StackRadar

CVE-2026-86139

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,042
of 17,787 indexed, latest versions
Container images
841
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,042 of 17,787 indexed charts deploy, on 841 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+55 moreno fix listed841
OSV records
DEBIAN-CVE-2026-86139UBUNTU-CVE-2026-86139
Trending
Rank 32 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,042 by stars
ChartLatestAffected imagesRadar Score
ckanhelmforgeVerified publisher1.3.81 of 6See more

ckan helmforge 1.3.8

1 of the 6 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

9,920
countlyhelmforgeVerified publisher1.2.61 of 3See more

countly helmforge 1.2.6

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
countly/countly-server:25.05.4e3c238248f99
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed

Open the chart page →

18,813
dawarichhelmforgeVerified publisher1.0.01 of 4See more

dawarich helmforge 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
postgis/postgis:18-3.67e00e8c3539f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,742
discount-bandithelmforgeVerified publisher2.0.81 of 3See more

discount-bandit helmforge 2.0.8

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
cybrarist/discount-bandit:v4.0.4e9e2447ac666
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

29,817
druidhelmforgeVerified publisher1.3.61 of 4See more

druid helmforge 1.3.6

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

8,541
drupalhelmforgeVerified publisher1.2.131 of 2See more

drupal helmforge 1.2.13

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/drupal:11.4.6-php8.5-apache-bookworm28f7931ecbcb
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

3,802
entehelmforgeVerified publisher1.0.22 of 4See more

ente helmforge 1.0.2

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/ente/web:5ab0c5b4c7a89c4e470ef6f793600da33cebf35d3f4864eb7f11
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,201
generichelmforgeVerified publisher3.1.51 of 1See more

generic helmforge 3.1.5

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:1.31.505b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
hoppscotchhelmforgeVerified publisher1.1.111 of 2See more

hoppscotch helmforge 1.1.11

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,046
immichhelmforgeVerified publisher1.2.83 of 5See more

immich helmforge 1.2.8

3 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed

Open the chart page →

11,042
jupyterhubhelmforgeVerified publisher1.0.61 of 3See more

jupyterhub helmforge 1.0.6

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

5,341
listmonkhelmforgeVerified publisher1.1.141 of 3See more

listmonk helmforge 1.1.14

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,839
medikeephelmforgeVerified publisher2.0.02 of 3See more

medikeep helmforge 2.0.0

2 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
ghcr.io/afairgiant/medikeep:v0.69.0766699daa9ac
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

6,022
metabasehelmforgeVerified publisher1.2.281 of 3See more

metabase helmforge 1.2.28

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,793
middlewarehelmforgeVerified publisher1.2.62 of 4See more

middleware helmforge 1.2.6

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
middlewareeng/middleware:0.3.1747d880812f1
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,653
minecrafthelmforgeVerified publisher1.5.31 of 1See more

minecraft helmforge 1.5.3

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
itzg/minecraft-server:2026.9.04e29d14082d9
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

4,639
moodlehelmforgeVerified publisher1.1.02 of 2See more

moodle helmforge 1.1.0

2 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

6,103
netboxhelmforgeVerified publisher2.0.12 of 4See more

netbox helmforge 2.0.1

2 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
netboxcommunity/netbox:v4.6.10-5.0.291b823a05cb5
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed

Open the chart page →

4,243
nextcloudhelmforgeVerified publisher1.0.01See more

nextcloud helmforge 1.0.0

1 container image this version deploys carries CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

opencuthelmforgeVerified publisher1.1.91 of 5See more

opencut helmforge 1.1.9

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,726
phpmyadminhelmforgeVerified publisher2.0.11 of 1See more

phpmyadmin helmforge 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
phpmyadmin/phpmyadmin:5.2.342a200db07b4
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed

Open the chart page →

4,751
reactive-resumehelmforgeVerified publisher1.0.01 of 4See more

reactive-resume helmforge 1.0.0

1 of the 4 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,025
ryothelmforgeVerified publisher1.0.01 of 2See more

ryot helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

6,012
strapihelmforgeVerified publisher2.3.141 of 3See more

strapi helmforge 2.3.14

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,061
supersethelmforgeVerified publisher1.3.61 of 5See more

superset helmforge 1.3.6

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,714
text-embeddings-inferencehelmforgeVerified publisher1.0.01 of 2See more

text-embeddings-inference helmforge 1.0.0

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

2,541
twentyhelmforgeVerified publisher1.0.01 of 5See more

twenty helmforge 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,818
uptime-kumahelmforgeVerified publisher1.5.121 of 1See more

uptime-kuma helmforge 1.5.12

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.5.33e24e96c89ef
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

30,099
wallabaghelmforgeVerified publisher1.3.61 of 3See more

wallabag helmforge 1.3.6

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,762
myapphelmingapp0.1.01 of 1See more

myapp helmingapp 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
muhammedgamal/fp23:latest74b4cd69b6fa
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

12,607
jellyfinhelm-l3st86Verified publisher0.1.81 of 1See more

jellyfin helm-l3st86 0.1.8

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
jellyfin/jellyfin:latestaefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,604
openaevhelm-openbasVerified publisher2.0.52 of 7See more

openaev helm-openbas 2.0.5

2 of the 7 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
openaev/platform:3.260904.00a12ce8b3db9
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

