apache/ranger:2.7.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of apache/ranger
apache/ranger:2.7.0 resolved to 76c176e8a0e4, scanned 14 Sept 2026: 639 findings, 3 critical, 1 on KEV; deployed by 1 chart, among them apache-ranger.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
639 distinct on this digest
Findings for digest 76c176e8a0e4 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | GHSA-83qj-6fr2-vhqgKEV | tomcat-embed-core | 9.0.99 |
| Critical | GHSA-3p2h-wqq4-wf4h | tomcat-embed-core | 9.0.104 |
| Critical | UBUNTU-CVE-2025-6965 | sqlite3 | 3.37.2-2ubuntu0.5 |
| High | UBUNTU-CVE-2025-15467 | openssl | 3.0.2-0ubuntu1.21 |
| High | GHSA-4wrc-f8pq-fpqp | spring-web | 6.0.0 |
| High | UBUNTU-CVE-2024-6119 | openssl | no fix listed |
| High | GHSA-wmwf-9ccg-fff5 | tomcat-embed-core | 9.0.109 |
| High | GHSA-h3gc-qfqq-6h8f | tomcat-embed-core | 9.0.106 |
| High | GHSA-q394-h7f5-7f44 | elasticsearch-rest-client | 7.13.4 |
| High | GHSA-qwrx-45xf-jjf7 | elasticsearch | 7.17.13 |
| High | UBUNTU-CVE-2024-2511 | openssl | no fix listed |
| High | GHSA-vfww-5hm6-hx2j | tomcat-embed-core | 9.0.109 |
| Medium | GHSA-3f7h-mf4q-vrm4 | woodstox-core | 5.4.0 |
| Medium | GHSA-24rp-q3w6-vc56 | postgresql | 42.2.28 |
| Medium | UBUNTU-CVE-2024-5535 | openssl | no fix listed |
| Medium | GHSA-r7pg-v2c8-mfg3 | avro | 1.11.4 |
| Medium | UBUNTU-CVE-2020-10735 | python3.10 | no fix listed |
| Medium | UBUNTU-CVE-2026-45447 | openssl | 3.0.2-0ubuntu1.25 |
| Medium | UBUNTU-CVE-2025-26465 | openssh | no fix listed |
| Medium | UBUNTU-CVE-2021-46848 | libtasn1-6 | 4.18.0-4ubuntu0.2 |
| Medium | GHSA-gqp3-2cvr-x8m3 | tomcat-embed-core | 9.0.108 |
| Medium | GHSA-r29c-68gh-xp6x | tomcat-embed-core | 9.0.118 |
| Medium | GHSA-mmxm-8w33-wc4h | http2-common | 9.4.58 |
| Medium | GHSA-98qh-xjc8-98pq | postgresql | 42.7.11 |
| Medium | GHSA-ff77-26x5-69cr | tomcat-embed-core | 9.0.104 |
| Medium | GHSA-cx63-2mw6-8hw5 | setuptools | 70.0.0 |
| Medium | GHSA-c4q5-6c82-3qpw | spring-security-web | 5.7.13 |
| Medium | UBUNTU-CVE-2017-11164 | pcre3 | no fix listed |
| Medium | GHSA-38jv-5279-wg99 | urllib3 | 2.6.3 |
| Medium | UBUNTU-CVE-2026-21441 | python-pip | no fix listed |
| Medium | GHSA-wxr5-93ph-8wr9 | commons-beanutils | 1.11.0 |
| Medium | UBUNTU-CVE-2024-4741 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2026-3497 | openssh | 1:8.9p1-3ubuntu0.14 |
| Medium | GHSA-c87w-642h-m97h | ranger-plugins-common | 2.8.0 |
| Medium | GHSA-735f-pc8j-v9w8 | protobuf-java | 3.25.5 |
| Medium | GHSA-h6fc-48rj-7qqh | tomcat-embed-core | 9.0.118 |
| Medium | UBUNTU-CVE-2025-49796 | libxml2 | 2.9.13+dfsg-1ubuntu0.8 |
| Medium | GHSA-qwmp-2cf2-g9g6 | wheel | 0.38.1 |
| Medium | GHSA-r9hx-vwmv-q579 | setuptools | 65.5.1 |
| Medium | UBUNTU-CVE-2026-19931 | curl | no fix listed |
| Medium | GHSA-jq43-27x9-3v86 | netty-codec-smtp | 4.1.128.Final |
| Medium | GHSA-mvr2-9pj6-7w5j | guava | 24.1.1-android |
| Medium | GHSA-v7wg-cpwc-24m4 | postgresql | 42.2.25 |
| Medium | PYSEC-2025-49 | setuptools | 78.1.1 |
| Medium | UBUNTU-CVE-2022-40735 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2023-31486 | perl | no fix listed |
| Medium | GHSA-4g8c-wm8x-jfhw | netty-handler | 4.1.118.Final |
| Medium | GHSA-wc4r-xq3c-5cf3 | tomcat-embed-core | 9.0.106 |
| Medium | UBUNTU-CVE-2018-5709 | krb5 | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| apache-rangerapache-ranger | 0.1.0 | 2.7.0 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.