apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of apache/superset
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107 resolved to 975ab033580d, scanned 14 Sept 2026: 458 findings, 3 critical, 8 on KEV; deployed by 1 chart, among them superset.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
Findings for digest 975ab033580d as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2022-27381 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27384 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27452 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27445 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-v973-fxgf-6xhp | mako | 1.2.2 |
| Medium | DEBIAN-CVE-2022-27448 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32084 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-3f63-hfp8-52jq | pillow | 10.2.0 |
| Medium | DEBIAN-CVE-2022-27383 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27456 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32081 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32089 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32082 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-w6c7-j32f-rq8j | apache-superset | 4.1.2 |
| Medium | DEBIAN-CVE-2022-32085 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32088 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32083 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-v3c5-jqr6-7qm8 | future | 0.18.3 |
| Medium | GHSA-92qf-8gh3-gwcm | apache-superset | 4.1.0 |
| Medium | DEBIAN-CVE-2022-32087 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-rwhh-6x83-84v6 | apache-superset | 3.0.3 |
| Medium | GHSA-787v-v9vq-4rgv | apache-superset | 4.1.0 |
| Medium | DEBIAN-CVE-2022-27451 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27457 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27385 | mariadb-10.5 | 1:10.5.13-0+deb11u1 |
| Medium | GHSA-j8r2-6x86-q33q | requests | 2.31.0 |
| Medium | DEBIAN-CVE-2022-27446 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27455 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-27382 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-j2pw-vp55-fqqj | flask-appbuilder | 4.3.11 |
| Medium | PYSEC-2023-192 | urllib3 | 2.0.6 |
| Medium | DEBIAN-CVE-2022-27444 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | DEBIAN-CVE-2022-32086 | mariadb-10.5 | 1:10.5.18-0+deb11u1 |
| Medium | GHSA-grv7-fg5c-xmjg | braces | 3.0.3 |
| Medium | DSA-5119-1 | subversion | 1.14.1-3+deb11u1 |
| Medium | GHSA-xg9f-g7g7-2323 | werkzeug | 2.2.3 |
| Medium | PYSEC-2024-60 | idna | 3.7 |
| Medium | GHSA-ffqj-6fqr-9h24 | pyjwt | 2.4.0 |
| Medium | DLA-4087-1 | python3.9 | 3.9.2-1+deb11u3 |
| Medium | GHSA-m2qf-hxjv-5gpq | flask | 2.2.5 |
| Medium | GHSA-9v9h-cgj8-h64p | cryptography | 42.0.2 |
| Medium | GHSA-m2vv-5vj5-2hm7 | pillow | 9.2.0 |
| Medium | GHSA-f678-j579-4xf5 | apache-superset | 2.1.2 |
| Medium | GHSA-656c-6cxf-hvcv | flask-caching | no fix listed |
| Medium | PYSEC-2022-203 | werkzeug | 2.1.1 |
| Medium | DSA-5584-1 | bluez | 5.55-3.1+deb11u1 |
| Medium | GHSA-5fp8-c45m-256p | apache-superset | 1.3.2 |
| Medium | GHSA-hcr7-cqwc-q5gq | apache-superset | 3.1.3 |
| Medium | DLA-4057-1 | openssh | 1:8.4p1-5+deb11u4 |
| Medium | GHSA-2xpw-w6gg-jr37 | urllib3 | 2.6.0 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| supersetinseefrlab | 1.4.0 | 9cdaa280429ec297db16d56c94fd77b5d2aff107 | 3 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.