gradiant/spark:2.4.4-python-alpine container image
Docker HubScanned 14 Sept 2026
Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of gradiant/spark
gradiant/spark:2.4.4-python-alpine resolved to 97657d56e927, scanned 14 Sept 2026: 213 findings, 10 critical, 2 on KEV; deployed by 2 charts, among them spark-standalone and spark-standalone.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
213 distinct on this digest
Findings for digest 97657d56e927 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | ALPINE-CVE-2020-28196 | krb5 | 1.17.2-r0 |
| Medium | ALPINE-CVE-2020-11655 | sqlite | 3.28.0-r3 |
| Medium | ALPINE-CVE-2020-10531 | icu | 64.2-r1 |
| Medium | ALPINE-CVE-2020-8492 | python3 | 3.7.7-r0 |
| Medium | GHSA-mf7c-35mq-75pj | hadoop-common | 2.7.4 |
| Medium | GHSA-rpr3-cw39-3pxh | jackson-databind | 2.9.10.4 |
| Medium | ALPINE-CVE-2020-13790 | libjpeg-turbo | 2.0.4-r1 |
| Medium | GHSA-95q3-pppp-r683 | mesos | 1.6.0 |
| Medium | ALPINE-CVE-2021-23841 | openssl | 1.1.1j-r0 |
| Medium | ALPINE-CVE-2020-29363 | p11-kit | 0.23.16.1-r1 |
| Medium | ALPINE-CVE-2020-1971 | openssl | 1.1.1i-r0 |
| Medium | ALPINE-CVE-2020-29361 | p11-kit | 0.23.16.1-r1 |
| Medium | ALPINE-CVE-2019-19244 | sqlite | 3.28.0-r2 |
| Medium | GHSA-8cw2-jv5c-c825 | pyarrow | 0.15.1 |
| Medium | GHSA-7r82-7xv7-xcpj | httpclient | 4.5.13 |
| Medium | GHSA-vx85-mj8c-4qm6 | libthrift | 0.12.0 |
| Medium | GHSA-cx63-2mw6-8hw5 | setuptools | 70.0.0 |
| Medium | GHSA-32w9-2qpc-5f9v | mesos | 1.4.3 |
| Medium | GHSA-wxr5-93ph-8wr9 | commons-beanutils | 1.11.0 |
| Medium | GHSA-jjjh-jjxp-wpff | jackson-databind | 2.12.7.1 |
| Medium | GHSA-rgv9-q543-rqg4 | jackson-databind | 2.12.7.1 |
| Medium | GHSA-735f-pc8j-v9w8 | protobuf-java | 3.25.5 |
| Medium | ALPINE-CVE-2019-2201 | libjpeg-turbo | 2.0.4-r0 |
| Medium | GHSA-3mc7-4q67-w48m | snakeyaml | 1.31 |
| Medium | GHSA-gwrp-pvrq-jmwv | commons-io | 2.7 |
| Medium | GHSA-r9hx-vwmv-q579 | setuptools | 65.5.1 |
| Medium | GHSA-329j-jfvr-rhr6 | pyspark | 3.3.2 |
| Medium | GHSA-mvr2-9pj6-7w5j | guava | 24.1.1-android |
| Medium | PYSEC-2025-49 | setuptools | 78.1.1 |
| Medium | GHSA-f256-j965-7f32 | netty | no fix listed |
| Medium | ALPINE-CVE-2019-1549 | openssl | 1.1.1d-r0 |
| Medium | GHSA-xc67-hjx6-cgg6 | jetty-server | 9.3.27.v20190418 |
| Medium | GHSA-hrmr-f5m6-m9pq | commons-compress | 1.18 |
| Medium | GHSA-vp98-w2p3-mv35 | log4j | 2.0 |
| Medium | GHSA-9rr6-jpg7-9jg6 | pyspark | 3.1.3 |
| Medium | GHSA-h24p-qwf4-84q8 | hadoop-common | 2.8.1 |
| Medium | GHSA-rhrv-645h-fjfh | avro | 1.11.3 |
| Medium | GHSA-wx5j-54mm-rqqq | netty | no fix listed |
| Medium | GHSA-wrvw-hg22-4m67 | protobuf-java | 3.16.1 |
| Medium | GHSA-9w3m-gqgf-c4p9 | snakeyaml | 1.32 |
| Medium | GHSA-pvp8-3xj6-8c6x | commons-configuration | no fix listed |
| Medium | GHSA-c8cc-p3j7-4c7f | mesos | 1.4.2 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang | no fix listed |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang3 | 3.18.0 |
| Medium | GHSA-r28m-g6j9-r2h5 | jetty-server | 9.3.27.v20190418 |
| Medium | GHSA-c4r9-r8fh-9vj2 | snakeyaml | 1.31 |
| Medium | GHSA-cgp8-4m63-fhh5 | commons-net | 3.9.0 |
| Medium | GHSA-78wr-2p64-hpwj | commons-io | 2.14.0 |
| Medium | GHSA-jwh2-ffg4-48xc | kubernetes-client | 4.7.2 |
| Medium | ALPINE-CVE-2019-19242 | sqlite | 3.28.0-r2 |
Used by
2 charts
| Chart | Version | Tag | Containers |
|---|---|---|---|
| spark-standalonedmwm-bigdataVerified publisher | 0.1.0 | 2.4.4-python-alpine | 2 |
| spark-standalonegradiant-bigdataVerified publisher | 0.1.0 | 2.4.4-python-alpine | 2 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.