StackRadar

CVE-2026-6653

Critical

Advisory

Published 22 Jun 2026In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.004
29th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
845
of 17,790 indexed, latest versions
Container images
624
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 845 of 17,790 indexed charts deploy, on 624 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.13+dfsg-1build1, 2.9.13+dfsg-1ubuntu0.1, 2.9.13+dfsg-1ubuntu0.2, 2.9.13+dfsg-1ubuntu0.3+27 more2.9.13+dfsg-1ubuntu0.12, 2.9.14+dfsg-1.3ubuntu3.8, 2.12.7+dfsg+really2.9.14-2.1+deb13u2+e8624
OSV records
DEBIAN-CVE-2026-6653UBUNTU-CVE-2026-6653ECHO-145e-cea4-f440
Also known as
USN-8456-1

Charts affected

845 by stars
ChartLatestAffected imagesRadar Score
wordpress-mysqlsikalabs0.1.21 of 2See more

wordpress-mysql sikalabs 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,893
simple-websimple-webVerified publisher1.1.11 of 1See more

simple-web simple-web 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
infisicalsinextraVerified publisher0.6.01 of 1See more

infisical sinextra 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
infisical/infisical:v0.165.602082bf13163
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,042
pgbouncersinextraVerified publisher0.17.01 of 1See more

pgbouncer sinextra 0.17.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

1,932
sneakerssneakers1.0.01 of 4See more

sneakers sneakers 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

7,596
daemonsetsnowplow-devopsVerified publisher0.6.01 of 1See more

daemonset snowplow-devops 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
service-deploymentsnowplow-devopsVerified publisher0.43.01 of 1See more

service-deployment snowplow-devops 0.43.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:stablecb92301e719d
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,831
nginx-chartsongduckbae-nginx0.1.01 of 1See more

nginx-chart songduckbae-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
spacecapybara-chartspacecapy1.0.491 of 2See more

spacecapybara-chart spacecapy 1.0.49

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
sashafefler/spacecapybara_app:latestf96d7804c0ca
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

11,979
speckle-preview-service-branch-testing6speckleVerified publisher2.23.14-branch.testing6.334655-b4e04ee1 of 1See more

speckle-preview-service-branch-testing6 speckle 2.23.14-branch.testing6.334655-b4e04ee

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.23.14-branch.testing6.334655-b4e04ee6dee853ba74a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,968
speckle-server-branch-hotfix-2.19.1speckleVerified publisher2.19.2-branch.hotfix-2.19.1.124125-665e7e11 of 5See more

speckle-server-branch-hotfix-2.19.1 speckle 2.19.2-branch.hotfix-2.19.1.124125-665e7e1

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.19.2-branch.hotfix-2.19.1.124125-665e7e1c102b087481a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,463
speckle-server-branch-hotfix-2.20.2speckleVerified publisher2.20.3-branch.hotfix-2.20.2.149555-37ea0cb1 of 5See more

speckle-server-branch-hotfix-2.20.2 speckle 2.20.3-branch.hotfix-2.20.2.149555-37ea0cb

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.3-branch.hotfix-2.20.2.149555-37ea0cbd3da0a84de98
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,495
speckle-server-branch-testing1speckleVerified publisher2.20.6-branch.testing1.154030-9b091141 of 5See more

speckle-server-branch-testing1 speckle 2.20.6-branch.testing1.154030-9b09114

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.6-branch.testing1.154030-9b091148f3c1ea153ba
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,495
speckle-server-branch-testing4speckleVerified publisher2.20.2-branch.testing4.134160-9fad4b21 of 5See more

speckle-server-branch-testing4 speckle 2.20.2-branch.testing4.134160-9fad4b2

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.20.2-branch.testing4.134160-9fad4b21f897ca906ea
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,114
speckle-server-branch-testing5speckleVerified publisher2.21.3-branch.testing5.219631-2153bef1 of 5See more

speckle-server-branch-testing5 speckle 2.21.3-branch.testing5.219631-2153bef

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.21.3-branch.testing5.219631-2153bef52cad5e3293e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

15,725
speckle-server-branch-testing6speckleVerified publisher2.25.10-branch.testing6.645-b125c1e1 of 4See more

speckle-server-branch-testing6 speckle 2.25.10-branch.testing6.645-b125c1e

1 of the 4 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
speckle/speckle-preview-service:2.25.10-branch.testing6.645-b125c1e787adcb20a3a
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

11,167
servicexssl-hep1.8.510 of 16See more

servicex ssl-hep 1.8.5

10 of the 16 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/python:3.1070c9cc675605
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_app:v1.8.51d12f943cec5
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

67,262
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

20,321
ssv-nodestakewise2.2.01 of 2See more

ssv-node stakewise 2.2.0

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

6,873
steadybit-agentsteadybit3.1.1632 of 6See more

steadybit-agent steadybit 3.1.163

2 of the 6 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,343
minkstoneshi-tscharts0.1.01 of 1See more

mink stoneshi-tscharts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
libxml2@2.9.14+dfsg-1.3ubuntu3.6
2.9.14+dfsg-1.3ubuntu3.8

Open the chart page →

12,541
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
libxml2@2.9.14+dfsg-1.3ubuntu3.6
2.9.14+dfsg-1.3ubuntu3.8

