StackRadar

CVE-2026-56410

Medium

Advisory

Published 21 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,383
of 17,790 indexed, latest versions
Container images
1,365
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,383 of 17,790 indexed charts deploy, on 1,365 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+32 more2.5.0-1+deb12u3, 2.8.2-1~deb13u11,114
expatapk2.5.0-r4, 2.6.4-r0, 2.6.4-r1, 2.7.0-r0+9 more2.8.2-r0251
OSV records
ALPINE-CVE-2026-56410CGA-r76v-26jc-997rDEBIAN-CVE-2026-56410UBUNTU-CVE-2026-56410
Also known as
CGA-3c2w-3hmp-c9h7, CGA-rrrf-jmw6-h542, CGA-rvqm-cp3v-vhxj

Charts affected

1,383 by stars
ChartLatestAffected imagesRadar Score
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
dserio83/velero-watchdog:0.1.8d5deae589229
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

11,545
querysiakhooiVerified publisher1.0.01 of 1See more

query siakhooi 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
siakhooi/query:1.0.0f1f4b5b1b870
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,792
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

6,864
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
expat@2.2.9-1ubuntu0.4
no fix listed
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
expat@2.2.9-1ubuntu0.4
no fix listed
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

46,028
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

7,157
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

5,688
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

10,405
squidsquid-helmVerified publisher0.1.01 of 1See more

squid squid-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ubuntu/squid:5.2-22.04_beta723891b5bc74
expat@2.4.7-1ubuntu0.6
no fix listed

Open the chart page →

2,622
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

13,532
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
expat@2.2.9-1build1
no fix listed

Open the chart page →

24,984
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

2,874
supabasesupabse0.8.03 of 11See more

supabase supabse 0.8.0

3 of the 11 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
supabase/realtime:v2.102.3aa1c92c0cf32
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
supabase/storage-api:v1.60.4c8eb9858eafe
expat@2.7.5-r0
2.8.2-r0
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

18,213
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

3,253
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

2,138
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
expat@2.7.1-2+dhi4
2.8.2-1~deb13u1

Open the chart page →

2,553
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

9,108
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

9,108
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

12,137
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

4,022
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

4,058
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
expat@2.2.9-1ubuntu0.6
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

26,843
vite-react-app-helm-chartsvite-react-app-helm-charts1.0.01 of 1See more

vite-react-app-helm-charts vite-react-app-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,086
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

15,984
wikiwenerme2.2.01 of 2See more

wiki wenerme 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
requarks/wiki:latest68f0d1848261
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

3,834
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
expat@2.1.0-4ubuntu1
no fix listed

Open the chart page →

41,455
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
expat@2.2.9-1ubuntu0.8
no fix listed

Open the chart page →

7,883
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

7,728
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

8,139
workflows-aggregatorworkflows-aggregatorVerified publisher0.16.91 of 1See more

workflows-aggregator workflows-aggregator 0.16.9

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-aggregator:0.16.9b7984253b128
expat@2.7.4-1
no fix listed

Open the chart page →

1,329
aeneabotygdrassilOfficialVerified publisher0.2.01 of 2See more

aeneabot ygdrassil 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
elautoestopista/aeneabot:4.2.1125ba620d528
expat@2.7.3-r0
2.8.2-r0

Open the chart page →

1,698
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
expat@2.4.7-1ubuntu0.2
no fix listed

Open the chart page →

9,832
plausible-analyticszekker6Verified publisher1.4.01 of 2See more

plausible-analytics zekker6 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/plausible/community-edition:v3.2.133e60bfb40f2
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,170
backendzymtraceOfficialVerified publisher26.9.11 of 6See more

backend zymtrace 26.9.1

1 of the 6 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
ghcr.io/zystem-io/zymtrace-pub-ui:26.9.1e951adf792cd
expat@2.7.1-r0
2.8.2-r0

Open the chart page →

10,408
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

12,022
active-mqactivemq-helm-chartVerified publisher1.8.21 of 3See more

active-mq activemq-helm-chart 1.8.2

1 of the 3 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
apache/activemq-artemis:2.44.00305c26f19ed
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

3,226
open5gsadaptivenetlabVerified publisher1.0.31 of 3See more

open5gs adaptivenetlab 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
expat@2.2.9-1build1
no fix listed

Open the chart page →

25,507
linkstackadnoctemVerified publisher0.4.01 of 1See more

linkstack adnoctem 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
linkstackorg/linkstack:latest1c8b05399ee4
expat@2.7.4-r0
2.8.2-r0

Open the chart page →

2,092
uptime-kumaadnoctemVerified publisher0.4.11 of 1See more

uptime-kuma adnoctem 0.4.1

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.4917318f9d7be
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

29,687
pod-sweeperairbyteVerified publisher1.5.11 of 1See more

pod-sweeper airbyte 1.5.1

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
airbyte/pod-sweeper:1.5.198d2c39d512e
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

4,685
akeyless-gatewayakeyless-services-helmVerified publisher3.5.41See more

akeyless-gateway akeyless-services-helm 3.5.4

1 container image this version deploys carries CVE-2026-56410.

