StackRadar

CVE-2026-56412

Medium

Advisory

Published 21 Jun 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,391
of 17,781 indexed, latest versions
Container images
1,378
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 1,391 of 17,781 indexed charts deploy, on 1,378 images.

Affected packageAffected versionsFixed inImages
expatdeb2.1.0-4ubuntu1, 2.1.0-4ubuntu1.4, 2.1.0-7ubuntu0.16.04.2, 2.1.0-7ubuntu0.16.04.3+32 more2.5.0-1+deb12u3, 2.8.2-1~deb13u11,127
expatapk2.5.0-r4, 2.6.4-r0, 2.6.4-r1, 2.7.0-r0+9 more2.8.2-r0251
OSV records
ALPINE-CVE-2026-56412CGA-34wm-9jpv-xpgwDEBIAN-CVE-2026-56412UBUNTU-CVE-2026-56412
Also known as
CGA-8wmh-c8gx-mv6f, CGA-9mxm-q24x-38h5, CGA-r5c2-h4gj-cgvc

Charts affected

1,391 by stars
ChartLatestAffected imagesRadar Score
smartorchestratorassist-iot-smart-orchestrator4.0.03 of 14See more

smartorchestrator assist-iot-smart-orchestrator 4.0.0

3 of the 14 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
assistiot/smart-orchestrator_mcs:latest7d6a0d534c7f
expat@2.5.0-1
2.5.0-1+deb12u3
assistiot/smart-orchestrator_scheduler:latest38b003e55ff3
expat@2.5.0-1
2.5.0-1+deb12u3
assistiot/smart-orchestrator_scheduler_mc:latestb1dbe4d62a03
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

45,363
videoaugmentationassist-iot-video-augmentation0.1.01 of 3See more

videoaugmentation assist-iot-video-augmentation 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
assistiot/video_augmentation:runner-cpu-lateste5ae539ce2cb
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

13,913
astrotrekastria0.0.22 of 4See more

astrotrek astria 0.0.2

2 of the 4 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
expat@2.4.7-1ubuntu0.2
no fix listed
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

32,501
asya-playgroundasya1.1.31 of 1See more

asya-playground asya 1.1.3

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
localstack/localstack:3.19d278167f2b7
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

9,412
bamboo-agentatlassian-data-centerVerified publisher2.0.151 of 1See more

bamboo-agent atlassian-data-center 2.0.15

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
atlassian/bamboo-agent-base:12.1.1151c2d7274eef
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,581
webappavzi-webapp0.1.01 of 1See more

webapp avzi-webapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
avzini/web-app:latestf40b30210ed0
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

6,297
aws9helmaws9helm0.1.04 of 4See more

aws9helm aws9helm 0.1.0

4 of the 4 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
kuzwolka/aws9:main1ad759b961b1
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
kuzwolka/aws9:news3e8880fbbb96
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
kuzwolka/aws9:blog4a7707410bf1
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
kuzwolka/aws9:shop84a9d9766345
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

18,344
azp-agentazp-agent1.2.01 of 1See more

azp-agent azp-agent 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
cheveo/azp-agent:1.0.282240f890884
expat@2.4.7-1ubuntu0.5
no fix listed

Open the chart page →

3,268
basic-auth-s3-nginxbasic-auth-s3-nginxVerified publisher1.0.01 of 1See more

basic-auth-s3-nginx basic-auth-s3-nginx 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

6,297
bookinfobasictechno0.1.03 of 6See more

bookinfo basictechno 0.1.0

3 of the 6 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.17.0b8f16a765eea
expat@2.2.9-1ubuntu0.4
no fix listed
istio/examples-bookinfo-reviews-v2:1.17.072f25a55f078
expat@2.2.9-1ubuntu0.4
no fix listed
istio/examples-bookinfo-reviews-v3:1.17.08f92fc1b6592
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

20,671
pagesberrutig-pages1.0.02 of 3See more

pages berrutig-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
algorand-participationbiatec-repoVerified publisher4.4.11 of 1See more

algorand-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
expat@2.4.7-1ubuntu0.4
no fix listed

Open the chart page →

7,190
algorand-relaybiatec-repoVerified publisher4.4.11 of 1See more

algorand-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
scholtz2/algorand-relay-mainnet:4.4.1-stablee9af7d8ff6bb
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

5,059
mx-nodebicarus-labs0.1.01 of 1See more

mx-node bicarus-labs 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
expat@2.2.9-1ubuntu0.6
no fix listed

Open the chart page →

7,956
huebigdata-chartsVerified publisher1.0.41 of 2See more

hue bigdata-charts 1.0.4

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
gethue/hue:4.10.05702b2c37ff9
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

