StackRadar

apache/shenyu-admin:2.4.2 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 3 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of apache/shenyu-admin

apache/shenyu-admin:2.4.2 resolved to e8b7c4ddd069, scanned 14 Sept 2026: 267 findings, 17 critical, 7 on KEV; deployed by 3 charts, among them shenyu, shenyu and shenyu.

Radar Score

6,1901719111120

267 findings on digest e8b7c4ddd069 · scanned 14 Sept 2026

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.4.2resolves toe8b7c4ddd0693 charts5 days ago17191111206,190

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

267 distinct on this digest

Findings for digest e8b7c4ddd069 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalGHSA-36p3-wjmg-h94xKEVspring-beans@5.2.2.RELEASE5.2.20.RELEASE
CriticalGHSA-36p3-wjmg-h94xKEVspring-boot-starter-web@2.2.2.RELEASE2.5.12
CriticalGHSA-36p3-wjmg-h94xKEVspring-webmvc@5.2.2.RELEASE5.2.20.RELEASE
CriticalGHSA-83qj-6fr2-vhqgKEVtomcat-embed-core@9.0.299.0.99
CriticalGHSA-c9hw-wf7x-jp9jKEVtomcat-embed-core@9.0.299.0.31
CriticalALPINE-CVE-2020-15999KEVfreetype@2.9.1-r22.9.1-r3
CriticalGHSA-v98j-7crc-wvrjshiro-spring-boot-starter@1.7.01.7.1
CriticalGHSA-v98j-7crc-wvrjshiro-spring@1.7.01.7.1
CriticalGHSA-v98j-7crc-wvrjshiro-web@1.7.01.7.1
CriticalGHSA-f6jp-j6w3-w9hmshiro-core@1.7.01.8.0
CriticalGHSA-45hx-wfhj-473xh2@1.4.2002.1.210
CriticalGHSA-h376-j262-vhq6h2@1.4.2002.0.206
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.252.0
CriticalALPINE-CVE-2019-8457sqlite@3.26.0-r33.28.0-r0
CriticalGHSA-5j33-cvvr-w245tomcat-embed-core@9.0.299.0.98
CriticalGHSA-8wx2-9q48-vm9rspring-webmvc@5.2.2.RELEASE5.2.3.RELEASE
CriticalGHSA-m7jv-hq7h-mq7ctomcat-embed-websocket@9.0.299.0.37
HighGHSA-4wrc-f8pq-fpqpspring-web@5.2.2.RELEASE6.0.0
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@9.0.299.0.109
HighGHSA-4cf5-xmhp-3xj7shiro-core@1.7.01.9.1
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@9.0.299.0.106
HighGHSA-g5vr-rgqm-vf78spring-webmvc@5.2.2.RELEASEno fix listed
HighALPINE-CVE-2021-23840openssl@1.1.1b-r11.1.1j-r0
HighGHSA-hfrx-6qgj-fp6ctomcat-embed-core@9.0.299.0.71
HighGHSA-344f-f5vg-2jfjtomcat-embed-core@9.0.299.0.35
HighGHSA-qppj-fm5r-hxr3KEVtomcat-embed-core@9.0.299.0.81
HighALPINE-CVE-2021-3449openssl@1.1.1b-r11.1.1k-r0
HighGHSA-rvwf-54qp-4r6vsnakeyaml@1.251.26
HighGHSA-53hp-jpwq-2jgqtomcat-embed-core@9.0.299.0.35
HighGHSA-558x-2xjg-6232spring-expression@5.2.2.RELEASE5.2.20.RELEASE
HighGHSA-7w75-32cg-r6g2tomcat-embed-core@9.0.299.0.86
HighGHSA-j39c-c8hj-x4j3tomcat-embed-core@9.0.299.0.43
HighGHSA-288c-cq4h-88gqjackson-databind@2.10.12.10.5.1
HighALPINE-CVE-2019-12900bzip2@1.0.6-r61.0.6-r7
HighGHSA-27hp-xhwr-wr2mtomcat-embed-core@9.0.299.0.98
HighGHSA-cqqj-4p63-rrmmnetty-codec-http@4.1.38.Final4.1.44
MediumGHSA-4jrv-ppp4-jm57gson@2.8.62.8.9
MediumGHSA-2g86-r6w2-wqqrnacos-client@2.0.0no fix listed
MediumGHSA-24rp-q3w6-vc56postgresql@42.2.842.2.28
MediumGHSA-2rvv-w9r2-rg7mtomcat-embed-core@9.0.299.0.40
MediumGHSA-9xcj-c8cr-8c3ctomcat-embed-core@9.0.299.0.30
MediumGHSA-mm9x-g8pc-w292netty-handler@4.1.43.Final4.1.46
MediumGHSA-wm47-8v5p-wjpjnetty-codec-http2@4.1.43.Final4.1.60.Final
MediumGHSA-qcj6-jqrg-4wp2thymeleaf-spring5@3.0.11.RELEASE3.0.13.RELEASE
MediumALPINE-CVE-2019-5018sqlite@3.26.0-r33.28.0-r0
MediumGHSA-jgwr-3qm3-26f3tomcat-embed-core@9.0.299.0.41
MediumGHSA-9vjp-v76f-g363netty-codec@4.1.43.Final4.1.68.Final
MediumALPINE-CVE-2019-14697musl@1.1.20-r41.1.20-r5
MediumGHSA-grg4-wf29-r9vvnetty-codec@4.1.43.Final4.1.68.Final
MediumGHSA-45x9-q6vj-cqgqshiro-core@1.7.01.10.0

Used by

3 charts
ChartVersionTagContainers
shenyuerdeng2.4.212.4.21
shenyushenyu-helm-chart-test2.4.272.4.21
shenyutest-helm2.4.212.4.21

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.