StackRadar

CVE-2026-86138

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,053
of 17,781 indexed, latest versions
Container images
852
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,053 of 17,781 indexed charts deploy, on 852 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+56 more2.12.7+dfsg+really2.9.14-2.1+deb13u3+e1852
OSV records
DEBIAN-CVE-2026-86138UBUNTU-CVE-2026-86138ECHO-76d1-f392-809f
Trending
Rank 28 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,053 by stars
ChartLatestAffected imagesRadar Score
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed

Open the chart page →

3,773
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

14,559
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,009
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

4,770
logstream-leadercriblio4.19.21 of 1See more

logstream-leader criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,230
logstream-workergroupcriblio4.19.21 of 1See more

logstream-workergroup criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,230
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

3,860
csghubcsghubVerified publisher2.4.35 of 34See more

csghub csghub 2.4.3

5 of the 34 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opencsghq/agenticflow:ee-v0.6-52f03fead54db
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/postgres:15.1842578c9d3ebd
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

58,897
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opencsghq/postgres:15.19b98600564e07
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

11,335
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/postgres:15.19b98600564e07
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

6,632
cspconsolecspconsole1.3.111 of 5See more

cspconsole cspconsole 1.3.11

1 of the 5 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
cspconsole/csp-control-center:1.0.1046dda4a31bd6
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

12,274
cypikcypik-app0.1.02 of 2See more

cypik cypik-app 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/nginx:1.25a484819eb602
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

7,503
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,604
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

5,398
nginx-chartdaeho12Verified publisher0.1.01 of 1See more

nginx-chart daeho12 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
damap-chartdamapVerified publisher0.3.03 of 5See more

damap-chart damap 0.3.0

3 of the 5 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8f29984bd1e22
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

13,936
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,547
helm-chart-testdasmeta0.1.41 of 1See more

helm-chart-test dasmeta 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

5,062
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

27,728
datacube-dashboarddatacube-charts0.5.101 of 2See more

datacube-dashboard datacube-charts 0.5.10

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,626
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed

Open the chart page →

18,863
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

6,123
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

5,974
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

22,405
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed

Open the chart page →

6,172
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

24,335
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

10,090
technitiumdeimosfr-charts15.4.01 of 1See more

technitium deimosfr-charts 15.4.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,187
my-helm-chartdemohelm20.1.01 of 1See more

my-helm-chart demohelm2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
challengedeneme0.1.01 of 2See more

challenge deneme 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,675
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed

Open the chart page →

14,856
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed

Open the chart page →

30,031
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed

Open the chart page →

29,033
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,607
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
no fix listed

Open the chart page →

12,949
devtron-enterprisedevtron48.0.02 of 28See more

devtron-enterprise devtron 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

68,240
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,891
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,607
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
no fix listed

Open the chart page →

12,949
devtron-enterprisedevtron-labs48.0.02 of 28See more

devtron-enterprise devtron-labs 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

68,240
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

32,902
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,891
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

4,046
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:main-localda995c129e2f
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

19,224
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

7,459
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

7,141
ownclouddjjudas21Verified publisher0.3.232 of 3See more

owncloud djjudas21 0.3.23

2 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
owncloud/server:10.16.3b3f9efdcd7f7
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed

Open the chart page →

10,035
photoprismdjjudas21Verified publisher99.99.991 of 1See more

photoprism djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
photoprism/photoprism:240711-cefc6fd632ca74
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

16,954

Container images carrying it

852 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
pgvector/pgvector:0.8.6-pg16-bookworm:pg16ccc6e83d6e35
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
2
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
2
technitium/dns-server:15.4.0df7d90ef0f7b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
vdiogov/glpi-conteiner:latest6945f84f0058
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
wurstmeister/zookeeper:latest7a7fd44a7210
libxml2@2.9.1+dfsg1-3ubuntu4.3
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.47bb6963b730d
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
ghcr.io/openunison/openunison-kubernetes-operator:1.0.11f4feb3323a29
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
adamzammit/limesurvey:7.0.15e75e2f455c8d
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
libxml2@2.9.10+dfsg-5
no fix listed
1
airbyte/pod-sweeper:1.5.198d2c39d512e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
akaunting/akaunting:3.0.1552811b36ec3a
libxml2@2.9.14+dfsg-1.2
no fix listed
1
akeyless/base:latest759e4289fae8
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
akeyless/gateway:5.3.13d2e7dce5eb9
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
libxml2@2.9.4+dfsg1-6.1ubuntu1.6
no fix listed
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed
1
anguda/ant-media:2.5c435285fc241
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
no fix listed
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.