StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,266
of 17,803 indexed, latest versions
Container images
2,233
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,266 of 17,803 indexed charts deploy, on 2,233 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,227
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,266 by stars
ChartLatestAffected imagesRadar Score
mypythonpythonweb0.1.01 of 1See more

mypython pythonweb 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
qichenxu4pd/pythonexample:1.0f3a8502bc21b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

12,676
qantas-apiqantas-helm0.1.01 of 3See more

qantas-api qantas-helm 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,686
open-terminalqaoruVerified publisher0.2.41 of 1See more

open-terminal qaoru 0.2.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,075
qualys-caqualys-ca-helm3.1.01 of 1See more

qualys-ca qualys-ca-helm 3.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
nelssec/qualys-agent-bootstrapper:v2.1.05e471f0cdeaa
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

1,931
qubivaqubiva0.3.21 of 3See more

qubiva qubiva 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,515
cupsr2dlan-helm-chartsVerified publisher0.1.01 of 1See more

cups r2dlan-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
anujdatar/cups:25.07.01685df04a643b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,847
rabbitmq-stomprabbitmq-stompVerified publisher0.1.11 of 1See more

rabbitmq-stomp rabbitmq-stomp 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
spy86/rabbitmq-stomp:latestea649101b9fb
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,047
nginx-chartrabsnginx0.1.01 of 1See more

nginx-chart rabsnginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:1.276784fb0834aa
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,454
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
apache/airflow:2.10.2-python3.9ce90bdc3d2af
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

21,370
app-configradar-baseVerified publisher1.7.21 of 1See more

app-config radar-base 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,094
catalog-serverradar-baseVerified publisher0.9.31 of 1See more

catalog-server radar-base 0.9.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,476
data-dashboard-backendradar-baseVerified publisher0.6.21 of 1See more

data-dashboard-backend radar-base 0.6.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,077
management-portalradar-baseVerified publisher1.7.01 of 1See more

management-portal radar-base 1.7.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
tar@1.35+dfsg-4
1.35+dfsg-4ubuntu0.4

Open the chart page →

3,236
radar-gatewayradar-baseVerified publisher1.9.01 of 2See more

radar-gateway radar-base 1.9.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,341
radar-integrationradar-baseVerified publisher0.9.01 of 1See more

radar-integration radar-base 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
radarbase/radar-redcapintegration:1.0.6fcd973d4796d
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,913
radar-outputradar-baseVerified publisher1.2.101 of 1See more

radar-output radar-base 1.2.10

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,523
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,077
radar-upload-connect-backendradar-baseVerified publisher0.9.11 of 1See more

radar-upload-connect-backend radar-base 0.9.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,591
s3-proxyradar-baseVerified publisher0.6.01 of 1See more

s3-proxy radar-base 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,796
pagesranjinigogga1.0.02 of 3See more

pages ranjinigogga 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,261
rawfile-localpvrawfile0.15.31 of 6See more

rawfile-localpv rawfile 0.15.3

1 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
openebs/rawfile-localpv:v0.15.396fd7987ea79
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,772
rdfoxrdfox-helm-chart0.1.22 of 2See more

rdfox rdfox-helm-chart 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
oxfordsemantic/rdfox:5.6db17910eb855
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
oxfordsemantic/rdfox-init:5.6baf570ff968d
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

12,910
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

15,613
sqpreadyset-sqp-nightly0.1.0-nightly.202604302 of 3See more

sqp readyset-sqp-nightly 0.1.0-nightly.20260430

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
readysettech/sqp:latest588f3507280e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
readysettech/sqp-duckdb:latest67a83203ce60
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,548
pagesrebecca-pages1.0.02 of 3See more

pages rebecca-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,261
helm-redchefredchef0.1.01 of 3See more

helm-redchef redchef 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sharanalwar/redchef-backend:latest8d3cab80df49
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,956
sonarquberedhat-cop0.1.131 of 1See more

sonarqube redhat-cop 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/sonarqube:10.7.0-community0842dcd4c8f8
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

4,258
regoregoOfficialVerified publisher0.1.31 of 1See more

rego rego 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
drorivry4/rego:lateste035d49b15ca
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,967
longhornrelease-longhorn1.12.03 of 3See more

longhorn release-longhorn 1.12.0

3 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.12.0fd245bae2e82
tar@1.34-150000.3.37.1
1.34-150000.3.42.1
longhornio/longhorn-share-manager:v1.12.0cb9d6863e4c6
tar@1.34-150000.3.37.1
1.34-150000.3.42.1
longhornio/longhorn-ui:v1.12.03870d52a2b0a
tar@1.34-150000.3.37.1
1.34-150000.3.42.1

Open the chart page →

1,602
relfinder-reformedrelfinderreformed2.0.01 of 2See more

relfinder-reformed relfinderreformed 2.0.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,356
my-nginx-apprepo-for-helm-nginx-app0.1.01 of 1See more

my-nginx-app repo-for-helm-nginx-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,879
redminerestic-pvc-backupVerified publisher0.2.61 of 1See more

redmine restic-pvc-backup 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redmine:6.1.3-trixief474a901faec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,304
searxngrestic-pvc-backupVerified publisher0.1.111 of 3See more

searxng restic-pvc-backup 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-trixie64e361b630ec
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

