choerodon/event-store-service:0.8.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of choerodon/event-store-service
choerodon/event-store-service:0.8.0 resolved to 3c94c97f6f69, scanned 14 Sept 2026: 346 findings, 17 critical, 8 on KEV; deployed by 1 chart, among them event-store-service.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
346 distinct on this digest
Findings for digest 3c94c97f6f69 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-cxfm-5m4g-x7xp | xstream | 1.4.18 |
| Medium | GHSA-ccgv-vj62-xf9h | spring-web | no fix listed |
| Medium | GHSA-7hwc-46rm-65jh | xstream | 1.4.10 |
| Medium | GHSA-56p8-3fh9-4cvq | xstream | 1.4.16 |
| Medium | GHSA-57j2-w4cx-62h2 | jackson-databind | 2.12.6.1 |
| Medium | GHSA-wm9w-rjj3-j356 | tomcat-embed-core | no fix listed |
| Medium | ALPINE-CVE-2018-14598 | libx11 | 1.6.6-r0 |
| Medium | GHSA-rpr3-cw39-3pxh | jackson-databind | 2.9.10.4 |
| Medium | GHSA-6wf9-jmg9-vxcc | xstream | 1.4.18 |
| Medium | ALPINE-CVE-2018-16842 | curl | 7.61.1-r1 |
| Medium | GHSA-xqj7-j8j5-f2xr | bcprov-jdk15on | 1.60 |
| Medium | GHSA-r29c-68gh-xp6x | tomcat-embed-core | 9.0.118 |
| Medium | GHSA-q3mw-pvr8-9ggc | tomcat-embed-core | 8.5.93 |
| Medium | GHSA-hgjh-9rj2-g67j | spring-web | 5.3.33 |
| Medium | GHSA-vhrg-v3cv-p247 | spring-security-core | 4.2.3.RELEASE |
| Medium | GHSA-rrvx-pwf8-p59p | bcprov-jdk15on | 1.56 |
| Medium | ALPINE-CVE-2018-11813 | libjpeg-turbo | 1.5.3-r2 |
| Medium | GHSA-7r82-7xv7-xcpj | httpclient | 4.5.13 |
| Medium | GHSA-ff77-26x5-69cr | tomcat-embed-core | no fix listed |
| Medium | GHSA-h4x4-5qp2-wp46 | jackson-datatype-jsr310 | 2.9.8 |
| Medium | GHSA-4487-x383-qpph | spring-core | 4.3.15 |
| Medium | GHSA-668q-qrv7-99fm | logback-core | 1.2.9 |
| Medium | GHSA-jjjh-jjxp-wpff | jackson-databind | 2.12.7.1 |
| Medium | GHSA-rgv9-q543-rqg4 | jackson-databind | 2.12.7.1 |
| Medium | GHSA-h6fc-48rj-7qqh | tomcat-embed-core | 9.0.118 |
| Medium | GHSA-3mc7-4q67-w48m | snakeyaml | 1.31 |
| Medium | GHSA-h8w4-qv99-f7vj | spring-security-oauth2 | 2.0.16 |
| Medium | GHSA-fccv-jmmp-qg76 | tomcat-embed-core | 8.5.96 |
| Medium | GHSA-mvr2-9pj6-7w5j | guava | 24.1.1-android |
| Medium | GHSA-qxf4-chvg-4r8r | tomcat-embed-core | 8.5.51 |
| Medium | GHSA-f256-j965-7f32 | netty | no fix listed |
| Medium | GHSA-qq48-m4jx-xqh8 | mybatis | 3.5.6 |
| Medium | GHSA-r97x-3g8f-gx3m | bcprov-jdk15on | 1.56 |
| Medium | GHSA-xm78-4m3g-7wm7 | kafka-clients | 0.10.2.2 |
| Medium | GHSA-f8cc-g7j8-xxpm | xstream | 1.4.20 |
| Medium | ALPINE-CVE-2018-1152 | libjpeg-turbo | 1.5.3-r1 |
| Medium | GHSA-2j2x-hx4g-2gf4 | bcprov-jdk15on | 1.56 |
| Medium | GHSA-w285-wf9q-5w69 | bcprov-jdk15on | 1.56 |
| Medium | GHSA-rcpf-vj53-7h2m | spring-core | 4.3.17 |
| Medium | GHSA-wc4r-xq3c-5cf3 | tomcat-embed-core | no fix listed |
| Medium | GHSA-rqph-vqwm-22vc | spring-messaging | 5.2.22.RELEASE |
| Medium | GHSA-r6j3-px5g-cq3x | tomcat-embed-core | 8.5.94 |
| Medium | GHSA-wr62-c79q-cv37 | tomcat-embed-core | no fix listed |
| Medium | GHSA-5m62-pw8w-7w9f | tomcat-embed-core | 9.0.118 |
| Medium | GHSA-hfq9-hggm-c56q | xstream | 1.4.21 |
| Medium | GHSA-25xr-qj8w-c4vf | tomcat-embed-core | no fix listed |
| Medium | GHSA-hh26-6xwr-ggv7 | spring-beans | 5.2.22.RELEASE |
| Medium | GHSA-4j3c-42xv-3f84 | tomcat-embed-core | no fix listed |
| Medium | GHSA-4vhj-98r6-424h | bcprov-jdk15on | 1.56 |
| Medium | GHSA-78vv-qj73-h9m5 | poi | 3.15 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| event-store-servicechoerodon | 0.8.0 | 0.8.0 | 3 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.