StackRadar

CVE-2026-45186

High

Advisory

Published 10 May 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.005
39th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,611
of 17,787 indexed, latest versions
Container images
1,664
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: expat security update

Carried by container images the latest versions of 1,611 of 17,787 indexed charts deploy, on 1,664 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+33 more2.8.2-1~deb13u11,144
expatapk2.5.0-r4, 2.6.2-r0, 2.6.3-r0, 2.6.4-r0+10 more2.8.1-r0314
expatrpm2.2.5-3.el8, 2.2.5-3.el8_2.3, 2.2.5-4.el8, 2.2.5-4.el8_4.4+22 more0:2.5.0-2.el8_10, 0:2.5.0-6.el9_8.1206
OSV records
ALPINE-CVE-2026-45186DEBIAN-CVE-2026-45186RHSA-2026:22721RHSA-2026:23230RLSA-2026:22721RLSA-2026:23230CGA-5xh9-v979-7vhcUBUNTU-CVE-2026-45186
Also known as
CGA-6x8g-rx24-rm2q

Charts affected

1,611 by stars
ChartLatestAffected imagesRadar Score
dumpscriptcloudscriptVerified publisher1.8.31 of 1See more

dumpscript cloudscript 1.8.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/cloudscript-technology/dumpscript:v0.0.42-alpine-edgefce5b6fd161c
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

2,126
codetogethercodetogether1.4.251 of 1See more

codetogether codetogether 1.4.25

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
codetogether/codetogether:latest4348c8a38752
expat@2.5.0-2.el9_4
0:2.5.0-6.el9_8.1

Open the chart page →

7,476
convertigoconvertigoOfficialVerified publisher8.4.31 of 5See more

convertigo convertigo 8.4.3

1 of the 5 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
baserow/baserow:1.30.1df0c42eb67e8
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

17,475
cosmocosmo-platformOfficialVerified publisher0.20.01 of 10See more

cosmo cosmo-platform 0.20.0

1 of the 10 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

27,984
dask-kubernetes-operatordask2026.3.01 of 1See more

dask-kubernetes-operator dask 2026.3.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

9,348
zabbix-kubernetes-discoverydjerfyVerified publisher1.4.201 of 1See more

zabbix-kubernetes-discovery djerfy 1.4.20

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/djerfy/zabbix-kubernetes-discovery:v1.4.207a50c07e7c69
expat@2.6.1-2ubuntu0.1
no fix listed

Open the chart page →

4,194
openshift-secured-appeximiaitVerified publisher0.5.01 of 1See more

openshift-secured-app eximiait 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
expat@2.2.5-8.el8_6.3
0:2.5.0-2.el8_10

Open the chart page →

12,042
openshift-secured-pgadmineximiaitVerified publisher0.2.01 of 2See more

openshift-secured-pgadmin eximiait 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
expat@2.2.5-8.el8_6.3
0:2.5.0-2.el8_10

Open the chart page →

14,545
openshift-secured-redisInsighteximiaitVerified publisher0.9.21 of 2See more

openshift-secured-redisInsight eximiait 0.9.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/openshift/origin-oauth-proxy:4.14a7dff785d821
expat@2.2.5-8.el8_6.3
0:2.5.0-2.el8_10

Open the chart page →

13,874
flowableflowable-oss7.1.01 of 2See more

flowable flowable-oss 7.1.0

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
flowable/flowable-rest:7.1.0b7ae287502cd
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

2,784
healthchecksgabe565Verified publisher0.17.01 of 1See more

healthchecks gabe565 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/healthchecks:version-v3.9b5c6bfb00b03
expat@2.7.0-r0
2.8.1-r0

Open the chart page →

2,285
calibregeek-cookbookVerified publisher5.4.21 of 1See more

calibre geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
linuxserver/calibre:version-v5.21.0a847b5b2d860
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

22,812
frigategeek-cookbookVerified publisher8.2.21 of 1See more

frigate geek-cookbook 8.2.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
expat@2.2.9-1build1
no fix listed

Open the chart page →

10,652
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
expat@2.2.9-1ubuntu0.2
no fix listed

Open the chart page →

10,202
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
expat@2.2.9-1build1
no fix listed

Open the chart page →

10,676
unifigeek-cookbookVerified publisher5.1.31 of 1See more

unifi geek-cookbook 5.1.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.4.162b3edc809a3ff
expat@2.2.5-3ubuntu0.9
no fix listed

