StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,264
of 17,787 indexed, latest versions
Container images
2,234
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,264 of 17,787 indexed charts deploy, on 2,234 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,228
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,264 by stars
ChartLatestAffected imagesRadar Score
nebraskanebraska3.0.01 of 2See more

nebraska nebraska 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.042a8200d3597
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,066
observalobservalVerified publisher1.13.12 of 8See more

observal observal 1.13.1

2 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/observal/observal-api:1.13.1153b8b893232
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,839
openclaw-with-brainopenclaw-with-brainVerified publisher0.1.671 of 3See more

openclaw-with-brain openclaw-with-brain 0.1.67

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,224
oesopsmxVerified publisher4.0.323 of 25See more

oes opsmx 4.0.32

3 of the 25 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

107,899
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,334
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,858
phpmyadminphpmyadminVerified publisher1.0.31 of 1See more

phpmyadmin phpmyadmin 1.0.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,613
prometheus-prefect-exporterprefectVerified publisher2026.8.71410241 of 1See more

prometheus-prefect-exporter prefect 2026.8.7141024

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
prefecthq/prometheus-prefect-exporter:4.0.050d527a190ae
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,012
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,079
repoflowrepoflow-helm-public0.9.13 of 8See more

repoflow repoflow-helm-public 0.9.1

3 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.48.10f6c1c4b957d2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
library/elasticsearch:8.15.0310b9fc03b06
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
library/postgres:16.24aea012537ed
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

13,615
nominatimrobjuz6.4.12 of 4See more

nominatim robjuz 6.4.1

2 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
mediagis/nominatim:5.3.27923a8e67197
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

8,760
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
apache/rocketmq:5.4.0319cd8a81ed1
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

6,385
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

24,549
satisfactory-serversatisfactoryVerified publisher0.1.61 of 1See more

satisfactory-server satisfactory 0.1.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.10e103700ae6ae
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,466
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,412
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,889
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,265
spartanspartan0.9.11 of 1See more

spartan spartan 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,839
freeradiusstartechnicaVerified publisher1.2.01 of 1See more

freeradius startechnica 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
freeradius/freeradius-server:3.2.8af6fd34a5b78
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

5,814
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

15,525
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,064
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
pretix/standalone:2026.7.05df3b7aa852e
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:9.1.08e8d64b405ce
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,825
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,816
feedbacksystemthm-mni-iiVerified publisher0.47.11 of 10See more

feedbacksystem thm-mni-ii 0.47.1

1 of the 10 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
thmmniii/fbs-core:v1.27.15438517d9fc2
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

28,579
argocdtwomartensVerified publisher0.1.11 of 3See more

argocd twomartens 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.8.6acaf37352569
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

10,355
crossplaneupbound-stable2.4.0-up.11 of 5See more

crossplane upbound-stable 2.4.0-up.1

1 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

18,149
structurizrvirtualrootVerified publisher0.5.01 of 1See more

structurizr virtualroot 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
structurizr/onpremises:2025.11.094b5ffb5119c8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

4,428
vrijbrpvrijbrpVerified publisher0.1.51 of 5See more

vrijbrp vrijbrp 0.1.5

1 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,823
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

3,178
wgerwgerOfficialVerified publisher1.0.05 of 8See more

wger wger 1.0.0

5 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
journeyapps/powersync-service:latestbf46f66e5dcc
tar@1.35+dfsg-3.1
no fix listed
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed
library/postgres:15.186eb0add3b77c
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.8.0234c902a2db4
tar@1.35+dfsg-3.1
no fix listed
wger/server:2.6997ead43aabd
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

8,587
windmillwindmill4.0.2631 of 3See more

windmill windmill 4.0.263

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,638
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,644
paperless-ngxadnoctemVerified publisher0.4.23 of 5See more

paperless-ngx adnoctem 0.4.2

3 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
apache/tika:2.9.0.092d055a84e9e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
gotenberg/gotenberg:8.36.087c16b9f3642
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

19,769
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

13,683
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
agentarea/agentarea-api:latest9e15e16fa758
tar@1.35+dfsg-3.1
no fix listed
agentarea/agentarea-mcp-runner:latestd3c209a5d531
tar@1.34+dfsg-1.2+deb12u1
no fix listed
agentarea/agentarea-worker:latest1e5cb68ee77a
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:9.0.1546304417fea
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,960
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.221 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.22

