StackRadar

CVE-2026-56406

Medium

Advisory

Published 21 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,391
of 17,781 indexed, latest versions
Container images
1,378
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,391 of 17,781 indexed charts deploy, on 1,378 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+32 more2.5.0-1+deb12u3, 2.8.2-1~deb13u11,127
expatapk2.5.0-r4, 2.6.4-r0, 2.6.4-r1, 2.7.0-r0+9 more2.8.2-r0251
OSV records
ALPINE-CVE-2026-56406CGA-3m5q-49vg-7qqxDEBIAN-CVE-2026-56406UBUNTU-CVE-2026-56406
Also known as
CGA-9hjg-94rg-vxf6, CGA-vpcc-wcjw-3xhm, CGA-xqmw-5w9m-9473

Charts affected

1,391 by stars
ChartLatestAffected imagesRadar Score
camel-kcamel-kVerified publisher2.11.01 of 1See more

camel-k camel-k 2.11.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
apache/camel-k:2.11.0d173e7efe258
expat@2.7.4-1
no fix listed

Open the chart page →

1,226
glasskube-operatorglasskubeOfficialVerified publisher0.12.21 of 3See more

glasskube-operator glasskube 0.12.2

1 of the 3 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
glasskube/operator:0.12.2be5133100d63
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

11,933
milvusmilvus-helm5.0.271 of 4See more

milvus milvus-helm 5.0.27

1 of the 4 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.0.79c9947de139d
expat@2.4.7-1ubuntu0.4
no fix listed

Open the chart page →

10,670
rocketmqrocketmq12.6.01 of 2See more

rocketmq rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

6,328
snipeitt3n3.4.11 of 2See more

snipeit t3n 3.4.1

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
snipe/snipe-it:v6.0.1455fb7636a98c
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

18,509
bitbucketatlassian-data-centerVerified publisher2.0.151 of 1See more

bitbucket atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
atlassian/bitbucket:10.2.705933f2b1cfd
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,444
zookeepercloudpirates-zookeeperVerified publisher0.13.111 of 1See more

zookeeper cloudpirates-zookeeper 0.13.11

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
library/zookeeper:3.9.5cab8944a33a1
expat@2.4.7-1ubuntu0.7
no fix listed

Open the chart page →

2,924
codefreshcodefresh-onpremOfficialVerified publisher2.12.131 of 42See more

codefresh codefresh-onprem 2.12.13

1 of the 42 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

14,956
memgraphmemgraphVerified publisher1.0.61 of 2See more

memgraph memgraph 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
memgraph/memgraph:3.13.0a1dc375774ed
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,373
stackstorm-hastackstormVerified publisher1.1.011 of 17See more

stackstorm-ha stackstorm 1.1.0

11 of the 17 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
stackstorm/st2actionrunner:3.888235ba70cad
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2api:3.86f56d239d280
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2auth:3.833ecfda16608
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2notifier:3.8f190a6212195
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2rulesengine:3.8259503496ff9
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2scheduler:3.8b1de2055c362
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2sensorcontainer:3.8b1a338f64773
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2stream:3.81c8904a3bf67
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2timersengine:3.81bf35bfaf00c
expat@2.2.9-1ubuntu0.6
no fix listed
stackstorm/st2workflowengine:3.819fdfffdbba8
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

96,419
supabasetokens-studioVerified publisher1.0.02 of 14See more

supabase tokens-studio 1.0.0

2 of the 14 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
library/kong:3.8.0712e407b20ea
expat@2.4.7-1ubuntu0.7
no fix listed
supabase/studio:20241021-9f9b08326d8070c55e9
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

23,123
renterdartur9010Verified publisher1.4.41 of 2See more

renterd artur9010 1.4.4

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
artur9010/wait-for:v1.0.06b4de3ce8b0e
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

8,493
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,710
budibasebudibase0.0.0-master2 of 7See more

budibase budibase 0.0.0-master

2 of the 7 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
budibase/proxy:3.41.38d780b6ee602
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

10,775
krokicowboysysopVerified publisher6.1.04 of 5See more

kroki cowboysysop 6.1.0

4 of the 5 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
yuzutech/kroki-bpmn:0.29.1444805c4b917
expat@2.7.3-r0
2.8.2-r0
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
expat@2.7.3-r0
2.8.2-r0
yuzutech/kroki-excalidraw:0.29.157917319ea70
expat@2.7.3-r0
2.8.2-r0
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
expat@2.7.3-r0
2.8.2-r0

