StackRadar

CVE-2026-45186

High

Advisory

Published 10 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,598
of 17,792 indexed, latest versions
Container images
1,645
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,598 of 17,792 indexed charts deploy, on 1,645 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+33 more2.8.2-1~deb13u11,130
expatapk2.5.0-r4, 2.6.2-r0, 2.6.3-r0, 2.6.4-r0+10 more2.8.1-r0309
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+22 more0:2.5.0-2.el8_10, 0:2.5.0-6.el9_8.1206
OSV records
ALPINE-CVE-2026-45186DEBIAN-CVE-2026-45186RHSA-2026:22721RHSA-2026:23230RLSA-2026:22721RLSA-2026:23230CGA-5xh9-v979-7vhcUBUNTU-CVE-2026-45186
Also known as
CGA-6x8g-rx24-rm2q

Charts affected

1,598 by stars
ChartLatestAffected imagesRadar Score
pagespages-sushi1.0.02 of 3See more

pages pages-sushi 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
pagespages-vasanth58141.0.02 of 3See more

pages pages-vasanth5814 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
pagespages-vjp1.0.02 of 3See more

pages pages-vjp 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
parcial-1parcial-1-chart1.0.01 of 5See more

parcial-1 parcial-1-chart 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
esteban1930/frontend-1:1.8.0f9078279632c
expat@2.7.1-r0
2.8.1-r0

Open the chart page →

3,863
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

4,805
plausiblepascaliskeVerified publisher2.0.01 of 1See more

plausible pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.51f9d3fb861e1
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

960
minecraftpaul1365972-mc3.0.11 of 1See more

minecraft paul1365972-mc 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
itzg/minecraft-server:latest8672e335dbef
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

4,303
pagespawan-pages1.0.02 of 3See more

pages pawan-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
stk-fluent-bit-loki-s3paxtecnologia0.2.11 of 6See more

stk-fluent-bit-loki-s3 paxtecnologia 0.2.1

1 of the 6 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

3,749
matomopetbattle11.0.11 of 2See more

matomo petbattle 11.0.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

11,101
pet-battle-infrapetbattle1.0.321 of 2See more

pet-battle-infra petbattle 1.0.32

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
expat@2.2.5-4.el8_4.4
0:2.5.0-2.el8_10

Open the chart page →

15,474
pet-battle-tournamentpetbattle1.0.401 of 3See more

pet-battle-tournament petbattle 1.0.40

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.8bb5e052770e5
expat@2.2.5-4.el8_4.4
0:2.5.0-2.el8_10

Open the chart page →

15,474
redis-stack-awsphamxuanduong0.1.01 of 1See more

redis-stack-aws phamxuanduong 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.4.0-v0887cf87cc744
expat@2.4.7-1ubuntu0.3
no fix listed

Open the chart page →

3,279
dummy-servicephanVerified publisher0.3.41 of 1See more

dummy-service phan 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
phan2410/dummy-service:0.0.89c6ed6de26ca
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

5,778
falcon-asgi-serverphanVerified publisher0.1.01 of 1See more

falcon-asgi-server phan 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
phan2410/falcon-asgi-server:0.1.04a86d138832d
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

8,262
phronetisphronetis0.1.272 of 2See more

phronetis phronetis 0.1.27

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
knspar/phronetis:0.1.4609499d2dc91a
expat@2.6.1-2ubuntu0.3
no fix listed
knspar/phronetis-operator:0.1.60c4f0543ee58
expat@2.5.0-1
no fix listed

Open the chart page →

16,321
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

22,156
piepieVerified publisher0.11.11 of 1See more

pie pie 0.11.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/topolvm/pie:0.18.0aa467443e407
expat@2.4.7-1ubuntu0.7
no fix listed

