StackRadar

CVE-2026-56405

Medium

Advisory

Published 21 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,393
of 17,790 indexed, latest versions
Container images
1,377
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,393 of 17,790 indexed charts deploy, on 1,377 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+32 more2.5.0-1+deb12u3, 2.8.2-1~deb13u11,124
expatapk2.5.0-r4, 2.6.4-r0, 2.6.4-r1, 2.7.0-r0+9 more2.8.2-r0253
OSV records
ALPINE-CVE-2026-56405CGA-2r65-39hv-c468DEBIAN-CVE-2026-56405UBUNTU-CVE-2026-56405
Also known as
CGA-6mc4-rw6m-8pjc, CGA-v7hc-v7f3-2f43, CGA-vxhx-gmqq-f3g8

Charts affected

1,393 by stars
ChartLatestAffected imagesRadar Score
akto-hybrid-redactakto1.44.61 of 5See more

akto-hybrid-redact akto 1.44.6

1 of the 5 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.4_local5bda14f66e8e
expat@2.7.4-1
no fix listed

Open the chart page →

4,098
akto-k8s-ebpf-openshiftakto0.1.11 of 1See more

akto-k8s-ebpf-openshift akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,277
akto-mini-runtimeakto0.7.221 of 3See more

akto-mini-runtime akto 0.7.22

1 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest8be3ed26f746
expat@2.7.4-1
no fix listed

Open the chart page →

2,826
akto-mini-testingakto1.45.72 of 5See more

akto-mini-testing akto 1.45.7

2 of the 5 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
expat@2.7.4-1
no fix listed
public.ecr.aws/aktosecurity/akto-puppeteer-replay:1.49.4_latestf1c5763d565e
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

6,580
akto-regional-setupakto1.3.14 of 9See more

akto-regional-setup akto 1.3.1

4 of the 9 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
expat@2.7.4-1
no fix listed
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
expat@2.7.4-1
no fix listed
redis/redis-stack-server:7.4.072035434f455
expat@2.4.7-1ubuntu0.4
no fix listed
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
expat@2.7.4-1
no fix listed

Open the chart page →

7,828
akto-runtimeakto0.1.81 of 2See more

akto-runtime akto 0.1.8

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest5d55a742a2bc
expat@2.7.4-1
no fix listed

Open the chart page →

1,474
akto-source-code-analyserakto0.1.51 of 3See more

akto-source-code-analyser akto 0.1.5

1 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
expat@2.7.2-r0
2.8.2-r0

Open the chart page →

4,886
akto-testing-db-layerakto1.42.171 of 2See more

akto-testing-db-layer akto 1.42.17

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

4,866
akto-threat-backendakto0.1.51 of 2See more

akto-threat-backend akto 0.1.5

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:latest15ebb75b94dc
expat@2.7.4-1
no fix listed

Open the chart page →

1,553
akto-threat-clientakto0.2.01 of 2See more

akto-threat-client akto 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-threat-detection:latest3f103ce347ce
expat@2.7.4-1
no fix listed

Open the chart page →

1,585
data-ingestion-serviceakto0.1.61 of 1See more

data-ingestion-service akto 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-servicedigest-pinned213aded7adc5
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

3,487
browserlessalekcVerified publisher1.2.71 of 1See more

browserless alekc 1.2.7

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/browserless/chrome:v2.56.7d600eac6283f
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

2,143
esphomealekcVerified publisher2.8.11 of 1See more

esphome alekc 2.8.1

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
esphome/esphome:2026.8.285abea33854b
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,179
esphomealexmorbo-esphomeVerified publisher1.0.01 of 1See more

esphome alexmorbo-esphome 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
esphome/esphome:2024.12.2b2c6322700ac
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

6,352
flaresolverralexmorbo-flaresolverrVerified publisher0.2.01 of 1See more

flaresolverr alexmorbo-flaresolverr 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

27,554
lidarralexmorbo-lidarrVerified publisher0.1.21 of 1See more

lidarr alexmorbo-lidarr 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
expat@2.7.3-r0
2.8.2-r0

Open the chart page →

1,876
alluredeckalluredeckVerified publisher0.24.01 of 2See more

alluredeck alluredeck 0.24.0

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/mkutlak/alluredeck-ui:0.41.0c19509b1b336
expat@2.8.1-r0
2.8.2-r0

