StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,264
of 17,790 indexed, latest versions
Container images
2,237
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,264 of 17,790 indexed charts deploy, on 2,237 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,231
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,264 by stars
ChartLatestAffected imagesRadar Score
plexbryanalves0.5.01 of 1See more

plex bryanalves 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,749
tautullibryanalves0.1.01 of 1See more

tautulli bryanalves 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tautulli/tautulli:latest670e68dd9efc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,929
node-appbryopsida0.5.12 of 2See more

node-app bryopsida 0.5.1

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/node:ltsbe23f54a88d3
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

14,513
nginx-chartbtrepoVerified publisher0.1.01 of 1See more

nginx-chart btrepo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,849
category-microservicebusi-adsVerified publisher1.0.01 of 2See more

category-microservice busi-ads 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/category:distributed02fc234353a9
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

11,958
gotenbergbysamioVerified publisher0.2.01 of 1See more

gotenberg bysamio 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8-chromiuma40f92d7419a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,270
mariadbbysamioVerified publisher1.0.21 of 1See more

mariadb bysamio 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:12.0.2607835cd628b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,948
duoauthproxy-radius-simplecaerus0.1.01 of 1See more

duoauthproxy-radius-simple caerus 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,015
rediscagriekinVerified publisher1.5.21 of 2See more

redis cagriekin 1.5.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.8.1-trixie3eafabb4c93f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,394
ct-singlecalltelemetry0.8.41 of 7See more

ct-single calltelemetry 0.8.4

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
calltelemetry/web:0.8.1-rc7205d13269e350
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,661
pagescamden-pages1.0.02 of 3See more

pages camden-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,242
camellia-redis-proxycamellia-redis-proxy1.4.01 of 2See more

camellia-redis-proxy camellia-redis-proxy 1.4.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

8,024
geoservercamptocamp20.0.37 of 12See more

geoserver camptocamp2 0.0.3

7 of the 12 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
library/postgres:122f2a8c2a7d10
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

88,618
httpd-ldapauth-proxycamptocamp31.0.21 of 1See more

httpd-ldapauth-proxy camptocamp3 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/httpd:2.4.631ae8051591a5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

3,334
nginx-s3-gatewaycamptocamp31.0.01 of 1See more

nginx-s3-gateway camptocamp3 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss-202503313db8145349a3
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,062
pgbouncer-tlscamptocamp32.3.02 of 2See more

pgbouncer-tls camptocamp3 2.3.0

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/camptocamp/pgbouncer:latest19dc5663cac4
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,910
prometheus-puppetdb-sdcamptocamp38.0.21 of 2See more

prometheus-puppetdb-sd camptocamp3 8.0.2

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
puppet/puppet-agent:7.14.00b6fd9a6b7da
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

6,153
puppetservercamptocamp31.0.11 of 2See more

puppetserver camptocamp3 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/puppetserver:8.7.0-main63873f3f698e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

5,935
tetragon-policy-buildercamptocamp30.1.11 of 1See more

tetragon-policy-builder camptocamp3 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,867
caninecanine0.1.101 of 7See more

canine canine 0.1.10

1 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/caninehq/canine:latesta058034ca006
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

14,179
pagescarina-pages1.0.02 of 3See more

pages carina-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,242
pagescarmel-pages-dell1.0.02 of 3See more

pages carmel-pages-dell 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,242
cassandra-clustercassandra-clusterVerified publisher0.1.01 of 1See more

cassandra-cluster cassandra-cluster 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/cassandra:3.11.10b095ff3248c6
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

9,525
castai-hibernatecastaiVerified publisher0.2.121 of 1See more

castai-hibernate castai 0.2.12

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
castai/hibernate:v0.14da62858c8381
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,169
catalyst-agentscatalyst-agents0.1.311 of 18See more

catalyst-agents catalyst-agents 0.1.31

1 of the 18 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

17,099
getoutlinecfi20171.2.02 of 4See more

getoutline cfi2017 1.2.0

2 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:8.2.3d31852005202
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,459
opencvecfi20170.1.25 of 7See more

opencve cfi2017 0.1.2

5 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:trixie05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed
library/postgres:18.06f3e42ad37de
tar@1.35+dfsg-3.1
no fix listed
library/redis:7.2-bookworm74566c6910d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/cfi2017/opencve-web:3.0.06961eab190a2
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

15,490
nginx-chartchanhk10.1.01 of 1See more

nginx-chart chanhk1 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,849
clechaosnative0.2.71 of 6See more

cle chaosnative 0.2.7

1 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
litmuschaos/mongo:4.2.899961210d467
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

