StackRadar

CVE-2026-45186

High

Advisory

Published 10 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,611
of 17,787 indexed, latest versions
Container images
1,664
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,611 of 17,787 indexed charts deploy, on 1,664 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+33 more2.8.2-1~deb13u11,144
expatapk2.5.0-r4, 2.6.2-r0, 2.6.3-r0, 2.6.4-r0+10 more2.8.1-r0314
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+22 more0:2.5.0-2.el8_10, 0:2.5.0-6.el9_8.1206
OSV records
ALPINE-CVE-2026-45186DEBIAN-CVE-2026-45186RHSA-2026:22721RHSA-2026:23230RLSA-2026:22721RLSA-2026:23230CGA-5xh9-v979-7vhcUBUNTU-CVE-2026-45186
Also known as
CGA-6x8g-rx24-rm2q

Charts affected

1,611 by stars
ChartLatestAffected imagesRadar Score
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
expat@2.7.2-r0
2.8.1-r0

Open the chart page →

4,881
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

4,856
akto-threat-backendakto0.1.51 of 2See more

akto-threat-backend akto 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:latest15ebb75b94dc
expat@2.7.4-1
no fix listed

Open the chart page →

1,548
akto-threat-clientakto0.2.01 of 2See more

akto-threat-client akto 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-threat-detection:latest3f103ce347ce
expat@2.7.4-1
no fix listed

Open the chart page →

1,580
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

3,481
browserlessalekcVerified publisher1.2.71 of 1See more

browserless alekc 1.2.7

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

2,138
esphomealekcVerified publisher2.8.11 of 1See more

esphome alekc 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
esphome/esphome:2026.8.285abea33854b
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,143
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

5,898
flaresolverralexmorbo-flaresolverrVerified publisher0.2.01 of 1See more

flaresolverr alexmorbo-flaresolverr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

27,282
lidarralexmorbo-lidarrVerified publisher0.1.21 of 1See more

lidarr alexmorbo-lidarr 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

1,874
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:latestdc171ec796d5
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

3,685
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,233
amorphieamorphie0.1.22 of 18See more

amorphie amorphie 0.1.2

2 of the 18 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hazelcast/management-center:5.3.2f9d34300d330
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

28,212
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
expat@2.5.0-1
no fix listed

Open the chart page →

7,559
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

5,838
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

1,286
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,233
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
expat@2.2.5-3ubuntu0.9
no fix listed

Open the chart page →

11,579
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

7,265
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

3,872
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
expat@2.4.7-1ubuntu0.6
no fix listed
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
expat@2.2.9-1build1
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
expat@2.2.9-1build1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
expat@2.2.9-1build1
no fix listed

Open the chart page →

42,345
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

5,516
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

1,340
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
expat@2.5.0-1
no fix listed
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
expat@2.5.0-1
no fix listed

Open the chart page →

25,720
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

2,766
monitoringantmediaVerified publisher1.0.01 of 6See more

monitoring antmedia 1.0.0

1 of the 6 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
confluentinc/cp-zookeeper:latest7610a50b13e7
expat@2.2.5-17.el8_10
0:2.5.0-2.el8_10

Open the chart page →

2,454
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,201
apishiftapishiftVerified publisher0.3.01 of 4See more

apishift apishift 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1

Open the chart page →

2,947
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

6,227
app-mobilityappmo0.1.01 of 5See more

app-mobility appmo 0.1.0

1 of the 5 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
expat@2.2.5-8.el8_6.2
0:2.5.0-2.el8_10

Open the chart page →

12,520
deploy-uiappscodeVerified publisher2026.9.111 of 1See more

deploy-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/deploy-ui:0.3.6f3e07eff3997
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

720
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

4,002
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
expat@2.4.7-1ubuntu0.2
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
expat@2.4.7-1ubuntu0.2
no fix listed
ghcr.io/appscode/inbox-server:latest536358d7b17e
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

15,707
inbox-uiappscodeVerified publisher2026.9.111 of 1See more

inbox-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-ui:0.0.5ae3b0e29daaa
expat@2.7.0-r0
2.8.1-r0

Open the chart page →

840
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
expat@2.4.7-1ubuntu0.2
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
expat@2.4.7-1ubuntu0.2
no fix listed
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

17,110
marketplace-uiappscodeVerified publisher2026.9.111 of 1See more

marketplace-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/marketplace-ui:0.3.1d52177072013
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

720
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

37,184
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
expat@2.4.7-1ubuntu0.3
no fix listed

Open the chart page →

3,310
maxscaleappuio2.0.11 of 1See more

maxscale appuio 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/appuio/maxscale-docker:6.4.613a01be102b0
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10

Open the chart page →

2,902
appwriteappwrite-helmVerified publisher1.3.22 of 8See more

appwrite appwrite-helm 1.3.2

2 of the 8 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
expat@2.7.4-r0
2.8.1-r0
appwrite/console:7.5.7aaa11ceab999
expat@2.7.0-r0
2.8.1-r0

