StackRadar

bpatrik/pigallery2:1.9.0-debian-buster container image

Docker Hub

Scanned 30 Sept 2026

Deployed by 1 of 17,957 indexed charts (latest versions) at this tag.Docker Hub all tags of bpatrik/pigallery2

bpatrik/pigallery2:1.9.0-debian-buster resolved to 21fbaa5fae61, scanned 30 Sept 2026: 206 findings, 0 critical, 2 on KEV; deployed by 1 chart, among them pi-gallery2.

Radar Score

3,0790861137

206 findings on digest 21fbaa5fae61 · scanned 30 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
1.9.0-debian-busterresolves to21fbaa5fae611 chart3 days ago08611373,079

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

206 distinct on this digest

Findings for digest 21fbaa5fae61 as scanned on 30 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 30 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-27p8-2357-5qqvxmldom@0.1.31no fix listed
MediumGHSA-4w3w-2rp5-g8jmxmldom@0.1.31no fix listed
MediumGHSA-c7q8-3ch8-vqpvxmldom@0.1.31no fix listed
MediumGHSA-w2rr-34g9-rvrjxmldom@0.1.31no fix listed
MediumGHSA-8344-3jmq-59r6xmldom@0.1.31no fix listed
MediumDLA-3213-1krb5@1.17-3+deb10u11.17-3+deb10u5
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.70.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@0.1.70.1.10
MediumGHSA-965w-775f-mr7gxmldom@0.1.31no fix listed
MediumGHSA-8cj5-5rvv-wf4vtar-fs@2.1.12.1.3
MediumGHSA-5fg8-2547-mr8qxmldom@0.1.31no fix listed
MediumGHSA-3xgq-45jj-v275cross-spawn@5.1.06.0.6
MediumGHSA-vj76-c3g6-qr5vtar-fs@2.1.12.1.4
MediumGHSA-pfrx-2q88-qq97got@6.7.111.8.5
MediumGHSA-3ppc-4f35-3m26minimatch@3.0.43.1.3
MediumGHSA-qwcr-r2fm-qrc7body-parser@1.19.01.20.3
MediumDLA-3152-1glibc@2.28-102.28-10+deb10u2
MediumGHSA-34x7-hfp2-rc4vtar@4.4.137.5.7
MediumGHSA-vh95-rmgr-6w4mminimist@0.0.100.2.1
LowGHSA-vcc3-ghjq-m6frdecode-uri-component@0.2.00.5.0
LowGHSA-rhx6-c78j-4q9wpath-to-regexp@0.1.70.1.12
LowGHSA-hj48-42vr-x3v9path-parse@1.0.61.0.7
LowDSA-5122-1gzip@1.9-31.9-3+deb10u1
LowDSA-5123-1xz-utils@5.2.4-15.2.4-1+deb10u1
LowDSA-5073-1expat@2.2.6-2+deb10u12.2.6-2+deb10u2
LowGHSA-hmw2-7cc7-3qxxform-data@2.3.22.5.6
LowGHSA-rgw5-rvv9-x895brace-expansion@1.1.111.1.18
LowGHSA-23hp-3jrh-7fpwtar@4.4.137.5.19
LowGHSA-8x88-c5mf-7j5wtar@4.4.137.5.18
LowGHSA-mh99-v99m-4gvgbrace-expansion@1.1.111.1.17
LowGHSA-h64w-w9pr-82m4exifreader@3.15.04.39.0
LowGHSA-pj96-35fp-cfccexifreader@3.15.04.41.1
LowGHSA-f5x3-32g6-xq36tar@4.4.136.2.1
LowGHSA-7r86-cg39-jmmjminimatch@3.0.43.1.3
LowGHSA-52cp-r559-cp3mjs-yaml@4.1.04.3.0
LowDSA-5142-1libxml2@2.9.4+dfsg1-7+deb10u12.9.4+dfsg1-7+deb10u4
LowDLA-3314-1libsdl2@2.0.9+dfsg1-12.0.9+dfsg1-1+deb10u1
LowDSA-4990-1ffmpeg@7:4.1.6-1~deb10u17:4.1.8-0+deb10u1
LowGHSA-2883-xcg3-v3hhjs-yaml@4.1.04.3.2
LowGHSA-wh4c-j3r5-mjhpxmldom@0.1.31no fix listed
LowGHSA-r292-9mhp-454mtar@4.4.137.5.21
LowDLA-3363-1pcre2@10.32-510.32-5+deb10u1
LowGHSA-23c5-xmqv-rm74minimatch@3.0.43.1.4
LowGHSA-qffp-2rhf-9h96tar@4.4.137.5.10
LowDSA-4947-1libsndfile@1.0.28-61.0.28-6+deb10u1
LowGHSA-8qq5-rm4j-mr97tar@4.4.137.5.3
LowGHSA-776f-qx25-q3ccxml2js@0.4.230.5.0
LowDSA-5147-1dpkg@1.19.71.19.8
LowDLA-3682-1ncurses@6.1+20181013-2+deb10u26.1+20181013-2+deb10u5
LowDSA-4919-1lz4@1.8.3-11.8.3-1+deb10u1

Used by

1 chart
ChartVersionTagContainers
pi-gallery2homeenterpriseinc0.3.01.9.0-debian-buster1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 30 Sept 2026 · advisories as of 30 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.