Open the chart page →

6,743
druiddruid-helmVerified publisher37.0.21 of 3See more

druid druid-helm 37.0.2

1 of the 3 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
apache/druid:37.0.00116fb802786
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

3,812
excalidrawexcalidrawVerified publisher0.18.01 of 1See more

excalidraw excalidraw 0.18.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
pmoscode/excalidraw:v0.18.08ee61554699c
expat@2.7.3-r0
2.8.2-r0

Open the chart page →

1,109
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

7,857
cassandrakubelauncherVerified publisher0.1.271 of 1See more

cassandra kubelauncher 0.1.27

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/cassandradigest-pinnedb66aba320083
expat@2.7.4-1
no fix listed

Open the chart page →

1,442
kubectlkubelauncherVerified publisher0.2.111 of 1See more

kubectl kubelauncher 0.2.11

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/kubectldigest-pinned7280594a2f18
expat@2.7.4-1
no fix listed

Open the chart page →

1,216
minecraft-proxyminecraft-server-chartsVerified publisher3.10.01 of 1See more

minecraft-proxy minecraft-server-charts 3.10.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
itzg/bungeecord:latest1c59f9631f3b
expat@2.7.4-1
no fix listed

Open the chart page →

3,074
openclawopenclawVerified publisher1.91.31 of 2See more

openclaw openclaw 1.91.3

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

2,977
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
expat@2.2.9-1build1
no fix listed

Open the chart page →

11,405
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

4,244
dependabot-gitlabdependabot-gitlabVerified publisher6.3.01 of 3See more

dependabot-gitlab dependabot-gitlab 6.3.0

1 of the 3 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

4,556
devtron-operatordevtron0.23.32 of 11See more

devtron-operator devtron 0.23.3

2 of the 11 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
quay.io/devtron/dashboard:c7b89667-690-39290c63823af3835
expat@2.8.1-r0
2.8.2-r0
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

32,902
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

3,606
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
expat@2.6.1-2ubuntu0.2
no fix listed

Open the chart page →

5,357
grayloggroundhog2k0.13.101 of 1See more

graylog groundhog2k 0.13.10

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
graylog/graylog:7.1.9598bd41fefd5
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,074
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
expat@2.6.1-2ubuntu0.1
no fix listed

Open the chart page →

3,395
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

5,634
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

4,332
netris-controllernetrisai2.8.21 of 14See more

netris-controller netrisai 2.8.2

1 of the 14 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
netrisai/controller-web-service-frontend:4.6.0-0138c5074f55ae5
expat@2.7.3-r0
2.8.2-r0

Open the chart page →

30,326
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
openmined/syft-backend:0.9.5b72f74a68b32
expat@2.6.4-r1
2.8.2-r0

Open the chart page →

17,245
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
expat@2.4.7-1ubuntu0.3
no fix listed
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
expat@2.4.7-1ubuntu0.3
no fix listed

Open the chart page →

14,184
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
expat@2.2.9-1build1
no fix listed

Open the chart page →

11,782
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
expat@2.2.9-1ubuntu0.8
no fix listed

Open the chart page →

7,268
zabbix-serveraekondratievVerified publisher1.0.61 of 4See more

zabbix-server aekondratiev 1.0.6

1 of the 4 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
expat@2.2.9-1build1
no fix listed

Open the chart page →

30,668
home-assistantalekcVerified publisher2.11.21 of 1See more

home-assistant alekc 2.11.2

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
expat@2.8.1-r0
2.8.2-r0

Open the chart page →

2,133
home-assistantandrenarchyVerified publisher14.103.01 of 1See more

home-assistant andrenarchy 14.103.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2026.9.1612d76760b54
expat@2.8.1-r0
2.8.2-r0

Open the chart page →

2,133
crowdatlassian-data-centerVerified publisher2.0.151 of 2See more

crowd atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
atlassian/crowd:7.2.3c81cc7d6bc9e
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,415
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

6,457
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

12,111
emqx-operatoremqx-operator2.3.21 of 2See more

emqx-operator emqx-operator 2.3.2

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
alpine/k8s:1.31.49c4976d47656
expat@2.6.4-r0
2.8.2-r0

Open the chart page →

4,531
bookstackgabe565Verified publisher0.20.01 of 1See more

bookstack gabe565 0.20.0

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/bookstack:version-v24.12.1cc795b254b73
expat@2.6.4-r0
2.8.2-r0