Open the chart page →

9,847
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

7,521
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

7,338
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

40,411
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

23,407
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
expat@2.2.5-3ubuntu0.2
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
expat@2.2.9-1ubuntu0.6
no fix listed
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

22,677
assemblylineassemblylineVerified publisher7.4.194 of 12See more

assemblyline assemblyline 7.4.19

4 of the 12 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
cccs/assemblyline-core:4.7.4.stable19c914f21a41d7
expat@2.5.0-1+deb12u3
no fix listed
cccs/assemblyline-rust:4.7.4.stable19c2f9619d9bcd
expat@2.5.0-1+deb12u3
no fix listed
cccs/assemblyline-socketio:4.7.4.stable19caf40394bd17
expat@2.5.0-1+deb12u3
no fix listed
cccs/assemblyline-ui:4.7.4.stable190426ed7884a2
expat@2.5.0-1+deb12u3
no fix listed

Open the chart page →

12,092
automatedconfigurationassist-iot-automated-configuration1.0.02 of 5See more

automatedconfiguration assist-iot-automated-configuration 1.0.0

2 of the 5 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
confluentinc/cp-kafka:7.5.1dc9b972db002
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
expat@2.2.5-11.el8
0:2.5.0-2.el8_10

Open the chart page →

14,725
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,821
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,821
idmassist-iot-identity-manager0.1.01 of 2See more

idm assist-iot-identity-manager 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
assistiot/identity-manager_kc:latest0df4b4fa899a
expat@2.2.5-8.el8_6.2
0:2.5.0-2.el8_10

Open the chart page →

12,799

Container images carrying it

1,664 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
folioci/mod-login:latest88de493f86db
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-login-saml:latest5f3358ccaa0f
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-ncip:latest8ed83674352b
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-oa:latestae3b069d4ba5
expat@2.6.2-r0
2.8.1-r0
1
folioci/mod-permissions:latest5363e98c6299
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-pubsub:latest0a4fa4ad5d72
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-search:latest44d7ee9acdf6
expat@2.7.1-r0
2.8.1-r0
1
folioci/mod-serials-management:latest571fa1ffe8c9
expat@2.6.2-r0
2.8.1-r0
1
folioci/mod-service-interaction:latestf53c327a48e8
expat@2.6.2-r0
2.8.1-r0
1
folioci/mod-user-import:latest1807734472bd
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-users-bl:latest4e2d96c9340d
expat@2.7.5-r0
2.8.1-r0
1
folioci/mod-z3950:latest2493041ce880
expat@2.7.1-2
2.8.2-1~deb13u1
1
fosrl/pangolin:1.13.0c32ad797ab96
expat@2.7.3-r0
2.8.1-r0
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
expat@2.2.5-3ubuntu0.9
no fix listed
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
expat@2.2.5-3ubuntu0.7
no fix listed
1
frankescobar/allure-docker-service:latestdc171ec796d5
expat@2.6.1-2ubuntu0.4
no fix listed
1
freeradius/freeradius-server:3.2.8af6fd34a5b78
expat@2.4.7-1ubuntu0.6
no fix listed
1
galaxy/cloudman-server:lateste5c265fe9fcd
expat@2.2.9-1ubuntu0.4
no fix listed
1
galaxy/galaxy-init:v18.010267bad550e6
expat@2.1.0-4ubuntu1.4
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
expat@2.1.0-4ubuntu1.4
no fix listed
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
expat@2.5.0-1+deb12u1
no fix listed
1
gchq/accumulo:2.0.1c460bb587d6d
expat@2.6.1-2ubuntu0.2
no fix listed
1
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
expat@2.7.3-r0
2.8.1-r0
1
gdrocha/togglr-frontend:1.0.0ffbc1571c234
expat@2.7.3-r0
2.8.1-r0
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
expat@2.2.5-3ubuntu0.9
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
expat@2.4.7-1ubuntu0.7
no fix listed
1
geopython/pycsw:3.0.0-beta284662ea6b78b
expat@2.5.0-1+deb12u2
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
expat@2.2.5-3ubuntu0.2
no fix listed
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
expat@2.7.4-1
no fix listed
1
gethue/hue:4.11.011b649636e68
expat@2.2.9-1ubuntu0.6
no fix listed
1
gethue/hue:4.10.05702b2c37ff9
expat@2.2.5-3ubuntu0.2
no fix listed
1
gethue/hue:latest7d5c1b9f8a79
expat@2.4.7-1ubuntu0.6
no fix listed
1
gitea/act_runner:0.2.11-dind-rootless6120b1165f3a
expat@2.6.3-r0
2.8.1-r0
1
gitea/act_runner:nightly7940221bcfc9
expat@2.7.5-r0
2.8.1-r0
1
gitea/act_runner:latestb5c35d6bdbb9
expat@2.7.5-r0
2.8.1-r0
1
gitea/act_runner:0.3.1c2a169c5e998
expat@2.7.5-r0
2.8.1-r0
1
gitea/act_runner:0.2.11c57233403eff
expat@2.6.3-r0
2.8.1-r0
1
gitea/gitea:1.22.376f516a1a8c2
expat@2.6.3-r0
2.8.1-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.