StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,981
of 17,792 indexed, latest versions
Container images
2,119
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,981 of 17,792 indexed charts deploy, on 2,119 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,811
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0296
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,981 by stars
ChartLatestAffected imagesRadar Score
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/wordpress:php8.1-apachef73396626d2f
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

8,795
excalidrawkubitodevVerified publisher1.0.31 of 1See more

excalidraw kubitodev 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
excalidraw/excalidraw:latestf7ee194addd6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

843
penpotkubitodevVerified publisher1.2.12 of 5See more

penpot kubitodev 1.2.1

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
penpotapp/backend:2.2.147853d9bb9dd
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
penpotapp/exporter:2.2.15c835ffd87ab
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

17,027
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.43 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

3 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

20,435
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

3,477
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,969
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

2,511
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,158
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,389
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

16,561
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,857
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

26,400
lagoon-docker-hostlagoon-chartsVerified publisher0.7.01 of 1See more

lagoon-docker-host lagoon-charts 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
uselagoon/docker-host:v3.6.12c89ed939b8b
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

2,125
pageslatif-pages1.0.02 of 3See more

pages latif-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,262
pageslavanya-pages1.0.02 of 3See more

pages lavanya-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,262
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

33,613
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,281
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

4,067
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

4,649
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

4,467
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,402
amplinguamatics0.12.01 of 4See more

amp linguamatics 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,108
data-factorylinguamatics1.0.11 of 4See more

data-factory linguamatics 1.0.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,108
delugelinkding0.2.31 of 1See more

deluge linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/deluge:libtorrentv1-2.2.0-ls40052eac68ccc0
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

1,435
excalidrawlinkding0.2.31 of 1See more

excalidraw linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
excalidraw/excalidraw:latestf7ee194addd6
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

843
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

38,312
webdavlinuxoid690.1.01 of 1See more

webdav linuxoid69 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxoid69/webdav:1.26.2-r065bacf19caa7
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

1,082
calendar-apiliturgical0.1.51 of 1See more

calendar-api liturgical 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,557
liturgical-apiliturgical0.2.111 of 1See more

liturgical-api liturgical 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-api:1.0.12637bdcebdd8d
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,004
liturgical-appliturgical0.9.01 of 1See more

liturgical-app liturgical 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

953
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,814
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

20,262
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

12,158
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,639
zigbee2mqttlmatfyVerified publisher0.1.141 of 2See more

zigbee2mqtt lmatfy 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.7.260a295b40f4e
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

1,391
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,940
local-businesslocal-business0.1.01 of 1See more

local-business local-business 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
alakaganaguathoork/local-business:latest7eb27b0f4a5a
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

947
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

7,544
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

33,613
nightingalelogic3579Verified publisher0.3.12 of 6See more

nightingale logic3579 0.3.1

2 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
flashcatcloud/nightingale:8.5.1421acb36181b
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

9,096
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,689
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

6,570
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

23,673
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

5,921
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,053
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

17,951
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/media-storage:f6d861a026208b8c2359
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/transcoder:627e21dcb4a0327029e6
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

58,359
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

27,655
hyperglassm0nsterrr-hyperglassVerified publisher4.2.12 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

2 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
xz-utils@5.8.1-1
5.8.1-1+deb13u1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
xz@5.6.1-r3
5.8.3-r0

Open the chart page →

4,680
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,639

Container images carrying it

2,119 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/formancehq/console-v3:v1.16.0c99e8ef2c545
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ghcr.io/formancehq/portal:v1.16.06efef5d19d56
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/gchq/cyberchef:11.0.045082a0ac41d
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/grafana/helm-chart-toolbox-kubectl:0.1.2c7adcc4db378
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/gregperlinli/certvault:2.12.0a7d0cc9e260a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/grycap/im:latest06a16d4f279f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
xz@5.6.3-r0
5.8.3-r0
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/huscker/townsquare-frontend:2.15.2dc6384d10cc8
xz@5.6.3-r1
5.8.3-r0
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/jaydee94/kubeseal-webgui/ui:4.5.34447636e8102
xz@5.6.3-r1
5.8.3-r0
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/jeremylong/open-vulnerability-data-mirror:v9.0.49a69aa14dc3e
xz@5.8.2-r0
5.8.3-r0
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.