StackRadar

CVE-2026-77214

Unscored

Advisory

Published 5 Oct 2026In the index since 6 Oct 2026
Severity
Unscored
worst across findings
CVSS
—
base score, highest
EPSS
—
probability of exploitation
CISA KEV
Not listed
no confirmed exploitation
Charts affected
749
of 18,035 indexed, latest versions
Container images
632
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 749 of 18,035 indexed charts deploy, on 632 images.

Affected packageAffected versionsFixed inImages
expatdeb2.5.0-1, 2.5.0-1+deb12u1, 2.5.0-1+deb12u2, 2.5.0-1+deb12u3+6 moreno fix listed632
OSV records
DEBIAN-CVE-2026-77214
Trending
Rank 36 in indexed charts, since 6 Oct 2026. See the ranking →

Charts affected

749 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

632 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
collabora/code:24.04.13.2.101dc4ab83977
expat@2.5.0-1+deb12u1
no fix listed
1
collabora/code:23.05.10.1.105299b452f7f
expat@2.5.0-1
no fix listed
1
collabora/code:23.05.6.3.198c77406cbe0
expat@2.5.0-1
no fix listed
1
cortezaproject/corteza-server-corredor:2024.9.44ea78dfe5364
expat@2.5.0-1+deb12u1
no fix listed
1
cspconsole/config-provider:1.0.365524a26a6c23
expat@2.5.0-1+deb12u2
no fix listed
1
cspconsole/report-collector:1.0.15839750248193b
expat@2.5.0-1+deb12u2
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
expat@2.7.1-2
no fix listed
1
cznic/knot-resolver:v6.4.28a5b87ed1842
expat@2.8.3-1~deb13u1
no fix listed
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
expat@2.5.0-1
no fix listed
1
danialnabiyan1382/lsdisk:v2.0.8f96a7ebf1f42
expat@2.5.0-1+deb12u2
no fix listed
1
dannielkil/book-frontend:latest937993927694
expat@2.5.0-1
no fix listed
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
expat@2.5.0-1
no fix listed
1
ddosify/selfhosted_backend:3.2.93c11e3182652
expat@2.5.0-1
no fix listed
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
expat@2.5.0-1
no fix listed
1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
expat@2.5.0-1
no fix listed
1
deconzcommunity/deconz:2.29.2062de2362641
expat@2.5.0-1+deb12u1
no fix listed
1
deconzcommunity/deconz:2.26.123c86008d73f
expat@2.5.0-1
no fix listed
1
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
expat@2.7.1-2
no fix listed
1
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
expat@2.5.0-1+deb12u3
no fix listed
1
diygod/rsshub:2025-11-097a6312cac0d5
expat@2.5.0-1+deb12u2
no fix listed
1
diygod/rsshub:latestd5fd850a359a
expat@2.8.3-1~deb13u1
no fix listed
1
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
expat@2.7.1-2
no fix listed
1
dolibarr/dolibarr:24.0.069ec52e3b7ef
expat@2.5.0-1+deb12u2
no fix listed
1
dolibarr/dolibarr:22.0.47ad88fc9b13c
expat@2.5.0-1+deb12u2
no fix listed
1
domainmod/domainmod:4.23.04017bfe4c597
expat@2.5.0-1
no fix listed
1
dragonflyoss/client:v1.5.59fe2a1d6206f
expat@2.5.0-1+deb12u3
no fix listed
1
dragonflyoss/client:v0.1.82edf3e921f4e0
expat@2.5.0-1
no fix listed
1
drumsergio/genieacs:1.2.16.6ffbf8bd1340d
expat@2.5.0-1+deb12u2
no fix listed
1
dserio83/velero-api:0.3.16b3d9115fee2
expat@2.5.0-1+deb12u1
no fix listed
1
dserio83/velero-watchdog:0.1.8d5deae589229
expat@2.5.0-1+deb12u1
no fix listed
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
expat@2.7.1-2
no fix listed
1
egorz/netology-diploma-web-app:4.05627a54bd1ad
expat@2.5.0-1
no fix listed
1
electriccoinco/lightwalletd:v0.5.42ae3a551e111
expat@2.8.2-1~deb13u1
no fix listed
1
emqx/ecp-ui:2.5.1e33e9816f147
expat@2.5.0-1+deb12u1
no fix listed
1
escaping/core-keeper-dedicated:latest87fa79255962
expat@2.7.1-2
no fix listed
1
esphome/esphome:2026.7.44866347cb5b4
expat@2.7.1-2
no fix listed
1
esphome/esphome:2026.9.14ad55931c018
expat@2.7.1-2
no fix listed
1
esphome/esphome:2024.3.09ab8cc88b28c
expat@2.5.0-1
no fix listed
1
esphome/esphome:2024.12.2b2c6322700ac
expat@2.5.0-1+deb12u1
no fix listed
1
esphome/esphome:2025.3.0def8b6e4f517
expat@2.5.0-1+deb12u1
no fix listed
1
espocrm/espocrm:9.3.101b5a24504ed9
expat@2.7.1-2
no fix listed
1
ethpandaops/assertoor:latest1efa2fba6711
expat@2.7.1-2
no fix listed
1
falcosecurity/event-generator:latest932956d86c99
expat@2.5.0-1+deb12u2
no fix listed
1
felipecs8/app-db-connection-test:v129e06c9c6385
expat@2.5.0-1+deb12u1
no fix listed
1
filegator/filegator:latesta40a23c383c6
expat@2.8.3-1~deb13u1
no fix listed
1
firefart/requesttracker:5.0.40d6249906d8c
expat@2.5.0-1
no fix listed
1
fireflyiii/core:version-6.6.6ae69fdd95cde
expat@2.7.1-2
no fix listed
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
expat@2.5.0-1+deb12u1
no fix listed
1
fluent/fluent-bit:4.0-debuge76397ef3983
expat@2.5.0-1+deb12u2
no fix listed
1
folioci/mod-z3950:latest2493041ce880
expat@2.7.1-2
no fix listed
1

syft 1.42.1 · advisories as of 6 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.