StackRadar

CVE-2026-5704

Medium

Advisory

Published 6 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
34th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,240
of 17,787 indexed, latest versions
Container images
2,202
deployed by those charts
Fix available
2 of 2
affected packages

Security update for tar

Carried by container images the latest versions of 2,240 of 17,787 indexed charts deploy, on 2,202 images.

Affected packageAffected versionsFixed inImages
tardeb1.27.1-1, 1.27.1-1ubuntu0.1, 1.28-2.1ubuntu0.1, 1.28-2.1ubuntu0.2+28 more1.27.1-1ubuntu0.1+esm7, 1.28-2.1ubuntu0.2+esm6, 1.29b-2ubuntu0.4+esm4, 1.30+dfsg-7ubuntu0.20.04.4+esm3+4 more2,196
tarrpm1.34-150000.3.34.1, 1.34-150000.3.37.11.34-150000.3.42.16
OSV records
DEBIAN-CVE-2026-5704UBUNTU-CVE-2026-5704ECHO-6544-7e09-569cSUSE-SU-2026:2714-1
Also known as
USN-8477-1, USN-8477-2, USN-8477-3

Charts affected

2,240 by stars
ChartLatestAffected imagesRadar Score
gitlab-omnibusslamdev0.1.61 of 2See more

gitlab-omnibus slamdev 0.1.6

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
daedalusproject/base_kubectl:latest6f72b5119eda
tar@1.30+dfsg-7
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

2,810
slo-reportingslo-reportingVerified publisher0.3.341 of 2See more

slo-reporting slo-reporting 0.3.34

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

2,928
smarter-demosmarterOfficialVerified publisher0.1.53 of 7See more

smarter-demo smarter 0.1.5

3 of the 7 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

45,832
snappasssnappassVerified publisher0.4.32 of 3See more

snappass snappass 0.4.3

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
lmacka/snappass:2.1.293f5c048b7d4
tar@1.35+dfsg-3.1
no fix listed
valkey/valkey:8.1.61f84517eca8e
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,995
artifact-hubsoftonic1.19.01 of 8See more

artifact-hub softonic 1.19.0

1 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
artifacthub/postgres:latest4fd34fa635cc
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

14,491
redis-shardedsoftonic0.5.01 of 2See more

redis-sharded softonic 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/redis:8.10.1298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,307
sogosogoVerified publisher0.3.51 of 2See more

sogo sogo 0.3.5

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,126
postgresql-ha-chartsoldevelo-postgresql-ha-chart16.3.42 of 2See more

postgresql-ha-chart soldevelo-postgresql-ha-chart 16.3.4

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
soldevelo/pgpool:4.6.3-debian-12-r0044d16a65129
tar@1.34+dfsg-1.2+deb12u1
no fix listed
soldevelo/postgresql-repmgr:17.6.0-debian-12-r03eaab21e40e5
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,563
nginx-chartsomnath-chartVerified publisher0.1.91 of 1See more

nginx-chart somnath-chart 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
somnathmore/custom-nginx:v2bdfc06cad4ec
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,676
speckle-serverspeckleVerified publisher2.26.31 of 4See more

speckle-server speckle 2.26.3

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.26.3092384dba45d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

10,380
squidsquid-helmVerified publisher0.1.01 of 1See more

squid squid-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ubuntu/squid:5.2-22.04_beta723891b5bc74
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

2,577
graph-nodestakewise3.1.01 of 3See more

graph-node stakewise 3.1.0

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
graphprotocol/graph-node:v0.37.0f4452cdedd68
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,661
starwhalestarwhaleVerified publisher0.6.151 of 4See more

starwhale starwhale 0.6.15

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/star-whale/server:0.6.158368359c8dd0
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

13,486
ckanstatcan0.0.351 of 8See more

ckan statcan 0.0.35

1 of the 8 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
statcan/ckan:2.93921305425b8
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

24,930
stornxstornxVerified publisher1.1.13 of 9See more

stornx stornx 1.1.1

3 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
alazidis/kube-netlag:1.1.00e8c84152201
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
alazidis/stornx:1.1.1602d4f7f090c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
istio/pilot:1.29.1f8b0e412ac4a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

