StackRadar

CVE-2026-86138

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,053
of 17,781 indexed, latest versions
Container images
852
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,053 of 17,781 indexed charts deploy, on 852 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+56 more2.12.7+dfsg+really2.9.14-2.1+deb13u3+e1852
OSV records
DEBIAN-CVE-2026-86138UBUNTU-CVE-2026-86138ECHO-76d1-f392-809f
Trending
Rank 28 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,053 by stars
ChartLatestAffected imagesRadar Score
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
libxml2@2.9.10+dfsg-5
no fix listed

Open the chart page →

13,635
akeyless-api-gatewayakeyless-services-helmVerified publisher1.62.221 of 1See more

akeyless-api-gateway akeyless-services-helm 1.62.22

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
akeyless/base:latest759e4289fae8
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed

Open the chart page →

2,358
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,604
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.01 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

12,037
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
libxml2@2.9.4+dfsg1-6.1ubuntu1.6
no fix listed

Open the chart page →

12,046
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,880
anteonanteonVerified publisher2.6.41 of 13See more

anteon anteon 2.6.4

1 of the 13 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

22,202
apache-rangerapache-ranger0.1.01 of 2See more

apache-ranger apache-ranger 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
apache/ranger:2.7.076c176e8a0e4
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed

Open the chart page →

7,740
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed

Open the chart page →

77,706
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed

Open the chart page →

77,687
music-assistantbdclark-helm-chartsVerified publisher0.4.131 of 1See more

music-assistant bdclark-helm-charts 0.4.13

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/music-assistant/server:2.10.3885872224fa5
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,657
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

13,145
aramid-indexerbiatec-repoVerified publisher3.9.04 of 5See more

aramid-indexer biatec-repo 3.9.0

4 of the 5 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
scholtz2/aramid-algo-follow-node:v4.3.0-stable1ec63eca86b6
libxml2@2.9.14+dfsg-1.3ubuntu3.5
no fix listed
scholtz2/aramid-conduit:v1.9.0-stable3a3b3d3277d2
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed
scholtz2/aramid-indexer:v3.9.0-stable6770214bc881
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed

Open the chart page →

13,357
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

7,190
aramid-relaybiatec-repoVerified publisher4.4.11 of 1See more

aramid-relay biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
scholtz2/aramid-algo-node:v4.4.1-stable70263d8fab5b
libxml2@2.9.14+dfsg-1.3ubuntu3.6
no fix listed

Open the chart page →

5,059
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

7,190
self-hostbitwarden2.4.01 of 11See more

self-host bitwarden 2.4.0

1 of the 11 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed

Open the chart page →

5,190
pgcagriekinVerified publisher2.1.01 of 2See more

pg cagriekin 2.1.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,280
pgvectorcagriekinVerified publisher2.1.02 of 3See more

pgvector cagriekin 2.1.0

2 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
cagriekin/pg-ha:2.0.1-pg1899e17aa165df
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

4,004
carbone-eecarboneOfficialVerified publisher1.0.61 of 1See more

carbone-ee carbone 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
carbone/carbone-ee:full-5.11.0518172cbad49
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,619
cert-vaultcert-vaultOfficialVerified publisher2.12.02 of 7See more

cert-vault cert-vault 2.12.0

2 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
library/postgres:1767f41722b7a8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

15,863
squestchristianhuthVerified publisher6.6.71 of 4See more

squest christianhuth 6.6.7

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

9,971
typo3christianhuthVerified publisher7.7.01 of 2See more

typo3 christianhuth 7.7.0

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
martinhelmich/typo3:12.4c83a4f3fd7ae
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

8,466
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed

Open the chart page →

36,094
commonground-gatewaycommonground-gateway1.5.41 of 7See more

commonground-gateway commonground-gateway 1.5.4

1 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
libxml2@2.9.14+dfsg-1.2
no fix listed

Open the chart page →

9,724
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.11 of 1See more

cosmotech-copilot-api cosmotech-api 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/cosmo-tech/cosmotech-copilot-api:latesta2be95de450c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

11,205
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

13,761
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

5,398
datacube-explorerdatacube-charts0.5.321 of 1See more

datacube-explorer datacube-charts 0.5.32

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
opendatacube/explorer:latest120457ffcd69
libxml2@2.9.14+dfsg-1.3ubuntu3.5
no fix listed

Open the chart page →

4,854
dbrepodbrepo1.13.36 of 25See more

dbrepo dbrepo 1.13.3

6 of the 25 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

52,635
mealiedeimosfr-charts1.0.151 of 1See more

mealie deimosfr-charts 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,028
kubedashdevopstalesOfficialVerified publisher4.0.01 of 8See more

kubedash devopstales 4.0.0

1 of the 8 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:18.3a9abf4275f9e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

9,205
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed

Open the chart page →

8,823
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

10,858
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

18,376
craftycontrollerdrewburr-labs-helm-chartsVerified publisher0.3.01 of 1See more

craftycontroller drewburr-labs-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
registry.gitlab.com/crafty-controller/crafty-4:latest166a06f73d8c
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

