StackRadar

CVE-2026-41254

High

Advisory

Published 18 Apr 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
30th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
303
of 17,781 indexed, latest versions
Container images
299
deployed by those charts
Fix available
7 of 7
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 303 of 17,781 indexed charts deploy, on 299 images.

Affected packageAffected versionsFixed inImages
lcms2deb2.5-0ubuntu4, 2.5-0ubuntu4.1, 2.6-3ubuntu2, 2.6-3ubuntu2.1+6 more2.5-0ubuntu4.2+esm1, 2.6-3ubuntu2.1+esm1, 2.9-1ubuntu0.1+esm1, 2.9-4ubuntu0.1~esm1+5 more235
lcms2apk2.16-r0, 2.17-r02.19-r040
javabitnami11.0.15-150, 11.0.18-10-1, 11.0.18-10-2, 11.0.20-8-3+12 more1.8.016
Javabitnami11.0.20-8, 11.0.21-10, 17.0.8-7, 17.0.10-13-1+2 more1.8.07
openjdk-17deb17.0.10+7-1~deb12u1, 17.0.13+11-2~deb12u1, 17.0.16+8-1~deb12u1, 17.0.17+10-1~deb12u1+2 more17.0.20+8-1~deb12u17
jrebitnami17.0.16-12-0, 17.0.19-11-2, 21.0.8-12-0, 21.0.9-15-0+1 more1.8.05
openjdk-21deb21.0.11+10-1~deb13u221.0.12+8-1~deb13u12
OSV records
ALPINE-CVE-2026-41254BIT-java-2026-41254BIT-jre-2026-41254DEBIAN-CVE-2026-41254UBUNTU-CVE-2026-41254
Also known as
BIT-java-min-2026-41254, GHSA-4xp6-rcgg-m9qq, USN-8209-1, USN-8209-2

Charts affected

303 by stars
ChartLatestAffected imagesRadar Score
node-appbryopsida0.5.11 of 2See more

node-app bryopsida 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

14,352
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1

Open the chart page →

5,886
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

10,776
catalyst-agentscatalyst-agents0.1.301 of 18See more

catalyst-agents catalyst-agents 0.1.30

1 of the 18 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
openjdk-17@17.0.19+10-1~deb12u2
17.0.20+8-1~deb12u1

Open the chart page →

15,027
kube-acp-stackcloudentity2.28.01 of 7See more

kube-acp-stack cloudentity 2.28.0

1 of the 7 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1

Open the chart page →

20,900
distributed-tensorflowcloudnativeapp0.1.11 of 1See more

distributed-tensorflow cloudnativeapp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
cheyang/distributed-tf:1.6.046cc34755493
lcms2@2.6-3ubuntu2
2.6-3ubuntu2.1+esm1

Open the chart page →

36,094
hlf-couchdbcloudnativeapp1.0.61 of 1See more

hlf-couchdb cloudnativeapp 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
hyperledger/fabric-couchdb:0.4.10c65891b6c237
lcms2@2.6-3ubuntu2
2.6-3ubuntu2.1+esm1

Open the chart page →

33,963
rundeckcloudnativeapp0.1.01 of 2See more

rundeck cloudnativeapp 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
rundeck/rundeck:3.0.16b13e8059ad72
lcms2@2.6-3ubuntu2.1
2.6-3ubuntu2.1+esm1

Open the chart page →

23,665
seleniumcloudnativeapp1.0.81 of 1See more

selenium cloudnativeapp 1.0.8

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

11,782
unificloudnativeapp0.4.21 of 1See more

unifi cloudnativeapp 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
jacobalberty/unifi:5.10.19c409924e2463
lcms2@2.6-3ubuntu2.1
2.6-3ubuntu2.1+esm1

Open the chart page →

22,442
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
lcms2@2.6-3ubuntu2
2.6-3ubuntu2.1+esm1

Open the chart page →

77,758
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

9,128
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

7,963
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

7,963
ociscosmicrocks0.7.01 of 2See more

ocis cosmicrocks 0.7.0

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
owncloud/ocis:7.1.388e7c854517d
lcms2@2.16-r0
2.19-r0

Open the chart page →

1,925
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

14,559
piwigocronce0.0.61 of 1See more

piwigo cronce 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
mathieuruellan/piwigo:latest04572c8a1b04
lcms2@2.16-r0
2.19-r0

Open the chart page →

1,084
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
lcms2@2.9-1ubuntu0.1
2.9-1ubuntu0.1+esm1

Open the chart page →

27,728
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
lcms2@2.9-1ubuntu0.1
2.9-1ubuntu0.1+esm1

Open the chart page →

18,863
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

6,123
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

5,974
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1

Open the chart page →

6,172
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

10,090
deployhubdeployhubVerified publisher10.0.4151 of 11See more

deployhub deployhub 10.0.415

1 of the 11 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
quay.io/deployhub/ms-ui:svccat-v11.0.815-g717581f5dedbc31e6f
lcms2@2.17-r0
2.19-r0

Open the chart page →

11,160
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

9,607
devtron-enterprisedevtron48.0.01 of 28See more

devtron-enterprise devtron 48.0.0

1 of the 28 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

68,240
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

9,607
devtron-enterprisedevtron-labs48.0.01 of 28See more

devtron-enterprise devtron-labs 48.0.0

1 of the 28 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

68,240
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

16,954
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

14,627
codecovdoubanVerified publisher0.2.41 of 8See more

codecov douban 0.2.4

1 of the 8 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1

Open the chart page →

24,917
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

11,782
drogue-cloud-examplesdrogue-iotVerified publisher0.7.111 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