22,891
baserowblackbird-cloudVerified publisher1.0.171 of 6See more

baserow blackbird-cloud 1.0.17

1 of the 6 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
baserow/backend:1.31.1e0b3c8130b91
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

10,145
firehoseblip-firehoseVerified publisher0.0.181 of 11See more

firehose blip-firehose 0.0.18

1 of the 11 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
expat@2.2.9-1ubuntu0.4
no fix listed

Open the chart page →

13,459
colosseumbook-k8sinfra-v21.0.183 of 5See more

colosseum book-k8sinfra-v2 1.0.18

3 of the 5 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
sysnet4admin/colosseum-agg:logbc25b152d88e
expat@2.4.7-1ubuntu0.7
no fix listed
sysnet4admin/colosseum-cms:loge74b43c7f492
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
sysnet4admin/colosseum-prm:log5802bfcd7fed
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

26,996
csi-driver-nfsbook-k8sinfra-v24.12.11 of 6See more

csi-driver-nfs book-k8sinfra-v2 4.12.1

1 of the 6 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

6,220
jaegerbook-k8sinfra-v23.4.02 of 5See more

jaeger book-k8sinfra-v2 3.4.0

2 of the 5 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
expat@2.4.7-1ubuntu0.2
no fix listed
library/cassandra:3.11.65aa8400b4b3b
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

19,229
jenkinsbook-k8sinfra-v25.1.121 of 2See more

jenkins book-k8sinfra-v2 5.1.12

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
jenkins/jenkins:2.440.3-jdk17de4fea113221
expat@2.5.0-1
2.5.0-1+deb12u3

Open the chart page →

8,323
flaresolverrbrandan-schmitz-helm-chartsVerified publisher1.4.01 of 1See more

flaresolverr brandan-schmitz-helm-charts 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

27,274
pagesbrian-pages1.0.02 of 3See more

pages brian-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
pagesbrixton-mayuribhavsar23-pages1.0.02 of 3See more

pages brixton-mayuribhavsar23-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
pagesbrixton-pages1.0.02 of 3See more

pages brixton-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
expat@2.6.1-2ubuntu0.3
no fix listed

Open the chart page →

14,352
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
expat@2.2.9-1build1
no fix listed

Open the chart page →

11,869
kafkacagriekinVerified publisher0.2.01 of 2See more

kafka cagriekin 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
apache/kafka:4.1.0bff074a5d005
expat@2.7.1-r0
2.8.2-r0

Open the chart page →

2,398
ct-singlecalltelemetry0.8.41 of 7See more

ct-single calltelemetry 0.8.4

1 of the 7 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
calltelemetry/web:0.8.1-rc7205d13269e350
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

10,629
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

8,001
geoservercamptocamp20.0.36 of 12See more

geoserver camptocamp2 0.0.3

6 of the 12 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
expat@2.2.9-1build1
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
expat@2.2.9-1build1
no fix listed

Open the chart page →

88,335
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

3,311
lamphttpdcamptocamp31.0.111 of 1See more

lamphttpd camptocamp3 1.0.11

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
library/httpd:2.4-alpine1b766f17b840
expat@2.8.1-r0
2.8.2-r0

Open the chart page →

901
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

5,039
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
expat@2.2.5-3ubuntu0.7
no fix listed

Open the chart page →

6,143
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
expat@2.4.7-1ubuntu0.5
no fix listed

Open the chart page →

5,886
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

10,776
apachecamptocamp-apache0.4.01 of 2See more

apache camptocamp-apache 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
camptocamp/mapserver:latestbf2e8e118c9b
expat@2.6.1-2ubuntu0.4
no fix listed

Open the chart page →

1,431
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

14,130
pagescarina-pages1.0.02 of 3See more

pages carina-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
pagescarmel-pages-dell1.0.02 of 3See more

pages carmel-pages-dell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
expat@2.2.9-1build1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
expat@2.2.5-3ubuntu0.2
no fix listed

Open the chart page →

20,190
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
expat@2.2.9-1build1
no fix listed

Open the chart page →

9,473
catalyst-agentscatalyst-agents0.1.302 of 18See more

catalyst-agents catalyst-agents 0.1.30

2 of the 18 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
alpine/k8s:1.32.3eec354133193
expat@2.6.4-r0
2.8.2-r0
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

15,027
opencvecfi20170.1.21 of 7See more

opencve cfi2017 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

15,371
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

4,396
dv-podcharonOfficialVerified publisher0.19.11 of 5See more

dv-pod charon 0.19.1

1 of the 5 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
expat@2.7.1-2
2.8.2-1~deb13u1

Open the chart page →

7,405
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3

Open the chart page →

5,778
kitchenowlchart-kitchenowl0.1.122 of 2See more

kitchenowl chart-kitchenowl 0.1.12

2 of the 2 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
expat@2.7.1-2
2.8.2-1~deb13u1
tombursch/kitchenowl-web:v0.7.8517f808eee66
expat@2.7.5-r0
2.8.2-r0

