StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,977
of 17,781 indexed, latest versions
Container images
2,118
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,977 of 17,781 indexed charts deploy, on 2,118 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,811
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0295
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,977 by stars
ChartLatestAffected imagesRadar Score
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

1,238
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,039
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

14,838
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

4,166
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.12 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

2 of the 34 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
xz@5.8.1-r0
5.8.3-r0
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

22,420
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,873
opikopikOfficialVerified publisher2.2.592 of 13See more

opik opik 2.2.59

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
redis/redis-stack-server:7.2.0-v10e44b2b49d059
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

14,334
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

8,939
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

2,278
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,681
radarrpanzer1119Verified publisher0.2.21 of 1See more

radarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

949
sonarrpanzer1119Verified publisher0.2.21 of 1See more

sonarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

947
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,489
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,883
pbuf-registrypbuf-registry0.4.11 of 2See more

pbuf-registry pbuf-registry 0.4.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.1-alpine3.2144d837eb4c2e
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

1,940
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

4,727
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

7,035
phpipamphpipam-helmVerified publisher1.0.122 of 3See more

phpipam phpipam-helm 1.0.12

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
phpipam/phpipam-cron:v1.7.354468713454e
xz@5.6.2-r0
5.8.3-r0
phpipam/phpipam-www:v1.7.3ace0efd24830
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

3,778
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,576
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

31,844
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
xz-utils@5.8.1-1
5.8.1-1+deb13u1
prowlercloud/prowler-api:5.31.14f252d579be2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,201
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,796
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,762
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,405
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,652
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
xz-utils@5.4.1-1
5.4.1-1+deb12u1
reportportal/service-auto-analyzer:5.15.5c449b93629a5
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,869
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zbalogh/reservation-angular-ui:1.0.95eb19e460b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

6,639
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,432
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,521
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

9,837
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,120
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,482
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,045
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

7,740
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,879
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,654
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

7,529
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

12,930
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,929
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,315
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

13,541
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

30,234
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,905
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

920
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

38,107
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,139
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

5,213

Container images carrying it

2,118 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.11f4feb3323a29
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
ghcr.io/wg-easy/wg-easy:145f26407fd2ed
xz@5.8.1-r0
5.8.3-r0
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
xz-utils@5.8.1-1
5.8.1-1+deb13u1
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
2
quay.io/frrouting/frr:10.4.38745af1f9bbb
xz@5.8.1-r0
5.8.3-r0
2
quay.io/kiwigrid/k8s-sidecar:2.1.2716b0b33ff2d
xz@5.8.1-r0
5.8.3-r0
2
quay.io/kiwigrid/k8s-sidecar:1.27.4f6ed71d0f9f1
xz@5.6.1-r3
5.8.3-r0
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
xz@5.8.1-r0
5.8.3-r0
2
registry.gitlab.com/shortlink-org/shortlink/ui:main9bdb1062d960
xz@5.8.2-r0
5.8.3-r0
2
registry.k8s.io/ingress-nginx/controller:v1.11.8695d79381ee6
xz@5.8.1-r0
5.8.3-r0
2
registry.k8s.io/ingress-nginx/controller:v1.12.1d2fbc4ec70d8
xz@5.6.3-r0
5.8.3-r0
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
2
1dev/server:11.9.0cd5b12fe5471
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
5200710/hadoop:3.2.3-java8092d3088a5fb
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
xz-utils@5.8.1-1
5.8.1-1+deb13u1
1
abdullahkhawer/simple-elasticsearch-cleaner:2.1.028a6c3f7e0a9
xz@5.6.3-r0
5.8.3-r0
1
abhinavsingh/proxy.py:latest51adc989fd03
xz@5.6.3-r0
5.8.3-r0
1
aboogie/login_test_backend:new9c41a4483ac8
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
actualbudget/actual-server:25.3.158fecd9088b7
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
xz-utils@5.6.1+really5.4.5-1build0.1
5.6.1+really5.4.5-1ubuntu0.3
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
xz-utils@5.6.1+really5.4.5-1
5.6.1+really5.4.5-1ubuntu0.3
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
aerospike/aerospike-kubernetes-operator:4.5.070a9eeb991b8
xz@1:5.6.2-4.el10_0
1:5.6.2-4.el10_2.1
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
1
aibrix/metadata-service:v0.7.063fb81a64377
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
airbyte/db:2.2.03b6985a0ce75
xz@5.8.1-r0
5.8.3-r0
1
airbyte/manifest-server:7.23.73b3a670af168
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
airbyte/pod-sweeper:1.5.198d2c39d512e
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
1
akaunting/akaunting:3.0.1552811b36ec3a
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
akeyless/base:latest759e4289fae8
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
xz@5.8.1-r0
5.8.3-r0
1
aktosecurity/data-ingestion-service213aded7adc5
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
1
alakaganaguathoork/local-business:latest7eb27b0f4a5a
xz@5.8.1-r0
5.8.3-r0
1
alazidis/stornx:1.1.1602d4f7f090c
xz-utils@5.4.1-1
5.4.1-1+deb12u1
1
allegroai/clearml:2.0.0-613713ae38f7daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
1
alpine/k8s:1.31.106dbe6f391eda
xz@5.8.1-r0
5.8.3-r0
1
alpine/k8s:1.31.137a319b15cfc9
xz@5.8.1-r0
5.8.3-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.