StackRadar

folioci/mod-licenses:latest container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of folioci/mod-licenses

folioci/mod-licenses:latest resolved to cfd6109bf477, scanned 14 Sept 2026: 138 findings, 0 critical; deployed by 1 chart, among them mod-licenses.

Radar Score

1,760043599

138 findings on digest cfd6109bf477 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves tocfd6109bf4771 chart7 days ago0435991,760

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

138 distinct on this digest

Findings for digest cfd6109bf477 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-g8m5-722r-8whqjetty-server@9.4.39.v202103259.4.56
LowGHSA-qv9r-c865-cp47log4j-api@2.17.22.25.5
LowALPINE-CVE-2026-22184zlib@1.3.1-r11.3.2-r0
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.39.v202103259.4.57.v20241219
LowGHSA-jmp9-x22r-554xspring-core@5.3.39no fix listed
LowALPINE-CVE-2026-45186expat@2.6.2-r02.8.1-r0
LowGHSA-x23c-287f-qqv5spring-webmvc@5.3.39no fix listed
LowALPINE-CVE-2024-12133libtasn1@4.19.0-r24.20.0-r0
LowGHSA-rc42-6c7j-7h5rspring-boot@2.7.18no fix listed
LowALPINE-CVE-2025-15468openssl@3.3.1-r33.3.6-r0
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.39.v202103259.4.52
LowGHSA-r5w3-xv2f-j59qspring-expression@5.3.39no fix listed
LowALPINE-CVE-2025-64720libpng@1.6.43-r01.6.53-r0
LowGHSA-j92g-9f8w-j867postgresql@42.7.1142.7.12
LowALPINE-CVE-2025-66293libpng@1.6.43-r01.6.53-r0
LowGHSA-xx22-p4ch-683rlz4-java@1.10.11.11.1
LowALPINE-CVE-2025-26519musl@1.2.5-r01.2.5-r1
LowGHSA-775g-4xr8-78h8spring-expression@5.3.39no fix listed
LowGHSA-w3c8-7r8f-9jp8spring-webmvc@5.3.395.3.42
LowGHSA-rcqc-6cw3-h962jackson-databind@3.1.33.1.4
LowGHSA-5gvw-p9qm-jgwhjackson-databind@2.18.72.18.9
LowGHSA-pr98-23f8-jwxvlogback-core@1.2.131.3.15
LowALPINE-CVE-2026-25210expat@2.6.2-r02.7.4-r0
LowALPINE-CVE-2025-65018libpng@1.6.43-r01.6.53-r0
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.2.131.5.34
LowGHSA-4gc7-5j7h-4qphspring-context@5.3.39no fix listed
LowGHSA-4gc7-5j7h-4qphspring-web@5.3.39no fix listed
LowALPINE-CVE-2026-40200musl@1.2.5-r01.2.5-r3
LowALPINE-CVE-2025-66199openssl@3.3.1-r33.3.6-r0
LowGHSA-3pjw-73gf-8qr5jackson-databind@2.18.72.18.8
LowGHSA-4773-3jfm-qmx3spring-webmvc@5.3.39no fix listed
LowALPINE-CVE-2026-22796openssl@3.3.1-r33.3.6-r0
LowGHSA-72pg-x5f8-j25jspring-webmvc@5.3.39no fix listed
LowGHSA-mq64-j8f9-9gcjspring-webmvc@5.3.39no fix listed
LowGHSA-9fxm-vc8v-hj55jackson-databind@3.1.33.1.4
LowGHSA-r7wm-3cxj-wff9jackson-core@3.1.33.1.4
LowALPINE-CVE-2026-22801libpng@1.6.43-r01.6.54-r0
LowGHSA-3chg-m5w7-qfv5spring-webmvc@5.3.39no fix listed
LowGHSA-5hh8-q8hv-fr38jackson-databind@3.1.33.1.4
LowGHSA-hgj6-7826-r7m5jackson-databind@2.18.72.18.8
LowGHSA-wxpp-56q6-5pcgspring-expression@5.3.39no fix listed
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.18.72.18.9
LowGHSA-6p4f-wcwh-5vvmspring-webmvc@5.3.39no fix listed
LowGHSA-qh8g-58pp-2wxhjetty-http@9.4.39.v2021032512.0.12
LowGHSA-x2r2-rvhq-2mqvspring-security-web@5.8.16no fix listed
LowGHSA-wwpq-f5c3-7hvxspring-boot@2.7.18no fix listed
LowGHSA-7p3p-8qv8-m2vhjetty-server@9.4.39.v20210325no fix listed
LowALPINE-CVE-2025-64505libpng@1.6.43-r01.6.53-r0
LowALPINE-CVE-2024-13176openssl@3.3.1-r33.3.2-r2
LowGHSA-293q-567p-wmwqspring-security-web@5.8.16no fix listed

Used by

1 chart
ChartVersionTagContainers
mod-licensesfolio-org0.1.32latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.