Open the chart page →

2,811
grayloggraylog2OfficialVerified publisher2.0.01 of 2See more

graylog graylog2 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
graylog/graylog-enterprise:7.1.88a1f641cd7aa
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,500
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

4,903
jellyfinloeken-at-homeVerified publisher10.11.81 of 1See more

jellyfin loeken-at-home 10.11.8

1 of the 1 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
loeken/jellyfin:10.11.87efbc24e47b0
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

883
meshery-operatormesheryOfficialVerified publisher1.0.691 of 2See more

meshery-operator meshery 1.0.69

1 of the 2 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
alpine/k8s:1.35.6b7a12c5ddf26
expat@2.8.1-r0
2.8.2-r0

Open the chart page →

2,415
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-56406.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

8,636

Container images carrying it

1,378 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
fluent/fluent-bit:4.0-debuge76397ef3983
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
flyway/flyway:9.1545b5d7cdc75a
expat@2.2.9-1ubuntu0.6
no fix listed
1
fnzv/dump1090:latestb3079b95c336
expat@2.4.7-1ubuntu0.2
no fix listed
1
folioci/edge-connexion:latestb4863d135524
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-authtoken:latest995a25a33133
expat@2.7.4-r0
2.8.2-r0
1
folioci/mod-copycat:latest1513fad2b799
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-courses:latest68ca414f5596
expat@2.7.4-r0
2.8.2-r0
1
folioci/mod-ebsconet:latest3ae8cb99daa3
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-eusage-reports:latest15de67587091
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-finance:latest14450bc15430
expat@2.8.1-r0
2.8.2-r0
1
folioci/mod-invoice:latest45b7b13e81e1
expat@2.8.1-r0
2.8.2-r0
1
folioci/mod-login:latest88de493f86db
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-login-saml:latest5f3358ccaa0f
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-ncip:latest8ed83674352b
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-organizations:latest7dc9ccf3d937
expat@2.8.1-r0
2.8.2-r0
1
folioci/mod-permissions:latest5363e98c6299
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-pubsub:latest0a4fa4ad5d72
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-search:latest44d7ee9acdf6
expat@2.7.1-r0
2.8.2-r0
1
folioci/mod-user-import:latest1807734472bd
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-users-bl:latest4e2d96c9340d
expat@2.7.5-r0
2.8.2-r0
1
folioci/mod-z3950:latest2493041ce880
expat@2.7.1-2
2.8.2-1~deb13u1
1
fosrl/pangolin:1.13.0c32ad797ab96
expat@2.7.3-r0
2.8.2-r0
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
expat@2.2.5-3ubuntu0.9
no fix listed
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
expat@2.2.5-3ubuntu0.7
no fix listed
1
frankescobar/allure-docker-service:latestdc171ec796d5
expat@2.6.1-2ubuntu0.4
no fix listed
1
freeradius/freeradius-server:3.2.8af6fd34a5b78
expat@2.4.7-1ubuntu0.6
no fix listed
1
galaxy/cloudman-server:lateste5c265fe9fcd
expat@2.2.9-1ubuntu0.4
no fix listed
1
galaxy/galaxy-init:v18.010267bad550e6
expat@2.1.0-4ubuntu1.4
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
expat@2.1.0-4ubuntu1.4
no fix listed
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
gchq/accumulo:2.0.1c460bb587d6d
expat@2.6.1-2ubuntu0.2
no fix listed
1
gdrocha/togglr-backend:1.0.0d5ae64e83d4c
expat@2.7.3-r0
2.8.2-r0
1
gdrocha/togglr-frontend:1.0.0ffbc1571c234
expat@2.7.3-r0
2.8.2-r0
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
expat@2.2.5-3ubuntu0.9
no fix listed
1
geonode/geoserver:2.28.4-latest81b1d431b7e9
expat@2.4.7-1ubuntu0.7
no fix listed
1
geopython/pycsw:3.0.0-beta284662ea6b78b
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
expat@2.2.5-3ubuntu0.2
no fix listed
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-gateway:3.0.1.1de0b20bd2a43
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-gwc:3.0.1.1b04ed89b5d2b
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-rest:3.0.1.1318254b52f96
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wcs:3.0.1.14f077124f591
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-webui:3.0.1.14f91e3048ac8
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-wfs:3.0.1.1299f0d6232d1
expat@2.7.4-1
no fix listed
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
expat@2.2.9-1build1
no fix listed
1
geoservercloud/geoserver-cloud-wms:3.0.1.15164f687ce4d
expat@2.7.4-1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.