StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,979
of 17,790 indexed, latest versions
Container images
2,118
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,979 of 17,790 indexed charts deploy, on 2,118 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,812
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0294
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,979 by stars
ChartLatestAffected imagesRadar Score
ingress-nginxingress-nginx4.15.11 of 2See more

ingress-nginx ingress-nginx 4.15.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,548
metallbmetallbVerified publisher0.16.11 of 4See more

metallb metallb 0.16.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
quay.io/frrouting/frr:10.4.38745af1f9bbb
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,129
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,842
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,597
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
xz-utils@5.8.1-1
5.8.1-1+deb13u1
artifacthub/tracker:v1.23.05368d21a6e5c
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

10,782
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

30,167
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

11,372
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,309
openebsopenebsOfficialVerified publisher4.6.13 of 35See more

openebs openebs 4.6.1

3 of the 35 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
kiwigrid/k8s-sidecar:1.30.2cdb361e67b1b
xz@5.6.3-r0
5.8.3-r0
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

24,009
apisixapisix2.17.01 of 3See more

apisix apisix 2.17.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/etcd:latest99b408c15272
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,096
zabbixzabbix-communityVerified publisher7.1.04 of 5See more

zabbix zabbix-community 7.1.0

4 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

13,875
keycloakcloudpirates-keycloakVerified publisher0.21.371 of 3See more

keycloak cloudpirates-keycloak 0.21.37

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

4,365
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,901
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

5,378
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

5,557
openldap-stack-hahelm-openldapVerified publisher4.3.31 of 5See more

openldap-stack-ha helm-openldap 4.3.3

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,948
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

3,331
clamavwiremindVerified publisher3.7.31 of 1See more

clamav wiremind 3.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
clamav/clamav:1.4.3_base629a3050df6a
xz@5.8.2-r0
5.8.3-r0

Open the chart page →

1,060
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

9,194
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,514
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
milvusdb/milvus:v2.2.13a3a55e1c1497
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

32,353
cockroachdbcockroachdbVerified publisher22.0.31 of 3See more

cockroachdb cockroachdb 22.0.3

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
cockroachdb/cockroach:v26.3.1204f131510c7
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1

Open the chart page →

763
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

10,648
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

7,582
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
xz-utils@5.4.1-1
5.4.1-1+deb12u1
bitnamilegacy/redis:latest5927ff3702df
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,761
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,660
node-rednode-redVerified publisher0.40.21 of 1See more

node-red node-red 0.40.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
nodered/node-red:4.1.2216e7403aab9
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

2,173
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

2,717
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

4,808
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

19,497
pulsarapache4.7.02 of 10See more

pulsar apache 4.7.0

2 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
alpine/k8s:1.32.12048f8d9c8cc7
xz@5.8.2-r0
5.8.3-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

9,869
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,645
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

6,949
difydify-helmVerified publisher0.38.01 of 11See more

dify dify-helm 0.38.0

1 of the 11 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
langgenius/dify-sandbox:0.2.15750e1111426e
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

22,115
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

3,196
stacks-blockchainhirosystemsVerified publisher2.2.21 of 1See more

stacks-blockchain hirosystems 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,385
oktetooktetoOfficialVerified publisher0.0.0-2026-08-171 of 10See more

okteto okteto 0.0.0-2026-08-17

1 of the 10 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-173e56bdd1b90d
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

5,491
apisix-ingress-controllerapisix1.3.11 of 2See more

apisix-ingress-controller apisix 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/api7/adc:0.27.1f65f53dd9668
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

1,634
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2

Open the chart page →

23,992
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

4,159
oncallgrafana1.16.51 of 12See more

oncall grafana 1.16.5

1 of the 12 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
grafana/oncall:v1.16.5499851658393
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

16,251
openprojectopenproject-helm-chartsOfficialVerified publisher13.11.02 of 5See more

openproject openproject-helm-charts 13.11.0

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
openproject/hocuspocus:release-338001b288dc1359dfb5
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

19,998
sftpgosftpgoOfficialVerified publisher0.47.01 of 1See more

sftpgo sftpgo 0.47.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.46cb60f08fede
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

1,224
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

11,402
zabbixcetic3.1.34 of 5See more

zabbix cetic 3.1.3

4 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

33,907
csi-driver-smbcsi-driver-smbVerified publisher1.20.31 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

1 of the 6 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,952
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,700
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

6,550
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
xz-utils@5.4.1-1
5.4.1-1+deb12u1
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,387
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,360

Container images carrying it

2,118 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/linuxoid69/webdav:1.26.2-r065bacf19caa7
xz@5.6.2-r0
5.8.3-r0
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
ghcr.io/linuxserver/bookstack:version-v24.12.1cc795b254b73
xz@5.6.3-r0
5.8.3-r0
1
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
xz@5.6.3-r1
5.8.3-r0
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/linuxserver/radarr:6.0.4c8a55bd83672
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/liturgical-app/calendar-api:0.0.9688a685e2bde
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/liturgical-app/liturgical-api:1.0.12637bdcebdd8d
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/liturgical-app/liturgical-app:1.2.041f25aded572
xz@5.8.1-r0
5.8.3-r0
1
ghcr.io/livepeer/cloudflared-ingress-operator:latestc179cdcaa050
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/luzilla/unbound:v0.12.04fd8da9dc13c
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
xz@5.6.1-r3
5.8.3-r0
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/microboxlabs/miot-harness:0.1.0d548e9ae4b84
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/monicahq/monica-next:main8be69156acbb
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
ghcr.io/mweinelt/kea-exporter:v0.7.1d7b77020e924
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/mydecisive/octant-ui:0.0.1-testing61e4066b22fb
xz@5.8.2-r0
5.8.3-r0
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
ghcr.io/nicolargo/klances:0.1.374d6d33376eb
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.