Open the chart page →

1,280
allure-docker-helm-chartallure-service-chartVerified publisher0.1.01 of 2See more

allure-docker-helm-chart allure-service-chart 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:latestdc171ec796d5
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

3,691
pagesalstom-pages-app1.0.02 of 3See more

pages alstom-pages-app 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
amorphieamorphie0.1.21 of 18See more

amorphie amorphie 0.1.2

1 of the 18 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

28,289
anchore-admission-controlleranchore-charts0.8.51 of 2See more

anchore-admission-controller anchore-charts 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
cfssl/cfssl:v1.6.5c9018c2ddf0b
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

7,605
music-assistant-serverandibraeuVerified publisher2.1.21 of 1See more

music-assistant-server andibraeu 2.1.2

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

5,865
buildkit-serviceandrcunsVerified publisher1.8.01 of 1See more

buildkit-service andrcuns 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
moby/buildkit:v0.31.0a095b3d11ce1
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,294
pagesandrei-pages1.0.02 of 3See more

pages andrei-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,242
omada-controllerandrelote-k8sVerified publisher4.5.01 of 1See more

omada-controller andrelote-k8s 4.5.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
mbentley/omada-controller:4.3f4e682274bed
expat@2.2.5-3ubuntu0.9
no fix listed

Open the chart page →

11,582
mathesarandrenarchyVerified publisher1.8.01 of 1See more

mathesar andrenarchy 1.8.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
mathesar/mathesar:0.12.0091757cb01fe
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

7,312
speech-to-phraseandrenarchyVerified publisher1.3.01 of 1See more

speech-to-phrase andrenarchy 1.3.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

4,063
games-on-whalesangelnu2.0.04 of 7See more

games-on-whales angelnu 2.0.0

4 of the 7 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
expat@2.4.7-1ubuntu0.6
no fix listed
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
expat@2.2.9-1build1
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
expat@2.2.9-1build1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
expat@2.2.9-1build1
no fix listed

Open the chart page →

42,325
ansible-inspecansible-inspec0.2.171 of 2See more

ansible-inspec ansible-inspec 0.2.17

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

5,591
ansible-playbook-operatoransible-playbook-operatorVerified publisher0.1.71 of 1See more

ansible-playbook-operator ansible-playbook-operator 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
kenchrcum/ansible-playbook-operator:0.1.712fb213debf1
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,340
ddosifyanteonVerified publisher1.7.52 of 13See more

ddosify anteon 1.7.5

2 of the 13 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
expat@2.5.0-1
2.5.0-1+deb12u3
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

25,816
antigenic-docuseal-helm-chartantigenic-docuseal-helm-chartVerified publisher0.2.01 of 1See more

antigenic-docuseal-helm-chart antigenic-docuseal-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
docuseal/docuseal:2.4.17493fd7f6728
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

2,766
antrea-uiantreaVerified publisher0.8.01 of 2See more

antrea-ui antrea 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,261
apispringbootHelmapispringboot0.1.01 of 1See more

apispringbootHelm apispringboot 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
rabeh/apibootspring:1.0941007b6946e
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

6,256
inbox-serverappscodeVerified publisher2025.12.251 of 1See more

inbox-server appscode 2025.12.25

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-server:postgres-latest536358d7b17e
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

4,005
inbox-server-distributedappscodeVerified publisher2025.12.253 of 4See more

inbox-server-distributed appscode 2025.12.25

3 of the 4 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
expat@2.4.7-1ubuntu0.2
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
expat@2.4.7-1ubuntu0.2
no fix listed
ghcr.io/appscode/inbox-server:latest536358d7b17e
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

15,718
inbox-uiappscodeVerified publisher2026.9.111 of 1See more

inbox-ui appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/appscode/inbox-ui:0.0.5ae3b0e29daaa
expat@2.7.0-r0
2.8.2-r0

Open the chart page →

840
james-komposeappscodeVerified publisher0.1.03 of 4See more

james-kompose appscode 0.1.0

3 of the 4 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
library/cassandra:4.1.37cbcec0086ac
expat@2.4.7-1ubuntu0.2
no fix listed
library/rabbitmq:3.12.1-managementf020c06da226
expat@2.4.7-1ubuntu0.2
no fix listed
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

