budibase/apps:3.41.3 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of budibase/apps
budibase/apps:3.41.3 resolved to 44fe6feab985, scanned 14 Sept 2026: 171 findings, 0 critical; deployed by 1 chart, among them budibase.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
171 distinct on this digest
Findings for digest 44fe6feab985 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | GHSA-f65p-4m7j-42xc | fast-uri | 3.1.6 |
| Low | GHSA-fph4-wmhf-6fwf | fast-uri | 3.1.6 |
| Low | GHSA-mmx7-hfxf-jppx | axios | 1.18.0 |
| Low | GHSA-xj6q-8x83-jv6g | axios | 1.18.0 |
| Low | GHSA-52v5-jr5w-gjxr | sigstore | 4.1.1 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | GHSA-27v5-c462-wpq7 | path-to-regexp | 8.4.0 |
| Low | GHSA-v2v4-37r5-5v8g | ip-address | 10.1.1 |
| Low | GHSA-58qx-3vcg-4xpx | ws | 8.20.1 |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 4.0.4 |
| Low | GHSA-7q8q-rj6j-mhjq | axios | 1.18.0 |
| Low | GHSA-crpf-4hrx-3jrp | svelte | 5.51.5 |
| Low | GHSA-3f6p-5ww8-9rcr | mysql2 | 3.22.0 |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 2.1.2 |
| Low | GHSA-gh4j-gqv2-49f6 | fast-xml-parser | 5.7.0 |
| Low | GHSA-q8mj-m7cp-5q26 | qs | 6.15.2 |
| Low | ALPINE-CVE-2026-49839 | jq | 1.8.2-r0 |
| Low | GHSA-p88m-4jfj-68fv | undici | 6.27.0 |
| Low | GHSA-vmf3-w455-68vh | tar | 7.5.16 |
| Low | GHSA-rcqx-6q8c-2c42 | svelte | 5.55.7 |
| Low | ALPINE-CVE-2026-76957 | expat | 2.8.4-r0 |
| Low | GHSA-866g-f22w-33x8 | @ai-sdk/ | 4.0.33 |
| Low | GHSA-2x7j-588g-ccc2 | nodemailer | 9.1.0 |
| Low | GHSA-5p4m-2wfm-xmqj | js-yaml | 4.3.1 |
| Low | GHSA-jfc7-64v2-mr8c | @sigstore/ | 3.2.1 |
| Low | ALPINE-CVE-2026-33947 | jq | 1.8.2-r0 |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | ALPINE-CVE-2026-33948 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-14672 | postgresql18 | 18.5-r0 |
| Low | GHSA-898c-q2cr-xwhg | axios | 1.16.0 |
| Low | GHSA-phwv-c562-gvmh | svelte | 5.53.5 |
| Low | GHSA-cc9r-2j5m-2m83 | nodemailer | 9.1.0 |
| Low | GHSA-wmmp-3585-3rmp | nodemailer | 9.1.0 |
| Low | GHSA-pr6f-5x2q-rwfp | svelte | 5.55.7 |
| Low | GHSA-4992-7rv2-5pvq | undici | 6.24.0 |
| Low | ALPINE-CVE-2026-40612 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-44777 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-14663 | postgresql18 | 18.5-r0 |
| Low | ALPINE-CVE-2026-41256 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-43894 | jq | 1.8.2-r0 |
| Low | GHSA-w9m9-85wc-3x92 | postcss-selector-parser | 7.1.3 |
| Low | ALPINE-CVE-2026-43896 | jq | 1.8.2-r0 |
| Low | GHSA-f7gr-6p89-r883 | svelte | 5.51.5 |
| Low | GHSA-m56q-vw4c-c2cp | svelte | 5.51.5 |
| Low | ALPINE-CVE-2026-47770 | jq | 1.8.2-r0 |
| Low | GHSA-h7h7-mm68-gmrc | svelte | 5.51.5 |
| Low | ALPINE-CVE-2026-41257 | jq | 1.8.2-r0 |
| Low | GHSA-v3r7-h72x-cjcm | undici | 6.28.0 |
| Low | GHSA-v422-hmwv-36x6 | body-parser | 2.3.0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| budibasebudibase | 0.0.0-master | 3.41.3 | 2 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.