fthomas/scala-steward:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of fthomas/scala-steward
fthomas/scala-steward:latest resolved to 367afe974b7a, scanned 14 Sept 2026: 48 findings, 0 critical; deployed by 1 chart, among them steward.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
38 distinct on this digest
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 367afe974b7a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-14456 | openssl | 3.5.8-r0 |
| Low | GHSA-vx9q-rhv9-3jvg | aircompressor | 2.0.3 |
| Low | GHSA-6fmv-xxpf-w3cw | plexus-utils | 4.0.3 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 5.0.9 |
| Low | GHSA-3wrr-7qpf-2prh | jackson-databind | 2.14.0 |
| Low | ALPINE-CVE-2026-63072 | openssl | 3.5.8-r0 |
| Low | GHSA-2r2c-cx56-8933 | jline-remote-telnet | 3.30.14 |
| Low | GHSA-47qp-hqvx-6r3f | jline-remote-telnet | 3.30.14 |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | ALPINE-CVE-2026-76641 | expat | 2.8.4-r0 |
| Low | ALPINE-CVE-2026-54874 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-63075 | openssl | 3.5.8-r0 |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 5.0.8 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | GHSA-c2c7-rcm5-vvqj | picomatch | 4.0.4 |
| Low | GHSA-mwp4-54f8-5fhr | ip-address | 10.3.1 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-w4pp-8pjf-rmxw | pacote | 21.5.1 |
| Low | ALPINE-CVE-2026-76956 | expat | 2.8.4-r0 |
| Low | GHSA-f886-m6hf-6m8v | brace-expansion | 5.0.5 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | GHSA-jxxr-4gwj-5jf2 | brace-expansion | 5.0.6 |
| Low | GHSA-52v5-jr5w-gjxr | sigstore | 4.1.1 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | GHSA-v2v4-37r5-5v8g | ip-address | 10.1.1 |
| Low | GHSA-r7wm-3cxj-wff9 | jackson-core | 2.18.8 |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 4.0.4 |
| Low | GHSA-hgj6-7826-r7m5 | jackson-databind | 2.18.8 |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 5.0.7 |
| Low | GHSA-5jmj-h7xm-6q6v | jackson-databind | 2.18.9 |
| Low | GHSA-vmf3-w455-68vh | tar | 7.5.16 |
| Low | ALPINE-CVE-2026-76957 | expat | 2.8.4-r0 |
| Low | GHSA-xgjw-pm74-86q4 | @sigstore/ | 3.1.1 |
| Low | GHSA-jfc7-64v2-mr8c | @sigstore/ | 3.2.1 |
| Low | GHSA-w9m9-85wc-3x92 | postcss-selector-parser | 7.1.3 |
| Low | GHSA-wf8f-6423-gfxg | jackson-core | 2.13.0 |