atlassian/crowd:5.2.2 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of atlassian/crowd
atlassian/crowd:5.2.2 resolved to ebf761c7d437, scanned 14 Sept 2026: 258 findings, 7 critical; deployed by 1 chart, among them crowd.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
258 distinct on this digest
Findings for digest ebf761c7d437 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-4p6w-m9wc-c9c9 | ant | 1.9.15 |
| Medium | GHSA-h46c-h94j-95f3 | jackson-core | 2.15.0 |
| Medium | GHSA-r936-gwx5-v52f | spring-webmvc | no fix listed |
| Medium | GHSA-q5r4-cfpx-h6fh | ant | 1.9.16 |
| Medium | UBUNTU-CVE-2026-5260 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GHSA-5476-xc4j-rqcv | c3p0 | 0.12.0 |
| Medium | UBUNTU-CVE-2026-42010 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GHSA-mf92-479x-3373 | spring-security-web | no fix listed |
| Medium | UBUNTU-CVE-2026-11940 | python3.12 | no fix listed |
| Medium | GHSA-264p-99wq-f4j6 | ion-java | no fix listed |
| Medium | GHSA-gvpg-vgmx-xg6w | nimbus-jose-jwt | 9.37.2 |
| Medium | UBUNTU-CVE-2026-33845 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-rg58-xhh7-mqjw | struts2-core | 6.8.0 |
| Low | GHSA-3pxv-7cmr-fjr4 | log4j-core | 2.25.4 |
| Low | UBUNTU-CVE-2026-82209 | curl | no fix listed |
| Low | UBUNTU-CVE-2024-10524 | wget | no fix listed |
| Low | GHSA-7v6m-28jr-rg84 | hibernate-validator | 6.2.0.CR1 |
| Low | UBUNTU-CVE-2026-7210 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-15308 | python3.12 | 3.12.3-1ubuntu0.17 |
| Low | UBUNTU-CVE-2026-13608 | curl | no fix listed |
| Low | GHSA-3wrr-7qpf-2prh | jackson-databind | 2.14.0 |
| Low | UBUNTU-CVE-2021-31879 | wget | no fix listed |
| Low | GHSA-q2x7-8rv6-6q7h | jinja2 | 3.1.5 |
| Low | UBUNTU-CVE-2026-66046 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-11972 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-80230 | curl | no fix listed |
| Low | GHSA-mg83-c7gq-rv5c | spring-security-crypto | 5.8.18 |
| Low | UBUNTU-CVE-2026-42013 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2024-2236 | libgcrypt20 | no fix listed |
| Low | GHSA-563x-q5rq-57qp | tomcat-coyote | 9.0.116 |
| Low | GHSA-gmj6-6f8f-6699 | jinja2 | 3.1.5 |
| Low | UBUNTU-CVE-2026-86145 | pcre2 | no fix listed |
| Low | GHSA-qv9r-c865-cp47 | log4j-api | 2.25.5 |
| Low | GHSA-jmp9-x22r-554x | spring-core | no fix listed |
| Low | UBUNTU-CVE-2026-42011 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-vc5p-v9hr-52mj | log4j-core | 2.25.3 |
| Low | GHSA-v435-xc8x-wvr9 | bcprov-jdk15on | 1.78 |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | GHSA-fpj8-gq4v-p354 | tomcat-coyote | 9.0.113 |
| Low | GHSA-h383-gmxw-35v2 | log4j-1.2-api | 2.25.4 |
| Low | GHSA-x23c-287f-qqv5 | spring-webmvc | no fix listed |
| Low | GHSA-xwmg-2g98-w7v9 | nimbus-jose-jwt | 9.37.4 |
| Low | GHSA-8xfc-gm6g-vgpv | bcprov-jdk15on | 1.78 |
| Low | GHSA-qq5r-98hh-rxc9 | tomcat-coyote | 9.0.113 |
| Low | GHSA-wg6q-6289-32hp | bcpkix-jdk15on | 1.84 |
| Low | GHSA-4h8f-2wvx-gg5w | bcprov-jdk15on | 1.78 |
| Low | UBUNTU-CVE-2026-3833 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-wjxj-5m7g-mg7q | bcprov-jdk15on | no fix listed |
| Low | GHSA-h75v-3vvj-5mfj | jinja2 | 3.1.4 |
| Low | GHSA-r5w3-xv2f-j59q | spring-expression | no fix listed |