StackRadar

CVE-2026-42250

Medium

Advisory

Published 28 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,412
of 17,787 indexed, latest versions
Container images
2,399
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2026-42250 affecting package bzip2 for versions less than 1.0.8-2

Carried by container images the latest versions of 2,412 of 17,787 indexed charts deploy, on 2,399 images.

Affected packageAffected versionsFixed inImages
bzip2deb1.0.6-5, 1.0.6-8, 1.0.6-8.1, 1.0.6-8.1ubuntu0.2+11 more1.0.6-5ubuntu0.1~esm3, 1.0.6-8.1ubuntu0.2+esm1, 1.0.6-8ubuntu0.2+esm1, 1.0.8-2ubuntu0.1~esm1+4 more2,380
bzip2rpm1.0.8-1.azl3, 1.0.8-150400.1.1221.0.8-2, 1.0.8-150400.3.4.119
OSV records
DEBIAN-CVE-2026-42250UBUNTU-CVE-2026-42250AZL-88809ECHO-dfc7-0c27-52d8SUSE-SU-2026:4055-1
Also known as
USN-8685-1

Charts affected

2,412 by stars
ChartLatestAffected imagesRadar Score
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

14,285
postgresqlcloudve4.0.01 of 2See more

postgresql cloudve 4.0.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnami/minideb:latest835e5f8392c3
bzip2@1.0.8-6
no fix listed

Open the chart page →

804
pulsarcloudve0.2.01 of 2See more

pulsar cloudve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,994
terminalmancloudve0.3.41 of 1See more

terminalman cloudve 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cloudve/ttyd:latestd79c1c5881c0
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

13,170
argo-cdcluster-deploy0.3.21 of 3See more

argo-cd cluster-deploy 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

3,733
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,457
chowdacluster-deploy0.2.01 of 1See more

chowda cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,801
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,521
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

8,806
clusterfactoryclusterfactory0.2.01 of 5See more

clusterfactory clusterfactory 0.2.0

1 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
bzip2@1.0.8-6
no fix listed

Open the chart page →

7,136
gitea-jenkinsclusterfactory0.1.11 of 5See more

gitea-jenkins clusterfactory 0.1.1

1 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
bzip2@1.0.8-6
no fix listed

Open the chart page →

6,926
clusterplexclusterplexVerified publisher1.1.102 of 3See more

clusterplex clusterplex 1.1.10

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:latest7f9a1d574958
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,918
web-chartcms-ktcloudlab0.1.01 of 1See more

web-chart cms-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,839
appcnapVerified publisher1.2.01 of 1See more

app cnap 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,839
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

4,616
door-agentcnoVerified publisher3.0.151 of 15See more

door-agent cno 3.0.15

1 of the 15 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

19,380
ms-emails-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-grpc:lateste336012bc781
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

9,378
ms-emails-restcodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-rest codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-rest:latestac84661c605e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

9,378
ms-licenses-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-licenses-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
codedesignplus/ms-licenses-grpc:latest360144457f4d
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,148
ms-modules-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-modules-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
codedesignplus/ms-modules-grpc:latest3f6aaa32d526
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,148
codehubcodehubVerified publisher6.2.183 of 5See more

codehub codehub 6.2.18

3 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/postgresql:latest42a8200d3597
bzip2@1.0.8-5+b1
no fix listed
jupyterhub/jupyterhub:5.4.63974ba945e65
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

13,286
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
bzip2@1.0.8-6
no fix listed

Open the chart page →

3,680
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,236
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,839
loki-stackcommon-chartsVerified publisher1.0.31 of 12See more

loki-stack common-charts 1.0.3

1 of the 12 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.0491b0578c049
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

5,370
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

3,850
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

8,009
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

8,009
filesystem-exportercontainerooVerified publisher1.5.21 of 1See more

filesystem-exporter containeroo 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,251
ConvertServiceWeb-Helm-Buildconvertserviceweb-helm-build0.1.12 of 7See more

ConvertServiceWeb-Helm-Build convertserviceweb-helm-build 0.1.1

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/rabbitmq:3.11.5-management1b0f675d2f24
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
library/redis:latest298e5b3bc566
bzip2@1.0.8-6
no fix listed

Open the chart page →

10,151
cortezacorteza1.1.02 of 3See more

corteza corteza 1.1.0

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.4cb9f200de5d2
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

8,251
corteza-all-in-onecorteza0.1.01 of 2See more

corteza-all-in-one corteza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cortezaproject/corteza:2024.9.08eb7a26605c9
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

4,682
cosanetcosanet1.0.01 of 1See more

cosanet cosanet 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/cosanet/cosanet:1.0.098cb5d9fa215
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,188
datumcosmicrocks1.0.51 of 2See more

datum cosmicrocks 1.0.5

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

2,994
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

14,587
cospacecospace0.0.341 of 3See more

cospace cospace 0.0.34

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/twigex/cospace:lateste5ecfd607e42
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

