StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,264
of 17,792 indexed, latest versions
Container images
2,232
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,264 of 17,792 indexed charts deploy, on 2,232 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,226
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,264 by stars
ChartLatestAffected imagesRadar Score
sentry-k8ssentry-k8sVerified publisher1.4.15 of 11See more

sentry-k8s sentry-k8s 1.4.1

5 of the 11 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
ghcr.io/getsentry/snuba:26.7.210f8d164109b
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

16,646
seq-input-gelfseq-input-gelfVerified publisher0.3.11 of 2See more

seq-input-gelf seq-input-gelf 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
datalust/seq-input-gelf:3.0.441-x643de34aed5642
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,563
vuiseriohub1.0.62 of 3See more

vui seriohub 1.0.6

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dserio83/velero-api:0.3.16b3d9115fee2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
dserio83/velero-watchdog:0.1.8d5deae589229
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

11,564
sigscale-csesigscale-cseOfficialVerified publisher1.4.221 of 1See more

sigscale-cse sigscale-cse 1.4.22

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sigscale/cse:latest67d0c886516b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,301
sigscale-ocssigscale-ocsOfficialVerified publisher1.1.171 of 1See more

sigscale-ocs sigscale-ocs 1.1.17

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sigscale/ocs:latest3c1bdc9732e2
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,301
mssqlserver-2019simcube1.2.31 of 1See more

mssqlserver-2019 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

6,903
clickhousesinextraVerified publisher0.22.01 of 1See more

clickhouse sinextra 0.22.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:26.3.1092098d3b31dd
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

2,022
mongodb-backupsinextraVerified publisher1.1.01 of 1See more

mongodb-backup sinextra 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,282
postgresql-singlesinextraVerified publisher1.15.11 of 1See more

postgresql-single sinextra 1.15.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,952
gitlab-omnibusslamdev0.1.61 of 2See more

gitlab-omnibus slamdev 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
daedalusproject/base_kubectl:latest6f72b5119eda
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

2,859
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,952
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

46,080
snappasssnappassVerified publisher0.4.32 of 3See more

snappass snappass 0.4.3

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
lmacka/snappass:2.1.293f5c048b7d4
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:8.1.61f84517eca8e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,054
artifact-hubsoftonic1.19.01 of 8See more

artifact-hub softonic 1.19.0

1 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,569
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,337
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,319
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.42 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
tar@1.34+dfsg-1.2+deb12u1
no fix listed
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,637
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,716
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,494
squidsquid-helmVerified publisher0.1.01 of 1See more

squid squid-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ubuntu/squid:5.2-22.04_beta723891b5bc74
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

2,635
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
graphprotocol/graph-node:v0.37.0f4452cdedd68
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,701
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

13,549
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

25,064
stornxstornxVerified publisher1.1.13 of 9See more

stornx stornx 1.1.1

3 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
alazidis/stornx:1.1.1602d4f7f090c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

11,760
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,901
supabasesupabse0.8.06 of 11See more

supabase supabse 0.8.0

6 of the 11 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
kong/kong:3.9.16addf50e6bd8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
supabase/edge-runtime:v1.74.02781daf92394
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/postgres-meta:v0.96.6a84cc713585e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/realtime:v2.102.3aa1c92c0cf32
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

18,327
supersonicsupersonicVerified publisher0.3.11 of 2See more

supersonic supersonic 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.30.92956bd9de830
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

2,149
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,276
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,157
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
apptaxmd-helm-chart0.0.21 of 1See more

app taxmd-helm-chart 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
teamcity-serverteamcity-server3.3.51 of 2See more

teamcity-server teamcity-server 3.3.5

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

853
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
tar@1.35+dfsg-3.1+dhi1
no fix listed

Open the chart page →

2,566
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

9,126
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

9,126
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

13,025
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

4,082
typemilltypemill-helm-chart2.2.02 of 2See more

typemill typemill-helm-chart 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kixote/typemilldigest-pinned4e9dff179519
tar@1.35+dfsg-3.1
no fix listed
kixote/typemilldigest-pinned628f79a08cc7
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,526
typesensetypesenseVerified publisher1.1.41 of 1See more

typesense typesense 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
typesense/typesense:30.191604dc128e2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

1,918
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,814
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,814
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

12,657
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
tar@1.35+dfsg-3.1
no fix listed
taigaio/taiga-protected:latestfd4568a97a59
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,209
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,403
varnish-ingress-controllervarnish-ingress-controllerVerified publisher0.5.01 of 1See more

varnish-ingress-controller varnish-ingress-controller 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
mariusm/vingress:0.5.0b3db186c3d72
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,294
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

4,085
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,264
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,079
waldurwaldur-chartsVerified publisher8.1.22 of 3See more

waldur waldur-charts 8.1.2

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
tar@1.35+dfsg-3.1
no fix listed
opennode/waldur-mastermind:8.1.24c82b15d9042
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,017
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

15,998

Container images carrying it

2,232 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
tar@1.34+dfsg-1ubuntu0.1.22.04.4
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-mcp654f860148ba
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-chatbot66ba53497f1f
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
tar@1.29b-2ubuntu0.3
1.29b-2ubuntu0.4+esm4
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
tar@1.35+dfsg-4
1.35+dfsg-4ubuntu0.4
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.