StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,981
of 17,790 indexed, latest versions
Container images
2,121
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,981 of 17,790 indexed charts deploy, on 2,121 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,813
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0296
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,981 by stars
ChartLatestAffected imagesRadar Score
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
xz-utils@5.4.1-1
5.4.1-1+deb12u1
openbas/caldera-server:5.1.0a277796d9724
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
openbas/platform:2.0.5d986d80b0a75
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

25,190
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,242
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,154
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,085
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,996
hetzner-s3-operatorhetzner-s3-operatorVerified publisher0.1.31 of 1See more

hetzner-s3-operator hetzner-s3-operator 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kenchrcum/hetzner-s3-operator:0.1.384dae7aeea5b
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

629
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

14,363
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hmediade/printserver:latest481a552c8e1c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hmediade/printserver-init:latest7f005eb6c718
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,948
home-ha-mockhome-ha-mockVerified publisher2.0.51 of 1See more

home-ha-mock home-ha-mock 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,065
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

16,415
home-security-demohome-security-demoVerified publisher2.0.121 of 3See more

home-security-demo home-security-demo 2.0.12

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,148
paperlesshpVerified publisher0.1.21 of 5See more

paperless hp 0.1.2

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.3467097317623a
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

26,984
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

8,751
eoloplanthttpd-eoloplant0.1.04 of 7See more

eoloplant httpd-eoloplant 0.1.0

4 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
codeurjc/toposervice:v1.09fb4c11e6a49
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
library/mongo:5.0.6-focal8e70544b6c76
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/rabbitmq:3.9-management8a279e9396a8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

32,372
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
apache/skywalking-ui:9.2.0295f1dc87d98
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

16,495
skywalking-v1huangchengwu-helm-chart0.1.02 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
apache/skywalking-ui:8.9.180530f0308a5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

20,741
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

3,755
townsquarehuscker-chartsVerified publisher1.0.42 of 2See more

townsquare huscker-charts 1.0.4

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

3,428
add-crismuxhydraVerified publisher0.9.31 of 1See more

add-crismux hydra 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,299
hydrahydraVerified publisher0.9.52 of 2See more

hydra hydra 0.9.5

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

9,084
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

7,785
remove-crismuxhydraVerified publisher0.9.31 of 1See more

remove-crismux hydra 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,299
hydrogen-webhydrogen-web0.1.101 of 1See more

hydrogen-web hydrogen-web 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

726
hyperglance-helmhyperglance-helmVerified publisher10.0.53 of 6See more

hyperglance-helm hyperglance-helm 10.0.5

3 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperglance/init:wildfly467ad8491bc3
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hyperglance/init:postgres9fd5faf1fe80
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hyperglance/init:apacheb2f8c6d52623
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

11,180
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,211
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,938
iam-eks-user-mapperiam-eks-user-mapper1.6.01 of 1See more

iam-eks-user-mapper iam-eks-user-mapper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,674
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,986
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

57,759
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

12,628
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

25,196
ibm-ws-dyn-agent-devibm-charts1.0.01 of 1See more

ibm-ws-dyn-agent-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

19,306
ibm-ucv-prodibm-helm5.2.62 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

2 of the 16 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/rabbitmq:4.1.2fac502149c40
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

12,161
icegateicegateVerified publisher0.1.13 of 3See more

icegate icegate 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,554
tolgeeicoretechVerified publisher0.47.01 of 3See more

tolgee icoretech 0.47.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.369e8582b781c
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,751
monitoring-stackict-platformVerified publisher0.4.02 of 13See more

monitoring-stack ict-platform 0.4.0

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
xz@5.8.1-r0
5.8.3-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

9,629
ingress-nginxifmethod-helm-charts4.12.11 of 2See more

ingress-nginx ifmethod-helm-charts 4.12.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

1,477
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
library/mongo:5.0.6-focal8e70544b6c76
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/rabbitmq:3.9-management8a279e9396a8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

27,822
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

9,038
ikigaiikigai-chartVerified publisher0.0.94 of 58See more

ikigai ikigai-chart 0.0.9

4 of the 58 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/zookeeper:3.8-temurin55d1e5b2e601
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