2,202
grafana-mcpcowboysysopVerified publisher2.0.01 of 1See more

grafana-mcp cowboysysop 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
mcp/grafana:latest9362bcf6aa0e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,193
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,031
mongodbcowboysysopVerified publisher15.1.51 of 1See more

mongodb cowboysysop 15.1.5

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,183
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

4,436
qdrantcowboysysopVerified publisher3.0.01 of 1See more

qdrant cowboysysop 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.4.166ee661d5241
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

2,574
rediscowboysysopVerified publisher21.2.61 of 1See more

redis cowboysysop 21.2.6

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/redis:8.0.2-debian-12-r4cdc2efa9c306
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

2,558
logstream-leadercriblio4.19.21 of 1See more

logstream-leader criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,269
logstream-mastercriblio2.9.91 of 1See more

logstream-master criblio 2.9.9

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cribl/cribl:3.0.2762747cb6796
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

9,293
logstream-workergroupcriblio4.19.21 of 1See more

logstream-workergroup criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,269
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,872
pagescrypticcode-helmchart1.0.02 of 3See more

pages crypticcode-helmchart 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
flyway/flyway:6.4.422d97ceb0c47
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

20,233
csghubcsghubVerified publisher2.4.311 of 34See more

csghub csghub 2.4.3

11 of the 34 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:7.4.9a8f08480e1f8
bzip2@1.0.8-5+b1
no fix listed
opencsghq/agenticflow:ee-v0.6-52f03fead54db
bzip2@1.0.8-5+b1
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
bzip2@1.0.8-6
no fix listed
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
bzip2@1.0.8-5+b1
no fix listed
opencsghq/csghub-server:v2.4.0-ee302c9d45d8a8
bzip2@1.0.8-5+b1
no fix listed
opencsghq/csghub-xnet:v2.4.0-ee04121fd19ef9
bzip2@1.0.8-5+b1
no fix listed
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
bzip2@1.0.8-5+b1
no fix listed
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
bzip2@1.0.8-5+b1
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
bzip2@1.0.8-5+b1
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
bzip2@1.0.8-6
no fix listed
opencsghq/postgres:15.1842578c9d3ebd
bzip2@1.0.8-6
no fix listed

Open the chart page →

59,131
csgshipcsghubVerified publisher0.4.62 of 10See more

csgship csghub 0.4.6

2 of the 10 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:7.4.1171da9275c5f3
bzip2@1.0.8-5+b1
no fix listed
opencsghq/postgres:15.19b98600564e07
bzip2@1.0.8-6
no fix listed

Open the chart page →

11,402
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
bzip2@1.0.8-6
no fix listed
opencsghq/postgres:15.19b98600564e07
bzip2@1.0.8-6
no fix listed

Open the chart page →

6,532

Container images carrying it

2,399 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
bzip2@1.0.8-5+b1
no fix listed
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
bzip2@1.0.8-5+b1
no fix listed
3
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
3
quay.io/devtron/ai-agent:0.0.16545dac92173
bzip2@1.0.8-5+b1
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
bzip2@1.0.6-8ubuntu0.2
1.0.6-8ubuntu0.2+esm1
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
3
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
bzip2@1.0.8-5+b1
no fix listed
3
actualbudget/actual-server:26.9.0552beab3dec8
bzip2@1.0.8-5+b1
no fix listed
2
alazidis/kube-netlag:1.1.00e8c84152201
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
apache/apisix:3.18.0-ubuntu9ee5df1611f9
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
apache/nifi-registry:1.26.07cdfd8deec92
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
apache/rocketmq:5.4.0319cd8a81ed1
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
bzip2@1.0.8-5.1
1.0.8-5.1ubuntu0.1
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/etcd:latest99b408c15272
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/redis:latest5927ff3702df
bzip2@1.0.8-5+b1
no fix listed
2
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
bzip2@1.0.8-5+b1
no fix listed
2
bitnami/minideb:latestab4d5b45116e
bzip2@1.0.8-6
no fix listed
2
blockstack/stacks-core:3.2.0.0.0f79944317326
bzip2@1.0.8-5+b1
no fix listed
2
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
bzip2@1.0.8-6
no fix listed
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
bzip2@1.0.8-5+b1
no fix listed
2
chromedp/headless-shell:148.0.7778.97313ed7255ae1
bzip2@1.0.8-6
no fix listed
2
clickhouse/clickhouse-server:24.2ed9640bfff07
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
clickhouse/clickhouse-server:26.8.2:latestfa394da808cc
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
cribl/cribl:4.19.2044f9a5fac9a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
dagster/user-code-example:1.13.225947f9ae481c
bzip2@1.0.8-6
no fix listed
2
datagrok/grok_connect:latestf5876d3aebb8
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
emberstack/kubernetes-reflector:10.0.6551dbd5880929
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
eqalpha/keydb:latest6537505c4235
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
fireflyiii/core:version-6.5.9fe4ecec4c2ba
bzip2@1.0.8-6
no fix listed
2
fireflyiii/data-importer:version-2.2.3ab52bf932546
bzip2@1.0.8-6
no fix listed
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.