17,122
platform-apiappscodeVerified publisher2026.9.111 of 3See more

platform-api appscode 2026.9.11

1 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

37,629
s3proxyappscodeVerified publisher2026.9.111 of 1See more

s3proxy appscode 2026.9.11

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
expat@2.4.7-1ubuntu0.3
no fix listed

Open the chart page →

3,313
appwriteappwrite-helmVerified publisher1.3.21 of 8See more

appwrite appwrite-helm 1.3.2

1 of the 8 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
appwrite/appwrite:1.9.01aaa70127114
expat@2.7.4-r0
2.8.2-r0

Open the chart page →

9,855
dokuwikiarea-42Verified publisher0.1.81 of 1See more

dokuwiki area-42 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

7,558
argocdargo-helm-charts1.0.01 of 3See more

argocd argo-helm-charts 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.14.115fc69e31c755
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

7,359
arlas-aiasarlas-stackVerified publisher28.8.01 of 22See more

arlas-aias arlas-stack 28.8.0

1 of the 22 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/developmentseed/titiler:0.22.48ac53eb38393
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

40,580
arma-reforgerarma-reforger0.5.31 of 8See more

arma-reforger arma-reforger 0.5.3

1 of the 8 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

23,425
keystonearzu0.2.293 of 4See more

keystone arzu 0.2.29

3 of the 4 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
library/rabbitmq:3.7-managementb6dd45cc35b3
expat@2.2.5-3ubuntu0.2
no fix listed
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
expat@2.2.9-1ubuntu0.6
no fix listed
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

22,663
dltkvassist-iot-data-integrity-verification0.2.02 of 9See more

dltkv assist-iot-data-integrity-verification 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,883
dltflassist-iot-dlt-based-fl0.2.02 of 9See more

dltfl assist-iot-dlt-based-fl 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
expat@2.1.0-7ubuntu0.16.04.3
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
expat@2.1.0-7ubuntu0.16.04.3
no fix listed

Open the chart page →

77,883
locationprocessingassist-iot-location-processing1.0.01 of 3See more

locationprocessing assist-iot-location-processing 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
assistiot/location_processing:lateste9bae124095f
expat@2.4.7-1
no fix listed

Open the chart page →

10,127
openapiassist-iot-open-api-management0.2.21 of 6See more

openapi assist-iot-open-api-management 0.2.2

1 of the 6 container images this version deploys carry CVE-2026-56405.

Container imageDigestPackageFixed in
assistiot/open_api_backend:1.1.230812ba93555
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

18,357

Container images carrying it

1,377 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
expat@2.2.5-3ubuntu0.7
no fix listed
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
expat@2.4.7-1
no fix listed
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
expat@2.6.1-2ubuntu0.4
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
expat@2.6.1-2ubuntu0.3
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
expat@2.1.0-7ubuntu0.16.04.4
no fix listed
1
quay.io/ortelius/ms-compitem-crud:main-v10.0.1566-gf3f81597b7f49eec76
expat@2.7.3-r0
2.8.2-r0
1
quay.io/ortelius/ms-dep-pkg-r:main-v10.0.1705-g21b3dc8a4150e94a45
expat@2.7.3-r0
2.8.2-r0
1
quay.io/ortelius/ms-textfile-crud:main-v10.0.1635-g5076aaf5c4c8adfc82
expat@2.7.3-r0
2.8.2-r0
1
quay.io/ortelius/ms-validate-user:main-v10.0.1694-g98ed94b5054bd4e97a
expat@2.7.3-r0
2.8.2-r0
1
quay.io/poundex/tekton-ci-environment-injector:0.2.46dd65f22949c
expat@2.8.1-r0
2.8.2-r0
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
expat@2.7.4-1
no fix listed
1
quay.io/underndog/samba:1.2.0-not-recyclecca801de9fa5
expat@2.7.0-r0
2.8.2-r0
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
expat@2.5.0-1
2.5.0-1+deb12u3
1
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
expat@2.6.1-2ubuntu0.4
no fix listed
1
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
expat@2.7.4-1
no fix listed
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
expat@2.7.1-2
2.8.2-1~deb13u1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
expat@2.2.9-1build1
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
expat@2.7.5-r0
2.8.2-r0
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
expat@2.7.1-2
2.8.2-1~deb13u1
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
expat@2.5.0-1
2.5.0-1+deb12u3
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.