andrcuns/dependabot-gitlab:7.7.0-alpha.1 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of andrcuns/dependabot-gitlab
andrcuns/dependabot-gitlab:7.7.0-alpha.1 resolved to 43060f159f4c, scanned 14 Sept 2026: 372 findings, 0 critical; deployed by 1 chart, among them dependabot-gitlab.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
372 distinct on this digest
Findings for digest 43060f159f4c as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GO-2024-2687 | stdlib | 1.21.9 |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | UBUNTU-CVE-2018-6952 | patch | no fix listed |
| Medium | GHSA-38jv-5279-wg99 | urllib3 | 2.6.3 |
| Medium | UBUNTU-CVE-2026-19931 | curl | no fix listed |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2026-18924 | curl | no fix listed |
| Medium | GO-2026-4887 | github.com/ | no fix listed |
| Medium | UBUNTU-CVE-2026-42009 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | UBUNTU-CVE-2026-63076 | openssl | 3.0.13-0ubuntu3.15 |
| Medium | UBUNTU-CVE-2025-59375 | expat | no fix listed |
| Medium | UBUNTU-CVE-2026-33846 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GHSA-9v9h-cgj8-h64p | cryptography | 42.0.2 |
| Medium | GHSA-x527-x647-q7gg | golang.org/ | 0.52.0 |
| Medium | GHSA-3m6g-2423-7cp3 | json | 2.19.2 |
| Medium | GHSA-2xpw-w6gg-jr37 | urllib3 | 2.6.0 |
| Medium | GHSA-gm62-xv2j-4w53 | urllib3 | 2.6.0 |
| Medium | GHSA-3ww4-gg4f-jr7f | cryptography | 42.0.0 |
| Medium | GHSA-vgwf-h737-ff37 | golang.org/ | 0.52.0 |
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | GHSA-897w-fcg9-f6xj | dulwich | 1.2.5 |
| Medium | UBUNTU-CVE-2026-42305 | dulwich | no fix listed |
| Medium | UBUNTU-CVE-2026-5260 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | UBUNTU-CVE-2026-42010 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | UBUNTU-CVE-2026-11940 | python3.12 | no fix listed |
| Medium | GHSA-6vqw-3v5j-54x4 | cryptography | 42.0.4 |
| Medium | UBUNTU-CVE-2024-52005 | git | no fix listed |
| Medium | UBUNTU-CVE-2026-33845 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2026-57433 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | UBUNTU-CVE-2026-13221 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Low | GHSA-jppx-rxg9-jmrx | golang.org/ | 0.52.0 |
| Low | UBUNTU-CVE-2026-82209 | curl | no fix listed |
| Low | GO-2023-1571 | stdlib | 1.19.6 |
| Low | UBUNTU-CVE-2026-7210 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-12087 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Low | UBUNTU-CVE-2026-15308 | python3.12 | 3.12.3-1ubuntu0.17 |
| Low | UBUNTU-CVE-2026-13608 | curl | no fix listed |
| Low | UBUNTU-CVE-2026-63072 | openssl | 3.0.13-0ubuntu3.15 |
| Low | UBUNTU-CVE-2026-42563 | dulwich | no fix listed |
| Low | UBUNTU-CVE-2026-66046 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-11972 | python3.12 | no fix listed |
| Low | GO-2023-2102 | stdlib | 1.20.10 |
| Low | UBUNTU-CVE-2026-80230 | curl | no fix listed |
| Low | UBUNTU-CVE-2026-42013 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2017-13716 | binutils | no fix listed |
| Low | UBUNTU-CVE-2024-2236 | libgcrypt20 | 1.10.3-2ubuntu0.2 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| dependabot-gitlabdependabot-gitlabVerified publisher | 6.3.0 | 7.7.0-alpha.1 | 7 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.