StackRadar

apache/rocketmq:5.4.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of apache/rocketmq

apache/rocketmq:5.4.0 resolved to 319cd8a81ed1, scanned 14 Sept 2026: 305 findings, 0 critical; deployed by 2 charts, among them rocketmq and rocketmq-cluster.

Radar Score

3,1730145259

305 findings on digest 319cd8a81ed1 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
5.4.0resolves to319cd8a81ed12 charts8 days ago01452593,173

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

259 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 319cd8a81ed1 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-57433perl@5.38.2-3.2ubuntu0.25.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-27135nghttp2@1.59.0-1ubuntu0.21.59.0-1ubuntu0.3
LowUBUNTU-CVE-2026-13221perl@5.38.2-3.2ubuntu0.25.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-42496perl@5.38.2-3.2ubuntu0.25.38.2-3.2ubuntu0.3
LowUBUNTU-CVE-2026-33636libpng1.6@1.6.43-5ubuntu0.51.6.43-5ubuntu0.6
LowGHSA-vmq6-5m68-f53mlogback-classic@1.3.51.3.12
LowGHSA-vmq6-5m68-f53mlogback-core@1.3.51.3.12
LowGHSA-6jv9-x5w9-2ccmnetty-codec-redis@4.1.119.Final4.1.135.Final
LowGHSA-57rv-r2g8-2cj3netty-codec-http@4.1.119.Final4.1.133.Final
LowGHSA-4gg5-vx3j-xwc7protobuf-java@3.20.13.20.3
LowUBUNTU-CVE-2026-9076openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.11
LowUBUNTU-CVE-2026-82209curl@8.5.0-2ubuntu10.6no fix listed
LowUBUNTU-CVE-2024-10524wget@1.21.4-1ubuntu4.1no fix listed
LowUBUNTU-CVE-2026-12087perl@5.38.2-3.2ubuntu0.25.38.2-3.2ubuntu0.4
LowGHSA-pwqr-wmgm-9rr8netty-codec-http@4.1.119.Final4.1.132.Final
LowGHSA-45q3-82m4-75jrnetty-handler-proxy@4.1.119.Final4.1.133.Final
LowGHSA-h2qv-fj59-j46jnetty-codec-haproxy@4.1.79.Final4.1.135.Final
LowUBUNTU-CVE-2026-13608curl@8.5.0-2ubuntu10.6no fix listed
LowUBUNTU-CVE-2026-5773curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.9
LowGHSA-cc37-9q2j-3hfvnetty-codec-haproxy@4.1.79.Final4.1.135.Final
LowUBUNTU-CVE-2026-63072openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.15
LowGHSA-8wv5-x4w7-5gwwlibthrift@0.15.00.24.0
LowGHSA-5xrh-qmmq-w6chnetty-transport-sctp@4.1.119.Final4.1.135.Final
LowUBUNTU-CVE-2026-45445openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.11
LowUBUNTU-CVE-2021-31879wget@1.21.4-1ubuntu4.1no fix listed
LowUBUNTU-CVE-2026-66046expat@2.6.1-2ubuntu0.4no fix listed
LowGHSA-7pwc-h2j2-rjgjlibthrift@0.15.00.23.0
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.119.Final4.1.137.Final
LowUBUNTU-CVE-2026-80230curl@8.5.0-2ubuntu10.6no fix listed
LowUBUNTU-CVE-2026-42013gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.6
LowUBUNTU-CVE-2024-2236libgcrypt20@1.10.3-2build11.10.3-2ubuntu0.2
LowUBUNTU-CVE-2026-31789openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.9
LowUBUNTU-CVE-2026-54874openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.15
LowGHSA-fx2c-96vj-985vnetty-codec-haproxy@4.1.79.Final4.1.86.Final
LowUBUNTU-CVE-2026-42766openssl@3.0.13-0ubuntu3.73.0.13-0ubuntu3.11
LowUBUNTU-CVE-2025-32990gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.4+Fips1
LowGHSA-4qhr-g3c6-fcfxnetty-codec-xml@4.1.119.Final4.1.136.Final
LowGHSA-h4h5-3hr4-j3g2protobuf-java@3.20.13.20.3
LowGHSA-5pvg-856g-cp85netty-resolver-dns@4.1.119.Final4.1.135.Final
LowUBUNTU-CVE-2026-86145pcre2@10.42-4ubuntu2.1no fix listed
LowGHSA-3p8m-j85q-pgmjnetty-codec@4.1.119.Final4.1.125.Final
LowGHSA-3244-j874-rhc2netty-codec-redis@4.1.119.Final4.1.135.Final
LowGHSA-5w86-c3rq-vjj7netty-codec-redis@4.1.119.Final4.1.135.Final
LowGHSA-6ghj-frrj-jjj3netty-codec-redis@4.1.119.Final4.1.135.Final
LowGHSA-mj4r-2hfc-f8p6netty-codec@4.1.119.Final4.1.133.Final
LowUBUNTU-CVE-2026-42011gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.6
LowGHSA-c653-97m9-rcg9netty-handler@4.1.119.Final4.1.135.Final
LowUBUNTU-CVE-2024-12243gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.4+Fips1
LowGHSA-v74w-7mr3-4qg3netty-codec-xml@4.1.119.Final4.1.136.Final
LowUBUNTU-CVE-2025-32989gnutls28@3.8.3-1.1ubuntu3.43.8.3-1.1ubuntu3.4+Fips1

Used by

2 charts
ChartVersionTagContainers
rocketmqrocketmq12.6.05.4.03
rocketmq-clusterrocketmq12.6.05.4.04

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.