StackRadar

CVE-2026-42250

Medium

Advisory

Published 28 May 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,417
of 17,781 indexed, latest versions
Container images
2,397
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2026-42250 affecting package bzip2 for versions less than 1.0.8-2

Carried by container images the latest versions of 2,417 of 17,781 indexed charts deploy, on 2,397 images.

Affected packageAffected versionsFixed inImages
bzip2deb1.0.6-5, 1.0.6-8, 1.0.6-8.1, 1.0.6-8.1ubuntu0.2+11 more1.0.6-5ubuntu0.1~esm3, 1.0.6-8.1ubuntu0.2+esm1, 1.0.6-8ubuntu0.2+esm1, 1.0.8-2ubuntu0.1~esm1+4 more2,378
bzip2rpm1.0.8-1.azl3, 1.0.8-150400.1.1221.0.8-2, 1.0.8-150400.3.4.119
OSV records
DEBIAN-CVE-2026-42250UBUNTU-CVE-2026-42250AZL-88809ECHO-dfc7-0c27-52d8SUSE-SU-2026:4055-1
Also known as
USN-8685-1

Charts affected

2,417 by stars
ChartLatestAffected imagesRadar Score
argo-cdargoOfficialVerified publisher10.9.01 of 3See more

argo-cd argo 10.9.0

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

3,218
jenkinsjenkinsciOfficialVerified publisher5.9.581 of 2See more

jenkins jenkinsci 5.9.58

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jenkins/jenkins:2.568.3-jdk21c1e4c349365f
bzip2@1.0.8-6
no fix listed

Open the chart page →

2,665
longhornlonghorn1.12.13 of 3See more

longhorn longhorn 1.12.1

3 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.183b79f57043f
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1
longhornio/longhorn-share-manager:v1.12.1efaf47aeb4e8
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1
longhornio/longhorn-ui:v1.12.103a3ce6673df
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1

Open the chart page →

554
ciliumciliumOfficialVerified publisher1.20.12 of 3See more

cilium cilium 1.20.1

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/cilium/cilium:v1.20.1ae9ea21f7427
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,708
airflowapache-airflowOfficialVerified publisher1.22.01 of 4See more

airflow apache-airflow 1.22.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:7.2-bookworm74566c6910d1
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,195
nextcloudnextcloud9.2.61 of 1See more

nextcloud nextcloud 9.2.6

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3-apacheb97df9e0e1ee
bzip2@1.0.8-6
no fix listed

Open the chart page →

4,507
rancherrancher-stable2.15.11 of 2See more

rancher rancher-stable 2.15.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
bzip2@1.0.8-150400.1.122
1.0.8-150400.3.4.1

Open the chart page →

1,456
giteagiteaOfficialVerified publisher12.7.03 of 4See more

gitea gitea 12.7.0

3 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/valkey-cluster:8.1.3-debian-12-r332869e769b7e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

8,811
sonarqubesonarqubeVerified publisher10.0.0+5211 of 3See more

sonarqube sonarqube 10.0.0+521

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/sonarqube:10.0.0-communityef9723cf4fe4
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

6,556
authentikgoauthentikOfficialVerified publisher2026.8.21 of 1See more

authentik goauthentik 2026.8.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,257
nginx-ingressnginxVerified publisher2.7.11 of 1See more

nginx-ingress nginx 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
nginx/nginx-ingress:5.6.18ca7b42ae702
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,285
artifact-hubartifact-hubVerified publisher1.23.02 of 7See more

artifact-hub artifact-hub 1.23.0

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
bzip2@1.0.8-6
no fix listed
artifacthub/tracker:v1.23.05368d21a6e5c
bzip2@1.0.8-6
no fix listed

Open the chart page →

10,755
alloygrafana1.12.11 of 2See more

alloy grafana 1.12.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.19.2b8ec653c4423
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,100
jupyterhubjupyterhubOfficialVerified publisher4.4.22 of 7See more

jupyterhub jupyterhub 4.4.2

2 of the 7 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
bzip2@1.0.8-5+b1
no fix listed
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,894
argo-cdargo-cd-oci10.9.01 of 3See more

argo-cd argo-cd-oci 10.9.0

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.2e2aadfae709d
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

3,218
uptime-kumauptime-kumaVerified publisher4.2.01 of 1See more

uptime-kuma uptime-kuma 4.2.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.0a8610b3b4c38
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

30,159
airflowairflow-helmVerified publisher8.9.01 of 4See more

airflow airflow-helm 8.9.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/airflow:2.8.4-python3.964e58748b6b9
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

11,367
falcofalcosecurity9.1.01 of 3See more

falco falcosecurity 9.1.0

1 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
falcosecurity/falco-driver-loader:0.44.17df783d5269a
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

5,227
kongkongOfficialVerified publisher3.4.11 of 2See more

kong kong 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/kong:3.92a8cf3b110cd
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

