StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,251
of 17,803 indexed, latest versions
Container images
2,210
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,251 of 17,803 indexed charts deploy, on 2,210 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,204
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,251 by stars
ChartLatestAffected imagesRadar Score
kubevoipkubevoipOfficialVerified publisher0.6.81 of 1See more

kubevoip kubevoip 0.6.8

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/kubevoip/kubevoip:v0.6.841c603a93642
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,104
kube-wordpress-mysqlkube-wordpress-mysql0.1.01 of 2See more

kube-wordpress-mysql kube-wordpress-mysql 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/wordpress:php8.1-apachef73396626d2f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,795
penpotkubitodevVerified publisher1.2.12 of 5See more

penpot kubitodev 1.2.1

2 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
penpotapp/backend:2.2.147853d9bb9dd
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
penpotapp/exporter:2.2.15c835ffd87ab
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

17,027
kubiya-runnerkubiya-helm-chartsOfficialVerified publisher0.9.43 of 9See more

kubiya-runner kubiya-helm-charts 0.9.4

3 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
grafana/alloy:v1.5.101a63f4e032c
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
ghcr.io/kubiyabot/agent-manager:v0.4.13757bdd779345
tar@1.35+dfsg-3.1
no fix listed
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

20,435
ctrlmeshkusionstackVerified publisher0.2.01 of 1See more

ctrlmesh kusionstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kusionstack/ctrlmesh-manager:v0.2.065e3c32b64d7
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

3,477
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

6,969
sample-operatorkusionstackVerified publisher0.1.21 of 1See more

sample-operator kusionstack 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
chaerr/kridge:demo-operator-v0.1.266833deec017
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

2,511
fstyr-ddp-keycloak-application-platform-configkvalitetsitVerified publisher0.1.131 of 1See more

fstyr-ddp-keycloak-application-platform-config kvalitetsit 0.1.13

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,158
keycloak-application-platform-configkvalitetsitVerified publisher0.0.291 of 1See more

keycloak-application-platform-config kvalitetsit 0.0.29

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

3,389
longhornkvalitetsitVerified publisher1.1.1-01 of 2See more

longhorn kvalitetsit 1.1.1-0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.1.1ede61fe2a472
tar@1.29b-2ubuntu0.2
1.29b-2ubuntu0.4+esm4

Open the chart page →

16,561
stakitkvalitetsitVerified publisher0.3.111 of 3See more

stakit kvalitetsit 0.3.11

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kvalitetsit/stakit-backend:0.3.0f0af0ba589af
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,857
nginx-chartkyb-nginx0.1.01 of 1See more

nginx-chart kyb-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

26,400
pageslatif-pages1.0.02 of 3See more

pages latif-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,262
pageslavanya-pages1.0.02 of 3See more

pages lavanya-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,262
smtplbenicio-communityVerified publisher0.1.31 of 1See more

smtp lbenicio-community 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
registry.gitlab.com/egos-tech/smtp:latestdf842ed79211
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,353
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

33,613
jenkinsleechistest2.7.11 of 2See more

jenkins leechistest 2.7.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,445
kinesaliteleprechaun-charts0.1.21 of 1See more

kinesalite leprechaun-charts 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
instructure/kinesalite:latest34400d82f28f
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

4,281
owntracks-exporterleprechaun-charts0.1.111 of 1See more

owntracks-exporter leprechaun-charts 0.1.11

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

4,067
vaultwardenleprechaun-charts0.1.281 of 1See more

vaultwarden leprechaun-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.1ebdfe70701c6
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,058
jackettlib42Verified publisher1.1.01 of 1See more

jackett lib42 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
lib42/jackett:latesta55596cda383
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

4,649
libredb-studiolibredb-studio-oci0.1.641 of 1See more

libredb-studio libredb-studio-oci 0.1.64

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/libredb/libredb-studio:0.16.0fa925884368a
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,163
librenmslibrenms10.1.11 of 5See more

librenms librenms 10.1.1

1 of the 5 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,149
kube-iptables-tailerlifen0.2.31 of 1See more

kube-iptables-tailer lifen 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

4,467
lightlyticslightlytics0.1.212 of 2See more

lightlytics lightlytics 0.1.21

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
public.ecr.aws/k6v9y5g3/cluster-agent:master.57536d051110158
tar@1.34+dfsg-1.2+deb12u1
no fix listed
public.ecr.aws/k6v9y5g3/cluster-agent:cost_k8s_process.5769e14a72b066d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,402
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