Open the chart page →

4,803
calibre-webcharts-derwitt-devVerified publisher1.1.21 of 1See more

calibre-web charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-56412.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3

Open the chart page →

4,911

Container images carrying it

1,378 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
expat@2.4.7-1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
2
ghcr.io/xeor/karb:1.0.6:main647a3c938d31
expat@2.8.1-r0
2.8.2-r0
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
expat@2.2.9-1ubuntu0.6
no fix listed
2
public.ecr.aws/aktosecurity/akto-api-security-dashboard:1.69.2:latestb53a854bd7c1
expat@2.6.1-2ubuntu0.4
no fix listed
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
expat@2.6.1-2ubuntu0.3
no fix listed
2
quay.io/frrouting/frr:10.4.38745af1f9bbb
expat@2.7.4-r0
2.8.2-r0
2
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-infra:latestb1198ea741d1
expat@2.7.3-r0
2.8.2-r0
2
registry.gitlab.com/shortlink-org/shortlink/ui:main9bdb1062d960
expat@2.7.4-r0
2.8.2-r0
2
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
2
1dev/server:11.9.0cd5b12fe5471
expat@2.6.1-2ubuntu0.3
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
5200710/hadoop:3.2.3-java8092d3088a5fb
expat@2.2.9-1ubuntu0.6
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
expat@2.2.5-3ubuntu0.2
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
expat@2.7.1-2
2.8.2-1~deb13u1
1
aboogie/login_test_backend:new9c41a4483ac8
expat@2.5.0-1
2.5.0-1+deb12u3
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
expat@2.6.1-2ubuntu0.2
no fix listed
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
expat@2.6.1-2build1
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
expat@2.2.9-1build1
no fix listed
1
agentarea/agentarea-mcp-runner:latestd3c209a5d531
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
expat@2.4.7-1ubuntu0.6
no fix listed
1
airbyte/manifest-server:7.23.73b3a670af168
expat@2.5.0-1+deb12u2
2.5.0-1+deb12u3
1
airbyte/pod-sweeper:1.5.198d2c39d512e
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
expat@2.2.9-1build1
no fix listed
1
akaunting/akaunting:3.0.1552811b36ec3a
expat@2.5.0-1
2.5.0-1+deb12u3
1
akeyless/base:latest759e4289fae8
expat@2.6.1-2ubuntu0.4
no fix listed
1
akeyless/gateway:5.3.13d2e7dce5eb9
expat@2.6.1-2ubuntu0.4
no fix listed
1
aktosecurity/akto-api-security-dashboard:latest3aeaee66bc66
expat@2.6.1-2ubuntu0.4
no fix listed
1
aktosecurity/akto-puppeteer-replay:doom_latest853e37321e6e
expat@2.7.2-r0
2.8.2-r0
1
aktosecurity/akto-threat-detection-backend:latest15ebb75b94dc
expat@2.7.4-1
no fix listed
1
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
expat@2.7.4-1
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
expat@2.6.1-2ubuntu0.3
no fix listed
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
expat@2.7.4-1
no fix listed
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
expat@2.7.4-1
no fix listed
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
expat@2.7.4-1
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
expat@2.5.0-1+deb12u1
2.5.0-1+deb12u3
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
expat@2.2.5-3ubuntu0.7
no fix listed
1
alpine/git:v2.49.1c0280cf95723
expat@2.7.3-r0
2.8.2-r0
1
alpine/helm:4.1.0905a068da431
expat@2.7.3-r0
2.8.2-r0
1
alpine/k8s:1.36.244ef4942e171
expat@2.8.1-r0
2.8.2-r0
1
alpine/k8s:1.31.106dbe6f391eda
expat@2.7.1-r0
2.8.2-r0
1
alpine/k8s:1.31.137a319b15cfc9
expat@2.7.2-r0
2.8.2-r0
1
alpine/k8s:1.32.47e1e7d5b7a96
expat@2.7.0-r0
2.8.2-r0
1
alpine/k8s:1.31.49c4976d47656
expat@2.6.4-r0
2.8.2-r0
1
alpine/k8s:1.35.6b7a12c5ddf26
expat@2.8.1-r0
2.8.2-r0
1
alpine/k8s:1.35.5d870622d0040
expat@2.8.1-r0
2.8.2-r0
1
alpine/k8s:1.32.3eec354133193
expat@2.6.4-r0
2.8.2-r0
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
expat@2.6.1-2ubuntu0.4
no fix listed
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
expat@2.6.1-2ubuntu0.1
no fix listed
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
expat@2.4.7-1ubuntu0.2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.