StackRadar

CVE-2026-86139

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,055
of 17,787 indexed, latest versions
Container images
855
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,055 of 17,787 indexed charts deploy, on 855 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+55 moreno fix listed855
OSV records
DEBIAN-CVE-2026-86139UBUNTU-CVE-2026-86139
Trending
Rank 33 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,055 by stars
ChartLatestAffected imagesRadar Score
codehubcodehubVerified publisher6.2.181 of 5See more

codehub codehub 6.2.18

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:latest42a8200d3597
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

13,286
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed

Open the chart page →

3,850
dev-code-servercosmoVerified publisher0.0.71 of 2See more

dev-code-server cosmo 0.0.7

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

14,587
mariadbcowboysysopVerified publisher20.4.21 of 1See more

mariadb cowboysysop 20.4.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,031
postgresqlcowboysysopVerified publisher15.5.71 of 1See more

postgresql cowboysysop 15.5.7

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

4,436
logstream-leadercriblio4.19.21 of 1See more

logstream-leader criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,269
logstream-workergroupcriblio4.19.21 of 1See more

logstream-workergroup criblio 4.19.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
cribl/cribl:4.19.2044f9a5fac9a
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,269
iam-zencryptexlabsVerified publisher0.12.231 of 4See more

iam-zen cryptexlabs 0.12.23

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

3,872
csghubcsghubVerified publisher2.4.35 of 34See more

csghub csghub 2.4.3

5 of the 34 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opencsghq/agenticflow:ee-v0.6-52f03fead54db
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
opencsghq/csgbot:v0.6.7-eeaf7191a9cf8a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/kubectl:latestb6d87e1048c2
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencsghq/label-studio:v2.4.0b4e849fcf94a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/postgres:15.1842578c9d3ebd
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

59,131
csgshipcsghubVerified publisher0.4.61 of 10See more

csgship csghub 0.4.6

1 of the 10 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opencsghq/postgres:15.19b98600564e07
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

11,402
dataflowcsghubVerified publisher2.5.02 of 7See more

dataflow csghub 2.5.0

2 of the 7 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opencsghq/label-studio:v2.5.047e22aa71870
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
opencsghq/postgres:15.19b98600564e07
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

6,532
cspconsolecspconsole1.3.111 of 5See more

cspconsole cspconsole 1.3.11

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
cspconsole/csp-control-center:1.0.1046dda4a31bd6
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

11,891
cypikcypik-app0.1.02 of 2See more

cypik cypik-app 0.1.0

2 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/nginx:1.25a484819eb602
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

7,527
view-cadvisorcypik-helm-chart0.1.01 of 1See more

view-cadvisor cypik-helm-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
jupyterhubd4nVerified publisher3.3.71 of 7See more

jupyterhub d4n 3.3.7

1 of the 7 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
aristidetm/basic-notebook:3.6.5469dbc951224
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,632
nifi-registryd4nVerified publisher1.0.01 of 2See more

nifi-registry d4n 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

5,438
nginx-chartdaeho12Verified publisher0.1.01 of 1See more

nginx-chart daeho12 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
damap-chartdamapVerified publisher0.3.03 of 5See more

damap-chart damap 0.3.0

3 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8f29984bd1e22
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/damap-org/damap-frontend:5.0.1609f48af4efc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

13,859
dara-chartsdara-charts0.1.01 of 2See more

dara-charts dara-charts 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,576
helm-chart-testdasmeta0.1.41 of 1See more

helm-chart-test dasmeta 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
redashdasmeta0.1.01 of 1See more

redash dasmeta 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
redash/redash:26.3.0c5c9148f5c38
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

4,914
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

27,749
datacube-dashboarddatacube-charts0.5.101 of 2See more

datacube-dashboard datacube-charts 0.5.10

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
datacube-datadatacube-charts0.2.61 of 1See more

datacube-data datacube-charts 0.2.6

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed

Open the chart page →

18,884
datacube-indexdatacube-charts0.4.41 of 2See more

datacube-index datacube-charts 0.4.4

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

6,177
datacube-owsdatacube-charts0.20.11 of 1See more

datacube-ows datacube-charts 0.20.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/ows:latest668cbb41473c
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed

