StackRadar

CVE-2026-86143

Medium

Advisory

Published 5 Sept 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.9
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,056
of 17,787 indexed, latest versions
Container images
856
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1,056 of 17,787 indexed charts deploy, on 856 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+56 more2.12.7+dfsg+really2.9.14-2.1+deb13u3+e1856
OSV records
DEBIAN-CVE-2026-86143UBUNTU-CVE-2026-86143ECHO-93fa-ac30-f68b
Trending
Rank 31 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

1,056 by stars
ChartLatestAffected imagesRadar Score
hedgedocadfinisVerified publisher0.6.11 of 2See more

hedgedoc adfinis 0.6.1

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:18.48ff36f3c6637
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,951
jellyfinbeluga-cloudVerified publisher2.3.01 of 1See more

jellyfin beluga-cloud 2.3.0

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/beluga-cloud/jellyfin/jellyfin:10.8.1368f52b993a7f
libxml2@2.9.13+dfsg-1ubuntu0.3
no fix listed

Open the chart page →

4,281
devtron-operatordevtron0.23.31 of 11See more

devtron-operator devtron 0.23.3

1 of the 11 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
quay.io/devtron/postgres:14.91b594392f7cb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

31,447
guacamoledmunozv04Verified publisher0.3.41 of 2See more

guacamole dmunozv04 0.3.4

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
guacamole/guacamole:1.6.0f344085e618b
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed

Open the chart page →

3,645
hdfsgaffer2.2.11 of 2See more

hdfs gaffer 2.2.1

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
gchq/hdfs:3.3.35ec58edbb2db
libxml2@2.9.14+dfsg-1.3ubuntu3.1
no fix listed

Open the chart page →

5,396
nextcloudgroundhog2k0.22.51 of 3See more

nextcloud groundhog2k 0.22.5

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/nextcloud:34.0.3:34.0.3-apacheb97df9e0e1ee
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,538
ilumilumOfficialVerified publisher6.7.31 of 19See more

ilum ilum 6.7.3

1 of the 19 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16233f361c5819
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

23,289
lakekeeperlakekeeperVerified publisher0.12.01 of 2See more

lakekeeper lakekeeper 0.12.0

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,935
monicamonicaOfficialVerified publisher1.0.151 of 1See more

monica monica 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/monicahq/monica-next:main8be69156acbb
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u1
no fix listed

Open the chart page →

5,665
nautobotnautobotOfficialVerified publisher3.1.21 of 1See more

nautobot nautobot 3.1.2

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
networktocode/nautobot:3.0-py3.13ed484336b1ad
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

4,344
syftopenmined0.9.51 of 6See more

syft openmined 0.9.5

1 of the 6 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:16.109f23e02d766
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

17,306
paperless-ngxpaperless-ngxVerified publisher0.3.222 of 3See more

paperless-ngx paperless-ngx 0.3.22

2 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

8,510
puppetserverpuppetserver9.5.21 of 5See more

puppetserver puppetserver 9.5.2

1 of the 5 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed

Open the chart page →

14,276
zabbix-serveraekondratievVerified publisher1.0.62 of 4See more

zabbix-server aekondratiev 1.0.6

2 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
libxml2@2.9.10+dfsg-5ubuntu0.20.04.1
no fix listed

Open the chart page →

30,811
phpmyadminalekcVerified publisher0.3.11 of 1See more

phpmyadmin alekc 0.3.1

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apache3a8a8d6b5289
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,613
wazuh-agentavistoVerified publisher4.12.21 of 1See more

wazuh-agent avisto 4.12.2

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/avistotelecom/docker-wazuh-agent:4.12.08766ba08bf1a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

6,484
hadoopbigdata-chartsVerified publisher1.0.11 of 2See more

hadoop bigdata-charts 1.0.1

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
5200710/hadoop:3.2.3-java8092d3088a5fb
libxml2@2.9.10+dfsg-5ubuntu0.20.04.6
no fix listed

Open the chart page →

12,163
convoyconvoyVerified publisher3.7.131 of 3See more

convoy convoy 3.7.13

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

5,915
cortexcortex3.3.81 of 4See more

cortex cortex 3.3.8

1 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/nginx:1.3105b8cb60c354
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,921
docmosthelmforgeVerified publisher1.2.111 of 4See more

docmost helmforge 1.2.11

1 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

5,602
wordpresshelmforgeVerified publisher3.0.61 of 3See more

wordpress helmforge 3.0.6

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/wordpress:7.1.0-apache5a93c470ae82
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

4,179
coturnjaconiVerified publisher1.0.51 of 1See more

coturn jaconi 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
coturn/coturn:4.10.0-r1f4c2af06c3c5
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,913
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,232
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

1,225
passboltpassbolt2.1.12 of 6See more

passbolt passbolt 2.1.1

2 of the 6 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

13,455
selenium-gridselenium-grid0.59.12 of 4See more

selenium-grid selenium-grid 0.59.1

2 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
selenium/node-chrome:4.48.0-202609055ac71fd8dd1e
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
selenium/node-firefox:4.48.0-2026090574a5c1c90f95
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