Open the chart page →

2,151
pagespighosh-pages1.0.02 of 3See more

pages pighosh-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
firehose-ethereumpinaxVerified publisher0.3.21 of 2See more

firehose-ethereum pinax 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

7,165
subgraph-oraclepinaxVerified publisher0.0.11 of 1See more

subgraph-oracle pinax 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
expat@2.5.0-1
no fix listed

Open the chart page →

11,420
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
expat@2.2.9-1ubuntu0.7
no fix listed

Open the chart page →

6,720
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
expat@2.2.9-1ubuntu0.7
no fix listed

Open the chart page →

6,665
substreams-tier-2pinaxVerified publisher0.0.81 of 1See more

substreams-tier-2 pinax 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

4,950
pingdom-operatorpingdom-operator0.0.201 of 1See more

pingdom-operator pingdom-operator 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
expat@2.5.0-1
no fix listed

Open the chart page →

11,996
spring-boot-openshiftpiominVerified publisher0.3.111 of 1See more

spring-boot-openshift piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
expat@2.4.7-1
no fix listed

Open the chart page →

7,622
planectlplanectlVerified publisher0.7.04 of 10See more

planectl planectl 0.7.0

4 of the 10 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
alpine/k8s:1.30.2cd560fce90f7
expat@2.6.2-r0
2.8.1-r0
gitea/act_runner:0.2.11c57233403eff
expat@2.6.3-r0
2.8.1-r0
library/node:208f693eaa7e0a
expat@2.5.0-1+deb12u2
no fix listed
quay.io/argoproj/argocd:v2.14.115fc69e31c755
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

26,118
plausibleplausible0.1.21 of 2See more

plausible plausible 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v2.1.44c2553516d09
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,338
gitlab-runner-operatorpnnl-miscscripts0.1.61 of 1See more

gitlab-runner-operator pnnl-miscscripts 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
expat@2.2.5-3.el8
0:2.5.0-2.el8_10

Open the chart page →

11,162
k8s-node-image9-1-24pnnl-miscscripts0.2.1492 of 2See more

k8s-node-image9-1-24 pnnl-miscscripts 0.2.149

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.24.17-nginx-882c8dc938b2f9
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-25pnnl-miscscripts0.2.1052 of 2See more

k8s-node-image9-1-25 pnnl-miscscripts 0.2.105

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.25.16-nginx-772c202c43c0aa
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-26pnnl-miscscripts0.2.922 of 2See more

k8s-node-image9-1-26 pnnl-miscscripts 0.2.92

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.26.15-nginx-579785e5b82334
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-27pnnl-miscscripts0.2.902 of 2See more

k8s-node-image9-1-27 pnnl-miscscripts 0.2.90

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.27.16-nginx-306e1a36d646a3
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-28pnnl-miscscripts0.2.1022 of 2See more

k8s-node-image9-1-28 pnnl-miscscripts 0.2.102

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.28.15-nginx-72b91d6a46e06
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-29pnnl-miscscripts0.2.642 of 2See more

k8s-node-image9-1-29 pnnl-miscscripts 0.2.64

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
expat@2.6.4-r0
2.8.1-r0
pnnlmiscscripts/k8s-node-image9:1.29.10-nginx-7fcd82530bc8b
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

1,492
k8s-node-image9-1-30pnnl-miscscripts0.2.561 of 2See more

k8s-node-image9-1-30 pnnl-miscscripts 0.2.56

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/k8s-node-image9:1.30.11-nginx-7f9297eea817d
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

620
k8s-node-image9-1-31pnnl-miscscripts0.2.271 of 2See more

k8s-node-image9-1-31 pnnl-miscscripts 0.2.27

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/k8s-node-image9:1.31.7-nginx-7e3e189d9d519
expat@2.6.4-r0
2.8.1-r0

Open the chart page →

620
k8s-oidc-discovery-providerpnnl-miscscripts0.1.21 of 2See more

k8s-oidc-discovery-provider pnnl-miscscripts 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/nginx:1.29.49dd288848f44
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

