StackRadar

CVE-2026-42250

Medium

Advisory

Published 28 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,442
of 17,828 indexed, latest versions
Container images
2,461
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2026-42250 affecting package bzip2 for versions less than 1.0.8-2

Carried by container images the latest versions of 2,442 of 17,828 indexed charts deploy, on 2,461 images.

Affected packageAffected versionsFixed inImages
bzip2deb1.0.6-5, 1.0.6-8, 1.0.6-8.1, 1.0.6-8.1ubuntu0.2+11 more1.0.6-5ubuntu0.1~esm3, 1.0.6-8.1ubuntu0.2+esm1, 1.0.6-8ubuntu0.2+esm1, 1.0.8-2ubuntu0.1~esm1+4 more2,448
bzip2rpm1.0.8-1.azl3, 1.0.8-150400.1.1221.0.8-2, 1.0.8-150400.3.4.113
OSV records
DEBIAN-CVE-2026-42250UBUNTU-CVE-2026-42250AZL-88809ECHO-dfc7-0c27-52d8SUSE-SU-2026:4055-1
Also known as
USN-8685-1

Charts affected

2,442 by stars
ChartLatestAffected imagesRadar Score
rancherrancher-latest2.15.11 of 2See more

rancher rancher-latest 2.15.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1

Open the chart page →

1,535
difydoubanVerified publisher0.10.03 of 6See more

dify douban 0.10.0

3 of the 6 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
bzip2@1.0.8-5+b1
no fix listed
langgenius/dify-plugin-daemon:0.5.1-local8269050f192e
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

74,142
dragonflydragonflyVerified publisher1.8.51 of 3See more

dragonfly dragonfly 1.8.5

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dragonflyoss/client:v1.5.59fe2a1d6206f
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

4,187
secrets-store-csi-driversecret-store-csi-driver1.6.11 of 4See more

secrets-store-csi-driver secret-store-csi-driver 1.6.1

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,821
code-servernicholaswildeVerified publisher1.1.11 of 1See more

code-server nicholaswilde 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/code-server:version-v3.11.1a385ba5cb161
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

16,393
akhqakhq0.28.01 of 1See more

akhq akhq 0.28.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
tchiotludo/akhq:0.28.0c2824dc2ae44
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

1,663
guacamoleberyju-org1.4.21 of 3See more

guacamole beryju-org 1.4.2

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,860
vertical-pod-autoscalercowboysysopVerified publisher11.1.11 of 4See more

vertical-pod-autoscaler cowboysysop 11.1.1

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,014
difydify-helmVerified publisher0.38.06 of 11See more

dify dify-helm 0.38.0

6 of the 11 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
langgenius/dify-agent-backend:1.16.1097d3fd27a7b
bzip2@1.0.8-5+b1
no fix listed
langgenius/dify-agent-local-sandbox:1.16.1bf8027ddccf3
bzip2@1.0.8-5+b1
no fix listed
langgenius/dify-api:1.16.1dcefa5f7c47c
bzip2@1.0.8-5+b1
no fix listed
langgenius/dify-plugin-daemon:0.6.3-local3c694329357b
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
langgenius/dify-sandbox:0.2.15750e1111426e
bzip2@1.0.8-6
no fix listed
library/nginx:latestabe47724e466
bzip2@1.0.8-6
no fix listed

Open the chart page →

63,436
pyroscopegrafana2.3.11 of 3See more

pyroscope grafana 2.3.1

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.12.2f94b1c82957a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,298
stacks-blockchainhirosystemsVerified publisher2.2.21 of 1See more

stacks-blockchain hirosystems 2.2.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,418
oktetooktetoOfficialVerified publisher0.0.0-2026-08-241 of 10See more

okteto okteto 0.0.0-2026-08-24

1 of the 10 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-243e56bdd1b90d
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,587
yourlsyourlsOfficialVerified publisher8.10.21 of 2See more

yourls yourls 8.10.2

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/yourls/yourls:1.10.67550ff86b15f
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,990
apisix-ingress-controllerapisix1.4.01 of 2See more

apisix-ingress-controller apisix 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/api7/adc:0.27.1f65f53dd9668
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,705
istiocloudposse1.1.02 of 8See more

istio cloudposse 1.1.0

2 of the 8 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
bzip2@1.0.6-8
1.0.6-8ubuntu0.2+esm1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
bzip2@1.0.6-8
1.0.6-8ubuntu0.2+esm1

