atlassian/jira-software:11.3.11 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of atlassian/jira-software
atlassian/jira-software:11.3.11 resolved to e5548cd4eea8, scanned 14 Sept 2026: 140 findings, 0 critical; deployed by 1 chart, among them jira.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
140 distinct on this digest
Findings for digest e5548cd4eea8 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | GHSA-59j4-wjwp-mw9m | velocity | no fix listed |
| Medium | GHSA-3832-9276-x7gf | commons-httpclient | no fix listed |
| Medium | GHSA-fh63-4r66-jc7v | velocity-tools | no fix listed |
| Medium | UBUNTU-CVE-2026-19931 | curl | no fix listed |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2026-18924 | curl | no fix listed |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang | no fix listed |
| Medium | UBUNTU-CVE-2026-42009 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | UBUNTU-CVE-2025-59375 | expat | no fix listed |
| Medium | UBUNTU-CVE-2026-33846 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | UBUNTU-CVE-2026-5260 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | UBUNTU-CVE-2026-42010 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Medium | GHSA-hf6x-8p5f-cgmf | httpcore5 | 5.4.3 |
| Medium | GHSA-v3jc-474w-2wm6 | httpcore5-h2 | 5.4.3 |
| Medium | GHSA-m494-w24q-6f7w | mssql-jdbc | 10.2.4.jre11 |
| Medium | UBUNTU-CVE-2026-11940 | python3.12 | no fix listed |
| Medium | UBUNTU-CVE-2026-33845 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2026-82209 | curl | no fix listed |
| Low | UBUNTU-CVE-2024-10524 | wget | no fix listed |
| Low | UBUNTU-CVE-2026-7210 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-15308 | python3.12 | 3.12.3-1ubuntu0.17 |
| Low | UBUNTU-CVE-2026-13608 | curl | no fix listed |
| Low | UBUNTU-CVE-2021-31879 | wget | no fix listed |
| Low | GHSA-q2x7-8rv6-6q7h | jinja2 | 3.1.5 |
| Low | UBUNTU-CVE-2026-66046 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-11972 | python3.12 | no fix listed |
| Low | GHSA-c4c3-7fpv-j4q5 | netty-handler | 4.1.137.Final |
| Low | UBUNTU-CVE-2026-80230 | curl | no fix listed |
| Low | UBUNTU-CVE-2026-42013 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2017-13716 | binutils | no fix listed |
| Low | UBUNTU-CVE-2024-2236 | libgcrypt20 | no fix listed |
| Low | GHSA-gmj6-6f8f-6699 | jinja2 | 3.1.5 |
| Low | UBUNTU-CVE-2026-86145 | pcre2 | no fix listed |
| Low | GHSA-qv9r-c865-cp47 | log4j-api | 2.26.1 |
| Low | UBUNTU-CVE-2026-42011 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | UBUNTU-CVE-2025-66863 | binutils | no fix listed |
| Low | UBUNTU-CVE-2025-66865 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-3833 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-h75v-3vvj-5mfj | jinja2 | 3.1.4 |
| Low | GHSA-88fw-v6x4-3f58 | spring-data-commons | no fix listed |
| Low | GHSA-9fw2-h3hf-293r | spring-data-commons | no fix listed |
| Low | UBUNTU-CVE-2025-66862 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-6791 | glibc | 2.39-0ubuntu8.9 |
| Low | UBUNTU-CVE-2026-76641 | expat | no fix listed |
| Low | GHSA-h5c8-rqwp-cp95 | jinja2 | 3.1.3 |
| Low | UBUNTU-CVE-2026-17084 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-42012 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2016-2781 | coreutils | no fix listed |
| Low | GHSA-fccg-mwvh-qqg4 | netty-handler | 4.1.137.Final |