-r1
5.8.3-r0
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
opencsghq/kubectl:latestb6d87e1048c2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opendatacube/explorer:latest120457ffcd69
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
opendatacube/pipelines:wofs-1.225d810e8504b8
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/restcube:latest91870111837c
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/wms:latest1b90cdf68831
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
opendatacube/wps:latest80df355a660b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
openelevation/open-elevation:latest82fb21612e86
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
openkm/openkm-ce:6.3.113bc465a7461b
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
opennms/sentinel:36.0.288869082a14f
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1
1
opennode/waldur-site-agent:1.0.76d2e3b97c8d2
xz@5.6.2-r0
5.8.3-r0
1
openproject/hocuspocus:release-338001b288dc1359dfb5
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.