Open the chart page →

12,541
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,021
substra-backendsubstraVerified publisher26.15.31 of 7See more

substra-backend substra 26.15.3

1 of the 7 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,799
substra-frontendsubstraVerified publisher1.2.31 of 1See more

substra-frontend substra 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,053
verbasubstratusVerified publisher0.4.01 of 1See more

verba substratus 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
substratusai/verba:v0.4.0-baseURL261695be635eb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

13,463
flaresolverrsudo-kraken-flaresolverrVerified publisher2.1.41 of 1See more

flaresolverr sudo-kraken-flaresolverr 2.1.4

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed

Open the chart page →

33,864
jellyfinsudo-kraken-jellyfinVerified publisher2.1.31 of 1See more

jellyfin sudo-kraken-jellyfin 2.1.3

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.6333b64771663
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

3,410
nginx-chartsuin-nginx0.1.01 of 1See more

nginx-chart suin-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
convert-datasvtechVerified publisher0.13.21 of 3See more

convert-data svtech 0.13.2

1 of the 3 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
libxml2@2.9.13+dfsg-1ubuntu0.4
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

7,639
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

12,100
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
libxml2@2.9.13+dfsg-1ubuntu0.3
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

5,883
nagvissvtech-public-helm-charts1.0.01 of 1See more

nagvis svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,182
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

12,100
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
libxml2@2.9.14+dfsg-1.3ubuntu3.3
2.9.14+dfsg-1.3ubuntu3.8

Open the chart page →

8,242
app-startersynkubeVerified publisher1.4.11 of 1See more

app-starter synkube 1.4.1

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest6e23479198b9
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

3,263
cronjobt3n0.1.01 of 1See more

cronjob t3n 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/python:3.8d41127070014
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

11,272
nginx-charttaeseon-nginx0.1.01 of 1See more

nginx-chart taeseon-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
repmanteam-blueVerified publisher0.3.01 of 5See more

repman team-blue 0.3.0

1 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:stablecb92301e719d
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,014
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

6,321
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
libxml2@2.9.13+dfsg-1build1
2.9.13+dfsg-1ubuntu0.12
xeladock/nginx2:latestc259a67b1dff
libxml2@2.9.13+dfsg-1build1
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

17,590
flask-contactstest-configmap1.0.11 of 3See more

flask-contacts test-configmap 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,789
helm-testtest-helm-artifacthubVerified publisher1.0.01 of 2See more

helm-test test-helm-artifacthub 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
carlosmz87/test_helm_backend:latest8ffa63aa995d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

11,722
functionstest-helm-chart-hoanganht1k27Verified publisher0.1.11 of 1See more

functions test-helm-chart-hoanganht1k27 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
myfirstcharttest-helm-charts0.2.01 of 1See more

myfirstchart test-helm-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
chatqnatest-opea1.0.07 of 11See more

chatqna test-opea 1.0.0

7 of the 11 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/chatqna:1.038c51b791efa
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/embedding-tei:1.05c9639de61c1
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/llm-tgi:1.00c25aab3f106
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/reranking-tei:1.0e48613afb191
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/retriever-redis:1.0eb746b263705
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
redis/redis-stack:7.2.0-v91c5f43fddcdd
libxml2@2.9.13+dfsg-1ubuntu0.4
2.9.13+dfsg-1ubuntu0.12

Open the chart page →

39,273
codegentest-opea1.0.04 of 5See more

codegen test-opea 1.0.0

4 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/codegen:1.058f91683892d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/codegen-ui:1.02bee4eb66f3e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/llm-tgi:1.00c25aab3f106
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

28,944
codetranstest-opea1.0.04 of 5See more

codetrans test-opea 1.0.0

4 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/codetrans:1.0e2436483b73d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/codetrans-ui:1.03ef121f34610
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/llm-tgi:1.00c25aab3f106
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

28,515
docsumtest-opea1.0.04 of 5See more

docsum test-opea 1.0.0

4 of the 5 container images this version deploys carry CVE-2026-6653.

Container imageDigestPackageFixed in
library/nginx:1.27.1287ff321f9e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/docsum:1.03eaa91849512
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/docsum-ui:1.07f854e9bffaf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opea/llm-docsum-tgi:1.002f9e8fa5d71
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

28,990

Container images carrying it

624 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/chaos-mesh/chaos-daemon:v2.8.369b1d3c09cfa
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/chaos-mesh/chaos-daemon:v2.8.0fb609bc264d9
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/cjmalloy/jasper:v1.3.282726a947bb65b
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/cjmalloy/jasper-ui:v1.3.623246dc2160efe
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/dask/dask-kubernetes-operator:2026.3.03225d2bc6b3c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/deltabadger/deltabadger:2.23.3bffe3c22fabc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/dgtlmoon/changedetection.io:0.60.5f69554198005
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/drewburr-labs/mum-discord-bot:3.1.26e82914e1051
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
libxml2@2.9.14+dfsg-1.3ubuntu3.7
2.9.14+dfsg-1.3ubuntu3.8
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.8
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.8
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
libxml2@2.9.14+dfsg-1.3ubuntu3
2.9.14+dfsg-1.3ubuntu3.8
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.12
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.12
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libxml2@2.9.13+dfsg-1ubuntu0.1
2.9.13+dfsg-1ubuntu0.12
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/libretime/icecast:latest3c98b92e9535
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.