StackRadar

graphiteapp/graphite-statsd:1.1.7-6 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of graphiteapp/graphite-statsd

graphiteapp/graphite-statsd:1.1.7-6 resolved to 04a0037cc2ae, scanned 14 Sept 2026: 545 findings, 4 critical, 2 on KEV; deployed by 1 chart, among them netris-controller.

Radar Score

10,104435219287

545 findings on digest 04a0037cc2ae · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
1.1.7-6resolves to04a0037cc2ae1 chart8 days ago43521928710,104

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

545 distinct on this digest

Findings for digest 04a0037cc2ae as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-xvch-5gv4-984hminimist@1.2.01.2.6
MediumGHSA-r628-mhmh-qjhwtar@4.4.134.4.15
MediumALPINE-CVE-2022-23852expat@2.2.9-r12.2.10-r1
MediumGHSA-765h-qjxv-5f44handlebars@4.1.24.7.7
MediumALPINE-CVE-2020-8285curl@7.69.1-r07.69.1-r3
MediumALPINE-CVE-2020-8174nodejs@12.17.0-r012.18.3-r0
MediumALPINE-CVE-2020-15180mariadb@10.4.13-r010.4.15-r0
MediumGHSA-cf4h-3jhx-xvhqunderscore@1.4.41.12.1
MediumGHSA-896r-f27r-55mwjson-schema@0.2.30.4.0
MediumALPINE-CVE-2021-22918nodejs@12.17.0-r012.22.2-r0
MediumALPINE-CVE-2022-1271xz@5.2.5-r05.2.5-r1
MediumALPINE-CVE-2021-44531nodejs@12.17.0-r012.22.10-r0
MediumALPINE-CVE-2022-22823expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2022-22824expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2021-21309redis@5.0.9-r05.0.11-r0
MediumGHSA-83g2-8m93-v3w7golang.org/x/net@v0.0.0-20200520004742-59133d7f0dd70.0.0-20210520170846-37e1c6afe023
MediumALPINE-CVE-2021-3520lz4@1.9.2-r01.9.2-r1
MediumALPINE-CVE-2021-45960expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2022-24407cyrus-sasl@2.1.27-r62.1.28-r0
MediumGHSA-w24h-v9qh-8gxjdjango@2.2.132.2.28
MediumALPINE-CVE-2019-20907python3@3.8.3-r03.8.5-r0
MediumALPINE-CVE-2020-14422python3@3.8.3-r03.8.4-r0
MediumALPINE-CVE-2022-27404freetype@2.10.2-r02.10.4-r1
MediumALPINE-CVE-2022-23308libxml2@2.9.10-r42.9.13-r0
MediumGHSA-cg3q-j54f-5p7pgithub.com/prometheus/client_golang@v0.9.11.11.1
MediumALPINE-CVE-2021-3518libxml2@2.9.10-r42.9.10-r6
MediumALPINE-CVE-2020-8172nodejs@12.17.0-r012.18.3-r0
MediumALPINE-CVE-2022-28391busybox@1.31.1-r161.31.1-r22
MediumGHSA-rxjp-mfm9-w4wrdjango@2.2.132.2.21
MediumALPINE-CVE-2020-11080nodejs@12.17.0-r012.18.3-r0
MediumGHSA-p99v-5w3c-jqq9django@2.2.132.2.24
MediumGHSA-c3h9-896r-86jmgithub.com/gogo/protobuf@v1.1.2-0.20180830160456-5669497fd6441.3.2
MediumALPINE-CVE-2021-39537ncurses@6.2_p20200523-r06.2_p20200523-r1
MediumALPINE-CVE-2021-22939nodejs@12.17.0-r012.22.5-r0
MediumALPINE-CVE-2020-8201nodejs@12.17.0-r012.18.4-r0
MediumGHSA-p6mc-m468-83gwlodash@4.17.154.17.19
MediumALPINE-CVE-2021-37701nodejs@12.17.0-r012.22.6-r0
MediumGHSA-vx3p-948g-6vhqssri@6.0.16.0.2
MediumALPINE-CVE-2021-36159apk-tools@2.10.5-r12.10.7-r0
MediumALPINE-CVE-2022-25314expat@2.2.9-r12.2.10-r2
MediumALPINE-CVE-2020-8286curl@7.69.1-r07.69.1-r3
MediumGHSA-vvpx-j8f3-3w6hgolang.org/x/net@v0.0.0-20200520004742-59133d7f0dd70.7.0
MediumALPINE-CVE-2021-22946curl@7.69.1-r07.79.0-r0
MediumALPINE-CVE-2022-22826expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2022-22827expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2021-32762redis@5.0.9-r05.0.14-r0
MediumGHSA-9r2w-394v-53qctar@4.4.134.4.16
MediumALPINE-CVE-2021-46143expat@2.2.9-r12.2.10-r0
MediumALPINE-CVE-2022-22825expat@2.2.9-r12.2.10-r0

Used by

1 chart
ChartVersionTagContainers
netris-controllernetrisai2.8.21.1.7-61

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.