StackRadar

cyclonedx/cyclonedx-bom-repo-server:latest container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of cyclonedx/cyclonedx-bom-repo-server

cyclonedx/cyclonedx-bom-repo-server:latest resolved to 9e0c4db6e688, scanned 14 Sept 2026: 48 findings, 0 critical, 1 on KEV; deployed by 1 chart, among them cyclonedx.

Radar Score

726011829

48 findings on digest 9e0c4db6e688 · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves to9e0c4db6e6881 chart8 days ago011829726

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

48 distinct on this digest

Findings for digest 9e0c4db6e688 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
HighDSA-5514-1KEVglibc@2.31-13+deb11u32.31-13+deb11u7
MediumDLA-3859-1systemd@247.3-7247.3-7+deb11u6
MediumDSA-5673-1glibc@2.31-13+deb11u32.31-13+deb11u9
MediumDSA-5417-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u5
MediumDSA-5343-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u4
MediumDLA-3942-1openssl@1.1.1n-0+deb11u31.1.1n-0+deb11u6
MediumDLA-3942-2openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u2
MediumGHSA-r8m2-4x37-6592Microsoft.AspNetCore.App.Runtime.linux-x64@6.0.86.0.9
MediumGHSA-h3hv-63q5-jgprMicrosoft.NETCore.App.Runtime.linux-x64@6.0.86.0.22
MediumGHSA-8g4q-xg66-9fp4System.Text.Json@6.0.56.0.10
MediumGHSA-447r-wph3-92pmMicrosoft.NETCore.App.Runtime.linux-x64@6.0.86.0.32
MediumGHSA-8f7f-vqg5-jrv9Microsoft.NETCore.App.Runtime.linux-x64@6.0.86.0.13
MediumDSA-5218-1zlib@1:1.2.11.dfsg-2+deb11u11:1.2.11.dfsg-2+deb11u2
MediumGHSA-555c-2p6r-68mmMicrosoft.NETCore.App.Runtime.linux-x64@6.0.86.0.18
MediumGHSA-25c8-p796-jg6rMicrosoft.AspNetCore.App.Runtime.linux-x64@6.0.86.0.20
MediumGHSA-g74q-5xw3-j7q9Microsoft.AspNetCore.App.Runtime.linux-x64@6.0.86.0.27
MediumGHSA-jx7q-xxmw-44vfMicrosoft.NETCore.App.Runtime.linux-x64@6.0.86.0.18
MediumDSA-5286-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u3
MediumGHSA-2865-hh9g-w894Microsoft.AspNetCore.App.Runtime.linux-x64@6.0.8no fix listed
LowDSA-5650-1util-linux@2.36.1-8+deb11u12.36.1-8+deb11u2
LowDSA-5726-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u5
LowDLA-4321-1openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u4
LowDLA-3926-1perl@5.32.1-4+deb11u25.32.1-4+deb11u4
LowDSA-5349-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u3
LowDLA-3910-1e2fsprogs@1.46.2-21.46.2-2+deb11u1
LowDSA-5678-1glibc@2.31-13+deb11u32.31-13+deb11u10
LowDLA-4267-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u8
LowDLA-4063-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u7
LowDLA-4061-1libtasn1-6@4.16.0-24.16.0-2+deb11u2
LowDLA-4490-1openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u5
LowDLA-4259-1systemd@247.3-7247.3-7+deb11u7
LowDLA-3875-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u6
LowDLA-4492-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u9
LowDLA-4176-1openssl@1.1.1n-0+deb11u31.1.1w-0+deb11u3
LowDLA-3930-1libsepol@3.1-13.1-1+deb11u1
LowDLA-4181-1glibc@2.31-13+deb11u32.31-13+deb11u13
LowDLA-4065-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u6
LowDLA-4306-1pam@1.4.0-9+deb11u11.4.0-9+deb11u2
LowDLA-4130-1shadow@1:4.8.1-11:4.8.1-1+deb11u1
LowDLA-4217-1icu@67.1-767.1-7+deb11u1
LowDLA-4143-1glibc@2.31-13+deb11u32.31-13+deb11u12
LowDLA-4195-1krb5@1.18.3-6+deb11u11.18.3-6+deb11u7
LowDLA-4437-1gnupg2@2.2.27-2+deb11u22.2.27-2+deb11u3
LowDLA-3972-1tzdata@2021a-1+deb11u52024b-0+deb11u1
LowDLA-4085-1tzdata@2021a-1+deb11u52025a-0+deb11u1
LowDLA-4105-1tzdata@2021a-1+deb11u52025b-0+deb11u1
LowDLA-4403-1tzdata@2021a-1+deb11u52025b-0+deb11u2
LowDLA-4485-1ca-certificates@2021011920230311+deb12u1~deb11u1

Used by

1 chart
ChartVersionTagContainers
cyclonedxopenshift-bootstrapsVerified publisher1.0.12latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.