3,671
nginx-phpfpmdrpsychickVerified publisher0.1.11 of 2See more

nginx-phpfpm drpsychick 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,967
rstudiodsri-helm-charts0.1.281 of 1See more

rstudio dsri-helm-charts 0.1.28

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
libxml2@2.9.14+dfsg-1.3ubuntu3.2
no fix listed

Open the chart page →

5,670
enbuildenbuildVerified publisher0.0.502 of 6See more

enbuild enbuild 0.0.50

2 of the 6 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-frontend:1.0.3166353ce9bf98
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/enbuild-mq-consumer:1.0.310e3cd8c7776d
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

31,510
roundcubeencircle360-ossVerified publisher0.8.31 of 1See more

roundcube encircle360-oss 0.8.3

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

5,584
iobrokereugen0.2.61 of 1See more

iobroker eugen 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

11,458
akauntingf3k-techVerified publisher1.3121.01 of 4See more

akaunting f3k-tech 1.3121.0

1 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:latestbbd4e17f1ef8
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

4,333
zabbix-server-mysqlfermosit3.0.22 of 4See more

zabbix-server-mysql fermosit 3.0.2

2 of the 4 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

12,840
ferriskeyferriskey0.7.21 of 3See more

ferriskey ferriskey 0.7.2

1 of the 3 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,262
rss-bridgegabe565Verified publisher0.5.21 of 1See more

rss-bridge gabe565 0.5.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/rss-bridge/rss-bridge:latest606896116558
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

2,186
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

17,377
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

35,305
homebridgegeek-cookbookVerified publisher5.3.21 of 1See more

homebridge geek-cookbook 5.3.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed

Open the chart page →

15,653
prowlarrgeek-cookbookVerified publisher4.5.21 of 1See more

prowlarr geek-cookbook 4.5.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed

Open the chart page →

11,558
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2026-86138.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed

Open the chart page →

13,025

Container images carrying it

852 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/postgresql:17.2.0-debian-12-r5cf63048c9209
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnamilegacy/postgresql:16.3.0-debian-12-r15fdc6979dbc53
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bitnami/mariadb:11.7.216a7dae804fb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
bloxstaking/ssv-node:v2.2.0bf6d7d2fdc93
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
boky/postfix:5.1.0aafc77238423
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
budibase/proxy:3.41.38d780b6ee602
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
camptocamp/mapserver:latestbf2e8e118c9b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
carbone/carbone-ee:full-5.11.0518172cbad49
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
carlosmz87/test_helm_backend:latest8ffa63aa995d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
castopod/castopod:1.12.101fd37280cbb2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
castopod/castopod:1.15.54e4f0440520f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
checkmk/check-mk-community:2.5.0p6c11b422210c4
libxml2@2.9.13+dfsg-1ubuntu0.11
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
libxml2@2.9.10+dfsg-5
no fix listed
1
cheyang/distributed-tf:1.6.046cc34755493
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed
1
chiefonboarding/chiefonboarding:v2.4.159bc7aa60fe7
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
chocobozzz/peertube:v8.1.5052712130691
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
chriseaton/adventureworks:latest54c3384ce701
libxml2@2.9.13+dfsg-1ubuntu0.6
no fix listed
1
ckulka/baikal:0.10.1-nginx434bdd162247
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
1
cloudtooling/moodle:5.2.3f4f04e0fc401
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
cloudve/janis-terminal:latestaf56e77ca587
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed
1
codedesignplus/ms-emails-grpc:lateste336012bc781
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
codedesignplus/ms-emails-rest:latestac84661c605e
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
coturn/coturn:4.10.0-r1f4c2af06c3c5
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
countly/countly-server:25.05.4e3c238248f99
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
cspconsole/csp-control-center:1.0.1046dda4a31bd6
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
cybrarist/discount-bandit:v4.0.4e9e2447ac666
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
dannielkil/book-frontend:latest937993927694
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
datamate/seafile-professional:11.0.202dd66b722464
libxml2@2.9.13+dfsg-1ubuntu0.8
no fix listed
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ddosify/selfhosted_backend:3.2.93c11e3182652
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
deconzcommunity/deconz:2.29.2062de2362641
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
defectdojo/defectdojo-django:3.3.1b140a89a34e2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
dokuwiki/dokuwiki:2025-05-14af08ecfdda239
libxml2@2.12.7+dfsg+really2.9.14-2.1
no fix listed
1
dolibarr/dolibarr:24.0.069ec52e3b7ef
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
dolibarr/dolibarr:22.0.47ad88fc9b13c
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
domainmod/domainmod:4.23.04017bfe4c597
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
dongjiang1989/lxcfs:v6.0.34bf9ae391948
libxml2@2.9.10+dfsg-5ubuntu0.20.04.10
no fix listed
1
dragonflyoss/client:v1.5.4a1b52779c4dd
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
dragonflyoss/client:v0.1.82edf3e921f4e0
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.