1,135
openebsopenebsOfficialVerified publisher4.6.12 of 35See more

openebs openebs 4.6.1

2 of the 35 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/alloy:v1.8.17790f6f7fbd8
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
openebs/etcd:3.6.4-debian-12-r0c86c06f1ce6a
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

23,894
backstagebackstageOfficialVerified publisher2.10.11 of 1See more

backstage backstage 2.10.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/backstage/backstage:latest792e262ea504
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,195
rediscloudpirates-redisVerified publisher0.34.321 of 1See more

redis cloudpirates-redis 0.34.32

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
bzip2@1.0.8-6
no fix listed

Open the chart page →

955
mlflowcommunity-chartsVerified publisher1.11.71 of 1See more

mlflow community-charts 1.11.7

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
burakince/mlflow:3.16.0ab4b566644b9
bzip2@1.0.8-6
no fix listed

Open the chart page →

622
qdrantqdrantOfficialVerified publisher1.19.11 of 1See more

qdrant qdrant 1.19.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.19.112364fe851b9
bzip2@1.0.8-6
no fix listed

Open the chart page →

807
apisixapisix2.17.02 of 3See more

apisix apisix 2.17.0

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
bitnamilegacy/etcd:latest99b408c15272
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,045
dagsterdagsterVerified publisher1.13.222 of 5See more

dagster dagster 1.13.22

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
dagster/dagster-celery-k8s:1.13.22e29a64392e12
bzip2@1.0.8-6
no fix listed
dagster/user-code-example:1.13.225947f9ae481c
bzip2@1.0.8-6
no fix listed

Open the chart page →

3,455
zabbixzabbix-communityVerified publisher7.1.05 of 5See more

zabbix zabbix-community 7.1.0

5 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
bzip2@1.0.8-6
no fix listed
zabbix/zabbix-agent2:ubuntu-7.0.237322a94c5d7a
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-web-nginx-pgsql:ubuntu-7.0.237d4d58086515
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
zabbix/zabbix-web-service:ubuntu-7.0.23915b3183e054
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

13,664
keycloakcloudpirates-keycloakVerified publisher0.21.372 of 3See more

keycloak cloudpirates-keycloak 0.21.37

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:18.0073e7c8b84e2
bzip2@1.0.8-6
no fix listed
library/postgres:18.64ef4dbc939d6
bzip2@1.0.8-6
no fix listed

Open the chart page →

4,382
fluentdfluent0.6.01 of 1See more

fluentd fluent 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
bzip2@1.0.8-6
no fix listed

Open the chart page →

999
netdatanetdataVerified publisher3.7.1731 of 1See more

netdata netdata 3.7.173

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
netdata/netdata:v2.11.0c45c71eb23ff
bzip2@1.0.8-6
no fix listed

Open the chart page →

3,092
node-problem-detectordeliveryheroVerified publisher2.4.11 of 1See more

node-problem-detector deliveryhero 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,955
maildocker-postfixVerified publisher5.1.01 of 1See more

mail docker-postfix 5.1.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
boky/postfix:5.1.0aafc77238423
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,366
vaultwardengissilabs1.4.21 of 1See more

vaultwarden gissilabs 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,744
keydbenapter0.48.01 of 1See more

keydb enapter 0.48.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1

Open the chart page →

5,552
valkeyvalkeyVerified publisher0.12.01 of 1See more

valkey valkey 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
bzip2@1.0.8-6
no fix listed

Open the chart page →

807
postgrescloudpirates-postgresVerified publisher0.20.51 of 1See more

postgres cloudpirates-postgres 0.20.5

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/postgres:18.64ef4dbc939d6
bzip2@1.0.8-6
no fix listed

Open the chart page →

1,626
openldap-stack-hahelm-openldapVerified publisher4.3.32 of 5See more

openldap-stack-ha helm-openldap 4.3.3

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
jpgouin/openldap:2.6.9-fixbfdd0088c776
bzip2@1.0.8-5+b1
no fix listed
library/debian:latestf324c7ff5432
bzip2@1.0.8-6
no fix listed

Open the chart page →

5,919
zammadzammadOfficialVerified publisher18.0.54 of 5See more

zammad zammad 18.0.5

4 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
bzip2@1.0.8-6
no fix listed
library/postgres:18.4a02db8cac496
bzip2@1.0.8-6
no fix listed
library/redis:8.10.1298e5b3bc566
bzip2@1.0.8-6
no fix listed
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
bzip2@1.0.8-6
no fix listed

Open the chart page →

6,887
chaos-meshchaos-meshVerified publisher2.8.42 of 4See more

chaos-mesh chaos-mesh 2.8.4

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.40d28dbd95b03
bzip2@1.0.8-5+b1
no fix listed
ghcr.io/chaos-mesh/chaos-dashboard:v2.8.48a8ec8d4c9ea
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,342
csi-driver-nfscsi-driver-nfsVerified publisher4.13.41 of 6See more

csi-driver-nfs csi-driver-nfs 4.13.4

1 of the 6 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

3,324
netboxbootcVerified publisher4.1.11 of 4See more

netbox bootc 4.1.1

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
netboxcommunity/netbox:v3.2.83d652dca5351
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1

