StackRadar

apachepulsar/pulsar:2.6.1 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of apachepulsar/pulsar

apachepulsar/pulsar:2.6.1 resolved to 4db6ff0b4045, scanned 14 Sept 2026: 356 findings, 9 critical, 6 on KEV; deployed by 1 chart, among them pulsar.

Radar Score

6,650913141193

356 findings on digest 4db6ff0b4045 · scanned 14 Sept 2026

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.6.1resolves to4db6ff0b40451 chart6 days ago9131411936,650

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

356 distinct on this digest

Findings for digest 4db6ff0b4045 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalGHSA-jfh8-c2jp-5v3qKEVlog4j-core@2.10.02.12.2
CriticalGHSA-7rjr-3q55-vv33KEVlog4j-core@2.10.02.12.2
CriticalGHSA-2qrg-x229-3v8qlog4j@1.2.17no fix listed
CriticalGHSA-p6xc-xr62-6r2glog4j-core@2.10.02.12.3
CriticalGHSA-65fg-84f6-3jq3log4j@1.2.17no fix listed
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.262.0
CriticalGHSA-jg2g-4rjg-cmqhpulsar-functions-worker@2.6.12.10.6
CriticalGHSA-f7vh-qwp3-x37mlog4j@1.2.17no fix listed
CriticalGHSA-w9p3-5cr8-m3jjlog4j@1.2.17no fix listed
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighGHSA-8489-44mv-ggj8log4j-core@2.10.02.12.4
HighGHSA-26vr-8j45-3r4wjetty-server@9.4.11.v201806059.4.39
HighGHSA-qppj-fm5r-hxr3KEVhttp2-server@9.4.11.v201806059.4.53
HighGHSA-qppj-fm5r-hxr3KEVhttp2-common@9.4.11.v201806059.4.53
HighGHSA-gwcr-j4wh-j3cqjetty-servlets@9.4.29.v202005219.4.41
HighGHSA-m394-8rww-3jr7jetty-server@9.4.11.v201806059.4.37
HighGHSA-x3rh-m7vp-35f2jetty-server@9.4.29.v202005219.4.30.v20200611
HighGHSA-cqqj-4p63-rrmmnetty@3.10.6.Finalno fix listed
HighGHSA-2f88-5hg8-9x2xmaven-compat@3.0.53.8.1
HighGHSA-2f88-5hg8-9x2xmaven-core@3.0.53.8.1
HighDLA-3621-1KEVnghttp2@1.36.0-2+deb10u11.36.0-2+deb10u2
HighDSA-4777-1KEVfreetype@2.9.1-3+deb10u12.9.1-3+deb10u2
MediumDLA-3816-1bind9@1:9.11.5.P4+dfsg-5.1+deb10u11:9.11.5.P4+dfsg-5.1+deb10u11
MediumGHSA-8vhq-qq4p-grq3plexus-utils@2.0.63.0.16
MediumDSA-5169-1openssl@1.1.1d-0+deb10u21.1.1n-0+deb10u3
MediumDLA-3807-1glibc@2.28-102.28-10+deb10u3
MediumGHSA-8q59-q68h-6hv4pyyaml@3.135.4
MediumDSA-4963-1openssl@1.1.1d-0+deb10u21.1.1d-0+deb10u7
MediumGHSA-4jrv-ppp4-jm57gson@2.8.22.8.9
MediumGHSA-mc84-pj99-q6hhcommons-compress@1.191.21
MediumDLA-3804-1nghttp2@1.36.0-2+deb10u11.36.0-2+deb10u3
MediumDSA-4845-1openldap@2.4.47+dfsg-3+deb10u22.4.47+dfsg-3+deb10u5
MediumGHSA-rprw-h62v-c2w7pyyaml@3.135.1
MediumDSA-5139-1openssl@1.1.1d-0+deb10u21.1.1n-0+deb10u2
MediumDSA-4909-1bind9@1:9.11.5.P4+dfsg-5.1+deb10u11:9.11.5.P4+dfsg-5.1+deb10u5
MediumGHSA-crv7-7245-f45fcommons-compress@1.191.21
MediumGHSA-7hfm-57qf-j43qcommons-compress@1.191.21
MediumDLA-3449-1openssl@1.1.1d-0+deb10u21.1.1n-0+deb10u5
MediumDSA-5103-1openssl@1.1.1d-0+deb10u21.1.1d-0+deb10u8
MediumGHSA-xqfj-vm6h-2x34commons-compress@1.191.21
MediumDSA-5140-1openldap@2.4.47+dfsg-3+deb10u22.4.47+dfsg-3+deb10u7
MediumDSA-4857-1bind9@1:9.11.5.P4+dfsg-5.1+deb10u11:9.11.5.P4+dfsg-5.1+deb10u3
MediumDSA-4860-1openldap@2.4.47+dfsg-3+deb10u22.4.47+dfsg-3+deb10u6
MediumDSA-4875-1openssl@1.1.1d-0+deb10u21.1.1d-0+deb10u6
MediumGHSA-wm47-8v5p-wjpjnetty-codec-http2@4.1.48.Final4.1.60.Final
MediumGHSA-wm47-8v5p-wjpjnetty@3.10.6.Finalno fix listed
MediumDLA-3325-1openssl@1.1.1d-0+deb10u21.1.1n-0+deb10u4
MediumGHSA-xp2r-g8qq-44hhpulsar-functions-worker@2.6.12.10.6
MediumGHSA-p979-4mfw-53vgnetty@3.10.6.Finalno fix listed
MediumDSA-4661-1openssl@1.1.1d-0+deb10u21.1.1d-0+deb10u3

Used by

1 chart
ChartVersionTagContainers
pulsarcnieg1.0.82.6.117

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.