StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,264
of 17,787 indexed, latest versions
Container images
2,234
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,264 of 17,787 indexed charts deploy, on 2,234 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,228
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,264 by stars
ChartLatestAffected imagesRadar Score
cloudbeaveravistoVerified publisher1.1.71 of 1See more

cloudbeaver avisto 1.1.7

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dbeaver/cloudbeaver:26.1.287ab86d00f8c
tar@1.35+dfsg-3ubuntu0.1
1.35+dfsg-3ubuntu0.4

Open the chart page →

1,749
budibasebudibase0.0.0-master3 of 7See more

budibase budibase 0.0.0-master

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
budibase/database:2.1.0d90f656261c9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
budibase/proxy:3.41.38d780b6ee602
tar@1.35+dfsg-3.1
no fix listed
library/redis:latest298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

10,810
bitcoindfold0.3.21 of 2See more

bitcoind fold 0.3.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
thesisrobot/bitcoind:v23.016b368e4d52c
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,493
cubestoregadsme1.2.01 of 3See more

cubestore gadsme 1.2.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
cubejs/cubestore:v1.5.334ac523a9bab
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,037
hivemq-operatorhivemqOfficialVerified publisher0.11.621 of 2See more

hivemq-operator hivemq 0.11.62

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
hivemq/hivemq-operator:4.7.10241d6a8e1963
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,896
openldapkubelauncherVerified publisher0.2.01 of 1See more

openldap kubelauncher 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/kubelauncher/openldapdigest-pinned8978aa002bc0
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

1,279
quickwitquickwit0.8.161 of 1See more

quickwit quickwit 0.8.16

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
quickwit/quickwit:v0.8.2363ff56ce456
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,492
transmission-openvpnutkuozdemirVerified publisher2.5.01 of 1See more

transmission-openvpn utkuozdemir 2.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
haugene/transmission-openvpn:4.0059216cfae4b
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

11,453
zillazillaOfficialVerified publisher2.4.21 of 1See more

zilla zilla 2.4.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/aklivity/zilla:2.4.289c4a2e74863
tar@1.34+dfsg-1ubuntu0.1.22.04.3
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

1,737
hedgedocadfinisVerified publisher0.6.11 of 2See more

hedgedoc adfinis 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.48ff36f3c6637
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,951
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

4,281
connaisseurconnaisseurVerified publisher2.12.01 of 2See more

connaisseur connaisseur 2.12.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redisdigest-pinned83edc2b8e9ff
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,024
devtron-operatordevtron0.23.35 of 11See more

devtron-operator devtron 0.23.3

5 of the 11 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
tar@1.34+dfsg-1.2
no fix listed
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
quay.io/devtron/postgres:14.91b594392f7cb
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

5,396
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,538
ilumilumOfficialVerified publisher6.7.34 of 19See more

ilum ilum 6.7.3

4 of the 19 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/postgresql:16233f361c5819
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ilum/api:6.7.3624fd09528c8
tar@1.35+dfsg-3.1
no fix listed
ilum/marquez:0.54.06e1d709d41f8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

23,289
kafkakafka18.0.11 of 1See more

kafka kafka 18.0.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,434
lakekeeperlakekeeperVerified publisher0.12.01 of 2See more

lakekeeper lakekeeper 0.12.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,935
litmuslitmuschaos3.30.02 of 6See more

litmus litmuschaos 3.30.0

2 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,031
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,665
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,344
netris-controllernetrisai2.8.24 of 14See more

netris-controller netrisai 2.8.2

4 of the 14 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
netrisai/controller-grpc:4.6.0.00753178bf173c2
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
netrisai/controller-telescope:4.6.0.00414d82948a8b2
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
netrisai/controller-web-session-generator:0.2.0a030a31289f4
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

30,481
smtpntppoolVerified publisher2.4.01 of 1See more

smtp ntppool 2.4.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/egos-tech/smtp:1.2.2b5451793ad91
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,257
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

17,306
paperless-ngxpaperless-ngxVerified publisher0.3.223 of 3See more

paperless-ngx paperless-ngx 0.3.22

3 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
tar@1.34+dfsg-1.2+deb12u1
no fix listed
valkey/valkey:9.1.2c123e3715db6
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,510
spring-petclinic-cloudplatform9-communityVerified publisher0.2.05 of 6See more

spring-petclinic-cloud platform9-community 0.2.0

5 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
platform9community/admin-server:latestde3fa9b70df1
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
platform9community/api-gateway:latest40a4970de568
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
platform9community/customers-service:latest2089811e5cc6
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
platform9community/vets-service:latestd1165c94dfb3
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
platform9community/visits-service:latest8d11b50368c6
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

41,902
puppetserverpuppetserver9.5.22 of 5See more

puppetserver puppetserver 9.5.2

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
ghcr.io/voxpupuli/container-puppetserver:7.17.0-v1.5.0916746209ac5
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

14,276
selenium3selenium31.2.41 of 1See more

selenium3 selenium3 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

11,831
tbmq-clustertbmq-helm-chartOfficialVerified publisher2.1.02 of 3See more

tbmq-cluster tbmq-helm-chart 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
thingsboard/tbmq-integration-executor:2.4.0b5a9c1addf80
tar@1.35+dfsg-3.1
no fix listed
thingsboard/tbmq-node:2.4.070661025dba5
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,555
unifiunifiVerified publisher1.16.01 of 1See more

unifi unifi 1.16.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jacobalberty/unifi:v10.0.162896c0ab82d33
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