Open the chart page →

6,028
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

22,425
datacube-wpsdatacube-charts0.9.01 of 1See more

datacube-wps datacube-charts 0.9.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/wps:latest80df355a660b
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed

Open the chart page →

6,226
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

24,356
db-connection-testdb-connection-testVerified publisher0.1.01 of 1See more

db-connection-test db-connection-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
felipecs8/app-db-connection-test:v129e06c9c6385
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

10,116
technitiumdeimosfr-charts15.4.01 of 1See more

technitium deimosfr-charts 15.4.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,225
my-helm-chartdemohelm20.1.01 of 1See more

my-helm-chart demohelm2 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
challengedeneme0.1.01 of 2See more

challenge deneme 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,699
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed

Open the chart page →

14,910
apachedevops0.1.01 of 4See more

apache devops 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed

Open the chart page →

30,150
laraveldevops0.10.31 of 4See more

laravel devops 0.10.3

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed

Open the chart page →

29,151
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,152
argocd-certificate-refreshdevtron0.10.81 of 1See more

argocd-certificate-refresh devtron 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
no fix listed

Open the chart page →

12,999
devtron-enterprisedevtron48.0.02 of 28See more

devtron-enterprise devtron 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

66,542
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,699
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,152
argocd-certificate-refreshdevtron-labs0.10.81 of 1See more

argocd-certificate-refresh devtron-labs 0.10.8

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
libxml2@2.9.13+dfsg-1ubuntu0.2
no fix listed

Open the chart page →

12,999
devtron-enterprisedevtron-labs48.0.02 of 28See more

devtron-enterprise devtron-labs 48.0.0

2 of the 28 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

66,542
devtron-operatordevtron-labs0.23.31 of 11See more

devtron-operator devtron-labs 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

31,447
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,699
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

4,053
difydify1.0.01 of 4See more

dify dify 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
langgenius/dify-plugin-daemon:main-localda995c129e2f
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

19,063
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

7,480
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

7,167

Container images carrying it

855 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
statcan/ckan:2.93921305425b8
libxml2@2.9.10+dfsg-5
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed
1
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
sysnet4admin/colosseum-cms:loge74b43c7f492
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
teknas09/bird-pod:latest12a1fa85c4aa
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed
1
theradius/loggia:0.463ba348546ec
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
thingsboard/tb-postgres:latest2d17e4e36edc
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
thongngo3301/stakefish:latesta341af5976e3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
libxml2@2.9.13+dfsg-1ubuntu0.2
no fix listed
1
timescale/timescaledb-ha:pg16d7db8f1085a3
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed
1
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
libxml2@2.9.13+dfsg-1ubuntu0.5
no fix listed
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed
1
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
tombursch/kitchenowl-backend:v0.7.8b48e4ab727cd
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
trueosiris/vrising:latest9356f98ad561
libxml2@2.9.13+dfsg-1ubuntu0.11
no fix listed
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.9
no fix listed
1
ubuntu/squid:5.2-22.04_beta723891b5bc74
libxml2@2.9.13+dfsg-1ubuntu0.10
no fix listed
1
unitycatalog/unitycatalog-ui:main-aadc6fc3a688197b218
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
vlebediantsev/notes-admin-front:latest007c6670ff48
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
vlebediantsev/notes-project-front:latest945675fd2636
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
wallarm/aih-scanner:2.7.11f1cb26db1f5b
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
no fix listed
1
wavefronthq/proxy:9.2d1064d28f6eb
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed
1
weblate/weblate:2026.9.1.0990720d1737a
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed
1
wger/server:2.6997ead43aabd
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
wiktorn/overpass-api:latest9bb5f4a9b54c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
xeladock/mysql_dns:latest4baf531453f1
libxml2@2.9.13+dfsg-1build1
no fix listed
1
xeladock/nginx2:latestc259a67b1dff
libxml2@2.9.13+dfsg-1build1
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
yetiplatform/yeti-frontend:latest709064278c7e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
yetiplatform/yeti-frontend:2.9.0873ef15d267b
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
zabbix/zabbix-server-pgsql:ubuntu-7.0.237e8c8e059533
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.