Open the chart page →

131,456
actualbudgetcommunity-chartsVerified publisher1.9.41 of 1See more

actualbudget community-charts 1.9.4

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
actualbudget/actual-server:26.9.0552beab3dec8
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,137
concourseconcourseVerified publisher20.3.01 of 2See more

concourse concourse 20.3.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:17f4c66b820c6f
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,670
san-iscsi-csienixOfficialVerified publisher4.0.21 of 7See more

san-iscsi-csi enix 4.0.2

1 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
enix/san-iscsi-csi:v4.0.2f963da81ecf7
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

4,212
openprojectopenproject-helm-chartsOfficialVerified publisher13.12.04 of 5See more

openproject openproject-helm-charts 13.12.0

4 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
bzip2@1.0.8-5+b1
no fix listed
library/postgres:16f1c3376c26f2
bzip2@1.0.8-6
no fix listed
openproject/hocuspocus:release-338001b288dc1359dfb5
bzip2@1.0.8-5+b1
no fix listed
openproject/openproject:17.8.0-slim48952034215d
bzip2@1.0.8-6
no fix listed

Open the chart page →

20,190
sftpgosftpgoOfficialVerified publisher0.48.01 of 1See more

sftpgo sftpgo 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/drakkan/sftpgo:v2.7.59011fe608d33
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,250
wazuhwazuh-helm-morgovedVerified publisher2.0.71 of 5See more

wazuh wazuh-helm-morgoved 2.0.7

1 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
kinseii/wazuh-agent:4.14.17160eb143728
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

11,588
lemmyananace-chartsVerified publisher0.6.152 of 5See more

lemmy ananace-charts 0.6.15

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dessalines/lemmy:0.19.2079e9f02c286c
bzip2@1.0.8-5+b1
no fix listed
dessalines/lemmy-ui:0.19.20ee4c620d8e93
bzip2@1.0.8-6
no fix listed

Open the chart page →

7,262
zabbixcetic3.1.35 of 5See more

zabbix cetic 3.1.3

5 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:14816cf7d06ec3
bzip2@1.0.8-6
no fix listed
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

33,799
csi-driver-smbcsi-driver-smbVerified publisher1.20.31 of 6See more

csi-driver-smb csi-driver-smb 1.20.3

1 of the 6 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,027
kube-downscalerdeliveryheroVerified publisher0.7.61 of 1See more

kube-downscaler deliveryhero 0.7.6

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

4,356
synapsehalkeye0.40.01 of 2See more

synapse halkeye 0.40.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,622
stacks-blockchain-apihirosystemsVerified publisher6.5.12 of 5See more

stacks-blockchain-api hirosystems 6.5.1

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
blockstack/stacks-core:3.2.0.0.0f79944317326
bzip2@1.0.8-5+b1
no fix listed
hirosystems/stacks-blockchain-api:8.13.29c98b23c1515
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,884
imgproxyimgproxy1.1.01 of 1See more

imgproxy imgproxy 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/imgproxy/imgproxy:v3.30.074c1bee92e04
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

2,430
redashredash4.2.01 of 3See more

redash redash 4.2.0

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
redash/redash:25.8.000d813437db5
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,162
daskdask2024.1.12 of 2See more

dask dask 2024.1.1

2 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/dask/dask:2024.1.0080150de7d86
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

13,005
dgraphdgraph24.1.41 of 1See more

dgraph dgraph 24.1.4

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dgraph/dgraph:v24.1.4b57fa31f9b7f
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,089
factorio-server-chartsfactorio-server-chartsVerified publisher2.5.21 of 1See more

factorio-server-charts factorio-server-charts 2.5.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
factoriotools/factorio:latest18c07a80cacc
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,402
netbirdjaconiVerified publisher0.15.12 of 4See more

netbird jaconi 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/golang:latest3680233e3204
bzip2@1.0.8-6
no fix listed
netbirdio/management:0.45.10c9994b393ea
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