7,333
plexutkuozdemirVerified publisher2.1.11 of 1See more

plex utkuozdemir 2.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
linuxserver/plex:1.25.24a13ced2326c
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,386
elasticsearch-clusterwiremindVerified publisher4.5.21 of 2See more

elasticsearch-cluster wiremind 4.5.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,321
istio-operatorwiremindVerified publisher1.18.21 of 1See more

istio-operator wiremind 1.18.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
istio/operator:1.18.270f9d1fe5fff
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

5,669
zabbix-serveraekondratievVerified publisher1.0.63 of 4See more

zabbix-server aekondratiev 1.0.6

3 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

30,811
phpmyadminalekcVerified publisher0.3.11 of 1See more

phpmyadmin alekc 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,613
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,484
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

12,163
memcachedcloudpirates-memcachedVerified publisher0.14.91 of 1See more

memcached cloudpirates-memcached 0.14.9

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,064
cluster-secretclutersecretVerified publisher0.7.01 of 1See more

cluster-secret clutersecret 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,039
convoyconvoyVerified publisher3.7.132 of 3See more

convoy convoy 3.7.13

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,915
cortexcortex3.3.82 of 4See more

cortex cortex 3.3.8

2 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/memcached:1.6.4575c93cc91e76
tar@1.35+dfsg-3.1
no fix listed
library/nginx:1.3105b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,921
valkeygroundhog2k2.3.41 of 1See more

valkey groundhog2k 2.3.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
valkey/valkey:9.1.2475ee65cc75c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

818
hasurahasura-extraVerified publisher3.0.11 of 1See more

hasura hasura-extra 3.0.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
hasura/graphql-engine:v2.34.0-ce0111b0204136
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

4,951
docmosthelmforgeVerified publisher1.2.113 of 4See more

docmost helmforge 1.2.11

3 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
docmost/docmost:0.95.041c8d777cf23
tar@1.34+dfsg-1.2+deb12u1
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,602
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,179
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,913
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

1,302
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

8,685
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,232

Container images carrying it

2,234 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
opencsghq/label-studio:v2.5.047e22aa71870
tar@1.35+dfsg-3.1
no fix listed
1
opencsghq/label-studio:v2.4.0b4e849fcf94a
tar@1.35+dfsg-3.1
no fix listed
1
opencsghq/postgres:15.1842578c9d3ebd
tar@1.35+dfsg-3.1
no fix listed
1
opendatacube/explorer:latest120457ffcd69
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
opendatacube/pipelines:wofs-1.225d810e8504b8
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
1
opendatacube/restcube:latest91870111837c
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
1
opendatacube/wms:latest1b90cdf68831
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
1
opendatacube/wps:latest80df355a660b
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
openebs/rawfile-localpv:v0.15.2a39ef27ea28b
tar@1.35+dfsg-3.1
no fix listed
1
openelevation/open-elevation:latest82fb21612e86
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
openhab/openhab:5.2.1bfd4a60e90da
tar@1.35+dfsg-3.1
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
opennode/waldur-mastermind:8.1.24c82b15d9042
tar@1.35+dfsg-3.1
no fix listed
1
openproject/hocuspocus:release-338001b288dc1359dfb5
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
openproject/openproject:17.8.0-slim48952034215d
tar@1.35+dfsg-3.1
no fix listed
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
openthread/otbr:latestf307f59f6432
tar@1.29b-2ubuntu0.4
1.29b-2ubuntu0.4+esm4
1
openvino/model_server:2025.2.11e7cd1d70cc1
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
openvpn/openvpn-as:latest2253c10ec652
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
1
opsmx11/issuegen:v2.1.05c50ca123d88
tar@1.27.1-1ubuntu0.1
1.27.1-1ubuntu0.1+esm7
1
otwld/velero-ui:0.10.2d1954b759e47
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
outlinewiki/outline:0.82.0494dfb9249a6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
outlinewiki/outline:1.10.1832051f039b4
tar@1.35+dfsg-3.1
no fix listed
1
owncloud/server:10.15.051d9b74fc2a8
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
owncloud/server:10.16.274c53d341076
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
oxfordsemantic/rdfox:5.6db17910eb855
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
pangeo/base-notebook:2024.01.155fbe688a4f80
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
tar@1.35+dfsg-3.1
no fix listed
1
payara/server-full:7.2026.2-jdk2531f1253f0cf8
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
penpotapp/backend:2.2.147853d9bb9dd
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
penpotapp/exporter:2.2.15c835ffd87ab
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
pgvector/pgvector:pg17cf134a767f47
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
phan2410/dummy-service:0.0.89c6ed6de26ca
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6
1
photoprism/photoprism:220629-jammy2954334adbda
tar@1.34+dfsg-1build3
1.34+dfsg-1ubuntu0.1.22.04.6
1
photoprism/photoprism:260601650c6ad5a651
tar@1.35+dfsg-4
1.35+dfsg-4ubuntu0.4
1
photoprism/photoprism:251130db16ee6b1ba3
tar@1.35+dfsg-3.1build1
no fix listed
1
photoprism/photoprism:240711-cefc6fd632ca74
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
phpmyadmin/phpmyadmin:5.2.342a200db07b4
tar@1.35+dfsg-3.1
no fix listed
1
pk910/powfaucet:v2-stable3dcae6a62896
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
plantuml/plantuml-server:jetty-v1.2026.85f6f99ec2fc1
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
platform9community/admin-server:latestde3fa9b70df1
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
1
platform9community/api-gateway:latest40a4970de568
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
1
platform9community/customers-service:latest2089811e5cc6
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
1
platform9community/vets-service:latestd1165c94dfb3
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.