11,574
streamvisorstreamvisorVerified publisher4.1.61 of 1See more

streamvisor streamvisor 4.1.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/streamvisor/streamvisor:4.1.40bc598b2ac9a
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,826
supabasesupabse0.8.06 of 11See more

supabase supabse 0.8.0

6 of the 11 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.30.13b709e4a0e5e
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
kong/kong:3.9.16addf50e6bd8
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
supabase/edge-runtime:v1.74.02781daf92394
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/postgres-meta:v0.96.6a84cc713585e
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/realtime:v2.102.3aa1c92c0cf32
tar@1.34+dfsg-1.2+deb12u1
no fix listed
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

18,075
supersonicsupersonicVerified publisher0.3.11 of 2See more

supersonic supersonic 0.3.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.30.92956bd9de830
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

2,100
app-fullsynkubeVerified publisher1.0.01 of 1See more

app-full synkube 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

3,240
mumblesyntaxerror404Verified publisher1.0.41 of 1See more

mumble syntaxerror404 1.0.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

2,099
kubedeploysysbee1.2.21 of 1See more

kubedeploy sysbee 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,827
apptaxmd-helm-chart0.0.21 of 1See more

app taxmd-helm-chart 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

1,827
teamcity-serverteamcity-server3.3.51 of 2See more

teamcity-server teamcity-server 3.3.5

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/haproxy:3.2de601ccc9a79
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

824
tenuretenureVerified publisher1.0.61 of 2See more

tenure tenure 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tenureai/tenure:v1.0.285f5b222df9a5
tar@1.35+dfsg-3.1+dhi1
no fix listed

Open the chart page →

2,522
jenkinstestchart0.1.91 of 2See more

jenkins testchart 0.1.9

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

9,102
jenkinstest-jenkins9.1.01 of 2See more

jenkins test-jenkins 9.1.0

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
tar@1.34+dfsg-1.2
no fix listed

Open the chart page →

9,102
tocktock0.6.31 of 9See more

tock tock 0.6.3

1 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tock/gen-ai-orchestrator-server:25.10.7abf7880e0449
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

12,907
guardrails-agent-kubernetesturbotVerified publisher0.3.01 of 1See more

guardrails-agent-kubernetes turbot 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/turbot/guardrails-agent-kubernetes:0.3.09d01bf9c9224
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

4,020
typemilltypemill-helm-chart2.2.02 of 2See more

typemill typemill-helm-chart 2.2.0

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
kixote/typemilldigest-pinned4e9dff179519
tar@1.35+dfsg-3.1
no fix listed
kixote/typemilldigest-pinned628f79a08cc7
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

5,338
typesensetypesenseVerified publisher1.1.41 of 1See more

typesense typesense 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
typesense/typesense:30.191604dc128e2
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

1,869
ueransim-gnbueransim-gnbVerified publisher0.2.61 of 1See more

ueransim-gnb ueransim-gnb 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,764
ueransim-uesueransim-uesVerified publisher0.1.21 of 1See more

ueransim-ues ueransim-ues 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
gradiant/ueransim:3.2.6015b30d5fa0f
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

3,764
unitycatalogunitycatalogVerified publisher0.0.21 of 4See more

unitycatalog unitycatalog 0.0.2

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

12,581
taigaunxwaresVerified publisher2026.3.82 of 6See more

taiga unxwares 2026.3.8

2 of the 6 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
taigaio/taiga-back:latest4beed8f62c9f
tar@1.35+dfsg-3.1
no fix listed
taigaio/taiga-protected:latestfd4568a97a59
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

9,148
varnish-cachevarnishVerified publisher1.1.11 of 1See more

varnish-cache varnish 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/varnish:7.5.04d0bb287d87b
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

4,249
varnish-ingress-controllervarnish-ingress-controllerVerified publisher0.5.01 of 1See more

varnish-ingress-controller varnish-ingress-controller 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
mariusm/vingress:0.5.0b3db186c3d72
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,251
vaultwarden-kubernetes-secretsvaultwarden-kubernetes-secrets0.0.0-main1 of 2See more

vaultwarden-kubernetes-secrets vaultwarden-kubernetes-secrets 0.0.0-main

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/antoniolago/vaultwarden-kubernetes-secrets:0.0.0-main13e267ad7d94
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4