37,874
ilum-apiilumVerified publisher6.7.31 of 1See more

ilum-api ilum 6.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ilum/api:6.7.3624fd09528c8
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,196
ilum-hive-metastoreilumVerified publisher1.2.01 of 2See more

ilum-hive-metastore ilum 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,597
ilum-marquezilumVerified publisher6.7.02 of 3See more

ilum-marquez ilum 6.7.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ilum/marquez:0.54.06e1d709d41f8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,303
ilum-streamlitilumVerified publisher0.1.01 of 1See more

ilum-streamlit ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ilum/streamlit-example:1.0.0ce5dcdeb22ba
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,760
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

11,885
plausible-analyticsimioVerified publisher0.4.25 of 5See more

plausible-analytics imio 0.4.2

5 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/clickhouse:24.12.3-debian-12-r13cf6544f6c6c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/clickhouse:24.12.4c7e70bf1d3fb
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
library/postgres:17.6-alpineef257d85f76e
xz@5.8.1-r0
5.8.3-r0
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

10,502
smtp4devimioVerified publisher0.1.11 of 1See more

smtp4dev imio 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rnwood/smtp4dev:3.6.1912304153668
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,215
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,353
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

16,230
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,363

Container images carrying it

2,121 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
praravind1801/helmimages:3.0.0f29d637b9ce1
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
prodrigestivill/postgres-backup-local:latestf70742ebe42b
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
project2team4/react:latest3ff031a08887
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
prom/cloudwatch-exporter:v0.16.071c2e988af06
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
prompve/prometheus-pve-exporter:3.8.2e3d501a82df5
xz@5.8.2-r0
5.8.3-r0
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
prowlercloud/prowler-api:5.31.14f252d579be2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
proxysql/proxysql:3.0.8947a7abad45b
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
proxysql/proxysql:2.7.3a4d6c35c2949
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
pschichtel/mindustry-server:v145.1b543e9c2d371
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
psono/psono-server:5.0.03b974b43ea03
xz@5.6.2-r0
5.8.3-r0
1
psorab/elibrary:latest53b68896c4ce
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
pypiserver/pypiserver:v2.4.1e935e19433ef
xz@5.6.2-r1
5.8.3-r0
1
qdrant/qdrant:v1.7.45f2a56b95266
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
qdrant/qdrant:v1.4.166ee661d5241
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
quickwit/quickwit:v0.8.1d29332bdadcc
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
qumine/minecraft-server:v0.1.15c0b650d51132
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
qxip/qryn:3.2.3977acc9c7a9fd
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
rabeh/apibootspring:1.0941007b6946e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
radarbase/radar-push-endpoint:0.4.0e1758508e033
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
razorbladex401/dayz:latest6a4d79248e7d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
readysettech/sqp:latest588f3507280e
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
readysettech/sqp-duckdb:latest67a83203ce60
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
reallibrephotos/librephotos-proxy:1.0.398a13dabbadc
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
reaper99/recipya:v1.2.27f7ec3aeb88c
xz@5.6.3-r0
5.8.3-r0
1
redash/redash:25.8.000d813437db5
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
redash/redash:26.3.0c5c9148f5c38
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
redis/redis-stack-server:6.2.6-v251a58f32d412
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
redis/redis-stack-server:latest798ab84d9f26
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
redis/redis-stack-server:7.4.0-v0887cf87cc744
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
reportportal/service-auto-analyzer:5.15.5c449b93629a5
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
resouer/redis-slave:v2e2f198b49ba7
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2
1
resurfaceio/resurface:3.7.84d5cda2f64109
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
rezachalak/bzen-mongo:1.0.034f694325191
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
rhasspy/wyoming-whisper:3.5.0308b7959a925
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
rnwood/smtp4dev:3.6.1912304153668
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
robotshop/rs-mongodb:latest119b545823cd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
rocketadmin/rocketadmin:1.17.710955ef540b9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
rocketchat/freeswitch:stablecfba5c20a5cc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
rocm/k8s-device-plugin:1.31.0.926212c665aab
xz@5.6.3-r0
5.8.3-r0
1
rommapp/romm:5.2.03512f2ca4557
xz@5.8.2-r0
5.8.3-r0
1
rommapp/romm:4.4.1b909e95d1aab
xz@5.8.1-r0
5.8.3-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.