StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,981
of 17,790 indexed, latest versions
Container images
2,121
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,981 of 17,790 indexed charts deploy, on 2,121 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,813
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0296
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,981 by stars
ChartLatestAffected imagesRadar Score
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

1,237
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,062
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

14,884
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

4,208
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,849
opentelemetry-demoopentelemetry-helmVerified publisher0.41.22 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.2

2 of the 34 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
xz@5.8.1-r0
5.8.3-r0
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

22,916
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,936
opikopikOfficialVerified publisher2.2.642 of 13See more

opik opik 2.2.64

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
redis/redis-stack-server:7.2.0-v10e44b2b49d059
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

14,444
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

9,101
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

2,286
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,715
radarrpanzer1119Verified publisher0.2.21 of 1See more

radarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

950
sonarrpanzer1119Verified publisher0.2.21 of 1See more

sonarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

948
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,553
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,918
pbuf-registrypbuf-registry0.4.11 of 2See more

pbuf-registry pbuf-registry 0.4.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.1-alpine3.2144d837eb4c2e
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

1,948
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

4,735
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

7,128
phpipamphpipam-helmVerified publisher1.0.122 of 3See more

phpipam phpipam-helm 1.0.12

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
phpipam/phpipam-cron:v1.7.354468713454e
xz@5.6.2-r0
5.8.3-r0
phpipam/phpipam-www:v1.7.3ace0efd24830
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

3,778
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,622
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

32,033
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

5,490
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
xz-utils@5.8.1-1
5.8.1-1+deb13u1
prowlercloud/prowler-api:5.31.14f252d579be2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,269
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,224
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,868
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,815
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,474
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,675
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
xz-utils@5.4.1-1
5.4.1-1+deb12u1
reportportal/service-auto-analyzer:5.15.5c449b93629a5
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,993
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zbalogh/reservation-angular-ui:1.0.95eb19e460b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

6,640
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,489
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,570
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

9,913
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,165
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,554
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,089
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

7,814
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,921
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,684
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

7,570
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

13,018
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,952
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,332
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

13,558
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

30,428
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

11,031
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

924
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

38,166
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,184
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

5,220

Container images carrying it

2,121 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
xz-utils@5.8.1-1
5.8.1-1+e1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/k2x0t8t6/kubeadapt/app/kubeadapt-k8s-pulse:v3.0.1dc5a516c2333
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/aerokube/keygen:1.0.1578934444f04
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/ceph/ceph:v21.1.05ff3692d2f3f
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
quay.io/deployhub/ms-nginx:svccat-v11.0.815-g717581d2d3400664e8
xz@5.8.1-r0
5.8.3-r0
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
quay.io/kiwigrid/k8s-sidecar:1.30.349dcce269568
xz@5.6.3-r0
5.8.3-r0
1
quay.io/kiwigrid/k8s-sidecar:1.30.10835d79d8fbae
xz@5.8.1-r0
5.8.3-r0
1
quay.io/kiwigrid/k8s-sidecar:2.6.0a6c101156d42
xz@5.8.2-r0
5.8.3-r0
1
quay.io/maxiv/pieeat:0.9.3099715479210
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
quay.io/mittwald/kube-mail:latest04f1099241fc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
quay.io/shivering-isles/dovecot:2.3.214599ada9aa06
xz@5.6.1-r3
5.8.3-r0
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.