7,168
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed

Open the chart page →

2,927
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,392
photoprismandrenarchyVerified publisher8.15.01 of 1See more

photoprism andrenarchy 8.15.0

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
photoprism/photoprism:260728958642220223
libxml2@2.15.2+dfsg-0.1ubuntu0.1
no fix listed

Open the chart page →

8,907
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

2,716
baserowbaserow-chartVerified publisher1.0.562 of 6See more

baserow baserow-chart 1.0.56

2 of the 6 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

17,346
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
libxml2@2.9.10+dfsg-5
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
libxml2@2.9.10+dfsg-5
no fix listed

Open the chart page →

53,012
headwind-mdmchristianhuthVerified publisher5.10.11 of 2See more

headwind-mdm christianhuth 5.10.1

1 of the 2 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

5,915
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed

Open the chart page →

9,154
seafiledatamateVerified publisher0.6.02 of 6See more

seafile datamate 0.6.0

2 of the 6 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
libxml2@2.9.13+dfsg-1ubuntu0.8
no fix listed

Open the chart page →

27,358
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2
no fix listed

Open the chart page →

2,615
glpiglpi-conteiner0.1.02 of 3See more

glpi glpi-conteiner 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/phpmyadmin:latest3a8a8d6b5289
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

12,270
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

4,136
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed

Open the chart page →

9,535
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

3,654
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

1,638
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

2,039
hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
apache/hertzbeat-collector:1.8.0a2bab1be574c
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
library/postgres:159b1d34adbce1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed

Open the chart page →

14,109
infrahubinfrahubVerified publisher4.33.21 of 5See more

infrahub infrahub 4.33.2

1 of the 5 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

10,460
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed

Open the chart page →

1,724
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
libxml2@2.9.10+dfsg-5ubuntu0.20.04.10
no fix listed

Open the chart page →

6,354
kubeflowkubeflow1.6.22 of 45See more

kubeflow kubeflow 1.6.2

2 of the 45 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
library/python:3.7eedf63967cdb
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
libxml2@2.9.3+dfsg1-1ubuntu0.7
no fix listed

Open the chart page →

97,040
librechatlibrechat-openshiftVerified publisher1.9.01 of 3See more

librechat librechat-openshift 1.9.0

1 of the 3 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed

Open the chart page →

5,833
local-ailocalai3.4.21 of 1See more

local-ai localai 3.4.2

1 of the 1 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
quay.io/go-skynet/local-ai:latestd78cd113b2bc
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed

Open the chart page →

4,050
headplanenbcloudVerified publisher0.1.21 of 4See more

headplane nbcloud 0.1.2

1 of the 4 container images this version deploys carry CVE-2026-86143.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
libxml2@2.9.14+dfsg-1.3~deb12u2
no fix listed

Open the chart page →

7,968

Container images carrying it

856 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/sergelogvinov/pgbouncer:16.1518f1121ba0a4
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
libxml2@2.9.10+dfsg-5ubuntu0.20.04.4
no fix listed
1
ghcr.io/steadybit/extension-container:v1.8.0dd31d4713ef6
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/steadybit/extension-host:v1.8.0a198ac7bc8c1
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
ghcr.io/streamingfast/firehose-core:v1.12.391fca773a63f
libxml2@2.9.14+dfsg-1.3ubuntu3.6
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.489969b78fb07
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.14.3bf816072380e
libxml2@2.9.14+dfsg-1.3ubuntu3.6
no fix listed
1
ghcr.io/streamingfast/firehose-ethereum:v2.12.4-gethd7bdfa7b41da
libxml2@2.9.14+dfsg-1.3ubuntu3.3
no fix listed
1
ghcr.io/streamingfast/go-ethereum:geth-v1.16.9-fh3.08e3cb38953a3
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
libxml2@2.9.10+dfsg-5ubuntu0.20.04.7
no fix listed
1
ghcr.io/substra/substra-frontend:1.0.0e230e6ac0722
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
ghcr.io/voxpupuli/container-puppetdb:7.18.0-v1.5.0a56dfe91f5b1
libxml2@2.9.13+dfsg-1ubuntu0.4
no fix listed
1
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/yourls/yourls:1.10.69b220ea83329
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u3
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
libxml2@2.9.4+dfsg1-6.1ubuntu1.9
no fix listed
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
libxml2@2.9.13+dfsg-1ubuntu0.12
no fix listed
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
libxml2@2.9.14+dfsg-1.3ubuntu3.7
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
libxml2@2.9.4+dfsg1-6.1ubuntu1.9
no fix listed
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2+e6
2.12.7+dfsg+really2.9.14-2.1+deb13u3+e1
1
public.ecr.aws/jtekt-corporation/image-storage-service:v1.16.17b1493760c716
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/image-storage-service-gui:v1.9.434823c8abe00
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager:v2.8.15cd62142d6ed
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libxml2@2.9.10+dfsg-5
no fix listed
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libxml2@2.9.14+dfsg-1.3~deb12u1
no fix listed
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
libxml2@2.9.14+dfsg-1.3ubuntu3.8
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
libxml2@2.9.14+dfsg-1.3~deb12u5
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
libxml2@2.9.14+dfsg-1.3~deb12u6
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libxml2@2.9.3+dfsg1-1ubuntu0.6
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.