conduction/conduction-ui-app:dev container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of conduction/conduction-ui-app
conduction/conduction-ui-app:dev resolved to d591f5e6f2a9, scanned 14 Sept 2026: 235 findings, 1 critical; deployed by 1 chart, among them conduction-ui.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
235 distinct on this digest
Findings for digest d591f5e6f2a9 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2021-3711 | openssl | 1.1.1l-r0 |
| High | GHSA-phwq-j96m-2c2q | ejs | 3.1.7 |
| High | GHSA-c4w7-xm78-47vh | y18n | 4.0.1 |
| High | ALPINE-CVE-2020-1967 | openssl | 1.1.1g-r0 |
| High | ALPINE-CVE-2021-23840 | openssl | 1.1.1j-r0 |
| High | ALPINE-CVE-2021-3712 | openssl | 1.1.1l-r0 |
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.11-r4 |
| High | ALPINE-CVE-2021-3449 | openssl | 1.1.1k-r0 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | GHSA-r5fr-rjxr-66jc | lodash-es | 4.18.0 |
| High | GHSA-r5fr-rjxr-66jc | lodash.template | 4.18.0 |
| High | GHSA-w573-4hg7-7wgq | decode-uri-component | 0.2.1 |
| High | GHSA-3jfq-g458-7qm9 | tar | 6.1.1 |
| High | GHSA-35jh-r3h4-6jhm | lodash | 4.17.21 |
| High | GHSA-35jh-r3h4-6jhm | lodash.template | no fix listed |
| Medium | GHSA-hrpp-h998-j3pp | qs | 6.7.3 |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
| Medium | GHSA-xvch-5gv4-984h | minimist | 1.2.6 |
| Medium | GHSA-r628-mhmh-qjhw | tar | 6.1.2 |
| Medium | GHSA-g4rg-993r-mgx7 | shell-quote | 1.7.3 |
| Medium | GHSA-896r-f27r-55mw | json-schema | 0.4.0 |
| Medium | GHSA-9c47-m6qq-7p4h | json5 | 1.0.2 |
| Medium | GHSA-76p3-8jx3-jpfq | loader-utils | 1.4.1 |
| Medium | GHSA-8hfj-j24r-96c4 | moment | 2.29.2 |
| Medium | GHSA-wc69-rhjr-hc9g | moment | 2.29.4 |
| Medium | GHSA-mc23-976p-j42x | xterm | 3.8.1 |
| Medium | GHSA-p6mc-m468-83gw | lodash | 4.17.19 |
| Medium | GHSA-vx3p-948g-6vhq | ssri | 6.0.2 |
| Medium | ALPINE-CVE-2021-36159 | apk-tools | 2.10.7-r0 |
| Medium | GHSA-ww39-953v-wcq6 | glob-parent | 5.1.2 |
| Medium | GHSA-9r2w-394v-53qc | tar | 6.1.7 |
| Medium | GHSA-33f9-j839-rf8h | immer | 9.0.6 |
| Medium | GHSA-fwr7-v2mv-hh25 | async | 2.6.4 |
| Medium | ALPINE-CVE-2021-23841 | openssl | 1.1.1j-r0 |
| Medium | GHSA-93q8-gq69-wqmw | ansi-regex | 3.0.1 |
| Medium | GHSA-6h5x-7c5m-7cr7 | eventsource | 1.1.1 |
| Medium | GHSA-fjxv-7rqg-78g4 | form-data | 2.5.4 |
| Medium | GHSA-pw54-mh39-w3hc | npm-user-validate | 1.0.1 |
| Medium | ALPINE-CVE-2020-1971 | openssl | 1.1.1i-r0 |
| Medium | GHSA-8r6j-v8pm-fqw3 | fsevents | 1.2.11 |
| Medium | GHSA-qqgx-2p2h-9c37 | ini | 1.3.6 |
| Medium | GHSA-hxcc-f52p-wc94 | serialize-javascript | 3.1.0 |
| Medium | GHSA-hgjh-723h-mx2j | url-parse | 1.5.8 |
| Medium | GHSA-4wf5-vphf-c2xc | terser | 4.8.1 |
| Medium | ALPINE-CVE-2019-15847 | gcc | 9.3.0-r0 |
| Medium | GHSA-74fj-2j2h-c42q | follow-redirects | 1.14.7 |
| Medium | GHSA-ff7x-qrg7-qggm | dot-prop | 4.2.1 |
| Medium | GHSA-r8j5-h5cx-65gg | is-svg | 4.3.0 |
| Medium | GHSA-mw96-cpmx-2vgc | rollup | 2.80.0 |
| Medium | GHSA-c2qf-rxjj-qqgw | semver | 5.7.2 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| conduction-uiconduction-ui | 0.1.0 | dev | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.