StackRadar

CVE-2026-42250

Medium

Advisory

Published 28 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,403
of 17,790 indexed, latest versions
Container images
2,396
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2026-42250 affecting package bzip2 for versions less than 1.0.8-2

Carried by container images the latest versions of 2,403 of 17,790 indexed charts deploy, on 2,396 images.

Affected packageAffected versionsFixed inImages
bzip2deb1.0.6-5, 1.0.6-8, 1.0.6-8.1, 1.0.6-8.1ubuntu0.2+11 more1.0.6-5ubuntu0.1~esm3, 1.0.6-8.1ubuntu0.2+esm1, 1.0.6-8ubuntu0.2+esm1, 1.0.8-2ubuntu0.1~esm1+4 more2,377
bzip2rpm1.0.8-1.azl3, 1.0.8-150400.1.1221.0.8-2, 1.0.8-150400.3.4.119
OSV records
DEBIAN-CVE-2026-42250UBUNTU-CVE-2026-42250AZL-88809ECHO-dfc7-0c27-52d8SUSE-SU-2026:4055-1
Also known as
USN-8685-1

Charts affected

2,403 by stars
ChartLatestAffected imagesRadar Score
jenkinsjenkinsciOfficialVerified publisher5.9.621 of 2See more

jenkins jenkinsci 5.9.62

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,538
longhornlonghorn1.12.13 of 3See more

longhorn longhorn 1.12.1

3 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1
longhornio/longhorn-share-manager:v1.12.1efaf47aeb4e8
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1
longhornio/longhorn-ui:v1.12.103a3ce6673df
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1

Open the chart page →

595
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm74566c6910d1
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,218
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
bzip2@1.0.8-6
no fix listed

Open the chart page →

4,584
rancherrancher-stable2.15.11 of 2See more

rancher rancher-stable 2.15.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1

Open the chart page →

1,487
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

8,874
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

6,623
authentikgoauthentikOfficialVerified publisher2026.8.21 of 1See more

authentik goauthentik 2026.8.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,284
nginx-ingressnginxVerified publisher2.7.21 of 1See more

nginx-ingress nginx 2.7.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
nginx/nginx-ingress:5.6.27def79229370
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,000
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
bzip2@1.0.8-6
no fix listed
artifacthub/tracker:v1.23.05368d21a6e5c
bzip2@1.0.8-6
no fix listed

Open the chart page →

10,840
alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,151
jupyterhubjupyterhubOfficialVerified publisher4.4.22 of 7See more

jupyterhub jupyterhub 4.4.2

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
bzip2@1.0.8-5+b1
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,937
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

30,217
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

11,394
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,398
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,186
openebsopenebsOfficialVerified publisher4.6.12 of 35See more

openebs openebs 4.6.1

2 of the 35 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

24,128
backstagebackstageOfficialVerified publisher2.10.11 of 1See more

backstage backstage 2.10.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/backstage/backstage:latest792e262ea504
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,217
rediscloudpirates-redisVerified publisher0.35.01 of 1See more

redis cloudpirates-redis 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
bzip2@1.0.8-6
no fix listed

Open the chart page →

978
mlflowcommunity-chartsVerified publisher1.11.71 of 1See more

mlflow community-charts 1.11.7

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
burakince/mlflow:3.16.0ab4b566644b9
bzip2@1.0.8-6
no fix listed

Open the chart page →

641
qdrantqdrantOfficialVerified publisher1.19.11 of 1See more

qdrant qdrant 1.19.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
bzip2@1.0.8-6
no fix listed

Open the chart page →

829
apisixapisix2.17.02 of 3See more

apisix apisix 2.17.0

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
bitnamilegacy/etcd:latest99b408c15272
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,118
dagsterdagsterVerified publisher1.13.222 of 5See more

dagster dagster 1.13.22

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dagster/dagster-celery-k8s:1.13.22e29a64392e12
bzip2@1.0.8-6
no fix listed
dagster/user-code-example:1.13.225947f9ae481c
bzip2@1.0.8-6
no fix listed

Open the chart page →

3,510
zabbixzabbix-communityVerified publisher7.1.05 of 5See more

zabbix zabbix-community 7.1.0

5 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
bzip2@1.0.8-6
no fix listed
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

13,880
keycloakcloudpirates-keycloakVerified publisher0.21.372 of 3See more

keycloak cloudpirates-keycloak 0.21.37

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
bzip2@1.0.8-6
no fix listed
library/postgres:18.64ef4dbc939d6
bzip2@1.0.8-6
no fix listed

Open the chart page →

4,428
fluentdfluent0.6.01 of 1See more

fluentd fluent 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,022
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
bzip2@1.0.8-6
no fix listed

Open the chart page →

3,131
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,984
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,399
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,766
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

5,560
valkeyvalkeyVerified publisher0.12.01 of 1See more

valkey valkey 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
bzip2@1.0.8-6
no fix listed

Open the chart page →

829
postgrescloudpirates-postgresVerified publisher0.20.51 of 1See more

postgres cloudpirates-postgres 0.20.5

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,649
openldap-stack-hahelm-openldapVerified publisher4.3.32 of 5See more

openldap-stack-ha helm-openldap 4.3.3

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
bzip2@1.0.8-5+b1
no fix listed
library/debian:latestf324c7ff5432
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,968
zammadzammadOfficialVerified publisher18.2.14 of 5See more

zammad zammad 18.2.1

4 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
bzip2@1.0.8-6
no fix listed
library/postgres:18.4a02db8cac496
bzip2@1.0.8-6
no fix listed
library/redis:8.10.1298e5b3bc566
bzip2@1.0.8-6
no fix listed
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
bzip2@1.0.8-6
no fix listed

Open the chart page →

6,346
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
bzip2@1.0.8-5+b1
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,415
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,391
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

9,197
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

700
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,526
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
milvusdb/milvus:v2.2.13a3a55e1c1497
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

32,420
mesherymesheryOfficialVerified publisher1.0.701 of 1See more

meshery meshery 1.0.70

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest44b64ee128fb
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,438
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

10,695
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
penpotapp/mcp:2.17.284f3f07ead11
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

4,405
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,607
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,787
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

2,817
postgresgroundhog2k1.6.81 of 1See more

postgres groundhog2k 1.6.8

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,649
emqxemqx-operator5.8.91 of 1See more

emqx emqx-operator 5.8.9

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
emqx/emqx:5.8.935b46f7aa7a0
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,728
bitcoin-corehirosystemsVerified publisher2.1.71 of 1See more

bitcoin-core hirosystems 2.1.7

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dobtc/bitcoin:25.1a870f7cb1105
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

4,819

Container images carrying it

2,396 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
bzip2@1.0.8-6
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
bzip2@1.0.8-6
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
bzip2@1.0.8-6
no fix listed
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
bzip2@1.0.8-6
no fix listed
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
bzip2@1.0.8-6
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
bzip2@1.0.8-6
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
bzip2@1.0.8-6
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
bzip2@1.0.8-6
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
bzip2@1.0.8-6
no fix listed
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
bzip2@1.0.8-6
no fix listed
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
bzip2@1.0.8-6
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
bzip2@1.0.8-6
no fix listed
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
bzip2@1.0.8-6
no fix listed
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
bzip2@1.0.8-6
no fix listed
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
bzip2@1.0.8-6
no fix listed
1
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
bzip2@1.0.8-6
no fix listed
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
bzip2@1.0.8-5+b1
no fix listed
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
bzip2@1.0.8-6
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.