StackRadar

atlassian/jira-software:8.14.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of atlassian/jira-software

atlassian/jira-software:8.14.0 resolved to 37bc46cbec1a, scanned 14 Sept 2026: 658 findings, 18 critical, 4 on KEV; deployed by 1 chart, among them atlassian-jira.

Radar Score

13,0791856231353

658 findings on digest 37bc46cbec1a · scanned 14 Sept 2026

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.14.0resolves to37bc46cbec1a1 chart6 days ago185623135313,079

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

658 distinct on this digest

Findings for digest 37bc46cbec1a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalGHSA-36p3-wjmg-h94xKEVspring-beans@5.0.10.RELEASE5.2.20.RELEASE
CriticalGHSA-599f-7c49-w659commons-text@1.61.10.0
CriticalGHSA-hf23-9pf7-388pxstream@1.4.101.4.11
CriticalGHSA-f58c-gq56-vjjftika-core@1.223.2.2
CriticalGHSA-f554-x222-wgf7xstream@1.4.101.4.11
CriticalGHSA-2qrg-x229-3v8qlog4j@1.2.17no fix listed
CriticalGHSA-65fg-84f6-3jq3log4j@1.2.17no fix listed
CriticalGHSA-j9h8-phrw-h4fhKEVxstream@1.4.11.11.4.18
CriticalUBUNTU-CVE-2025-27363KEVfreetype@2.11.1+dfsg-1ubuntu0.22.11.1+dfsg-1ubuntu0.3
CriticalGHSA-f7vh-qwp3-x37mlog4j@1.2.17no fix listed
CriticalGHSA-rfx6-vp9g-rh7vjackson-databind@2.3.32.7.9.2
CriticalGHSA-mw36-7c6c-q4q2xstream@1.4.11.11.4.14-java7
CriticalGHSA-w9p3-5cr8-m3jjlog4j@1.2.17no fix listed
CriticalGHSA-vv7r-c36w-3prjcommons-fileupload@1.3.31.6.0
CriticalGHSA-3p2h-wqq4-wf4htomcat-coyote@8.5.57no fix listed
CriticalGHSA-qxxx-2pp7-5hmxjackson-databind@2.3.32.6.7.1
CriticalUBUNTU-CVE-2025-6965sqlite3@3.37.2-2ubuntu0.33.37.2-2ubuntu0.5
CriticalUBUNTU-CVE-2024-2961glibc@2.35-0ubuntu3.62.35-0ubuntu3.7
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighGHSA-9339-86wc-4qgfxalan@2.7.22.7.3
HighUBUNTU-CVE-2025-15467openssl@3.0.2-0ubuntu1.153.0.2-0ubuntu1.21
HighGHSA-2p3x-qw9c-25hhxstream@1.4.11.11.4.16
HighGHSA-7chv-rrw6-w6fcxstream@1.4.11.11.4.17
HighGHSA-ghgj-3xqr-6jfmjetty-server@8.1.15.v201404119.2.9.v20150224
HighGHSA-4wrc-f8pq-fpqpspring-web@5.0.10.RELEASE6.0.0
HighUBUNTU-CVE-2024-6119openssl@3.0.2-0ubuntu1.153.0.2-0ubuntu1.18
HighGHSA-jfvx-7wrx-43fhxstream@1.4.11.11.4.15
HighGHSA-4w82-r329-3q67jackson-databind@2.3.32.6.7.4
HighUBUNTU-CVE-2024-2398curl@7.81.0-1ubuntu1.157.81.0-1ubuntu1.16
HighGHSA-26vr-8j45-3r4wjetty-server@8.1.15.v201404119.4.39
HighGHSA-hfrx-6qgj-fp6ccommons-fileupload@1.3.31.5
HighGHSA-4cch-wxpw-8p28xstream@1.4.11.11.4.15
HighGHSA-cggj-fvv3-cqwvjackson-databind@2.3.32.6.7.5
HighGHSA-6x9x-8qw9-9pp6jetty-server@8.1.15.v201404119.2.25.v20180606
HighGHSA-4hrm-m67v-5cxrxstream@1.4.11.11.4.16
HighGHSA-q93h-jc49-78ggjackson-databind@2.3.32.7.9.7
HighGHSA-p43x-xfjf-5jhrjackson-databind@2.3.32.7.9.7
HighGHSA-59j4-wjwp-mw9mvelocity@1.6.4-atlassian-21no fix listed
HighGHSA-qppj-fm5r-hxr3KEVtomcat-coyote@8.5.578.5.94
HighGHSA-5ggr-mpgw-3mgxstruts-core@1.3.8no fix listed
HighGHSA-hwpc-8xqv-jvj4xstream@1.4.11.11.4.16
HighGHSA-vgg8-72f2-qm23jetty-server@8.1.15.v201404119.2.25.v20180606
HighGHSA-hrcp-8f3q-4w2cxstream@1.4.11.11.4.16
HighUBUNTU-CVE-2024-28182nghttp2@1.43.0-1ubuntu0.11.43.0-1ubuntu0.2
HighGHSA-645p-88qh-w398jackson-databind@2.3.32.6.7.3
HighGHSA-hh32-7344-cg2fspring-security-core@5.2.1.RELEASE5.4.11
HighGHSA-59jw-jqf4-3wq3xstream@1.4.11.11.4.16
HighGHSA-9gph-22xh-8x98jackson-databind@2.3.32.6.7.5
HighUBUNTU-CVE-2024-2511openssl@3.0.2-0ubuntu1.153.0.2-0ubuntu1.17
HighUBUNTU-CVE-2024-3596krb5@1.19.2-2ubuntu0.31.19.2-2ubuntu0.5

Used by

1 chart
ChartVersionTagContainers
atlassian-jirasomeblackmagic3.3.28.14.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.