1 of the 6 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1

Open the chart page →

30,699
rundeckdwardu-helm-charts0.3.41 of 2See more

rundeck dwardu-helm-charts 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
rundeck/rundeck:3.2.74d64fe56f767
lcms2@2.6-3ubuntu2.1
2.6-3ubuntu2.1+esm1

Open the chart page →

19,802
iotaeclipse-aeriosVerified publisher1.0.21 of 4See more

iota eclipse-aerios 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
lcms2@2.16-2
2.16-2+deb13u2

Open the chart page →

13,391
unifiegebackVerified publisher2.1.61 of 1See more

unifi egeback 2.1.6

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

7,268
wordpresseoc-chartsVerified publisher0.14.41 of 1See more

wordpress eoc-charts 0.14.4

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
library/wordpress:6.8.3-apache30bff39330d1
lcms2@2.16-2
2.16-2+deb13u2

Open the chart page →

7,233
chaos-meshethereum-helm-chartsVerified publisher0.0.31 of 4See more

chaos-mesh ethereum-helm-charts 0.0.3

1 of the 4 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
lcms2@2.14-2
openjdk-17@17.0.16+8-1~deb12u1
2.14-2+deb12u1
17.0.20+8-1~deb12u1

Open the chart page →

12,127
ferriscompanyferriscompany0.1.01 of 1See more

ferriscompany ferriscompany 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

10,741
firefox-browserfirefox-browserVerified publisher1.1.01 of 1See more

firefox-browser firefox-browser 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
jlesage/firefox:v25.03.1055c28defe31
lcms2@2.16-r0
2.19-r0

Open the chart page →

1,395
business-api-ecosystemfiware1.1.02 of 4See more

business-api-ecosystem fiware 1.1.0

2 of the 4 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

64,489
scanservjsgabe565Verified publisher0.9.21 of 1See more

scanservjs gabe565 0.9.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

13,241
accumulogaffer2.2.12 of 4See more

accumulo gaffer 2.2.1

2 of the 4 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
gchq/accumulo:2.0.1c460bb587d6d
lcms2@2.14-2build1
2.14-2ubuntu0.1
gchq/hdfs:3.3.35ec58edbb2db
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

16,892
gaffer-road-trafficgaffer2.2.11 of 8See more

gaffer-road-traffic gaffer 2.2.1

1 of the 8 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
lcms2@2.14-2build1
2.14-2ubuntu0.1

Open the chart page →

9,342
booksonic-airgeek-cookbookVerified publisher6.4.21 of 1See more

booksonic-air geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
lcms2@2.9-1ubuntu0.1
2.9-1ubuntu0.1+esm1

Open the chart page →

19,215
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

16,123
delugegeek-cookbookVerified publisher5.4.21 of 1See more

deluge geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
lcms2@2.9-1ubuntu0.1
2.9-1ubuntu0.1+esm1

Open the chart page →

13,551
mopidygeek-cookbookVerified publisher0.1.21 of 1See more

mopidy geek-cookbook 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
jaedb/iris:latest048cfbf58d57
lcms2@2.14-2
2.14-2+deb12u1

Open the chart page →

12,958
nzbhydra2geek-cookbookVerified publisher10.4.21 of 1See more

nzbhydra2 geek-cookbook 10.4.2

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

17,702
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-41254.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
lcms2@2.9-4
2.9-4ubuntu0.1~esm1

Open the chart page →

27,949

Container images carrying it

299 by charts deploying them

A fixed version is listed for 7 of the 7 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
lcms2@2.16-r0
2.19-r0
1
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
lcms2@2.16-r0
2.19-r0
1
ghcr.io/kenchrcum/tika:3.3.0-full708446bc6783
lcms2@2.17-r0
2.19-r0
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
lcms2@2.9-1ubuntu0.1
2.9-1ubuntu0.1+esm1
1
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
lcms2@2.17-r0
2.19-r0
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
lcms2@2.14-2
openjdk-17@17.0.18+8-1~deb12u1
2.14-2+deb12u1
17.0.20+8-1~deb12u1
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
lcms2@2.16-2
2.16-2+deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
lcms2@2.16-2
2.16-2+deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
lcms2@2.16-2
2.16-2+deb13u2
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
lcms2@2.16-2
2.16-2+deb13u2
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
lcms2@2.9-4
2.9-4ubuntu0.1~esm1
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
lcms2@2.14-2build1
2.14-2ubuntu0.1
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1
1
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1
1
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
lcms2@2.12~rc1-2build2
2.12~rc1-2ubuntu0.1
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/wiremind/bitnami/keycloak:26.5.0-debian-12-r38622ea9e43c0
jre@21.0.9-15-0
1.8.0
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
lcms2@2.14-2
2.14-2+deb12u1
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
lcms2@2.14-2
2.14-2+deb12u1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
lcms2@2.14-2
2.14-2+deb12u1
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
lcms2@2.14-2
2.14-2+deb12u1
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
lcms2@2.14-2
2.14-2+deb12u1
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
lcms2@2.14-2
2.14-2+deb12u1
1
quay.io/deployhub/ms-ui:svccat-v11.0.815-g717581f5dedbc31e6f
lcms2@2.17-r0
2.19-r0
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
lcms2@2.6-3ubuntu2.1
2.6-3ubuntu2.1+esm1
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
lcms2@2.14-2
2.14-2+deb12u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.