StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,240
of 17,787 indexed, latest versions
Container images
2,202
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,240 of 17,787 indexed charts deploy, on 2,202 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,196
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,240 by stars
ChartLatestAffected imagesRadar Score
playgroundplayground0.1.11 of 1See more

playground playground 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,827
matomopockostVerified publisher1.3.02 of 3See more

matomo pockost 1.3.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed
pockost/matomo:5.13.07f5d293cbe4e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,047
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

31,844
postgresqlpostgresql-helm0.1.21 of 1See more

postgresql postgresql-helm 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,626
JenkinsprasoonjenkinsVerified publisher0.1.01 of 1See more

Jenkins prasoonjenkins 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,476
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
tar@1.35+dfsg-3.1
no fix listed
prowlercloud/prowler-api:5.31.14f252d579be2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,201
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
tar@1.35+dfsg-3ubuntu0.3
1.35+dfsg-3ubuntu0.4

Open the chart page →

23,964
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

6,796
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,762
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,405
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,652
redmineredmine-helm-chartVerified publisher0.2.61 of 1See more

redmine redmine-helm-chart 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,240
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

11,869
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,432
retyc-csiretyc-csi0.2.01 of 3See more

retyc-csi retyc-csi 0.2.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,327
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,521
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,837
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

10,120
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,482
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,045
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,740
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,879
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,654
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

7,529
postgresromanow-helm-chartsVerified publisher1.7.11 of 1See more

postgres romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,626
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

12,930
rstmdbrstmdb0.2.01 of 1See more

rstmdb rstmdb 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
rstmdb/rstmdb:lateste5187f2aaace
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,049
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,929
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,315
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

13,541
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

30,234
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

10,905
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

38,107
teamcityscalified-teamcityVerified publisher2026.2.01 of 3See more

teamcity scalified-teamcity 2026.2.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,626
sceptresceptreai0.1.122 of 5See more

sceptre sceptreai 0.1.12

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
maponyacharles/sceptreai:mlflow-0.1.1242d418654ebd
tar@1.35+dfsg-3.1
no fix listed
maponyacharles/sceptreai:api-0.1.127b37b092130a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,369
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,139
searxngsearxngVerified publisher0.1.111 of 3See more

searxng searxng 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

807
securosecuroVerified publisher0.15.12 of 4See more

securo securo 0.15.1

2 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
pgvector/pgvector:pg16ccc6e83d6e35
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,436
viya4-home-dir-builderselerityVerified publisher1.1.01 of 2See more

viya4-home-dir-builder selerity 1.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/python:3.12-slim78387bc3881b
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

852
sentry-k8ssentry-k8sVerified publisher1.4.15 of 11See more

sentry-k8s sentry-k8s 1.4.1

5 of the 11 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

16,449
seq-input-gelfseq-input-gelfVerified publisher0.3.11 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,514
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

11,532
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,280
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,280
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,817
clickhousesinextraVerified publisher0.22.01 of 1See more

clickhouse sinextra 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3.1092098d3b31dd
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

1,974
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,238
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,913

Container images carrying it

2,202 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
4
library/mongo:5.0-focal5e15a3f014ed
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
4
library/mongo:4.2.12-bionic628741415fc9
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
4
library/mongo:4.4.66efa05203990
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
4
library/nginx:1.27.1287ff321f9e3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
library/postgres:134689940c6838
tar@1.35+dfsg-3.1
no fix listed
4
library/rabbitmq:3.11-managementc3f70098e01d
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
4
library/redis:7:7.4:7.4.1171da9275c5f3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
mastercloudapps/planner:v1.2340a950b311b2
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
4
opea/llm-tgi:1.00c25aab3f106
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
4
shashkist/flask-contacts-app:latest581de1fd6084
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
valkey/valkey:9.0.2930b41430fb7
tar@1.35+dfsg-3.1
no fix listed
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
4
apache/superset:6.1.0:latest16b50bbef664
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
bitnamilegacy/kubectl:latestcd354d5b2556
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ciscolabs/rtsp-client:latesta7b60ec88285
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
ciscolabs/rtsp-server:latestb59fc10bb821
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
codeurjc/planner:v1.0800cf520c245
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
3
dgraph/dgraph:v21.12.03b55ea83fffe
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
envoyproxy/envoy:v1.31.02bf7f042e396
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
3
gchq/hdfs:3.3.35ec58edbb2db
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
guacamole/guacamole:1.6.0f344085e618b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
jacobalberty/unifi:v10.0.162896c0ab82d33
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
library/nginx:1.25:1.25.5a484819eb602
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
library/node:ltsbe23f54a88d3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
library/python:3.12-slim78387bc3881b
tar@1.35+dfsg-3.1
no fix listed
3
mcp/grafana:latest9362bcf6aa0e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
3
selenium/hub:3.141.5902f251d48d5f
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
sigp/lighthouse:latest-amd6450f66cfebb6d
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
3
vaultwarden/server:1.37.1ebdfe70701c6
tar@1.35+dfsg-3.1
no fix listed
3
xenondb/percona:5.7.330e26872a2b67
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
tar@1.34+dfsg-1.2
no fix listed
3
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/huggingface/text-embeddings-inference:cpu-1.50502794a4d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
ghcr.io/smarter-project/hydra/crismux:main673d5229df1f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
quay.io/devtron/ai-agent:0.0.16545dac92173
tar@1.34+dfsg-1.2+deb12u1
no fix listed
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.