16,412
charon-relaycharonOfficialVerified publisher0.8.01 of 2See more

charon-relay charon 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,440
dv-podcharonOfficialVerified publisher0.19.12 of 5See more

dv-pod charon 0.19.1

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/charon:v1.10.0278c7e2897b6
tar@1.35+dfsg-3.1
no fix listed
sigp/lighthouse:v8.1.344aa773dcf27
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,501
helioscharonVerified publisher0.1.51 of 1See more

helios charon 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
obolnetwork/helios:e10e753cb7e97d39d46
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,133
chart-dnazarenochart-dnazareno0.1.01 of 3See more

chart-dnazareno chart-dnazareno 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.16e75aa8f767c
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,840
kitchenowlchart-kitchenowl0.1.121 of 2See more

kitchenowl chart-kitchenowl 0.1.12

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,829
calibre-webcharts-derwitt-devVerified publisher1.1.21 of 1See more

calibre-web charts-derwitt-dev 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,930
home-assistant-otbrcharts-derwitt-devVerified publisher2.1.31 of 1See more

home-assistant-otbr charts-derwitt-dev 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/wittdennis/homeassistant-otbr:4.2.31b53b0b3488e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,379
otbrcharts-derwitt-devVerified publisher0.2.01 of 1See more

otbr charts-derwitt-dev 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
openthread/otbr:latestf307f59f6432
tar@1.29b-2ubuntu0.4
1.29b-2ubuntu0.4+esm4

Open the chart page →

12,816
paperless-ngxcharts-derwitt-devVerified publisher2.1.41 of 1See more

paperless-ngx charts-derwitt-dev 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,651
chat-searchchat-searchVerified publisher0.1.71 of 1See more

chat-search chat-search 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/hemslo/chat-search:latest39d48995a5bd
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,059
opensipschetan-opensips0.1.01 of 1See more

opensips chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
chetangautamm/repo:Opensips_Buildb4b94155ff5a
tar@1.27.1-1ubuntu0.1
1.27.1-1ubuntu0.1+esm7

Open the chart page →

30,183
sippchetan-opensips0.1.01 of 1See more

sipp chetan-opensips 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
chetangautamm/repo:sipp.v3e7f7049e1544
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

12,550
mysqld-exporterchoerodon0.1.01 of 1See more

mysqld-exporter choerodon 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,849
mcp-for-argocdchristianhuthVerified publisher2.0.01 of 1See more

mcp-for-argocd christianhuth 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,968
polrchristianhuthVerified publisher4.3.01 of 2See more

polr christianhuth 4.3.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,973
proxysqlchristianhuthVerified publisher3.1.11 of 1See more

proxysql christianhuth 3.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
proxysql/proxysql:3.0.110e95d1b7cc32
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,287
timetaggerchristianhuthVerified publisher2.2.01 of 1See more

timetagger christianhuth 2.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,976
arbitrumchronicleVerified publisher0.3.41 of 1See more

arbitrum chronicle 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,034
basechronicleVerified publisher0.0.81 of 1See more

base chronicle 0.0.8

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/base-org/node:v0.11.11aba0ffe55ea
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

4,865
rpc-routerchronicleVerified publisher0.2.91 of 1See more

rpc-router chronicle 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
drpcorg/dshackle:0.54.08858fae1859d
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

6,514
tor-proxychronicleVerified publisher0.1.01 of 1See more

tor-proxy chronicle 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
btcpayserver/tor:0.4.8.10e9585b68dc6b
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

3,351

Container images carrying it

2,237 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/datadoghq/private-action-runner:v1.21.05f5918f843a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
gcr.io/istio-testing/operator:latest8d4576f7b98f
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
gcr.io/kubecost1/cost-model:prod-1.108.1852f7923fad3
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
gcr.io/ml-pipeline/api-server:2.3.039661bd823e8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
1
gcr.io/ml-pipeline/metadata-envoy:2.3.0e8e263a919ff
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
gcr.io/ml-pipeline/metadata-writer:2.3.09bcfd2abc361
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.14.051404ef4419c
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
tar@1.29b-2ubuntu0.4
1.29b-2ubuntu0.4+esm4
1
ghcr.io/adnoctem/lhci:1.0.119553e4b4033
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/aeharding/voyager:latest779759172676
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/aetrius/msockperf-server/msockperf-server:main46ae4ea003e0
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/afairgiant/medikeep:v0.70.04c28334f3c79
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/aklivity/zilla:2.4.289c4a2e74863
tar@1.34+dfsg-1ubuntu0.1.22.04.3
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/alexmorbo/dell_idrac_fan_controller:v0.1.6-1d110504d551d
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/almarklein/timetagger:v26.1.3-nonroot18a81afcb249
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/alpineworks/katalog-migrations:v1.0.562c44a384e13
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/amruthpillai/reactive-resume:v5.3.0c487ec5edcfe
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/analogj/scrutiny:v0.9.2-web71be54e99608
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/angelscloud/prometheus-optimizer:latest744bc929a579
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/appscode/csi-driver-cacerts:v0.5.0b6bf1888f9d5
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/appscode/gotenberg:8.25f9104080d9a7
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/appscode/inbox-server:MailetGroup4a2824296412
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/appscode/s3proxy:sha-a82ca6820518335f9f9
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/argonix-io/argonix-api:1.0.0cb5f24732197
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/argoproj-labs/mcp-for-argocd:v0.9.0dffc6c719d86
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/account-monitor:latest4c8b42890035
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/astrotrek:0.1.05889bea38e56
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/auctioneer:pr-18391386b7b5e555
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/conductor:1.1.01f97d131b1d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/evm-bridge-withdrawer:1.0.29c88e1aff357
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/hermes:0.5.04f33a0a9f75e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/astriaorg/sequencer:latest44f82ee0b24c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/astriaorg/sequencer-relayer:latest5f6c74993f08
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.