alpine/k8s:1.31.4 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of alpine/k8s
alpine/k8s:1.31.4 resolved to 9c4976d47656, scanned 14 Sept 2026: 358 findings, 2 critical, 2 on KEV; deployed by 1 chart, among them emqx-operator.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
358 distinct on this digest
Findings for digest 9c4976d47656 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-31789 | openssl | 3.3.7-r0 |
| Low | ALPINE-CVE-2025-69419 | openssl | 3.3.6-r0 |
| Low | GHSA-65xw-vw82-r86x | github.com/ | 1.3.6 |
| Low | ALPINE-CVE-2025-29087 | sqlite | 3.48.0-r1 |
| Low | ALPINE-CVE-2025-46334 | git | 2.47.3-r0 |
| Low | ALPINE-CVE-2026-3644 | python3 | 3.12.14-r0 |
| Low | ALPINE-CVE-2026-22184 | zlib | 1.3.2-r0 |
| Low | GHSA-q4h4-gmj2-qvw2 | golang.org/ | 0.52.0 |
| Low | GHSA-w879-237q-wc7r | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2026-45186 | expat | 2.8.1-r0 |
| Low | GHSA-2wrh-6pvc-2jm9 | golang.org/ | 0.13.0 |
| Low | ALPINE-CVE-2026-33630 | c-ares | 1.34.8-r0 |
| Low | GHSA-35c7-w35f-xwgh | k8s.io/ | 1.21.0 |
| Low | GO-2023-2185 | stdlib | 1.20.11 |
| Low | ALPINE-CVE-2025-24928 | libxml2 | 2.13.4-r4 |
| Low | GHSA-wf93-45jw-7689 | pip | 26.1.2 |
| Low | GHSA-4x4m-3c2p-qppc | k8s.io/ | 1.31.12 |
| Low | GHSA-p436-gjf2-799p | github.com/ | 29.2.0 |
| Low | ALPINE-CVE-2025-15468 | openssl | 3.3.6-r0 |
| Low | GHSA-mq39-4gv4-mvpx | github.com/ | 23.0.11 |
| Low | GHSA-3wgm-2gw2-vh5m | k8s.io/ | no fix listed |
| Low | GHSA-v53g-5gjp-272r | helm.sh/ | 3.14.1 |
| Low | GHSA-m4p7-r5rc-7g4j | pyasn1 | 0.6.4 |
| Low | GHSA-74j8-88mm-7496 | k8s.io/ | no fix listed |
| Low | GHSA-8ppf-4f7h-5ppj | pyasn1 | 0.6.4 |
| Low | GHSA-hm4w-wwcw-mr6r | pyasn1 | 0.6.4 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GHSA-5xqw-8hwv-wg92 | helm.sh/ | 3.17.3 |
| Low | GHSA-c6gw-w398-hv78 | github.com/ | 4.0.5 |
| Low | GO-2024-2887 | stdlib | 1.21.11 |
| Low | GHSA-4hfp-h4cw-hj8p | helm.sh/ | 3.17.3 |
| Low | GHSA-53c4-hhmh-vw5q | helm.sh/ | 3.10.3 |
| Low | GHSA-67fx-wx78-jx33 | helm.sh/ | 3.10.3 |
| Low | GHSA-pxq6-2prw-chj9 | github.com/ | no fix listed |
| Low | ALPINE-CVE-2026-76956 | expat | 2.8.4-r0 |
| Low | ALPINE-CVE-2025-26519 | musl | 1.2.5-r9 |
| Low | GHSA-8rrh-rw8j-w5fx | wheel | 0.46.2 |
| Low | GHSA-xhf5-7wjv-pqxp | github.com/ | 1.7.33 |
| Low | ALPINE-CVE-2024-12718 | python3 | 3.12.11-r0 |
| Low | GHSA-6rx9-889q-vv2r | helm.sh/ | 3.10.3 |
| Low | ALPINE-CVE-2026-1502 | python3 | 3.12.14-r0 |
| Low | GO-2023-1987 | stdlib | 1.19.12 |
| Low | GHSA-hfvc-g4fc-pqhx | go.opentelemetry.io/ | 1.43.0 |
| Low | ALPINE-CVE-2026-4786 | python3 | 3.12.14-r0 |
| Low | GHSA-q9hv-hpm4-hj6x | github.com/ | 1.6.3 |
| Low | ALPINE-CVE-2025-48386 | git | 2.47.3-r0 |
| Low | GHSA-4xh5-x5gv-qwph | pip | 25.3 |
| Low | ALPINE-CVE-2026-25210 | expat | 2.7.4-r0 |
| Low | GO-2023-1878 | stdlib | 1.19.11 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| emqx-operatoremqx-operator | 2.3.2 | 1.31.4 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.