StackRadar

CVE-2026-45186

High

Advisory

Published 10 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,611
of 17,790 indexed, latest versions
Container images
1,663
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,611 of 17,790 indexed charts deploy, on 1,663 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+33 more2.8.2-1~deb13u11,144
expatapk2.5.0-r4, 2.6.2-r0, 2.6.3-r0, 2.6.4-r0+10 more2.8.1-r0313
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+22 more0:2.5.0-2.el8_10, 0:2.5.0-6.el9_8.1206
OSV records
ALPINE-CVE-2026-45186DEBIAN-CVE-2026-45186RHSA-2026:22721RHSA-2026:23230RLSA-2026:22721RLSA-2026:23230CGA-5xh9-v979-7vhcUBUNTU-CVE-2026-45186
Also known as
CGA-6x8g-rx24-rm2q

Charts affected

1,611 by stars
ChartLatestAffected imagesRadar Score
amplinguamatics0.12.01 of 4See more

amp linguamatics 0.12.0

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

2,106
data-factorylinguamatics1.0.11 of 4See more

data-factory linguamatics 1.0.1

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

2,106
delugelinkding0.2.31 of 1See more

deluge linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
linuxserver/deluge:libtorrentv1-2.2.0-ls40052eac68ccc0
expat@2.7.0-r0
2.8.1-r0

Open the chart page →

1,432
excalidrawlinkding0.2.31 of 1See more

excalidraw linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
excalidraw/excalidraw:latestf7ee194addd6
expat@2.7.0-r0
2.8.1-r0

Open the chart page →

840
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

38,239
webdavlinuxoid690.1.01 of 1See more

webdav linuxoid69 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/linuxoid69/webdav:1.26.2-r065bacf19caa7
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

1,082
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

10,780
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
llm-dllm-dVerified publisher1.0.231 of 2See more

llm-d llm-d 1.0.23

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/llm-d/llm-d-model-service:v0.0.158b99a8104a2f
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1

Open the chart page →

2,539
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

2,626
node-redlmatfyVerified publisher0.1.61 of 1See more

node-red lmatfy 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
nodered/node-red:4.1.10-minimald73ae167cb9b
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

1,809
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
expat@2.5.0-1
no fix listed

Open the chart page →

7,534
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

33,540
elasticvuelogic3579Verified publisher1.15.01 of 1See more

elasticvue logic3579 1.15.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
cars10/elasticvue:1.15.0efddf4fa0fd8
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

1,086
nightingalelogic3579Verified publisher0.3.11 of 6See more

nightingale logic3579 0.3.1

1 of the 6 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

9,062
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

6,680
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
expat@2.5.0-1
no fix listed

Open the chart page →

6,578
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

23,689
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

5,074
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
expat@2.2.9-1ubuntu0.2
no fix listed

Open the chart page →

17,858
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
expat@2.2.5-3ubuntu0.2
no fix listed
elastictranscoder/media-storage:f6d861a026208b8c2359
expat@2.2.5-3ubuntu0.2
no fix listed
elastictranscoder/transcoder:627e21dcb4a0327029e6
expat@2.2.5-3ubuntu0.2
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

58,245
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

27,554
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/m0nsterrr/hyperglass:v2.0.4f7b5d20c5e42
expat@2.6.2-r0
2.8.1-r0

Open the chart page →

4,669
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

2,626
decap-cmsm11sVerified publisher0.3.151 of 1See more

decap-cms m11s 0.3.15

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
m11s/decap-cms:0.2.11-s30cd6810c9885
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

1,152
magistralamagistrala-devopsVerified publisher0.16.21 of 42See more

magistrala magistrala-devops 0.16.2

1 of the 42 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

24,537
docker-mailservermailserverVerified publisher0.2.653 of 9See more

docker-mailserver mailserver 0.2.65

3 of the 9 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jeboehm/mailserver-filter:5.0.92e756949e537d
expat@2.7.0-r0
2.8.1-r0
jeboehm/mailserver-web:5.0.929da13edf5aa8
expat@2.7.1-r0
2.8.1-r0
mvance/unbound:1.22.076906da36d18
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

10,921
nodecg-chartmarathon-charts0.1.51 of 2See more

nodecg-chart marathon-charts 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
expat@2.5.0-1
no fix listed

Open the chart page →

7,334
novosgamarcusrepo0.1.11 of 2See more

novosga marcusrepo 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
novosga/novosga:latest34b9acbe6e51
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

3,713
marge-botmarge-bot-helm1.3.51 of 1See more

marge-bot marge-bot-helm 1.3.5

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.16.0b59f01bc0418
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,597
mauticmautic-chartVerified publisher1.0.21 of 3See more

mautic mautic-chart 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mautic/mautic:7-apacheeb8cc73d97e1
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

