gocd/gocd-server:v19.3.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of gocd/gocd-server
gocd/gocd-server:v19.3.0 resolved to 2da45cb09d57, scanned 14 Sept 2026: 254 findings, 9 critical, 2 on KEV; deployed by 1 chart, among them gocd.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
254 distinct on this digest
Findings for digest 2da45cb09d57 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-qq48-m4jx-xqh8 | mybatis | 3.5.6 |
| Medium | ALPINE-CVE-2019-1549 | openssl | 1.1.1d-r0 |
| Medium | GHSA-86wm-rrjm-8wh8 | jetty-server | 9.4.35.v20201120 |
| Medium | GHSA-xc67-hjx6-cgg6 | jetty-server | 9.4.17.v20190418 |
| Medium | ALPINE-CVE-2018-14498 | libjpeg-turbo | 1.5.3-r5 |
| Medium | GHSA-hh26-6xwr-ggv7 | spring-beans | 5.2.22.RELEASE |
| Medium | ALPINE-CVE-2019-18348 | python2 | 2.7.18-r0 |
| Medium | GHSA-9w3m-gqgf-c4p9 | snakeyaml | 1.32 |
| Medium | ALPINE-CVE-2018-11782 | subversion | 1.12.2-r0 |
| Medium | GHSA-2wrp-6fg6-hmc5 | spring-web | 5.3.34 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang3 | 3.18.0 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang | no fix listed |
| Medium | GHSA-r28m-g6j9-r2h5 | jetty-server | 9.4.17.v20190418 |
| Medium | ALPINE-CVE-2020-8177 | curl | 7.64.0-r4 |
| Medium | GHSA-8grg-q944-cch5 | hibernate-core | 5.3.18 |
| Medium | GHSA-c4r9-r8fh-9vj2 | snakeyaml | 1.31 |
| Medium | GHSA-xjp4-hw94-mvp5 | commons-configuration2 | 2.10.1 |
| Medium | GHSA-cgp8-4m63-fhh5 | commons-net | 3.9.0 |
| Medium | GHSA-78wr-2p64-hpwj | commons-io | 2.14.0 |
| Medium | GHSA-v33x-prhc-gph5 | spring-security-core | 4.2.13 |
| Medium | GHSA-355h-qmc2-wpwf | jetty-http | 9.4.60 |
| Medium | GHSA-f3jh-qvm4-mg39 | spring-security-core | 5.7.12 |
| Medium | ALPINE-CVE-2019-19242 | sqlite | 3.28.0-r2 |
| Medium | GHSA-98wm-3w3q-mw94 | snakeyaml | 1.31 |
| Medium | GHSA-qw69-rqj8-6qw8 | jetty-server | 9.4.51.v20230217 |
| Medium | GHSA-9w38-p64v-xpmv | commons-configuration2 | 2.10.1 |
| Medium | GHSA-wxqc-pxw9-g2p8 | spring-expression | 5.2.24.RELEASE |
| Medium | ALPINE-CVE-2019-5094 | e2fsprogs | 1.44.5-r1 |
| Medium | GHSA-h46c-h94j-95f3 | jackson-core | 2.15.0 |
| Medium | GHSA-2ppp-9496-p23q | spring-security-core | 4.2.16 |
| Medium | GHSA-w37g-rhq8-7m4j | snakeyaml | 1.32 |
| Medium | GHSA-mf92-479x-3373 | spring-security-web | no fix listed |
| Low | ALPINE-CVE-2018-1000654 | libtasn1 | 4.14-r0 |
| Low | GHSA-vmq6-5m68-f53m | logback-classic | 1.2.13 |
| Low | GHSA-vmq6-5m68-f53m | logback-core | 1.2.13 |
| Low | GHSA-2fvj-hgj9-j2gr | jetty-security | 9.4.63 |
| Low | ALPINE-CVE-2019-5188 | e2fsprogs | 1.44.5-r2 |
| Low | ALPINE-CVE-2019-3902 | mercurial | 4.9-r0 |
| Low | GHSA-mq66-vcfc-8246 | mercurial | 4.9 |
| Low | GHSA-v2r2-7qm7-jj6v | spring-security-core | 4.2.12 |
| Low | GHSA-564r-hj7v-mcr5 | spring-expression | 5.2.23.RELEASE |
| Low | GHSA-vrpq-qp53-qv56 | org.eclipse.jgit | 5.13.4.202507202350-r |
| Low | ALPINE-CVE-2019-5435 | curl | 7.64.0-r2 |
| Low | GHSA-g8m5-722r-8whq | jetty-server | 9.4.56 |
| Low | GHSA-hhhw-99gj-p3c3 | snakeyaml | 1.31 |
| Low | GHSA-6xx3-rg99-gc3p | bcprov-jdk15on | 1.66 |
| Low | GHSA-q4rv-gq96-w7c5 | jetty-server | 9.4.57.v20241219 |
| Low | ALPINE-CVE-2019-1563 | openssl | 1.1.1d-r0 |
| Low | GHSA-v435-xc8x-wvr9 | bcprov-jdk15on | 1.78 |
| Low | GHSA-x23c-287f-qqv5 | spring-webmvc | no fix listed |