choerodon/event-store-service:0.8.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of choerodon/event-store-service
choerodon/event-store-service:0.8.0 resolved to 3c94c97f6f69, scanned 14 Sept 2026: 346 findings, 17 critical, 8 on KEV; deployed by 1 chart, among them event-store-service.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
346 distinct on this digest
Findings for digest 3c94c97f6f69 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | GHSA-c8hm-7hpq-7jhg | jackson-databind | 2.8.11.3 |
| High | GHSA-f9hv-mg5h-xcw9 | jackson-databind | 2.8.11.3 |
| High | GHSA-mx9v-gmh4-mgqw | jackson-databind | 2.8.11.3 |
| High | GHSA-558x-2xjg-6232 | spring-expression | 5.2.20.RELEASE |
| High | GHSA-g5w6-mrj7-75h2 | xstream | 1.4.18 |
| High | GHSA-7w75-32cg-r6g2 | tomcat-embed-core | 8.5.99 |
| High | GHSA-mph4-vhrx-mv67 | jackson-databind | 2.8.11.4 |
| High | GHSA-5ww9-j83m-q7qx | jackson-databind | 2.8.11.4 |
| High | GHSA-4gq5-ch57-c2mg | jackson-databind | 2.8.11.3 |
| High | GHSA-46j3-r4pj-4835 | tomcat-embed-core | 8.5.32 |
| High | ALPINE-CVE-2018-14600 | libx11 | 1.6.6-r0 |
| High | GHSA-p8pq-r894-fm8f | xstream | 1.4.18 |
| High | GHSA-m59c-jpc8-m2x4 | tomcat-embed-core | 8.5.31 |
| High | GHSA-gww7-p5w4-wrfv | jackson-databind | 2.8.11.5 |
| High | GHSA-h592-38cm-4ggp | jackson-databind | 2.8.11 |
| High | GHSA-j39c-c8hj-x4j3 | tomcat-embed-core | 8.5.63 |
| High | GHSA-6fpp-rgj9-8rwc | jackson-databind | 2.8.11.4 |
| High | GHSA-288c-cq4h-88gq | jackson-databind | 2.9.10.7 |
| High | GHSA-5q99-f34m-67gc | tomcat-embed-core | 8.5.34 |
| High | GHSA-hvv8-336g-rx3m | xstream | 1.4.16 |
| High | GHSA-g8hw-794c-4j9g | spring-core | 4.3.15 |
| High | GHSA-x2w5-5m2g-7h5m | jackson-databind | 2.8.11.3 |
| High | GHSA-vmfg-rjjm-rjrj | logback-core | 1.2.0 |
| High | GHSA-vmfg-rjjm-rjrj | logback-classic | 1.2.0 |
| High | GHSA-xw4p-crpj-vjx2 | xstream | 1.4.18 |
| High | GHSA-74cv-f58x-f9wf | xstream | 1.4.16 |
| High | GHSA-cqqj-4p63-rrmm | netty | no fix listed |
| High | GHSA-cqqj-4p63-rrmm | netty-codec-http | 4.1.44 |
| High | GHSA-5r5r-6hpj-8gg9 | jackson-databind | 2.9.10.8 |
| Medium | ALPINE-CVE-2018-0500 | curl | 7.61.0-r0 |
| Medium | GHSA-f9xh-2qgp-cq57 | jackson-databind | 2.9.10.8 |
| Medium | GHSA-4jrv-ppp4-jm57 | gson | 2.8.9 |
| Medium | GHSA-m6x4-97wx-4q27 | jackson-databind | 2.9.10.8 |
| Medium | GHSA-fqwf-pjwf-7vqv | jackson-databind | 2.9.10.4 |
| Medium | ALPINE-CVE-2018-16839 | curl | 7.61.1-r1 |
| Medium | GHSA-qr7j-h6gg-jmgc | jackson-databind | 2.8.11.2 |
| Medium | GHSA-mx7p-6679-8g3q | jackson-databind | 2.8.11.5 |
| Medium | GHSA-r3gr-cxrf-hg25 | jackson-databind | 2.9.10.8 |
| Medium | GHSA-gjmw-vf9h-g25v | jackson-databind | 2.8.11.5 |
| Medium | GHSA-h3cw-g4mq-c5x2 | jackson-databind | 2.9.10.6 |
| Medium | GHSA-j563-grx4-pjpv | xstream | 1.4.20 |
| Medium | GHSA-rv63-gqm8-9w8q | netty-handler | 4.0.37.Final |
| Medium | GHSA-2rvv-w9r2-rg7m | tomcat-embed-core | 8.5.60 |
| Medium | GHSA-mw3r-pfmg-xp92 | xmlbeans | 3.0.0 |
| Medium | GHSA-85cw-hj65-qqv9 | jackson-databind | 2.8.11.5 |
| Medium | GHSA-fmmc-742q-jg75 | jackson-databind | 2.8.11.5 |
| Medium | GHSA-gwp4-hfv6-p7hw | jackson-databind | 2.8.11.4 |
| Medium | ALPINE-CVE-2018-14599 | libx11 | 1.6.6-r0 |
| Medium | GHSA-9xcj-c8cr-8c3c | tomcat-embed-core | 8.5.50 |
| Medium | GHSA-f3j5-rmmp-3fc5 | jackson-databind | 2.8.11.5 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| event-store-servicechoerodon | 0.8.0 | 0.8.0 | 3 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.