8,409
eoloplantmca-eoloplaner0.1.02 of 7See more

eoloplant mca-eoloplaner 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hugohg34/toposervice:0.0.2812a03b3f274
expat@2.2.9-1ubuntu0.4
no fix listed
library/rabbitmq:3.9-management8a279e9396a8
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

29,746
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
expat@2.2.5-3.el8
0:2.5.0-2.el8_10

Open the chart page →

4,979
backstagemcwarmanVerified publisher0.10.102 of 2See more

backstage mcwarman 0.10.10

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
expat@2.7.1-2
2.8.2-1~deb13u1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

9,765
dependency-trackmediamarktsaturn1.9.21 of 2See more

dependency-track mediamarktsaturn 1.9.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dependencytrack/frontend:4.14.200560b57a6cf
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

3,840
cleanuparrmedia-servarrVerified publisher0.19.11 of 1See more

cleanuparr media-servarr 0.19.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/cleanuparr/cleanuparr:2.10.68136c3beda7a
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,436
flaresolverrmedia-servarrVerified publisher0.18.11 of 1See more

flaresolverr media-servarr 0.18.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
expat@2.5.0-1+deb12u3
no fix listed

Open the chart page →

6,416
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

8,147
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
expat@2.2.9-1ubuntu0.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

18,730
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
expat@2.2.9-1ubuntu0.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

18,730
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
expat@2.2.9-1ubuntu0.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

18,730
meerschaummeerschaumVerified publisher0.2.01 of 1See more

meerschaum meerschaum 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bmeares/meerschaum:2.8.48e9c5bacaa82
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

5,886
istiomesosphere1.25.11 of 2See more

istio mesosphere 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
expat@2.5.0-1
no fix listed

Open the chart page →

5,455
kubeaddons-catalogmesosphere0.1.161 of 2See more

kubeaddons-catalog mesosphere 0.1.16

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
expat@2.2.9-1build1
no fix listed

Open the chart page →

12,052
kube-prometheus-stackmesosphere87.16.01 of 7See more

kube-prometheus-stack mesosphere 87.16.0

1 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
expat@2.5.0-1
no fix listed

Open the chart page →

7,452
dexmesosphere-stable2.14.11 of 5See more

dex mesosphere-stable 2.14.1

1 of the 5 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
expat@2.5.0-1
no fix listed

Open the chart page →

19,270
istiomesosphere-stable1.25.11 of 2See more

istio mesosphere-stable 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
expat@2.5.0-1
no fix listed

Open the chart page →

5,455
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
expat@2.2.9-1build1
no fix listed

Open the chart page →

68,417
kube-prometheus-stackmesosphere-stable75.9.11 of 7See more

kube-prometheus-stack mesosphere-stable 75.9.1

1 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
expat@2.5.0-1
no fix listed

Open the chart page →

10,227
localpathprovisionermesosphere-stable0.1.21 of 1See more

localpathprovisioner mesosphere-stable 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

17,954

Container images carrying it

1,663 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
expat@2.2.5-3.el8
0:2.5.0-2.el8_10
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
expat@2.5.0-1+deb12u3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
expat@2.5.0-1+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
expat@2.5.0-1+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
expat@2.5.0-1+deb12u3
no fix listed
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
expat@2.2.5-10.el8
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
expat@2.2.5-10.el8
0:2.5.0-2.el8_10
1
quay.io/maximilianopizarro/neuralbank-backend:latesta53899fcfc01
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
expat@2.5.0-6.el9
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
expat@2.5.0-6.el9
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
expat@2.2.5-4.el8_5.3
0:2.5.0-2.el8_10
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
expat@2.2.5-3.el8
0:2.5.0-2.el8_10
1
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/minio/directpv:v4.0.84560083eb77d
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
expat@2.5.0-1+deb12u1
no fix listed
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
expat@2.2.5-8.el8_6.4
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
expat@2.6.1-2ubuntu0.3
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
expat@2.1.0-7ubuntu0.16.04.4
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
expat@2.7.3-r0
2.8.1-r0
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
expat@2.7.4-1
no fix listed
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
expat@2.5.0-2.el9_4
0:2.5.0-6.el9_8.1
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
expat@2.5.0-1.el9
0:2.5.0-6.el9_8.1
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
expat@2.2.5-16.el8_10
0:2.5.0-2.el8_10
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.45.158c727cd2e68
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
expat@2.7.0-r0
2.8.1-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
expat@2.5.0-1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.