StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,981
of 17,790 indexed, latest versions
Container images
2,121
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,981 of 17,790 indexed charts deploy, on 2,121 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,813
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0296
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,981 by stars
ChartLatestAffected imagesRadar Score
openbashelm-openbasVerified publisher1.8.144 of 7See more

openbas helm-openbas 1.8.14

4 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
xz-utils@5.4.1-1
5.4.1-1+deb12u1
openbas/caldera-server:5.1.0a277796d9724
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
openbas/platform:2.0.5d986d80b0a75
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

25,190
pageshelm-repo1.0.02 of 3See more

pages helm-repo 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,242
steampipehelm-steampipeVerified publisher2.4.11 of 1See more

steampipe helm-steampipe 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/devops-ia/steampipe:v2.4.1a982103d91d3
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,154
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,085
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,996
hetzner-s3-operatorhetzner-s3-operatorVerified publisher0.1.31 of 1See more

hetzner-s3-operator hetzner-s3-operator 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kenchrcum/hetzner-s3-operator:0.1.384dae7aeea5b
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

629
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

14,363
printserverhmediadeVerified publisher1.0.22 of 4See more

printserver hmediade 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hmediade/printserver:latest481a552c8e1c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hmediade/printserver-init:latest7f005eb6c718
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,948
home-ha-mockhome-ha-mockVerified publisher2.0.51 of 1See more

home-ha-mock home-ha-mock 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,065
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

16,415
home-security-demohome-security-demoVerified publisher2.0.121 of 3See more

home-security-demo home-security-demo 2.0.12

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,148
paperlesshpVerified publisher0.1.21 of 5See more

paperless hp 0.1.2

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.3467097317623a
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

26,984
httpbin2022httpbin2022Verified publisher0.1.11 of 1See more

httpbin2022 httpbin2022 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mshanley80/httpbin2022:latest5b189a70c0fb
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

8,751
eoloplanthttpd-eoloplant0.1.04 of 7See more

eoloplant httpd-eoloplant 0.1.0

4 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
codeurjc/planner:v1.0800cf520c245
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
codeurjc/toposervice:v1.09fb4c11e6a49
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
library/mongo:5.0.6-focal8e70544b6c76
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/rabbitmq:3.9-management8a279e9396a8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

32,372
prometheushuangchengwu-helm-chart0.1.02 of 3See more

prometheus huangchengwu-helm-chart 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:9.2.0133d35d2c263
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
apache/skywalking-ui:9.2.0295f1dc87d98
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

16,495
skywalking-v1huangchengwu-helm-chart0.1.02 of 4See more

skywalking-v1 huangchengwu-helm-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.9.1b4ec8c18d079
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
apache/skywalking-ui:8.9.180530f0308a5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

20,741
tdenginehuangchengwu-helm-chart3.0.21 of 1See more

tdengine huangchengwu-helm-chart 3.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
tdengine/tdengine:3.0.2.24140a4021ddb
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

3,755
townsquarehuscker-chartsVerified publisher1.0.42 of 2See more

townsquare huscker-charts 1.0.4

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

3,428
add-crismuxhydraVerified publisher0.9.31 of 1See more

add-crismux hydra 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,299
hydrahydraVerified publisher0.9.52 of 2See more

hydra hydra 0.9.5

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

9,084
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

7,785
remove-crismuxhydraVerified publisher0.9.31 of 1See more

remove-crismux hydra 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,299
hydrogen-webhydrogen-web0.1.101 of 1See more

hydrogen-web hydrogen-web 0.1.10

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/element-hq/hydrogen-web:v0.5.12d15d14b201a
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

726
hyperglance-helmhyperglance-helmVerified publisher10.0.53 of 6See more

hyperglance-helm hyperglance-helm 10.0.5

3 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hyperglance/init:wildfly467ad8491bc3
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hyperglance/init:postgres9fd5faf1fe80
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
hyperglance/init:apacheb2f8c6d52623
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

11,180
mvfi4trustVerified publisher1.1.21 of 1See more

mvf i4trust 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
wistefan/mvf:lateste0887302b2d8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,211
vcwaltidi4trustVerified publisher0.0.191 of 1See more

vcwaltid i4trust 0.0.19

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,938
iam-eks-user-mapperiam-eks-user-mapper1.6.01 of 1See more

iam-eks-user-mapper iam-eks-user-mapper 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,674
ibexaibexaVerified publisher3.11.11 of 10See more

ibexa ibexa 3.11.1

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
boky/postfix:4.4.0f3f247fd4252
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,986
ibm-microclimateibm-charts0.1.01 of 8See more

ibm-microclimate ibm-charts 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/microclimate-theia:lateste17bdccc5030
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

57,759
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

12,628
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

25,196
ibm-ws-dyn-agent-devibm-charts1.0.01 of 1See more

ibm-ws-dyn-agent-dev ibm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

19,306
ibm-ucv-prodibm-helm5.2.62 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

2 of the 16 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/rabbitmq:4.1.2fac502149c40
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

12,161
icegateicegateVerified publisher0.1.13 of 3See more

icegate icegate 0.1.1

3 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
xz-utils@5.4.1-1
5.4.1-1+deb12u1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

4,554
tolgeeicoretechVerified publisher0.47.01 of 3See more

tolgee icoretech 0.47.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.369e8582b781c
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,751
monitoring-stackict-platformVerified publisher0.4.02 of 13See more

monitoring-stack ict-platform 0.4.0

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
xz@5.8.1-r0
5.8.3-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

