StackRadar

CVE-2026-86139

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,055
of 17,787 indexed, latest versions
Container images
855
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,055 of 17,787 indexed charts deploy, on 855 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+55 moreno fix listed855
OSV records
DEBIAN-CVE-2026-86139UBUNTU-CVE-2026-86139
Trending
Rank 33 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,055 by stars
ChartLatestAffected imagesRadar Score
ladeitladeit0.4.01 of 2See more

ladeit ladeit 0.4.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
kubeoperator/webkubectl:v2.4.0be8f0d624640
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed

Open the chart page →

26,371
homebridgelbenicio-communityVerified publisher0.1.151 of 1See more

homebridge lbenicio-community 0.1.15

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
homebridge/homebridge:latest77c685a40911
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

2,203
uptime-kumalbenicio-communityVerified publisher0.1.11 of 1See more

uptime-kuma lbenicio-community 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

32,893
linkdinglinkding0.2.31 of 1See more

linkding linkding 0.2.3

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.41.0-plusa222fb777e1f
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

37,518
weblinzhengen0.1.71 of 1See more

web linzhengen 0.1.7

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
listmonklistmonk-chartVerified publisher2.0.11 of 2See more

listmonk listmonk-chart 2.0.1

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:159b1d34adbce1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,080
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

10,773
web-chartljw-ktcloudlab0.1.01 of 1See more

web-chart ljw-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
jellyfinlmatfyVerified publisher0.1.31 of 1See more

jellyfin lmatfy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11aefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,615
uptime-kumaloeken-at-homeVerified publisher2.3.21 of 1See more

uptime-kuma loeken-at-home 2.3.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.3.29aeb4e51d038
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

32,893
loxilbloxilbVerified publisher0.1.01 of 2See more

loxilb loxilb 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed

Open the chart page →

4,502
elastictranscoderluiscajl0.46.02 of 4See more

elastictranscoder luiscajl 0.46.0

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
no fix listed
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
no fix listed

Open the chart page →

58,225
flaresolverrluiscajl0.0.31 of 1See more

flaresolverr luiscajl 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:latest139dfee1c6f8
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

27,282
jellyfinm0nsterrr-jellyfinVerified publisher2.3.51 of 1See more

jellyfin m0nsterrr-jellyfin 2.3.5

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,615
demoshopmakaira2.4.02 of 4See more

demoshop makaira 2.4.0

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
library/php:8.4-fpm59fa733c9af6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,410
nginxmatic-insurance1.1.11 of 1See more

nginx matic-insurance 1.1.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
mauticmautic-chartVerified publisher1.0.22 of 3See more

mautic mautic-chart 1.0.2

2 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
mautic/mautic:7-apacheeb8cc73d97e1
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

8,351
backstagemcwarmanVerified publisher0.10.101 of 2See more

backstage mcwarman 0.10.10

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

9,707
flaresolverrmedia-servarrVerified publisher0.18.11 of 1See more

flaresolverr media-servarr 0.18.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

5,747
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

7,760
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed

Open the chart page →

18,712
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed

Open the chart page →

18,712
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
ciscolabs/rtsp-server:latestb59fc10bb821
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed

Open the chart page →

18,712
memgptmemgptVerified publisher0.3.191 of 2See more

memgpt memgpt 0.3.19

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ankane/pgvector:v0.5.1d3a9d8ac27bb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,872
testmesosphere0.1.01 of 1See more

test mesosphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
localpathprovisionermesosphere-stable0.1.21 of 1See more

localpathprovisioner mesosphere-stable 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed

Open the chart page →

17,966
postgresmicroboxlabs0.3.01 of 1See more

postgres microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:16.6557fea37a744
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,699
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,141
song-servicemicroservices-learningVerified publisher1.2.01 of 2See more

song-service microservices-learning 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,612
teimilvus-helm1.6.01 of 1See more

tei milvus-helm 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,063
mini-blogmini-blog-helm0.1.02 of 3See more

mini-blog mini-blog-helm 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
library/postgres:159b1d34adbce1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

12,637
MINTmint8.0.22 of 15See more

MINT mint 8.0.2

2 of the 15 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

42,983
simplewebappmlohrVerified publisher1.1.01 of 1See more

simplewebapp mlohr 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,839
moodlemoodle1.0.31 of 2See more

moodle moodle 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
cloudtooling/moodle:5.2.3f4f04e0fc401
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

3,717
camera-viewermoreillonVerified publisher0.2.11 of 4See more

camera-viewer moreillon 0.2.1

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
moreillon/camera-viewer:lateste418cc694bd5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

11,694
group-managermoreillonVerified publisher0.4.41 of 3See more

group-manager moreillon 0.4.4

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
moreillon/group-manager-front:v3.3.1c9f85db3baa5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,886
user-manager-mongodbmoreillonVerified publisher0.6.22 of 4See more

user-manager-mongodb moreillon 0.6.2

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
moreillon/user-manager-front:v5.0.3b067dbbbb6af
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

23,263
user-manager-neo4jmoreillonVerified publisher0.9.73 of 6See more

user-manager-neo4j moreillon 0.9.7

3 of the 6 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
moreillon/group-manager-front:v3.3.1c9f85db3baa5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
moreillon/user-manager:v5.0.2e1c9bfab5c16
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
moreillon/user-manager-front:v5.1.06597e6b98d21
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

30,195
genericmorremeyer8.0.01 of 1See more

generic morremeyer 8.0.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:1.25.167f9a4f10d14
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,602
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

25,989
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

15,731
codimdmt1905027.2.21 of 3See more

codimd mt190502 7.2.2

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
commafeedmt1905028.2.01 of 3See more

commafeed mt190502 8.2.0

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,697
filestashmt1905024.0.01 of 1See more

filestash mt190502 4.0.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
machines/filestash:latest0b8fc005e52e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,377
keycloakmt1905021.4.61 of 3See more

keycloak mt190502 1.4.6

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,913
memosmt1905027.3.21 of 3See more

memos mt190502 7.3.2

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,455
minifluxmt1905021.1.61 of 3See more

miniflux mt190502 1.1.6

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,681
open-webuimt1905022.3.101 of 3See more

open-webui mt190502 2.3.10

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
paperless-ngxmt1905027.6.142 of 4See more

paperless-ngx mt190502 7.6.14

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

11,860
umamimt1905028.1.41 of 3See more

umami mt190502 8.1.4

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,030

Container images carrying it

855 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/libretime/icecast:latest3c98b92e9535
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
libxml2@2.9.4+dfsg1-6.1ubuntu1.4
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/linuxserver/duplicati:latesta792931146b4
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/lloesche/valheim-server:latest20fde516ce31
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
libxml2@2.9.14+dfsg-1.3ubuntu3.2
no fix listed
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/app:mainfae3c1f04311
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.24.00b08ac3a9f0a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/mealie-recipes/mealie:v3.25.16066c29eca95
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
1
ghcr.io/monicahq/monica-next:main8be69156acbb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/music-assistant/server:2.10.3885872224fa5
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/netbox-community/netbox:v4.7.01685e91c61bb
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed
1
ghcr.io/observal/observal-api:1.13.1153b8b893232
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
libxml2@2.9.13+dfsg-1ubuntu0.9
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/pschichtel/s3-backup:0.7.017666811f6a7
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/qubiva/qubiva:v0.3.2cdf1e3329bfe
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/retyc/retyc-k8s-csi:v0.2.01521d4baeb85
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/samr037/node-debug-dashboard:0.3.0c79b2e64a211
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/sdr-enthusiasts/docker-flightradar24:latest917e53402d51
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.