Open the chart page →

11,873
nacosgujunxiang0.1.51 of 1See more

nacos gujunxiang 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
nacos/nacos-server:latest1c191c30c8cd
expat@2.7.4-1
no fix listed

Open the chart page →

1,820
terrariahalkeye0.4.21 of 2See more

terraria halkeye 0.4.2

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ryshe/terraria:latestb1c89f7f359a
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

4,154
coreinstill-aiOfficialVerified publisher0.1.754 of 15See more

core instill-ai 0.1.75

4 of the 15 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
instill/artifact-backend:b28766ac4a393e601ed
expat@2.7.1-2
2.8.2-1~deb13u1
instill/mgmt-backend:d0933d4ebe12f77a3f9
expat@2.7.1-2
2.8.2-1~deb13u1
instill/model-backend:611f0f2e980125e5ba5
expat@2.7.1-2
2.8.2-1~deb13u1
temporalio/admin-tools:1.28cfde8170c92f
expat@2.7.4-r0
2.8.1-r0

Open the chart page →

30,920
dayz-dedicated-serverjespernohrVerified publisher0.1.21 of 3See more

dayz-dedicated-server jespernohr 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
expat@2.6.1-2ubuntu0.1
no fix listed

Open the chart page →

4,357
calibre-webk8s-home-lab-repo9.1.11 of 1See more

calibre-web k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

4,546
home-assistantk8s-home-lab-repo16.3.11 of 1See more

home-assistant k8s-home-lab-repo 16.3.1

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
expat@2.7.4-r0
2.8.1-r0

Open the chart page →

4,634
mysqldumpkokuwa7.0.31 of 1See more

mysqldump kokuwa 7.0.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/kokuwaio/gcloud-mysql:v3.2.1963098135c550
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

847
kubeservice-lxcfs-webhookkubservice-chartsVerified publisher1.6.01 of 6See more

kubeservice-lxcfs-webhook kubservice-charts 1.6.0

1 of the 6 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
dongjiang1989/lxcfs:v6.0.34bf9ae391948
expat@2.2.9-1ubuntu0.8
no fix listed

Open the chart page →

11,630
bitwarden-crd-operatorlerentisVerified publisher0.18.01 of 1See more

bitwarden-crd-operator lerentis 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/lerentis/bitwarden-crd-operator:0.17.00a608c6ead85
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

2,004
lightsteplightstepsatellite1.2.41 of 1See more

lightstep lightstepsatellite 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

15,345
kafdroplsst-sqre0.1.31 of 1See more

kafdrop lsst-sqre 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

7,940
memgraph-high-availabilitymemgraphVerified publisher1.4.11 of 2See more

memgraph-high-availability memgraph 1.4.1

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.1bd3fe13228f4
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,208
kubecostmesosphere-stable0.37.52 of 9See more

kubecost mesosphere-stable 0.37.5

2 of the 9 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.30.5744f84cf7493
expat@2.5.0-1+deb12u1
no fix listed
kiwigrid/k8s-sidecar:1.28.04166a019eeaf
expat@2.6.3-r0
2.8.1-r0

Open the chart page →

17,755
helm-ai-kernelmindburn-labsOfficialVerified publisher0.8.51 of 2See more

helm-ai-kernel mindburn-labs 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
alpine/helmdigest-pinned105741fa6621
expat@2.6.2-r0
2.8.1-r0

Open the chart page →

2,160
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.672 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

2 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
alpine/git:2.47.2062a01ad7a0e
expat@2.7.0-r0
2.8.1-r0
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
expat@2.5.0-1+deb12u2
no fix listed

Open the chart page →

5,224
oesopsmxVerified publisher4.0.328 of 25See more

oes opsmx 4.0.32

8 of the 25 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
expat@2.6.1-2ubuntu0.3
no fix listed
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
expat@2.1.0-7ubuntu0.16.04.4
no fix listed
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10

Open the chart page →

107,899
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
expat@2.5.0-1+deb12u3
no fix listed

Open the chart page →

3,334
platzioplatz-ioVerified publisher0.6.51 of 2See more

platzio platz-io 0.6.5

1 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
platzio/backend:v0.6.5d5e5972f344b
expat@2.7.1-r0
2.8.1-r0

Open the chart page →

2,867
ipmi-exporterpnnl-miscscripts0.1.151 of 1See more

ipmi-exporter pnnl-miscscripts 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
expat@2.2.5-11.el8
0:2.5.0-2.el8_10