9,629
ingress-nginxifmethod-helm-charts4.12.11 of 2See more

ingress-nginx ifmethod-helm-charts 4.12.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

1,477
eoloserverihuertas2021-vmartinp2021-helm0.1.03 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
codeurjc/toposervice:v1.09fb4c11e6a49
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
library/mongo:5.0.6-focal8e70544b6c76
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/rabbitmq:3.9-management8a279e9396a8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

27,822
bluesky-pdsijmacd1.0.01 of 2See more

bluesky-pds ijmacd 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
arunvelsriram/utils:latest655ad18fd8d6
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

9,038
ikigaiikigai-chartVerified publisher0.0.94 of 58See more

ikigai ikigai-chart 0.0.9

4 of the 58 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dremio/dremio-oss:24.1.080ed2e3b7c43
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
library/zookeeper:3.8-temurin55d1e5b2e601
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

37,874
ilum-apiilumVerified publisher6.7.31 of 1See more

ilum-api ilum 6.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ilum/api:6.7.3624fd09528c8
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,196
ilum-hive-metastoreilumVerified publisher1.2.01 of 2See more

ilum-hive-metastore ilum 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,597
ilum-marquezilumVerified publisher6.7.02 of 3See more

ilum-marquez ilum 6.7.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ilum/marquez:0.54.06e1d709d41f8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,303
ilum-streamlitilumVerified publisher0.1.01 of 1See more

ilum-streamlit ilum 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ilum/streamlit-example:1.0.0ce5dcdeb22ba
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,760
ilum-unity-catalogilumVerified publisher0.1.01 of 4See more

ilum-unity-catalog ilum 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

11,885
plausible-analyticsimioVerified publisher0.4.25 of 5See more

plausible-analytics imio 0.4.2

5 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/clickhouse:24.12.3-debian-12-r13cf6544f6c6c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/clickhouse:24.12.4c7e70bf1d3fb
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
library/postgres:17.6-alpineef257d85f76e
xz@5.8.1-r0
5.8.3-r0
ghcr.io/plausible/community-edition:v3.0.114c1afde21d6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

10,502
smtp4devimioVerified publisher0.1.11 of 1See more

smtp4dev imio 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rnwood/smtp4dev:3.6.1912304153668
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,215
apexkube-agentimprowisedVerified publisher1.4.01 of 2See more

apexkube-agent improwised 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

3,353
kore-boardimprowisedVerified publisher0.5.81 of 4See more

kore-board improwised 0.5.8

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

16,230
nifi-registryimprowisedVerified publisher1.0.01 of 2See more

nifi-registry improwised 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/nifi-registry:1.27.063b8e3e40742
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

5,363

Container images carrying it

2,121 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
testinprod/op-erigon:latest0a125bd77a2d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
thecampagnards/trafficlight-api:main7dca9d973837
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
thecloudspark/app-vote:1.0c7da7417a86a
xz@5.6.1-r3
5.8.3-r0
1
thelande/kasa_exporter:v0.2.3a1fdb8baa152
xz@5.6.1-r3
5.8.3-r0
1
theradius/loggia:0.463ba348546ec
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
thesisrobot/bitcoind:v23.016b368e4d52c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
thijsvanloef/palworld-server-docker:v2.5.0b4ac9ee22483
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
thingsboard/tb-postgres:latest2d17e4e36edc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
thmmniii/fbs-core:v1.27.15438517d9fc2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
thongngo3301/stakefish:latesta341af5976e3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
tiago2/cap:2.159f5ae4e261e
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
tibyandocker/serviceexample:latesta4ad592cea84
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
tombursch/kitchenowl-web:v0.7.8517f808eee66
xz@5.8.2-r0
5.8.3-r0
1
tomsquest/docker-radicale:3.6.1.0a594c624c5a6
xz@5.8.2-r0
5.8.3-r0
1
tpdock/freeradius:2.2.93da600c95a49
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
trinodb/trino:405ee80ab5eeab2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
trueosiris/vrising:latest9356f98ad561
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
tussanakorndev/kube-pod-alerts:1.0.5216fdadadf9a
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
typesense/typesense:0.25.1035ccfbc3fd8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
typesense/typesense:0.23.03accb727cbe2
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
typesense/typesense:30.191604dc128e2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
typesense/typesense:28.0.rc35dea1b62b7b6e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
ubuntu/squid:5.2-22.04_beta723891b5bc74
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
v3xl/kubesend:0.1.06f62ca96be82
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
vabene1111/recipes:2.3.50f8d061895e9
xz@5.8.1-r0
5.8.3-r0
1
valkey/valkey:8.1.61f84517eca8e
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
valkey/valkey:8.0.1c5d4f082b76d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
vaultwarden/server:1.35.443498a94b22f
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
vaultwarden/server:1.34.384fd8a47f58d
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
vaultwarden/server:1.35.79a8eec71f4a5
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
vcnngr/pnfrontend:latest4e4979ab8c41
xz@5.8.1-r0
5.8.3-r0
1
vcnngr/telegram-login:latest1a849a997b6d
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
vcnngr/telegram-rebot:latest30f1f05e57a6
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
veecode/devportal-admin-ui:0.4.30c69fd286b489
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
venturenox/redis:latest83b471c193ba
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
vexorian/dizquetv:1.4.37e2b99844a5c
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.