bkimminich/juice-shop:v20.2.0 container image
Docker HubScanned 7 Oct 2026
Deployed by 1 of 18,035 indexed charts (latest versions) at this tag.Docker Hub all tags of bkimminich/juice-shop
bkimminich/juice-shop:v20.2.0 resolved to 8739101ade29, scanned 7 Oct 2026: 156 findings, 0 critical; deployed by 1 chart, among them juice-shop.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
156 distinct on this digest
Findings for digest 8739101ade29 as scanned on 7 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 7 Oct 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | GHSA-g9mf-h72j-4rw9 | undici | 6.23.0 |
| Low | GHSA-j6r3-76f7-8jcv | ip-address | 10.7.1 |
| Low | GHSA-869p-cjfg-cm3x | jws | 3.2.3 |
| Low | DEBIAN-CVE-2026-102010 | gcc-14 | no fix listed |
| Low | GHSA-5mrr-rgp6-x4gr | marsdb | no fix listed |
| Low | DEBIAN-CVE-2026-77117 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-80489 | glibc | no fix listed |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | GHSA-h3mg-xc3c-68pw | ip-address | 10.7.1 |
| Low | GHSA-jxwj-j7wr-gfrw | sanitize-html | 2.17.6 |
| Low | GHSA-4p3w-j4w9-5jqw | moment | 2.31.0 |
| Low | GHSA-83g3-92jg-28cx | tar | 7.5.8 |
| Low | GHSA-p88m-4jfj-68fv | undici | 6.27.0 |
| Low | GHSA-gjcw-v447-2w7q | jws | 3.0.0 |
| Low | GHSA-gxm5-99cw-xjw9 | @fastify/ | 3.2.2 |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | GHSA-5v7r-6r5c-r473 | file-type | 21.3.1 |
| Low | GHSA-qhxp-v273-g94h | sanitize-html | 2.0.0-beta |
| Low | GHSA-9f6g-j8ch-79g4 | morgan | 1.12.1 |
| Low | DEBIAN-CVE-2026-75806 | openssl | 3.5.7-1~deb13u3 |
| Low | GHSA-hp3w-g68c-fv3c | sprintf-js | no fix listed |
| Low | DEBIAN-CVE-2026-75804 | openssl | 3.5.7-1~deb13u3 |
| Low | GHSA-vmf3-w455-68vh | tar | 7.5.16 |
| Low | DEBIAN-CVE-2026-8674 | glibc | no fix listed |
| Low | GHSA-jwp9-9v96-94mx | decompress | no fix listed |
| Low | DEBIAN-CVE-2026-42772 | openssl | 3.5.7-1~deb13u3 |
| Low | GHSA-q2hr-2g5m-vwhr | brace-expansion | 1.1.21 |
| Low | GHSA-jxfw-x594-9x9m | morgan | 1.12.0 |
| Low | DEBIAN-CVE-2026-35189 | openssl | 3.5.7-1~deb13u3 |
| Low | DEBIAN-CVE-2026-19542 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-75805 | openssl | 3.5.7-1~deb13u3 |
| Low | DEBIAN-CVE-2026-27171 | zlib | no fix listed |
| Low | DEBIAN-CVE-2026-86805 | glibc | no fix listed |
| Low | GHSA-x5fp-wj9c-mxmx | qs | 6.16.0 |
| Low | GHSA-4992-7rv2-5pvq | undici | 6.24.0 |
| Low | GHSA-v3r7-h72x-cjcm | undici | 6.28.0 |
| Low | DEBIAN-CVE-2010-4756 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-89092 | glibc | no fix listed |
| Low | GHSA-8xcm-r25x-g524 | undici | 6.28.0 |
| Low | DEBIAN-CVE-2026-35191 | openssl | 3.5.7-1~deb13u3 |
| Low | DEBIAN-CVE-2026-18374 | glibc | no fix listed |
| Low | GHSA-rvg8-pwq2-xj7q | base64url | 3.0.0 |
| Low | DEBIAN-CVE-2026-54875 | openssl | 3.5.7-1~deb13u3 |
| Low | DEBIAN-CVE-2026-97399 | glibc | no fix listed |
| Low | GHSA-m8rv-5g2x-5cg5 | undici | 6.28.0 |
| Low | GHSA-35p6-xmwp-9g52 | undici | 6.27.0 |
| Low | DEBIAN-CVE-2026-54872 | openssl | 3.5.7-1~deb13u3 |
| Low | DEBIAN-CVE-2026-77696 | openssl | 3.5.7-1~deb13u3 |
| Low | GHSA-r53p-7pc4-xj5r | undici | 6.28.1 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| juice-shopjuice-shop | 5.9.0 | v20.2.0 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.