Open the chart page →

9,145
reflectoremberstackVerified publisher10.0.651 of 1See more

reflector emberstack 10.0.65

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
emberstack/kubernetes-reflector:10.0.6551dbd5880929
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

656
grafana-agentgrafana0.44.21 of 2See more

grafana-agent grafana 0.44.2

1 of the 2 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
grafana/agent:v0.44.23364714a2f64
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1

Open the chart page →

3,475
milvusmilvus4.0.312 of 5See more

milvus milvus 4.0.31

2 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.8.2d538416d5afe
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
milvusdb/milvus:v2.2.13a3a55e1c1497
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1

Open the chart page →

32,259
mesherymesheryOfficialVerified publisher1.0.691 of 1See more

meshery meshery 1.0.69

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
meshery/meshery:stable-latest9b68e81d392e
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

1,407
clearmlallegroaiOfficialVerified publisher7.15.01 of 4See more

clearml allegroai 7.15.0

1 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
allegroai/clearml:2.0.0-613713ae38f7daf
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

10,622
penpotpenpotOfficialVerified publisher1.9.02 of 4See more

penpot penpot 1.9.0

2 of the 4 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
penpotapp/exporter:2.17.272a8061e8806
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1
penpotapp/mcp:2.17.284f3f07ead11
bzip2@1.0.8-6build2
1.0.8-6ubuntu0.1

Open the chart page →

4,314
signozsignoz0.141.11 of 5See more

signoz signoz 0.141.1

1 of the 5 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

7,568
weblateweblateOfficialVerified publisher0.5.362 of 3See more

weblate weblate 0.5.36

2 of the 3 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
bzip2@1.0.8-5+b1
no fix listed
bitnamilegacy/redis:latest5927ff3702df
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

6,699
locustdeliveryheroVerified publisher0.35.01 of 1See more

locust deliveryhero 0.35.0

1 of the 1 container images this version deploys carry CVE-2026-42250.

Container imageDigestPackageFixed in
locustio/locust:2.32.2a0d4b88e42c1
bzip2@1.0.8-5+b1
no fix listed

Open the chart page →

2,800

Container images carrying it

2,397 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
wurstmeister/zookeeper:latest7a7fd44a7210
bzip2@1.0.6-5
1.0.6-5ubuntu0.1~esm3
2
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
bzip2@1.0.6-8
1.0.6-8ubuntu0.2+esm1
2
ghcr.io/api7/adc:0.27.1f65f53dd9668
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/appscode/inbox-server:latest:postgres-latest536358d7b17e
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
ghcr.io/astriaorg/conductor:latest3ea8164b0eae
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
ghcr.io/chroma-core/chroma:1.5.91e0b73a187a2
bzip2@1.0.8-6
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
ghcr.io/google/fleetspeak:v0.1.17cd264d33efd4
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/libredb/libredb-studio:0.15.04b696f960ac1
bzip2@1.0.8-6
no fix listed
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
bzip2@1.0.6-8.1ubuntu0.2
1.0.6-8.1ubuntu0.2+esm1
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/nucleuscloud/neosync/api:0.5.41e2abb798f29f
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/nucleuscloud/neosync/worker:0.5.4196f42450c5b1
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.11f4feb3323a29
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
ghcr.io/postgresml/pgcat:main245f9d2f5f5b
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
bzip2@1.0.8-5build1
1.0.8-5ubuntu0.1
2
ghcr.io/smarter-project/home-ha-mock:main95ee018cf558
bzip2@1.0.8-5+b1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
bzip2@1.0.8-5+b1
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
bzip2@1.0.8-6
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
quay.io/cilium/cilium-envoy:v1.37.5-1786810558-766ccfb37260a43e9d228837aa84ce3faf9f64e775b8094c7127
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
bzip2@1.0.8-5+b1
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
bzip2@1.0.8-5+b1
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
bzip2@1.0.6-8.1
1.0.6-8.1ubuntu0.2+esm1
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
bzip2@1.0.8-6
no fix listed
1
aboogie/login_test_backend:new9c41a4483ac8
bzip2@1.0.8-5+b1
no fix listed
1
actualbudget/actual-server:25.3.158fecd9088b7
bzip2@1.0.8-5+b1
no fix listed
1
adamzammit/limesurvey:7.0.15e75e2f455c8d
bzip2@1.0.8-6
no fix listed
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
bzip2@1.0.8-5.1build0.1
1.0.8-5.1ubuntu0.1
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
bzip2@1.0.8-5.1
1.0.8-5.1ubuntu0.1
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
bzip2@1.0.8-2
1.0.8-2ubuntu0.1~esm1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.