7,437
openbashelm-openbasVerified publisher1.8.141 of 7See more

openbas helm-openbas 1.8.14

1 of the 7 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

25,017
svacerhelm-svacer0.6.01 of 1See more

svacer helm-svacer 0.6.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ispras/svacer:11-2-042aa9fa9f189
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed

Open the chart page →

6,015
my-nginxhelmtaiwo0.1.01 of 1See more

my-nginx helmtaiwo 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
samplehelmapphelmtraining3.0.01 of 1See more

samplehelmapp helmtraining 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
praravind1801/helmimages:3.0.0f29d637b9ce1
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,973
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

14,290
paperlesshomelabcihelmchartstestVerified publisher9.1.91 of 1See more

paperless homelabcihelmchartstest 9.1.9

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

16,384
paperlesshpVerified publisher0.1.12 of 5See more

paperless hp 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.3467097317623a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

26,612
hydrahydraVerified publisher0.9.51 of 2See more

hydra hydra 0.9.5

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

9,011
isolated-vmhydraVerified publisher0.9.41 of 1See more

isolated-vm hydra 0.9.4

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

7,733
nginx-charthyomin-nginx0.1.01 of 1See more

nginx-chart hyomin-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
hyperglance-helmhyperglance-helmVerified publisher10.0.51 of 6See more

hyperglance-helm hyperglance-helm 10.0.5

1 of the 6 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
hyperglance/postgresql-v2:10.0.5eb4d383894b8
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed

Open the chart page →

10,967
nginx-charthyun-nginx0.1.01 of 1See more

nginx-chart hyun-nginx 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,827
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
no fix listed

Open the chart page →

12,611
ibm-swift-sampleibm-charts1.1.21 of 1See more

ibm-swift-sample ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ibmcom/icp-swift-sample:latestb5d8c6714dbc
libxml2@2.9.3+dfsg1-1ubuntu0.5
no fix listed

Open the chart page →

25,160
ibm-ucv-prodibm-helm5.2.61 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

1 of the 16 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
bitnamilegacy/nginx:1.27.1934d1acd5ca8
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

12,105
browserlessicoretechVerified publisher0.16.61 of 1See more

browserless icoretech 0.16.6

1 of the 1 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,948
metamcpicoretechVerified publisher0.3.101 of 2See more

metamcp icoretech 0.3.10

1 of the 2 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
library/postgres:16f1c3376c26f2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,626
multicaicoretechVerified publisher0.4.421 of 5See more

multica icoretech 0.4.42

1 of the 5 container images this version deploys carry CVE-2026-86139.

Container imageDigestPackageFixed in
pgvector/pgvector:pg17cf134a767f47
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

2,722

Container images carrying it

841 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
polyaxon/polyaxon-agent:2.16.4eca6952b20e6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
2
polyaxon/polyaxon-cli:2.16.4024ff3fa775e
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
2
qichenxu4pd/pythonexample:1.0f3a8502bc21b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
redis/redis-stack:7.2.0-v91c5f43fddcdd
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
2
technitium/dns-server:15.4.0df7d90ef0f7b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
vdiogov/glpi-conteiner:latest6945f84f0058
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
wurstmeister/zookeeper:latest7a7fd44a7210
libxml2@2.9.1+dfsg1-3ubuntu4.3
no fix listed
2
ghcr.io/browserless/chromium:v2.56.7b1ba7b054af2
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
libxml2@2.9.14+dfsg-0+ubuntu22.04.1+deb.sury.org+1
no fix listed
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
2
ghcr.io/dgtlmoon/changedetection.io:0.60.3:latestecacd9fd0c66
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.4.67962759d99d7
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
2
ghcr.io/flaresolverr/flaresolverr:v3.5.2c80ae007ce2c
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
2
ghcr.io/immich-app/postgres:14-vectorchord0.4.3-pgvectors0.2.0bcf63357191b
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
2
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
2
ghcr.io/mumble-voip/mumble-server:v1.6.87002fd613b6a35
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
2
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss:unprivileged-oss-202503313db8145349a3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
2
ghcr.io/smarter-project/hydra/isolated-vm:main4457b79b24cd
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed
2
1dev/server:11.9.0cd5b12fe5471
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
5200710/hadoop:3.2.3-java8092d3088a5fb
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed
1
a10networks/acos-prometheus-exporter:latest8dc58d434d71
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
no fix listed
1
aapjeisbaas/wp-frankenphp:v0.2.26b261abc7fb0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
libxml2@2.9.10+dfsg-5
no fix listed
1
airbyte/pod-sweeper:1.5.198d2c39d512e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
akaunting/akaunting:3.0.1552811b36ec3a
libxml2@2.9.14+dfsg-1.2
no fix listed
1
akeyless/base:latest759e4289fae8
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
akeyless/gateway:5.3.13d2e7dce5eb9
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
libxml2@2.9.4+dfsg1-6.1ubuntu1.6
no fix listed
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
libxml2@2.9.13+dfsg-1ubuntu0.7
no fix listed
1
anguda/ant-media:2.5c435285fc241
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
no fix listed
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
apache/hertzbeat:1.8.075d48a62748f
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.