38,312
weblinzhengen0.1.71 of 1See more

web linzhengen 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,109
pocketbase-halitesql0.0.31 of 1See more

pocketbase-ha litesql 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/litesql/pocketbase-ha:latestc5b28608958b
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,145
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

10,814
pagesliviu884422-pages1.0.02 of 3See more

pages liviu884422-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

20,262
web-chartljw-ktcloudlab0.1.01 of 1See more

web-chart ljw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,861
llmarinerllmariner1.53.11 of 21See more

llmariner llmariner 1.53.1

1 of the 21 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
public.ecr.aws/cloudnatix/llmariner/model-manager-loader:1.27.026ac7263a823
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

12,158
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,639
mt-mcp-grafanaloafoe0.10.01 of 2See more

mt-mcp-grafana loafoe 0.10.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
grafana/mcp-grafana:0.14.042f541f22063
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,940
locust-pluginslocust-pluginsVerified publisher0.0.41 of 3See more

locust-plugins locust-plugins 0.0.4

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
locustio/locust:2.24.151d866285170
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

7,544
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

33,613
nightingalelogic3579Verified publisher0.3.13 of 6See more

nightingale logic3579 0.3.1

3 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
flashcatcloud/categraf:latest42e6ab16472e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
flashcatcloud/nightingale:8.5.1421acb36181b
tar@1.35+dfsg-3.1
no fix listed
library/redis:6.2143f7bfc2358
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

9,096
rocketmq-exporterlogic3579Verified publisher0.0.21 of 1See more

rocketmq-exporter logic3579 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
apache/rocketmq-exporter:0.0.2c8fb51195444
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

6,689
login-test-backendlogin-test-backend0.1.01 of 2See more

login-test-backend login-test-backend 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
aboogie/login_test_backend:new9c41a4483ac8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,570
apica-ascentlogiqai2.0.41 of 19See more

apica-ascent logiqai 2.0.4

1 of the 19 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
logiqai/flash:v3.10.265b996bc7bdc
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

23,673
clickhouselohmag0.2.01 of 1See more

clickhouse lohmag 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
yandex/clickhouse-server:19.17ab1738a64b70
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

5,921
lsdisklsdiskVerified publisher2.0.71 of 4See more

lsdisk lsdisk 2.0.7

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,053
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

17,951
redislsst-sqre1.2.11 of 1See more

redis lsst-sqre 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

985
squash-apilsst-sqre0.1.61 of 3See more

squash-api lsst-sqre 0.1.6

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:6.2143f7bfc2358
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

6,649
elastictranscoderluiscajl0.46.04 of 4See more

elastictranscoder luiscajl 0.46.0

4 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
elastictranscoder/media:627e21dc963ab3858c6b
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
elastictranscoder/media-storage:f6d861a026208b8c2359
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
elastictranscoder/transcoder:627e21dcb4a0327029e6
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

58,359
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

27,655
hyperglassm0nsterrr-hyperglassVerified publisher4.2.11 of 2See more

hyperglass m0nsterrr-hyperglass 4.2.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,680

Container images carrying it

2,210 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-agentdf5ee05e23e3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/open-webui/open-terminal:0.13.0-slimdec44673c865
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-webui/terminals:latest5d2fd44366a4
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/open-webui/terminals-operator:latest6287ce8be502
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/papra-hq/papra:26.6.2-rootlessa281cb44176d
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
tar@1.29b-2ubuntu0.3
1.29b-2ubuntu0.4+esm4
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/qovery/iam-eks-user-mapper:mainc41e3efc6097
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/radar-base/managementportal/management-portal:3.0.0c1b37e821f72
tar@1.35+dfsg-4
1.35+dfsg-4ubuntu0.4
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/reitermarkus/7d2d:main39953b387b61
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
tar@1.34+dfsg-1.2
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1
ghcr.io/sergelogvinov/fluentd:1.19.33273d13f1e75
tar@1.35+dfsg-3.1
no fix listed
1
ghcr.io/sergelogvinov/mongodb:8.0.101eee8e20a87f
tar@1.34+dfsg-1.2+deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.