StackRadar

CVE-2026-86140

High

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.0
base score, highest
EPSS
0.001
3rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,056
of 17,790 indexed, latest versions
Container images
858
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,056 of 17,790 indexed charts deploy, on 858 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+56 more2.12.7+dfsg+really2.9.14-2.1+deb13u3+e1858
OSV records
DEBIAN-CVE-2026-86140UBUNTU-CVE-2026-86140ECHO-a8a9-016d-71e9
Trending
Rank 29 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,056 by stars
ChartLatestAffected imagesRadar Score
redis-vector-dbtest-opea1.0.01 of 1See more

redis-vector-db test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
redis/redis-stack:7.2.0-v91c5f43fddcdd
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

5,655
reranking-usvctest-opea1.0.01 of 1See more

reranking-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
opea/reranking-tei:1.0e48613afb191
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,002
retriever-usvctest-opea1.0.01 of 1See more

retriever-usvc test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
opea/retriever-redis:1.0eb746b263705
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,215
speecht5test-opea1.0.01 of 1See more

speecht5 test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
opea/speecht5:1.0249afad3d268
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

9,668
web-retrievertest-opea1.0.01 of 1See more

web-retriever test-opea 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
opea/web-retriever-chroma:1.0fe08165d7770
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,368
jellyfinth-chartsVerified publisher0.1.01 of 1See more

jellyfin th-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.10.77ae36aab93ef
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

3,980
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

10,159
owncloudth-chartsVerified publisher0.2.11 of 1See more

owncloud th-charts 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
owncloud/server:10.15.051d9b74fc2a8
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed

Open the chart page →

10,071
the0the0Verified publisher0.9.81 of 9See more

the0 the0 0.9.8

1 of the 9 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/alexanderwanyoike/the0/runtime:1.14.7459010a02aff
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

7,360
thingsboardthingsboardVerified publisher0.1.31 of 12See more

thingsboard thingsboard 0.1.3

1 of the 12 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

25,423
voyagertibuntu1.2.01 of 1See more

voyager tibuntu 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/aeharding/voyager:latest779759172676
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
joplintobiassackmann0.1.71 of 2See more

joplin tobiassackmann 0.1.7

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

5,574
todoapitodoapi-appVerified publisher0.1.01 of 2See more

todoapi todoapi-app 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
libxml2@2.9.4+dfsg1-6.1ubuntu1.9
no fix listed

Open the chart page →

6,828
test0tohlejezkouska0.1.01 of 2See more

test0 tohlejezkouska 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,318
apptreenityVerified publisher0.1.531 of 2See more

app treenity 0.1.53

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:1767f41722b7a8
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,817
treenitytreenityVerified publisher0.1.31 of 4See more

treenity treenity 0.1.3

1 of the 4 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:14156f0b253fd6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,365
openunison-operatortremolo3.0.311 of 1See more

openunison-operator tremolo 3.0.31

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

969
orchestratremolo3.1.562 of 5See more

orchestra tremolo 3.1.56

2 of the 5 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
ghcr.io/openunison/openunison-kubernetes-operator:1.0.1392bd6c526c50
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

2,874
orchestra-login-portaltremolo2.3.981 of 1See more

orchestra-login-portal tremolo 2.3.98

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
libxml2@2.9.13+dfsg-1ubuntu0.9
no fix listed

Open the chart page →

3,004
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

17,396
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.301249fc292e84
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

8,642
applicationuniversal-helm-chartVerified publisher0.4.31 of 1See more

application universal-helm-chart 0.4.3

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
opencloudunxwaresVerified publisher0.2.37 of 13See more

opencloud unxwares 0.2.3

7 of the 13 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
opencloudeu/web-extensions:unzip-1.0.01691ad6612a3
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencloudeu/web-extensions:draw-io-1.0.027cb9b952f0d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencloudeu/web-extensions:external-sites-1.0.05b176baa3694
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencloudeu/web-extensions:importer-1.0.06e8b2df6c5a4
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencloudeu/web-extensions:progress-bars-1.0.082f888a34440
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
opencloudeu/web-extensions:json-viewer-1.0.0e0ac35a9576e
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

45,472
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed

Open the chart page →

15,340
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

14,431
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

9,424
maybe-financevicsuferVerified publisher0.2.71 of 3See more

maybe-finance vicsufer 0.2.7

1 of the 3 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

10,813
browserlessvictorlane0.2.01 of 1See more

browserless victorlane 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.43.0853e6f105b51
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed

Open the chart page →

4,364
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

13,575
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
libxml2@2.9.14+dfsg-1.3ubuntu3.4
no fix listed

Open the chart page →

7,679
argus-test-envvk-helm-charts2.0.01 of 1See more

argus-test-env vk-helm-charts 2.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,849
postgresappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,649
voteappvoting-app-helm-charts-repoVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

8,309
postgresappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

postgresapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,649
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:latest4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

8,309
aih-scannerwallarmVerified publisher2.7.111 of 2See more

aih-scanner wallarm 2.7.11

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,013
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libxml2@2.9.10+dfsg-5ubuntu0.20.04.5
no fix listed

Open the chart page →

11,448
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed

Open the chart page →

9,252
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed

Open the chart page →

9,252
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
libxml2@2.9.14+dfsg-1.2
no fix listed

Open the chart page →

10,111
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

14,414
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

28,697
apisixwenerme2.17.01 of 3See more

apisix wenerme 2.17.0

1 of the 3 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
apache/apisix:3.18.0-ubuntu9ee5df1611f9
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

3,118
giteawenerme12.7.02 of 4See more

gitea wenerme 12.7.0

2 of the 4 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
bitnamilegacy/pgpool:4.6.3-debian-12-r0d3bf3910f148
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
bitnamilegacy/postgresql-repmgr:17.6.0-debian-12-r2f12387ec882b
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

8,874
juicefs-csi-driverwenerme0.32.51 of 5See more

juicefs-csi-driver wenerme 0.32.5

1 of the 5 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
juicedata/juicefs-csi-driver:v0.32.595008ba63318
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

9,183
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

15,288
wikiwikijs3.0.01 of 2See more

wiki wikijs 3.0.0

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/postgres:184ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,483
keycloakwiremindVerified publisher25.3.11 of 2See more

keycloak wiremind 25.3.1

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

7,664
Wordpresswordpress-mariadb1.0.21 of 2See more

Wordpress wordpress-mariadb 1.0.2

1 of the 2 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,676
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-86140.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

14,173

Container images carrying it

858 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/goauthentik/server:2026.8.2ff8489a5af4f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
libxml2@2.9.14+dfsg-1.3~deb12u4
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed
1
ghcr.io/itzg/minecraft-server:latest46919d151d39
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed
1
ghcr.io/jespernohr/dayz-dedicated-server:0.1.1ec01d3ac7887
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
1
ghcr.io/jfwenisch/steamcmd-manager:v0.4.5dab685e668d9
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
1
ghcr.io/jfwenisch/webtools:v0.1.44569cae83c70
libxml2@2.9.14+dfsg-1.3ubuntu3
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libxml2@2.9.13+dfsg-1ubuntu0.1
no fix listed
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
libxml2@2.9.10+dfsg-5ubuntu0.20.04.3
no fix listed
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.10
no fix listed
1
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
libxml2@2.9.4+dfsg1-6.1ubuntu1.8
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
libxml2@2.9.10+dfsg-5ubuntu0.20.04.9
no fix listed
1
ghcr.io/kubelauncher/postgresql1a27e11e5925
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.