Open the chart page →

4,010
devportal-admin-uiveecode-platformVerified publisher0.5.41 of 1See more

devportal-admin-ui veecode-platform 0.5.4

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
veecode/devportal-admin-ui:0.4.30c69fd286b489
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

5,225
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
tar@1.30+dfsg-7ubuntu0.20.04.3
1.30+dfsg-7ubuntu0.20.04.4+esm3
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

26,657
phpipamvquieVerified publisher1.0.31 of 3See more

phpipam vquie 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/mariadb:10.11.21c33370a599c
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

7,025
waldurwaldur-chartsVerified publisher8.1.22 of 3See more

waldur waldur-charts 8.1.2

2 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
tar@1.35+dfsg-3.1
no fix listed
opennode/waldur-mastermind:8.1.24c82b15d9042
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

4,839
wavefront-adapter-for-istiowavefront0.1.41 of 2See more

wavefront-adapter-for-istio wavefront 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
wavefronthq/proxy:9.2d1064d28f6eb
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4

Open the chart page →

15,970
kafka-devwikimedia0.2.01 of 1See more

kafka-dev wikimedia 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
wurstmeister/zookeeper:latest7a7fd44a7210
tar@1.27.1-1
1.27.1-1ubuntu0.1+esm7

Open the chart page →

41,427
spark-operatorwikimedia2.2.71 of 1See more

spark-operator wikimedia 2.2.7

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3

Open the chart page →

7,835
wordpress-e2e-setupwoocommerce-e2e-setup0.1.11 of 2See more

wordpress-e2e-setup woocommerce-e2e-setup 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/wordpress:6.8-apache30bff39330d1
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

7,696
wordpress-helmwordpress-helm0.2.91 of 4See more

wordpress-helm wordpress-helm 0.2.9

1 of the 4 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

8,217
workflows-sinkworkflows-sinkVerified publisher0.16.31 of 1See more

workflows-sink workflows-sink 0.16.3

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
registry.gitlab.com/dyff/workflows-sink:0.16.3564718e28931
tar@1.34+dfsg-1.2+deb12u1
no fix listed

Open the chart page →

1,397
wraftwraft0.1.121 of 9See more

wraft wraft 0.1.12

1 of the 9 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
typesense/typesense:28.0.rc35dea1b62b7b6e
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

10,090
youtubedl-materialyoutubedl-materialVerified publisher0.0.11 of 1See more

youtubedl-material youtubedl-material 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
tzahi12345/youtubedl-material:latest2f943d584711
tar@1.34+dfsg-1ubuntu0.1.22.04.1
1.34+dfsg-1ubuntu0.1.22.04.6

Open the chart page →

9,783
yugawareyugabyteVerified publisher2026.1.11 of 3See more

yugaware yugabyte 2026.1.1

1 of the 3 container images this version deploys carry CVE-2026-5704.

Container imageDigestPackageFixed in
library/postgres:14.22eba8ddbdd837
tar@1.35+dfsg-3.1
no fix listed

