StackRadar

craigwillis/c2metadata-bd:latest container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of craigwillis/c2metadata-bd

craigwillis/c2metadata-bd:latest resolved to ae317d7e4724, scanned 14 Sept 2026: 306 findings, 14 critical, 5 on KEV; deployed by 1 chart, among them polyglot.

Radar Score

8,020144615393

306 findings on digest ae317d7e4724 · scanned 14 Sept 2026

KEV ×5 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves toae317d7e47241 chart6 days ago1446153938,020

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

306 distinct on this digest

Findings for digest ae317d7e4724 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumPYSEC-2023-221werkzeug@1.0.12.3.8
MediumGHSA-h46c-h94j-95f3jackson-core@2.2.32.15.0
MediumGHSA-2ppp-9496-p23qspring-security-core@4.1.3.RELEASE4.2.16
MediumGHSA-v596-fwhq-8x48spring-security-core@4.1.3.RELEASE4.1.5
MediumGHSA-v596-fwhq-8x48spring-core@4.3.2.RELEASE4.3.14
MediumGHSA-q6g2-g7f3-rr83jettison@1.11.5.4
MediumGHSA-r346-rmrg-qpghresteasy-client@3.0.9.Final3.0.20.Final
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.121.32
MediumGHSA-6v7w-535j-rq5mspring-web@4.1.1.RELEASE4.1.7
MediumGHSA-mf92-479x-3373spring-security-web@4.1.3.RELEASEno fix listed
MediumGHSA-9xfc-j5mf-9w5presteasy-client@3.0.9.Final3.0.20.Final
MediumGHSA-gp7f-rwcx-9369jsoup@1.7.21.15.3
MediumGHSA-5xp3-jfq3-5q8xpip@20.1.121.1
LowPYSEC-2026-2132click@7.1.28.3.3
LowGHSA-pc54-pchm-xcw6resteasy-jaxrs@3.0.9.Final3.0.11.Final
LowGHSA-vmq6-5m68-f53mlogback-classic@1.0.131.2.13
LowGHSA-vmq6-5m68-f53mlogback-core@1.0.131.2.13
LowGHSA-2fvj-hgj9-j2grjetty-security@9.4.32.v202009309.4.63
LowGHSA-45vg-2v73-vm62spring-core@4.1.1.RELEASE4.1.5
LowGHSA-6fmv-xxpf-w3cwplexus-utils@3.1.03.6.1
LowGHSA-564r-hj7v-mcr5spring-expression@4.1.1.RELEASE5.2.23.RELEASE
LowGHSA-q2x7-8rv6-6q7hjinja2@2.11.23.1.5
LowGHSA-xqr8-7jwr-rhp7certifi@2020.11.82023.7.22
LowGHSA-r7p8-xq5m-436cjetty-jaspi@9.4.32.v202009309.4.61
LowGHSA-g8m5-722r-8whqjetty-server@9.4.32.v202009309.4.56
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.121.31
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.32.v202009309.4.57.v20241219
LowGHSA-f9vj-2wh5-fj8jwerkzeug@1.0.13.0.6
LowGHSA-hr32-mgpm-qf2fresteasy-client@3.0.9.Final3.14.0.Final
LowGHSA-x23c-287f-qqv5spring-webmvc@4.3.3.RELEASEno fix listed
LowGHSA-43fp-rhv2-5gv8certifi@2020.11.82022.12.07
LowGHSA-wf93-45jw-7689pip@20.1.126.1.2
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.32.v202009309.4.52
LowGHSA-h75v-3vvj-5mfjjinja2@2.11.23.1.4
LowGHSA-r5w3-xv2f-j59qspring-expression@4.1.1.RELEASEno fix listed
LowGHSA-9hjg-9r4m-mvj7requests@2.25.02.32.4
LowGHSA-269g-pwp5-87ppjunit@4.114.13.1
LowGHSA-h5c8-rqwp-cp95jinja2@2.11.23.1.3
LowGHSA-j26w-f9rq-mr2qjetty-servlets@9.4.32.v202009309.4.54
LowGHSA-29vq-49wr-vm6xwerkzeug@1.0.13.1.6
LowGHSA-hgf8-39gv-g3f2werkzeug@1.0.13.1.4
LowGHSA-2rmj-mq67-h97gspring-web@4.1.1.RELEASE5.3.38
LowGHSA-775g-4xr8-78h8spring-expression@4.1.1.RELEASEno fix listed
LowGHSA-34jh-p97f-mpxfurllib3@1.26.11.26.19
LowGHSA-4xh5-x5gv-qwphpip@20.1.125.3
LowGHSA-pr98-23f8-jwxvlogback-core@1.0.131.3.15
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.0.131.5.34
LowGHSA-h35f-9h28-mq5csetuptools@50.3.083.0.0
LowGHSA-4gc7-5j7h-4qphspring-context@4.1.1.RELEASEno fix listed
LowGHSA-4gc7-5j7h-4qphspring-web@4.1.1.RELEASEno fix listed

Used by

1 chart
ChartVersionTagContainers
polyglotncsaVerified publisher0.1.1latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.