geonode/geoserver:2.28.4-latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of geonode/geoserver
geonode/geoserver:2.28.4-latest resolved to 81b1d431b7e9, scanned 14 Sept 2026: 369 findings, 0 critical; deployed by 1 chart, among them geonode-k8s.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
369 distinct on this digest
Findings for digest 81b1d431b7e9 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| High | UBUNTU-CVE-2025-15467 | openssl | no fix listed |
| High | GHSA-4wrc-f8pq-fpqp | spring-web | 6.0.0 |
| High | UBUNTU-CVE-2024-6119 | openssl | no fix listed |
| High | GHSA-g5vr-rgqm-vf78 | spring-webmvc | no fix listed |
| High | UBUNTU-CVE-2024-2511 | openssl | no fix listed |
| Medium | GHSA-cx7f-g6mp-7hqm | spring-webmvc | no fix listed |
| Medium | UBUNTU-CVE-2024-5535 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2018-6952 | patch | no fix listed |
| Medium | UBUNTU-CVE-2020-10735 | python3.10 | no fix listed |
| Medium | UBUNTU-CVE-2026-45447 | openssl | 3.0.2-0ubuntu1.25 |
| Medium | GHSA-mqjf-5f49-2fjh | gt-jdbc-postgis | 34.5 |
| Medium | GHSA-cx63-2mw6-8hw5 | setuptools | 70.0.0 |
| Medium | UBUNTU-CVE-2017-11164 | pcre3 | no fix listed |
| Medium | UBUNTU-CVE-2026-21441 | python-pip | no fix listed |
| Medium | UBUNTU-CVE-2024-4741 | openssl | no fix listed |
| Medium | GHSA-qwmp-2cf2-g9g6 | wheel | 0.38.1 |
| Medium | GHSA-r9hx-vwmv-q579 | setuptools | 65.5.1 |
| Medium | UBUNTU-CVE-2026-19931 | curl | no fix listed |
| Medium | PYSEC-2025-49 | setuptools | 78.1.1 |
| Medium | UBUNTU-CVE-2022-40735 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2023-31486 | perl | no fix listed |
| Medium | UBUNTU-CVE-2018-5709 | krb5 | no fix listed |
| Medium | UBUNTU-CVE-2023-52355 | tiff | no fix listed |
| Medium | UBUNTU-CVE-2026-18924 | curl | no fix listed |
| Medium | UBUNTU-CVE-2022-4899 | libzstd | no fix listed |
| Medium | UBUNTU-CVE-2023-5678 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2025-9230 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2026-11856 | curl | 7.81.0-1ubuntu1.26 |
| Medium | GHSA-w534-q4xf-h5v2 | print-lib | 3.24 |
| Medium | UBUNTU-CVE-2023-6129 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2026-8925 | curl | 7.81.0-1ubuntu1.25 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang | no fix listed |
| Medium | UBUNTU-CVE-2026-42009 | gnutls28 | 3.7.3-4ubuntu1.9 |
| Medium | UBUNTU-CVE-2026-63076 | openssl | 3.0.2-0ubuntu1.29 |
| Medium | UBUNTU-CVE-2025-59375 | expat | no fix listed |
| Medium | UBUNTU-CVE-2023-37920 | python-pip | no fix listed |
| Medium | UBUNTU-CVE-2026-33846 | gnutls28 | 3.7.3-4ubuntu1.9 |
| Medium | UBUNTU-CVE-2024-0727 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2018-10126 | libjpeg-turbo | no fix listed |
| Medium | GHSA-rmj7-2vxq-3g9f | jackson-databind | 2.21.4 |
| Medium | UBUNTU-CVE-2023-6237 | openssl | no fix listed |
| Medium | UBUNTU-CVE-2022-41409 | pcre2 | no fix listed |
| Medium | UBUNTU-CVE-2026-5450 | glibc | 2.35-0ubuntu3.14 |
| Medium | GHSA-2p5w-cvg5-gc5c | hibernate-core | no fix listed |
| Medium | UBUNTU-CVE-2024-9143 | openssl | no fix listed |
| Medium | GHSA-j3rv-43j4-c7qm | jackson-databind | 2.21.4 |
| Medium | UBUNTU-CVE-2026-34182 | openssl | 3.0.2-0ubuntu1.25 |
| Medium | UBUNTU-CVE-2020-23026 | gcc-defaults | no fix listed |
| Medium | UBUNTU-CVE-2026-31790 | openssl | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| geonode-k8sgeonode-k8sVerified publisher | 2.0.0 | 2.28.4-latest | 2 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.