8,167
litellm-helmlitellm1.102.01 of 2See more

litellm-helm litellm 1.102.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,102
localstacklocalstack0.7.11 of 1See more

localstack localstack 0.7.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
localstack/localstack:latest4abc29e923e5
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,195
gotenbergmaikumoriVerified publisher1.25.01 of 1See more

gotenberg maikumori 1.25.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
bzip2@1.0.8-6
no fix listed

Open the chart page →

10,277
argocdnicklasfrahm-argocdVerified publisher0.3.01 of 2See more

argocd nicklasfrahm-argocd 0.3.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

5,527
oneuptimeoneuptimeOfficialVerified publisher14.0.13 of 7See more

oneuptime oneuptime 14.0.1

3 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
bzip2@1.0.8-6
no fix listed
oneuptime/probe:releaseff73ab57aa59
bzip2@1.0.8-5+b1
no fix listed
oneuptime/runner:release8301892d9c17
bzip2@1.0.8-6
no fix listed

Open the chart page →

11,243
openclawopenclaw-helmVerified publisher1.5.402 of 2See more

openclaw openclaw-helm 1.5.40

2 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
bzip2@1.0.8-6
no fix listed
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,759
prometheus-cloudwatch-exporterprometheus-communityVerified publisher0.28.21 of 1See more

prometheus-cloudwatch-exporter prometheus-community 0.28.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
prom/cloudwatch-exporter:v0.16.071c2e988af06
bzip2@1.0.8-5.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,488
stalwart-mailstalwart-mailVerified publisher2.0.101 of 1See more

stalwart-mail stalwart-mail 2.0.10

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,448
openvpn-asstenicVerified publisher0.1.91 of 1See more

openvpn-as stenic 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

78,680
jellyfinutkuozdemirVerified publisher2.0.01 of 1See more

jellyfin utkuozdemir 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
linuxserver/jellyfin:10.7.72427dde159a2
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

7,974
camel-kcamel-kVerified publisher2.11.01 of 1See more

camel-k camel-k 2.11.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/camel-k:2.11.0d173e7efe258
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

1,401
glasskube-operatorglasskubeOfficialVerified publisher0.12.21 of 3See more

glasskube-operator glasskube 0.12.2

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

12,242
outlinekubitodevVerified publisher1.2.21 of 4See more

outline kubitodev 1.2.2

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
outlinewiki/outline:0.82.0494dfb9249a6
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,419
milvusmilvus-helm5.0.282 of 4See more

milvus milvus-helm 5.0.28

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
milvusdb/etcd:3.5.25-r1fededb2f2d63
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

11,237
prefect-serverprefectVerified publisher2026.9.141419102 of 2See more

prefect-server prefect 2026.9.14141910

2 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
bzip2@1.0.8-5+b1
no fix listed
prefecthq/prefect:3.8.6-python3.11f518ebb9c353
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,638
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

6,471
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

84,720

Container images carrying it

2,461 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
quay.io/argoprojlabs/gitops-promoter:v0.41.0cab605cc1d1d
bzip2@1.0.8-6
no fix listed
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
bzip2@1.0.8-6
no fix listed
1
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/kannika/kannika-api:0.18.0bcf9906d5a3c
bzip2@1.0.8-6
no fix listed
1
quay.io/maxiv/pieeat:0.9.3099715479210
bzip2@1.0.8-6
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
bzip2@1.0.6-8ubuntu0.2
1.0.6-8ubuntu0.2+esm1
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
bzip2@1.0.8-6
no fix listed
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
bzip2@1.0.6-8
1.0.6-8ubuntu0.2+esm1
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
bzip2@1.0.8-6
no fix listed
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
bzip2@1.0.8-5+b1
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.5b6c44d969163
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
1
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/rabbitmq:3.12.145a9334f371f3
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/certificates:v19.4.01c38ad710b0c
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitaly:v19.4.0704cd68566af
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-base:v19.4.0696d798a5c85
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-container-registry:v4.40.2-gitlabdc1a8972c640
bzip2@1.0.8-5+b1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-exporter:17.0.26645e014f75d
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-openbao:v2.5.5-gitlab25b7636dfba3f
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-shell:v14.57.3aca1bb3d5b7e
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
bzip2@1.0.8-6
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
bzip2@1.0.8-6
no fix listed
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.