4,284
tenant-namespace-operatorpnnl-miscscripts0.1.281 of 1See more

tenant-namespace-operator pnnl-miscscripts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/tenant-namespace-operator:0.1.24-18af4b7551d40
expat@2.2.5-11.el8
0:2.5.0-2.el8_10

Open the chart page →

13,089
pod-birdspod-birds0.1.01 of 1See more

pod-birds pod-birds 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
teknas09/bird-pod:latest12a1fa85c4aa
expat@2.5.0-1
no fix listed

Open the chart page →

13,002
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

9,216
static-sitepodzone-chartsVerified publisher0.1.11 of 2See more

static-site podzone-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
expat@2.5.0-1
no fix listed

Open the chart page →

6,586
Practica_4_helmpr04helm0.1.03 of 7See more

Practica_4_helm pr04helm 0.1.0

3 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
codeurjc/toposervice:v1.09fb4c11e6a49
expat@2.2.5-3ubuntu0.9
no fix listed
library/rabbitmq:3.9-management8a279e9396a8
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

27,659
practica-helmpractica-helm0.1.02 of 7See more

practica-helm practica-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/rabbitmq:3-management-alpine606d8c0d6b3c
expat@2.7.3-r0
2.8.1-r0
slagattollas/weatherservice-practica:latest68e7f56393fc
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

28,503
pagesprasanthi1.0.02 of 3See more

pages prasanthi 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
prefect-agentprefectVerified publisher2024.8.301638221 of 1See more

prefect-agent prefect 2024.8.30163822

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
expat@2.5.0-1
no fix listed

Open the chart page →

5,513
flink-kubernetes-operatorpresto-loadbalancer1.10.01 of 1See more

flink-kubernetes-operator presto-loadbalancer 1.10.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
expat@2.4.7-1ubuntu0.4
no fix listed

Open the chart page →

3,319
priceapp-chartpriceapp0.1.01 of 1See more

priceapp-chart priceapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ildarmukhametzyanov/priceapp:0.115d23720a3ee
expat@2.5.0-1
no fix listed

Open the chart page →

8,241
prismeai-appsprismeai0.7.11 of 4See more

prismeai-apps prismeai 0.7.1

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

2,761
prismeai-coreprismeai1.12.11 of 7See more

prismeai-core prismeai 1.12.1

1 of the 7 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
expat@2.7.3-r0
2.8.1-r0

Open the chart page →

3,280

Container images carrying it

1,645 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
expat@2.2.5-4.el8_5.3
0:2.5.0-2.el8_10
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
expat@2.2.5-3.el8
0:2.5.0-2.el8_10
1
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/minio/directpv:v4.0.84560083eb77d
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
expat@2.5.0-1+deb12u1
no fix listed
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
expat@2.2.5-8.el8_6.4
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
expat@2.6.1-2ubuntu0.3
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
expat@2.1.0-7ubuntu0.16.04.4
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
expat@2.7.3-r0
2.8.1-r0
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
expat@2.7.4-1
no fix listed
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
expat@2.5.0-2.el9_4
0:2.5.0-6.el9_8.1
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
expat@2.5.0-1.el9
0:2.5.0-6.el9_8.1
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
expat@2.2.5-16.el8_10
0:2.5.0-2.el8_10
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.45.158c727cd2e68
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
expat@2.7.0-r0
2.8.1-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
expat@2.5.0-1
no fix listed
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
expat@2.6.1-2ubuntu0.4
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
expat@2.7.4-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
expat@2.7.1-2
2.8.2-1~deb13u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
expat@2.5.0-1+deb12u2
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
expat@2.2.9-1build1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
expat@2.5.0-1+deb12u2
no fix listed
1
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
expat@2.7.5-r0
2.8.1-r0
1
registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5fcf07d5ff7e2
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
expat@2.7.1-2
2.8.2-1~deb13u1
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
expat@2.5.0-1
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
expat@2.5.0-1+deb12u2
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
expat@2.5.0-1+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.