Open the chart page →

2,610

Container images carrying it

2,202 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
library/nginx:1.31:1.31.5:latest:trixie05b8cb60c354
tar@1.35+dfsg-3.1
no fix listed
106
dellcloud/pages:monitor6ba7b22caacd
tar@1.30+dfsg-7ubuntu0.20.04.1
1.30+dfsg-7ubuntu0.20.04.4+esm3
79
flyway/flyway:6.4.422d97ceb0c47
tar@1.29b-2ubuntu0.1
1.29b-2ubuntu0.4+esm4
79
library/postgres:18:18.6:18.6-trixie:latest4ef4dbc939d6
tar@1.35+dfsg-3.1
no fix listed
69
library/redis:8.10.1:latest298e5b3bc566
tar@1.35+dfsg-3.1
no fix listed
40
library/nginx:stabled5792f71a949
tar@1.35+dfsg-3.1
no fix listed
23
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
tar@1.29b-2ubuntu0.4
1.29b-2ubuntu0.4+esm4
13
jenkins/jenkins:2.568.3-jdk21:2.568.3-lts-jdk21:ltsc1e4c349365f
tar@1.35+dfsg-3.1
no fix listed
13
library/postgres:16f1c3376c26f2
tar@1.35+dfsg-3.1
no fix listed
12
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
tar@1.34+dfsg-1.2+deb12u1
no fix listed
11
oomk8s/readiness-check:2.0.2875814cc853d
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
11
library/mongo:5.0.6-focal8e70544b6c76
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
10
library/postgres:1767f41722b7a8
tar@1.35+dfsg-3.1
no fix listed
10
library/rabbitmq:3.9-management8a279e9396a8
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
10
library/rabbitmq:3.13-management:3-managemente582c0bc7766
tar@1.35+dfsg-3build1
1.35+dfsg-3ubuntu0.4
8
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
tar@1.35+dfsg-3.1
no fix listed
7
library/kong:3.6a42d2b4503e7
tar@1.34+dfsg-1ubuntu0.1.22.04.2
1.34+dfsg-1ubuntu0.1.22.04.6
7
library/phpmyadmin:5.2.3-apache:latest3a8a8d6b5289
tar@1.35+dfsg-3.1
no fix listed
7
library/postgres:14156f0b253fd6
tar@1.35+dfsg-3.1
no fix listed
7
vaultwarden/server:1.37.2:latest094b5689ed81
tar@1.35+dfsg-3.1
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
tar@1.34+dfsg-1.2+deb12u1
no fix listed
7
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
tar@1.35+dfsg-3.1
no fix listed
7
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
tar@1.34+dfsg-1.2+deb12u1
no fix listed
6
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
tar@1.34+dfsg-1.2+deb12u1
no fix listed
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
tar@1.34+dfsg-1.2+deb12u1
no fix listed
6
library/postgres:159b1d34adbce1
tar@1.35+dfsg-3.1
no fix listed
6
library/postgres:18.4a02db8cac496
tar@1.35+dfsg-3.1
no fix listed
6
library/redis:6:6.2143f7bfc2358
tar@1.34+dfsg-1.2+deb12u1
no fix listed
6
library/wordpress:7.1.0-apache:latest5a93c470ae82
tar@1.35+dfsg-3.1
no fix listed
6
oomk8s/readiness-check:2.0.07daa08b81954
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
6
valkey/valkey:9.1.1:9.1.1-trixie64e361b630ec
tar@1.35+dfsg-3.1
no fix listed
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
tar@1.34+dfsg-1.2
no fix listed
6
quay.io/devtron/postgres:14.91b594392f7cb
tar@1.34+dfsg-1.2
no fix listed
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
tar@1.34+dfsg-1.2+deb12u1
no fix listed
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
tar@1.34+dfsg-1.2+deb12u1
no fix listed
5
library/httpd:2.4:2.4.68:latest979c38c2228d
tar@1.35+dfsg-3.1
no fix listed
5
library/memcached:1.6:1.6.4575c93cc91e76
tar@1.35+dfsg-3.1
no fix listed
5
library/mongo:4.44be76f674fc4
tar@1.30+dfsg-7ubuntu0.20.04.4
1.30+dfsg-7ubuntu0.20.04.4+esm3
5
library/postgres:122f2a8c2a7d10
tar@1.34+dfsg-1.2+deb12u1
no fix listed
5
library/redis:7.2:7.2-bookworm74566c6910d1
tar@1.34+dfsg-1.2+deb12u1
no fix listed
5
solsson/kafka:latest41e5d8f6f290
tar@1.30+dfsg-7ubuntu0.20.04.2
1.30+dfsg-7ubuntu0.20.04.4+esm3
5
valkey/valkey:9.1.2:latestc123e3715db6
tar@1.35+dfsg-3.1
no fix listed
5
artifacthub/postgres:latest4fd34fa635cc
tar@1.35+dfsg-3.1
no fix listed
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
bitnamilegacy/postgresql:16233f361c5819
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
tar@1.34+dfsg-1.2+deb12u1
no fix listed
4
hyperledger/fabric-ca:latesta70b6ba64a08
tar@1.34+dfsg-1ubuntu0.1.22.04.3
1.34+dfsg-1ubuntu0.1.22.04.6
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tar@1.28-2.1ubuntu0.1
1.28-2.1ubuntu0.2+esm6
4

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.