StackRadar

gradiant/spark:2.4.4-python-alpine container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of gradiant/spark

gradiant/spark:2.4.4-python-alpine resolved to 97657d56e927, scanned 14 Sept 2026: 213 findings, 10 critical, 2 on KEV; deployed by 2 charts, among them spark-standalone and spark-standalone.

Radar Score

6,055102912252

213 findings on digest 97657d56e927 · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.4.4-python-alpineresolves to97657d56e9272 charts6 days ago1029122526,055

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

213 distinct on this digest

Findings for digest 97657d56e927 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-98wm-3w3q-mw94snakeyaml@1.151.31
MediumGHSA-5545-2q6w-2gh6numpy@1.16.41.19
MediumGHSA-qw69-rqj8-6qw8jetty-server@9.3.24.v201806059.4.51.v20230217
MediumGHSA-h46c-h94j-95f3jackson-core@2.6.72.15.0
MediumGHSA-hxp5-8pgq-mgv9calcite-core@1.2.0-incubating1.26.0
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.151.32
MediumGHSA-5mcr-gq6c-3hq2netty@3.9.9.Finalno fix listed
MediumGHSA-3cqm-mf7h-prrjokhttp@3.8.14.9.2
MediumGHSA-g5ww-5jh7-63cxprotobuf-java@3.3.03.16.3
MediumGHSA-5xp3-jfq3-5q8xpip@19.3.121.1
MediumALPINE-CVE-2020-29362p11-kit@0.23.16.1-r00.23.16.1-r1
LowGHSA-973x-65j7-xcf4aircompressor@0.100.27
LowGHSA-77pm-w3hx-f8mjspark-hive-thriftserver_2.11@2.4.4no fix listed
LowALPINE-CVE-2019-5188e2fsprogs@1.45.2-r11.45.5-r0
LowGHSA-4gg5-vx3j-xwc7protobuf-java@3.3.03.16.3
LowGHSA-vx9q-rhv9-3jvgaircompressor@0.102.0.3
LowALPINE-CVE-2020-14363libx11@1.6.8-r11.6.12-r0
LowGHSA-w33c-445m-f8w7okio@1.13.01.17.6
LowGHSA-8wv5-x4w7-5gwwlibthrift@0.9.30.24.0
LowGHSA-43xg-8wmj-cw8hpyspark@2.4.43.2.2
LowGHSA-43xg-8wmj-cw8hspark-core_2.11@2.4.4no fix listed
LowALPINE-CVE-2020-8315python3@3.7.5-r13.7.7-r0
LowGHSA-7pwc-h2j2-rjgjlibthrift@0.9.30.23.0
LowGHSA-fpfv-jqm9-f5jmnumpy@1.16.41.22
LowPYSEC-2020-108scikit-learn@0.21.30.24.dev0
LowPYSEC-2020-73pandas@0.25.31.0.4
LowGHSA-g8m5-722r-8whqjetty-server@9.3.24.v201806059.4.56
LowGHSA-h4h5-3hr4-j3g2protobuf-java@2.5.03.16.3
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.151.31
LowALPINE-CVE-2019-1563openssl@1.1.1c-r01.1.1d-r0
LowGHSA-wf93-45jw-7689pip@19.3.126.1.2
LowGHSA-6p56-wp2h-9hxrnumpy@1.16.41.21
LowGHSA-hmr7-m48g-48f6jetty-http@9.3.24.v201806059.4.52
LowALPINE-CVE-2021-23839openssl@1.1.1c-r01.1.1j-r0
LowGHSA-j26w-f9rq-mr2qjetty-servlets@9.3.24.v201806059.4.54
LowALPINE-CVE-2020-14344libx11@1.6.8-r11.6.10-r0
LowALPINE-CVE-2019-1547openssl@1.1.1c-r01.1.1d-r0
LowALPINE-CVE-2020-28928musl@1.1.22-r31.1.22-r4
LowGHSA-4xh5-x5gv-qwphpip@19.3.125.3
LowGHSA-h35f-9h28-mq5csetuptools@41.6.083.0.0
LowGHSA-4g9r-vxhx-9pgxcommons-compress@1.8.11.26.0
LowPYSEC-2023-114scipy@1.2.11.8.0
LowPYSEC-2026-3721pip@19.3.126.2
LowGHSA-mq26-g339-26xfpip@19.3.123.3
LowGHSA-8wh2-6qhj-h7j9snappy@0.20.5
LowGHSA-r7wm-3cxj-wff9jackson-core@2.6.72.18.8
LowGHSA-f7c7-j99h-c22fnumpy@1.16.41.19
LowPYSEC-2025-184pyspark@2.4.43.4.4
LowGHSA-hgj6-7826-r7m5jackson-databind@2.6.7.12.18.8
LowGHSA-qh8g-58pp-2wxhjetty-http@9.3.24.v2018060512.0.12

Used by

2 charts
ChartVersionTagContainers
spark-standalonedmwm-bigdataVerified publisher0.1.02.4.4-python-alpine2
spark-standalonegradiant-bigdataVerified publisher0.1.02.4.4-python-alpine2

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.