alpine/k8s:1.36.2 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of alpine/k8s
alpine/k8s:1.36.2 resolved to 44ef4942e171, scanned 14 Sept 2026: 231 findings, 0 critical; deployed by 1 chart, among them headscale.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
231 distinct on this digest
Findings for digest 44ef4942e171 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | GO-2025-3521 | k8s.io/ | no fix listed |
| Low | GO-2026-5942 | golang.org/ | 0.56.0 |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | ALPINE-CVE-2026-56132 | expat | 2.8.2-r0 |
| Low | GO-2025-4012 | stdlib | 1.24.8 |
| Low | GO-2025-3956 | stdlib | 1.23.12 |
| Low | GO-2026-4440 | golang.org/ | 0.45.0 |
| Low | GO-2025-4011 | stdlib | 1.24.8 |
| Low | GO-2025-4015 | stdlib | 1.24.8 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GHSA-vh4v-2xq2-g5cg | oras.land/ | 2.6.1 |
| Low | GO-2026-4441 | golang.org/ | 0.45.0 |
| Low | GHSA-7jxh-36q5-gcqv | github.com/ | 1.7.35 |
| Low | GO-2026-5970 | golang.org/ | 0.39.0 |
| Low | ALPINE-CVE-2026-42768 | openssl | 3.5.7-r0 |
| Low | GO-2025-4155 | stdlib | 1.24.11 |
| Low | GO-2025-4008 | stdlib | 1.24.8 |
| Low | GO-2025-4010 | stdlib | 1.24.8 |
| Low | ALPINE-CVE-2026-40612 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-44777 | jq | 1.8.2-r0 |
| Low | GO-2025-4014 | stdlib | 1.24.8 |
| Low | ALPINE-CVE-2026-41256 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-43894 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.6-r1 |
| Low | GO-2025-3503 | stdlib | 1.23.7 |
| Low | ALPINE-CVE-2026-43896 | jq | 1.8.2-r0 |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-47770 | jq | 1.8.2-r0 |
| Low | GO-2026-5856 | stdlib | 1.25.12 |
| Low | GO-2025-4007 | stdlib | 1.24.9 |
| Low | GO-2026-6355 | golang.org/ | 0.56.0 |
| Low | GO-2025-3749 | stdlib | 1.24.4 |
| Low | GO-2026-4980 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-42770 | openssl | 3.5.7-r0 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
| Low | ALPINE-CVE-2026-41257 | jq | 1.8.2-r0 |
| Low | GO-2025-4013 | stdlib | 1.24.8 |
| Low | GO-2025-3849 | stdlib | 1.23.12 |
| Low | GO-2026-4946 | stdlib | 1.25.9 |
| Low | GO-2026-4600 | stdlib | 1.26.1 |
| Low | GO-2026-5064 | github.com/ | no fix listed |
| Low | GO-2026-4866 | stdlib | 1.26.2 |
| Low | GO-2026-5158 | go.opentelemetry.io/ | 1.42.0 |
| Low | ALPINE-CVE-2026-56131 | expat | 2.8.2-r0 |
| Low | GO-2025-3887 | helm | no fix listed |
| Low | GO-2025-3888 | helm | no fix listed |