StackRadar

goharbor/harbor-registryctl:v2.15.4 container image

Docker Hub

Scanned 10 Oct 2026

Deployed by 1 of 18,087 indexed charts (latest versions) at this tag.Docker Hub all tags of goharbor/harbor-registryctl

goharbor/harbor-registryctl:v2.15.4 resolved to 30bd1ace4e3b, scanned 10 Oct 2026: 33 findings, 0 critical; deployed by 1 chart, among them harbor.

Radar Score

27700330

33 findings on digest 30bd1ace4e3b · scanned 10 Oct 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v2.15.4resolves to30bd1ace4e3b1 charttoday00330277

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

33 distinct on this digest

Findings for digest 30bd1ace4e3b as scanned on 10 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 10 Oct 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-h62f-wm92-2cmwgithub.com/docker/distribution@v0.0.0-20260921091602-ac7c4cedc2f4+dirty2.7.0-rc.0
MediumGHSA-44r7-7p62-q3frgithub.com/miekg/dns@v1.0.151.1.25
MediumGHSA-hqxw-f8mx-cpmwgithub.com/docker/distribution@v0.0.0-20260921091602-ac7c4cedc2f4+dirty2.8.2-beta.1
LowGHSA-f2g3-hh2r-cwgcgithub.com/distribution/distribution@v2.8.2+incompatibleno fix listed
LowGO-2025-3460github.com/distribution/distribution@v2.8.2+incompatibleno fix listed
LowGO-2026-6355golang.org/x/crypto@v0.55.00.56.0
LowGO-2026-6354golang.org/x/crypto@v0.55.00.56.0
LowGHSA-3p65-76g6-3w7rgithub.com/distribution/distribution@v2.8.2+incompatibleno fix listed
LowGHSA-6pjf-3r9x-m592github.com/distribution/distribution@v2.8.2+incompatibleno fix listed
LowGO-2022-0646github.com/aws/aws-sdk-go@v1.55.8no fix listed
LowGO-2026-6612golang.org/x/net@v0.58.00.60.0
LowGO-2026-6612stdlib@go1.26.71.26.9
LowGO-2026-6603stdlib@go1.26.71.26.9
LowGO-2026-6603golang.org/x/net@v0.58.00.60.0
LowGO-2026-6611golang.org/x/net@v0.58.00.60.0
LowGO-2026-6611stdlib@go1.26.71.26.9
LowGO-2026-6604stdlib@go1.26.71.26.9
LowGO-2026-6610golang.org/x/net@v0.58.00.60.0
LowGO-2026-6610stdlib@go1.26.71.26.9
LowGO-2026-6599stdlib@go1.26.71.26.9
LowGO-2026-6600stdlib@go1.26.71.26.9
LowGO-2026-6608stdlib@go1.26.71.26.9
LowGO-2026-6613stdlib@go1.26.71.26.9
LowGO-2026-6617golang.org/x/net@v0.58.00.60.0
LowGO-2026-6617stdlib@go1.26.71.26.9
LowGO-2026-6607stdlib@go1.26.71.26.9
LowGO-2026-6609stdlib@go1.26.71.26.9
LowGO-2026-6605stdlib@go1.26.71.26.9
LowGO-2026-5932golang.org/x/crypto@v0.55.0no fix listed
LowGO-2022-0635github.com/aws/aws-sdk-go@v1.55.8no fix listed
LowGHSA-qq97-vm5h-rrhggithub.com/docker/distribution@v0.0.0-20260921091602-ac7c4cedc2f4+dirty2.8.0
LowGHSA-8wmf-6v46-5gfggo.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp@v1.43.01.45.0
LowGHSA-8wmf-6v46-5gfggo.opentelemetry.io/otel/exporters/otlp/otlptrace@v1.43.01.45.0

Used by

1 chart
ChartVersionTagContainers
harborhelm-harborVerified publisher2.3.7v2.15.41

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 10 Oct 2026 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.