854
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

7,469
juicepassproxyretsamedocVerified publisher2026.2.41 of 1See more

juicepassproxy retsamedoc 2026.2.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,981
retromretsamedocVerified publisher2026.2.51 of 1See more

retrom retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,160
spoolmanretsamedocVerified publisher26.9.01 of 1See more

spoolman retsamedoc 26.9.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.26.1cf9b41e17b93
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,823
claude-relayrevolution10.1.371 of 4See more

claude-relay revolution1 0.1.37

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.2.2f0957bcaa75f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,808
revwallet-apirevwallet0.7.121 of 1See more

revwallet-api revwallet 0.7.12

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
arthurjguerra18/revwallet:v0.7.12f540af20b307
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,896
bookinforgnu1.0.03 of 7See more

bookinfo rgnu 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.14.0ee156b8aefd6
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
istio/examples-bookinfo-reviews-v2:1.14.0eab80bcd2132
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
istio/examples-bookinfo-reviews-v3:1.14.01e37fca43550
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6

Open the chart page →

20,539
httpbinrgnu1.0.01 of 1See more

httpbin rgnu 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
citizenstig/httpbin:latestb81c818ccb86
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6

Open the chart page →

11,458
istio-bookinforgnu1.0.23 of 7See more

istio-bookinfo rgnu 1.0.2

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
istio/examples-bookinfo-reviews-v1:1.14.0ee156b8aefd6
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
istio/examples-bookinfo-reviews-v2:1.14.0eab80bcd2132
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
istio/examples-bookinfo-reviews-v3:1.14.01e37fca43550
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6

Open the chart page →

20,539
istio-helloworldrgnu1.0.12 of 2See more

istio-helloworld rgnu 1.0.1

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
istio/examples-helloworld-v1:latest328b237e4fb1
tar@1.34+dfsg-1.2
no fix listed
istio/examples-helloworld-v2:latest0a7f02b2c7c9
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

9,504
kube-web-viewrlex0.5.01 of 1See more

kube-web-view rlex 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
hjacobs/kube-web-view:23.8.0431f1bf013d0
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

4,953
kresusrm3lVerified publisher0.2.12 of 3See more

kresus rm3l 0.2.1

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
tar@1.34+dfsg-1.2+deb12u1
no fix listed
bnjbvr/kresus:0.22.137e216b182c8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

15,770
web-checkrm3lVerified publisher0.1.01 of 1See more

web-check rm3l 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,541
pagesroccohiggins-pages1.0.02 of 3See more

pages roccohiggins-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,261
matrix-stackrock8sVerified publisher0.8.11 of 7See more

matrix-stack rock8s 0.8.1

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.127.1c3c4a9de2a0b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,498
reviewboardrock8sVerified publisher0.0.11 of 3See more

reviewboard rock8s 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

6,226
rocketchat-voiprocketchat-server0.1.01 of 1See more

rocketchat-voip rocketchat-server 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
rocketchat/freeswitch:stablecfba5c20a5cc
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,785

Container images carrying it

2,233 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.17.14-branch.testing.72707.921a5f884fc39bca0c8
tar@1.34+dfsg-1.2
no fix listed
1
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.17.14-branch.testing.72707.921a5f849d10dcdfb91
tar@1.34+dfsg-1.2
no fix listed
1
speckle/speckle-server:2.19.2-branch.hotfix-2.19.1.124125-665e7e14b6a0750d5aa
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.20.3-branch.hotfix-2.20.2.149555-37ea0cb52f8eabf5cea
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.20.2-branch.testing4.134160-9fad4b2687f43ab16f3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.18.12-branch.testing3.88744-f55b34189a5872375f9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.18.11-branch.testing2.88634-335d469bf6a501b2210
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
speckle/speckle-server:2.20.6-branch.testing1.154030-9b09114e8413f57b327
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
spy86/rabbitmq-stomp:latestea649101b9fb
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
sslhep/servicex_app:v1.8.51d12f943cec5
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
tar@1.35+dfsg-3.1
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
tar@1.35+dfsg-3.1
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2api:3.86f56d239d280
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2auth:3.833ecfda16608
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2notifier:3.8f190a6212195
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2rulesengine:3.8259503496ff9
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2scheduler:3.8b1de2055c362
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2stream:3.81c8904a3bf67
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2timersengine:3.81bf35bfaf00c
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2web:3.809989a26c8b7
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stackstorm/st2workflowengine:3.819fdfffdbba8
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stalwartlabs/stalwart:v0.16.1425001929f36a
tar@1.35+dfsg-3.1
no fix listed
1
stalwartlabs/stalwart:v0.16.22388dcb75a707
tar@1.35+dfsg-3.1
no fix listed
1
stalwartlabs/stalwart:v0.16.2074ca4f7f6885
tar@1.35+dfsg-3.1
no fix listed
1
stalwartlabs/stalwart:v0.15.5dcf575db2d53
tar@1.35+dfsg-3.1
no fix listed
1
stashapp/stash:latest24dbd7607174
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
stashapp/stash-box:latesta534c8afdf39
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
statcan/ckan:2.93921305425b8
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
statusim/nimbus-eth2:multiarch-latest6ccd9d382885
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
strangebee/thehive:5.8.0-1a7f7b05fba24
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
structurizr/onpremises:2025.11.094b5ffb5119c8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
substratusai/verba:v0.4.0-baseURL261695be635eb
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
supabase/edge-runtime:v1.74.02781daf92394
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.