broadinstitute/dsde-toolbox:master container image
Docker HubScanned 28 Sept 2026
Deployed by 1 of 17,926 indexed charts (latest versions) at this tag.Docker Hub all tags of broadinstitute/dsde-toolbox
broadinstitute/dsde-toolbox:master resolved to 656131886a08, scanned 28 Sept 2026: 407 findings, 0 critical, 1 on KEV; deployed by 1 chart, among them sqlbackup.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
407 distinct on this digest
Findings for digest 656131886a08 as scanned on 28 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 28 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-7gcm-g887-7qv7 | protobuf | 5.29.6 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | GHSA-jr27-m4p2-rc6r | pyasn1 | 0.6.3 |
| Medium | GHSA-5m6q-g25r-mvwx | node-forge | 1.4.0 |
| Medium | GHSA-pf86-5x62-jrwf | axios | 0.31.1 |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | GHSA-6v2p-p543-phr9 | golang.org/ | 0.27.0 |
| Medium | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Medium | GHSA-jppx-rxg9-jmrx | golang.org/ | 0.52.0 |
| Medium | GHSA-3xgq-45jj-v275 | cross-spawn | 6.0.6 |
| Medium | GHSA-pfrx-2q88-qq97 | got | 11.8.5 |
| Medium | GHSA-3ppc-4f35-3m26 | minimatch | 3.1.3 |
| Medium | GHSA-8449-7gc2-pwrp | github.com/ | 0.27.3 |
| Medium | GHSA-34x7-hfp2-rc4v | tar | 7.5.7 |
| Medium | GHSA-5xp3-jfq3-5q8x | pip | 21.1 |
| Low | GHSA-vcc3-ghjq-m6fr | decode-uri-component | 0.5.0 |
| Low | GHSA-cfm4-qjh2-4765 | node-forge | 1.3.0 |
| Low | GHSA-j5f8-grm9-p9fc | axios | 0.32.0 |
| Low | GHSA-vg3r-rm7w-2xgh | rexml | 3.2.7 |
| Low | GHSA-wpfp-cm49-9m9q | github.com/ | 0.16.3 |
| Low | GO-2023-1571 | stdlib | 1.19.6 |
| Low | GHSA-cxjh-pqwp-8mfp | follow-redirects | 1.15.6 |
| Low | GHSA-554w-wpv2-vw27 | node-forge | 1.3.2 |
| Low | GHSA-hmw2-7cc7-3qxx | form-data | 2.5.6 |
| Low | GHSA-j5g9-f88f-gfj3 | httplib2 | 0.32.0 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 1.1.18 |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 1.1.17 |
| Low | GHSA-r4q5-vmmm-2653 | follow-redirects | 1.16.0 |
| Low | GHSA-7vpp-9cxj-q8gv | github.com/ | no fix listed |
| Low | GHSA-w879-237q-wc7r | golang.org/ | 0.52.0 |
| Low | GHSA-q4h4-gmj2-qvw2 | golang.org/ | 0.52.0 |
| Low | GO-2022-0435 | stdlib | 1.17.9 |
| Low | GHSA-8ppf-4f7h-5ppj | pyasn1 | 0.6.4 |
| Low | GHSA-hm4w-wwcw-mr6r | pyasn1 | 0.6.4 |
| Low | GHSA-m4p7-r5rc-7g4j | pyasn1 | 0.6.4 |
| Low | GHSA-pw2r-vq6v-hr8c | follow-redirects | 1.14.8 |
| Low | GHSA-f5x3-32g6-xq36 | tar | 6.2.1 |
| Low | GO-2022-0288 | golang.org/ | 0.0.0-20211209124913-491a49abca63 |
| Low | GO-2022-0288 | stdlib | 1.16.12 |
| Low | GHSA-hww2-5g85-429m | uri | 0.10.0.3 |
| Low | GHSA-7r86-cg39-jmmj | minimatch | 3.1.3 |
| Low | GHSA-vmwr-mc7x-5vc3 | rexml | 3.3.6 |
| Low | GO-2023-2102 | stdlib | 1.20.10 |
| Low | GHSA-xqr8-7jwr-rhp7 | certifi | 2023.7.22 |
| Low | GHSA-wf93-45jw-7689 | pip | 26.1.2 |
| Low | GHSA-j4pr-3wm6-xx2r | uri | 0.12.5 |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-pjcq-xvwq-hhpj | github.com/ | 0.1.1 |