StackRadar

CVE-2026-74860

High

Advisory

Published 8 Sept 2026In the index since 10 Sept 2026
Severity
High
worst across findings
CVSS
8.5
base score, highest
EPSS
0.004
29th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,056
of 17,787 indexed, latest versions
Container images
856
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,056 of 17,787 indexed charts deploy, on 856 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+56 more2.12.7+dfsg+really2.9.14-2.1+deb13u3+e2856
OSV records
DEBIAN-CVE-2026-74860UBUNTU-CVE-2026-74860ECHO-88ec-e122-3747
Trending
Rank 9 in indexed charts, since 11 Sept 2026. See the ranking →

Charts affected

1,056 by stars
ChartLatestAffected imagesRadar Score
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed

Open the chart page →

13,071
stashgeek-cookbookVerified publisher3.4.21 of 1See more

stash geek-cookbook 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
stashapp/stash:latest24dbd7607174
libxml2@2.9.10+dfsg-5
no fix listed

Open the chart page →

15,917
tdarrgeek-cookbookVerified publisher4.6.22 of 2See more

tdarr geek-cookbook 4.6.2

2 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
haveagitgat/tdarr:2.00.181256348872ce
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
haveagitgat/tdarr_node:2.00.101e3f9328327d
libxml2@2.9.10+dfsg-5
no fix listed

Open the chart page →

31,178
valheimgeek-cookbookVerified publisher4.4.21 of 1See more

valheim geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/lloesche/valheim-server:latest20fde516ce31
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

4,893
gentrace-self-hostedgentrace-self-hostedVerified publisher0.1.31 of 9See more

gentrace-self-hosted gentrace-self-hosted 0.1.3

1 of the 9 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:15.38775adb39f0d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

15,606
castopodh2mVerified publisher1.12.101 of 3See more

castopod h2m 1.12.10

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
castopod/castopod:1.12.101fd37280cbb2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

10,106
hawkhawk1.1.51 of 4See more

hawk hawk 1.1.5

1 of the 4 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

13,656
hello-helmhellok8s0.1.01 of 2See more

hello-helm hellok8s 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,012
guacamolehelmforgeVerified publisher1.5.23 of 5See more

guacamole helmforge 1.5.2

3 of the 5 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/postgres:17.5-bookwormfbcea1bd13b6
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

8,773
matomohelmforgeVerified publisher2.3.01 of 3See more

matomo helmforge 2.3.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/matomo:5.13.0-apache8e6bdd396496
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,711
mywebapphelm-nginxVerified publisher0.1.01 of 1See more

mywebapp helm-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
huehue1.0.31 of 3See more

hue hue 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
gethue/hue:latest7d5c1b9f8a79
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed

Open the chart page →

12,461
backendikusi-bk-chart1.0.31 of 3See more

backend ikusi-bk-chart 1.0.3

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,976
odooimioVerified publisher3.0.21 of 3See more

odoo imio 3.0.2

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:17.10ebba4f4de37f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,081
immichimmich-helm0.3.03 of 4See more

immich immich-helm 0.3.0

3 of the 4 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed

Open the chart page →

15,749
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed

Open the chart page →

11,794
jellyfinjellyfinVerified publisher0.3.301 of 1See more

jellyfin jellyfin 0.3.30

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,571
web-chartkbt-ktcloudlab0.1.01 of 1See more

web-chart kbt-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
app-componentkeltio-helm-chartsVerified publisher3.14.01 of 1See more

app-component keltio-helm-charts 3.14.0

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,783
glpikitsune-itopsVerified publisher1.0.71 of 3See more

glpi kitsune-itops 1.0.7

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
glpi/glpi:latest4b681082a79e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,878
difykubeblocksVerified publisher0.5.11 of 5See more

dify kubeblocks 0.5.1

1 of the 5 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

20,424
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.01 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
owncloud/server:10.16.274c53d341076
libxml2@2.9.13+dfsg-1ubuntu0.11
no fix listed

Open the chart page →

9,975
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

12,477
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

114,025
ohifkylesferrazzaVerified publisher0.1.01 of 2See more

ohif kylesferrazza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
jodogne/orthanc-plugins:latest6ff510aa29c2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,524
overpass-apil4gVerified publisher0.1.21 of 1See more

overpass-api l4g 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
wiktorn/overpass-api:latest9bb5f4a9b54c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

3,551
checkoutlabs64io-helm-chartsVerified publisher0.8.01 of 3See more

checkout labs64io-helm-charts 0.8.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
payment-gatewaylabs64io-helm-chartsVerified publisher0.8.01 of 2See more

payment-gateway labs64io-helm-charts 0.8.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,708
langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

4,011
flaresolverrlib42Verified publisher2.0.01 of 1See more

flaresolverr lib42 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

35,058
music-assistant-serverlmatfyVerified publisher0.1.91 of 1See more

music-assistant-server lmatfy 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

7,216
flaresolverrm0nsterrr-flaresolverrVerified publisher2.4.11 of 1See more

flaresolverr m0nsterrr-flaresolverr 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

5,747
drillmagasin-drill0.9.01 of 3See more

drill magasin-drill 0.9.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
merlos/zookeeper:3.9.3a38fc7e09ed7
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,741
mcp-orchestratormagertronVerified publisher3.8.231 of 6See more

mcp-orchestrator magertron 3.8.23

1 of the 6 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
curtismager20/mcp-orchestrator:3.8.231f11a1001dab
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,704
jellyfinmedia-servarrVerified publisher0.16.01 of 2See more

jellyfin media-servarr 0.16.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,764
mw-kube-agent-v2middleware-labsVerified publisher2.8.61 of 1See more

mw-kube-agent-v2 middleware-labs 2.8.6

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

4,184
food-managermoreillonVerified publisher0.5.01 of 2See more

food-manager moreillon 0.5.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
moreillon/food-manager:lateste8fd856e593d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

13,763
redminemt1905027.3.42 of 3See more

redmine mt190502 7.3.4

2 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/redmine:6.1.204ac44a2595b
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

7,552
12factormyaVerified publisher24.1.21 of 1See more

12factor mya 24.1.2

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
my-react-appmy-react-app0.1.51 of 1See more

my-react-app my-react-app 0.1.5

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
spring-helmnaveenalla-springboot1.0.01 of 2See more

spring-helm naveenalla-springboot 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
nginx-chartnginx-chart-testVerified publisher0.1.11 of 1See more

nginx-chart nginx-chart-test 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

14,324
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,051
onechartonechart-slVerified publisher0.76.01 of 1See more

onechart onechart-sl 0.76.0

1 of the 1 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libxml2@2.9.14+dfsg-1.2
no fix listed
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

14,862
librechatopenshift1.9.01 of 3See more

librechat openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,833
opentelemetry-demoopentelemetry-helmVerified publisher0.41.11 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

1 of the 34 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

22,678
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-74860.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
libxml2@2.9.13+dfsg-1ubuntu0.9
no fix listed

Open the chart page →

9,049

Container images carrying it

856 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
libxml2@2.9.14+dfsg-1.3ubuntu3.6
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
libxml2@2.9.14+dfsg-1.3ubuntu3.6
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/yourls/yourls:1.10.69b220ea83329
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
libxml2@2.9.4+dfsg1-6.1ubuntu1.9
no fix listed
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
libxml2@2.9.4+dfsg1-6.1ubuntu1.9
no fix listed
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2+e6
2.12.7+dfsg+really2.9.14-2.1+deb13u3+e2
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libxml2@2.9.10+dfsg-5
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.