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,406
icat-k8salba-helm-chartsVerified publisher1.1.01 of 4See more

icat-k8s alba-helm-charts 1.1.0

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
payara/server-full:7.2026.2-jdk2531f1253f0cf8
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,744
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,615
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

11,936
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
tar@1.29b-2ubuntu0.3
1.29b-2ubuntu0.4+esm4

Open the chart page →

12,061
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

8,384
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,918
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,378
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

22,233
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,790
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,231
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,722
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,309
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

17,946

Container images carrying it

2,234 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
janzo83/serviceexample:latestfb3c4ac36f3e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jbtronics/part-db1:latest5db71f6db59d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jedi132000/nextapp:latestdc2a81e92f23
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
jellyfin/jellyfin:10.11.81694ff069f0c
tar@1.35+dfsg-3.1
no fix listed
1
jellyfin/jellyfin:10.11.717285f9cce63
tar@1.35+dfsg-3.1
no fix listed
1
jellyfin/jellyfin:10.10.317c3a8d9dddb
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jellyfin/jellyfin:10.11.6333b64771663
tar@1.35+dfsg-3.1
no fix listed
1
jellyfin/jellyfin:10.9.1079fb3d73a3e9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jellyfin/jellyfin:10.10.77ae36aab93ef
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jellyfin/jellyfin:10.10.696b09723b22f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jenkins/jenkins:2.462.2-jdk1795313257a8cd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jenkins/jenkins:2.440.3-jdk17de4fea113221
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jertel/elastalert2:2.31.03cbf63f9b7dc
tar@1.35+dfsg-3.1
no fix listed
1
jhipster/jhipster-registry:latest7184525acd4d
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
jhoncytech/bookworm-apache-wordpress:latest18c3ca1f411e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
jjorozco20/flask-mysql-app:1.0.0b5e44e3ba09c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jmferrer/azure-devops-agent:latest030f68ec6998
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
jodogne/orthanc-plugins:latest6ff510aa29c2
tar@1.35+dfsg-3.1
no fix listed
1
johly/airtrail:v3.11.19f702b91e0e7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
joplin/server:latest3f7b852959aa
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jordan/icinga2:latestf75025fe8ea8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
josh5/unmanic:0.2.64d49c4816260
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
1
journeyapps/powersync-service:latestbf46f66e5dcc
tar@1.35+dfsg-3.1
no fix listed
1
jpgouin/openldap:2.6.9-fixbfdd0088c776
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
juicedata/juicefs-csi-driver:v0.32.595008ba63318
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
jupyterhub/jupyterhub:5.4.63974ba945e65
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
jupyterhub/k8s-hub:1.2.0e4770285aaf7
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
kafkakraft/kafka-connect:3.7.0062d697db7e5
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
kafkakraft/kafka-controller:3.7.0f261ad288fce
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
kafkakraft/kafkakraft:3.7.02e4b593b878b
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
kayrosuno/kping:latestf3bd44b29b0d
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
kennethreitz/httpbin:latest599fe5e50731
tar@1.29b-2
1.29b-2ubuntu0.4+esm4
1
kfirfer/phppgadmin:7.13.0-22efb4a5d74a3
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
kimai/kimai2:2.67.03084f1e5ecdc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
kinseii/wazuh-agent:4.14.17160eb143728
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
kitware/cdash:v5.3.0d7767d9b9da4
tar@1.35+dfsg-3.1
no fix listed
1
kixote/typemill4e9dff179519
tar@1.35+dfsg-3.1
no fix listed
1
kixote/typemill628f79a08cc7
tar@1.35+dfsg-3.1
no fix listed
1
knspar/phronetis:0.1.4609499d2dc91a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
knspar/phronetis-operator:0.1.60c4f0543ee58
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
kong/httpbin:latesta6ac46531193
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
kong/kong:3.9.16addf50e6bd8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
krontechnology/aapm-agent:1.8.41cc7d5be6529
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
krontechnology/aapm-agent:1.1.07feef7d2ab42
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
krontechnology/aapm-service:1.1.39dd602db8baa
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
kserve/models-web-app:v0.13.073486345a602
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.