Container imageDigestPackageFixed in
akeyless/gateway:5.3.13d2e7dce5eb9
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

aktoakto0.2.02 of 7See more

akto akto 0.2.0

2 of the 7 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-dashboard:latestb53a854bd7c1
expat@2.6.1-2ubuntu0.4
no fix listed
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

13,689
akto-ai-guardrails-v2akto0.3.02 of 6See more

akto-ai-guardrails-v2 akto 0.3.0

2 of the 6 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
expat@2.7.4-1
no fix listed
redis/redis-stack-server:7.4.0-v172035434f455
expat@2.4.7-1ubuntu0.4
no fix listed

Open the chart page →

9,400
akto-central-setupakto1.1.104 of 5See more

akto-central-setup akto 1.1.10

4 of the 5 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
expat@2.7.4-1
no fix listed
library/eclipse-temurin:211f79c73404fb
expat@2.7.4-1
no fix listed
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2b53a854bd7c1
expat@2.6.1-2ubuntu0.4
no fix listed
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

5,079
akto-dashboardakto0.1.71 of 1See more

akto-dashboard akto 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
aktosecurity/akto-api-security-dashboard:latest3aeaee66bc66
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,201
akto-dbabsakto0.1.91 of 1See more

akto-dbabs akto 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,164
akto-hybrid-redactakto1.44.61 of 5See more

akto-hybrid-redact akto 1.44.6

1 of the 5 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.4_local5bda14f66e8e
expat@2.7.4-1
no fix listed

Open the chart page →

4,089
akto-k8s-ebpf-openshiftakto0.1.11 of 1See more

akto-k8s-ebpf-openshift akto 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/mirror-api-logging:k8s_ebpf_core_impd94ce715f051
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

1,277
akto-mini-runtimeakto0.7.221 of 3See more

akto-mini-runtime akto 0.7.22

1 of the 3 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest8be3ed26f746
expat@2.7.4-1
no fix listed

Open the chart page →

2,797
akto-mini-testingakto1.45.72 of 5See more

akto-mini-testing akto 1.45.7

2 of the 5 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
expat@2.7.4-1
no fix listed
public.ecr.aws/aktosecurity/akto-puppeteer-replay:1.49.4_latestf1c5763d565e
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

6,447
akto-regional-setupakto1.3.14 of 9See more

akto-regional-setup akto 1.3.1

4 of the 9 container images this version deploys carry CVE-2026-56410.

Container imageDigestPackageFixed in
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
expat@2.7.4-1
no fix listed
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
expat@2.7.4-1
no fix listed
redis/redis-stack-server:7.4.072035434f455
expat@2.4.7-1ubuntu0.4
no fix listed
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
expat@2.7.4-1
no fix listed

Open the chart page →

7,786

Container images carrying it

1,365 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
expat@2.6.1-2ubuntu0.3
no fix listed
1
ghcr.io/manyfold3d/manyfold:0.136.0d14ca4d82475
expat@2.7.4-r0
2.8.2-r0
1
ghcr.io/marcuwynu23/vite-app-sample:latest21247f2b97c4
expat@2.7.5-r0
2.8.2-r0
1
ghcr.io/maritimeconnectivity/identityregistry:latest5009fd419742
expat@2.7.4-1
no fix listed
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
expat@2.5.0-1
2.5.0-1+deb12u3
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
expat@2.6.1-2ubuntu0.2
no fix listed
1
ghcr.io/mkutlak/alluredeck-ui:0.41.0c19509b1b336
expat@2.8.1-r0
2.8.2-r0
1
ghcr.io/monicahq/monica-next:main8be69156acbb
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/mydecisive/octant-ui:0.0.1-testing61e4066b22fb
expat@2.7.5-r0
2.8.2-r0
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
expat@2.5.0-1
2.5.0-1+deb12u3
1
ghcr.io/netbox-community/netbox:v4.7.01685e91c61bb
expat@2.7.4-1
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
ghcr.io/okteto/pipeline-runner:0.0.0-2026-08-03:0.0.0-2026-08-173e56bdd1b90d
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
expat@2.5.0-1
2.5.0-1+deb12u3
1
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
ghcr.io/opencost/opencost-ui:1.118.0571f87e528ea
expat@2.7.3-r0
2.8.2-r0
1
ghcr.io/openrelik/openrelik-ui:latest7f91594d5eb3
expat@2.7.5-r0
2.8.2-r0
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-kafka0601750a3ca4
expat@2.7.5-r0
2.8.2-r0
1
ghcr.io/open-telemetry/demo:3.0.0-fraud-detection1cdfd1bcf476
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
expat@2.5.0-1
2.5.0-1+deb12u3
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
expat@2.7.3-r0
2.8.2-r0
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
expat@2.6.1-2ubuntu0.1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
expat@2.6.1-2ubuntu0.3
no fix listed
1
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
expat@2.6.1-2ubuntu0.4
no fix listed
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
expat@2.4.7-1ubuntu0.6
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
expat@2.2.9-1ubuntu0.4
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
expat@2.7.1-2
2.8.2-1~deb13u1
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
expat@2.5.0-1
2.5.0-1+deb12u3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.