Open the chart page →

2,994
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

5,079
repoflowrepoflow-helm-public0.9.11 of 8See more

repoflow repoflow-helm-public 0.9.1

1 of the 8 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

13,615
nominatimrobjuz6.4.11 of 4See more

nominatim robjuz 6.4.1

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
mediagis/nominatim:5.3.27923a8e67197
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

8,760
rocketmq-clusterrocketmq12.6.02 of 2See more

rocketmq-cluster rocketmq 12.6.0

2 of the 2 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
expat@2.6.1-2ubuntu0.4
no fix listed
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1

Open the chart page →

6,385
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
expat@2.2.9-1build1
no fix listed

Open the chart page →

24,549
plausiblesinextraVerified publisher1.1.21 of 1See more

plausible sinextra 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
expat@2.7.5-r0
2.8.1-r0

Open the chart page →

859
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

5,889
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

5,814
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

15,525
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
expat@2.5.0-1+deb12u1
no fix listed

Open the chart page →

7,064
pretixtechwolf12Verified publisher2026.7.01 of 3See more

pretix techwolf12 2026.7.0

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
pretix/standalone:2026.7.05df3b7aa852e
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

9,825
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
expat@2.4.7-1
no fix listed

Open the chart page →

28,579
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

10,355
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

18,149
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-45186.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

4,428

Container images carrying it

1,664 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/hpestorage/filex-csi-driver:2.6.4b7f960bbf472
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
expat@2.2.5-3.el8
0:2.5.0-2.el8_10
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
expat@2.5.0-1+deb12u3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
expat@2.5.0-1+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
expat@2.5.0-1+deb12u2
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
expat@2.5.0-1+deb12u3
no fix listed
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
expat@2.2.5-10.el8
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
expat@2.2.5-10.el8
0:2.5.0-2.el8_10
1
quay.io/maximilianopizarro/neuralbank-backend:latesta53899fcfc01
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuralbank-frontend:latest5f4572ef6d6f
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-backend:v1.4.13194d46df0f9
expat@2.5.0-6.el9
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-backend:latestcba71dc08c8a
expat@2.5.0-6.el9
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-frontend:v1.4.1841b70cd1424
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/neuroface-frontend:latestdcf24040cc77
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/nfl-wallet-webapp:1.0.13fead5702be7
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
expat@2.2.5-4.el8_5.3
0:2.5.0-2.el8_10
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
expat@2.2.5-3.el8
0:2.5.0-2.el8_10
1
quay.io/microcks/microcks-operator:0.0.1196d1054d4a61
expat@2.5.0-5.el9_7.1
0:2.5.0-6.el9_8.1
1
quay.io/minio/directpv:v4.0.84560083eb77d
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
expat@2.5.0-1+deb12u1
no fix listed
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-cli:4.66722d5041b47
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
expat@2.2.5-3.el8_2.3
0:2.5.0-2.el8_10
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
expat@2.2.5-8.el8_6.4
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
expat@2.6.1-2ubuntu0.3
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
expat@2.1.0-7ubuntu0.16.04.4
no fix listed
1
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
expat@2.5.0-1.el8_10
0:2.5.0-2.el8_10
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
expat@2.7.3-r0
2.8.1-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
expat@2.7.3-r0
2.8.1-r0
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
expat@2.7.4-1
no fix listed
1
quay.io/redhat-ai-dev/chatbot:latest59fe607dfdf2
expat@2.5.0-2.el9_4
0:2.5.0-6.el9_8.1
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
expat@2.5.0-1.el9
0:2.5.0-6.el9_8.1
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
expat@2.2.5-4.el8
0:2.5.0-2.el8_10
1
quay.io/seamware/consent-facade:0.0.14be844c750c7e
expat@2.2.5-16.el8_10
0:2.5.0-2.el8_10
1
quay.io/sshaaf/keycloak-mcp-server:0.4.0b7e9cba72f8a
expat@2.5.0-3.el9_5.1
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.45.158c727cd2e68
expat@2.5.0-5.el9_6
0:2.5.0-6.el9_8.1
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
expat@2.2.5-11.el8
0:2.5.0-2.el8_10
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
expat@2.7.0-r0
2.8.1-r0
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
expat@2.2.5-10.el8_7.1
0:2.5.0-2.el8_10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.