blackducksoftware/blackduck-alert:8.4.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of blackducksoftware/blackduck-alert
blackducksoftware/blackduck-alert:8.4.0 resolved to 90cca32de2cc, scanned 14 Sept 2026: 217 findings, 0 critical; deployed by 1 chart, among them blackduck-alert.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
217 distinct on this digest
Findings for digest 90cca32de2cc as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-8932 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-8286 | curl | 8.22.0-r0 |
| Low | GHSA-8xfc-gm6g-vgpv | bcprov-jdk18on | 1.78 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-14679 | postgresql18 | 18.5-r0 |
| Low | GHSA-wg6q-6289-32hp | bcpkix-jdk18on | 1.84 |
| Low | GHSA-4h8f-2wvx-gg5w | bcprov-jdk18on | 1.78 |
| Low | GHSA-wjxj-5m7g-mg7q | bcpkix-jdk18on | 1.73 |
| Low | GHSA-wjxj-5m7g-mg7q | bcprov-jdk18on | 1.73 |
| Low | ALPINE-CVE-2026-40164 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-39979 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-6478 | postgresql18 | 18.4-r0 |
| Low | GHSA-9fw2-h3hf-293r | spring-data-commons | no fix listed |
| Low | GHSA-r5w3-xv2f-j59q | spring-expression | no fix listed |
| Low | ALPINE-CVE-2026-8458 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-6253 | curl | 8.20.0-r0 |
| Low | GHSA-m69x-pw9p-7j3q | spring-security-saml2-service-provider | no fix listed |
| Low | GHSA-67mf-3cr5-8w23 | bcprov-jdk18on | 1.78 |
| Low | GHSA-6g32-pxv4-2wfj | amqp-client | 5.33.0 |
| Low | ALPINE-CVE-2026-9547 | curl | 8.22.0-r0 |
| Low | GHSA-j92g-9f8w-j867 | postgresql | 42.7.12 |
| Low | ALPINE-CVE-2026-6276 | curl | 8.20.0-r0 |
| Low | ALPINE-CVE-2026-6638 | postgresql18 | 18.4-r0 |
| Low | GHSA-9m3c-qcxr-9x87 | tomcat-embed-core | 10.1.53 |
| Low | GHSA-4cx2-fc23-5wg6 | bcpkix-jdk18on | 1.79 |
| Low | GHSA-hr8g-6v94-x4m9 | bcprov-jdk18on | 1.74 |
| Low | ALPINE-CVE-2026-9080 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-42767 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-5545 | curl | 8.20.0-r0 |
| Low | ALPINE-CVE-2026-3784 | curl | 8.19.0-r0 |
| Low | ALPINE-CVE-2026-9545 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2025-14819 | curl | 8.18.0-r0 |
| Low | ALPINE-CVE-2026-6476 | postgresql18 | 18.4-r0 |
| Low | ALPINE-CVE-2026-6471 | postgresql18 | 18.5-r0 |
| Low | GHSA-72hv-8253-57qq | jackson-core | 2.18.6 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2025-14524 | curl | 8.18.0-r0 |
| Low | ALPINE-CVE-2026-34181 | openssl | 3.5.7-r0 |
| Low | GHSA-qx7j-jv8m-fppr | amqp-client | 5.31.0 |
| Low | GHSA-jhq6-gfmj-v8fx | logback-core | 1.5.34 |
| Low | GHSA-3pjj-qpw6-5fcm | spring-security-saml2-service-provider | no fix listed |
| Low | GHSA-3pjw-73gf-8qr5 | jackson-databind | 2.18.8 |
| Low | GHSA-4773-3jfm-qmx3 | spring-webmvc | no fix listed |
| Low | ALPINE-CVE-2026-6429 | curl | 8.20.0-r0 |
| Low | GHSA-72pg-x5f8-j25j | spring-webmvc | no fix listed |
| Low | ALPINE-CVE-2026-1965 | curl | 8.19.0-r0 |
| Low | GHSA-w6w4-rjh9-9r58 | c3p0 | 0.14.0 |
| Low | ALPINE-CVE-2026-7168 | curl | 8.20.0-r0 |
| Low | GHSA-mq64-j8f9-9gcj | spring-webmvc | no fix listed |
| Low | GHSA-h84g-69h7-mw6v | mchange-commons-java | 0.6.0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| blackduck-alertblackduck | 8.4.0 | 8.4.0 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.