heartexlabs/label-studio:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of heartexlabs/label-studio
heartexlabs/label-studio:latest resolved to aa461572e8f9, scanned 14 Sept 2026: 248 findings, 1 critical; deployed by 1 chart, among them label-studio.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest aa461572e8f9 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-56410 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-56411 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2025-14104 | util-linux | 2.41.4-r0 |
| Low | GHSA-537c-gmf6-5ccf | cryptography | 48.0.1 |
| Low | GHSA-6hm5-jgcp-p838 | nltk | 3.10.0 |
| Low | GHSA-fg7f-2386-8897 | nltk | 3.10.0 |
| Low | GHSA-m42h-3232-vpv3 | nltk | 3.10.0 |
| Low | GHSA-xh95-f55m-82fw | nltk | 3.10.0 |
| Low | ALPINE-CVE-2026-45446 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-7009 | curl | 8.20.0-r0 |
| Low | ALPINE-CVE-2026-56412 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-50219 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-56409 | expat | 2.8.2-r0 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | ALPINE-CVE-2026-32777 | expat | 2.7.5-r0 |
| Low | ALPINE-CVE-2026-56132 | expat | 2.8.2-r0 |
| Low | GHSA-ff5c-cp5c-9wjf | nltk | 3.10.3 |
| Low | GHSA-3496-9g83-7v6x | sqlparse | 0.6.0 |
| Low | PYSEC-2026-2275 | requests | 2.33.0 |
| Low | ALPINE-CVE-2026-42768 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2025-14017 | curl | 8.18.0-r0 |
| Low | ALPINE-CVE-2026-32778 | expat | 2.7.5-r0 |
| Low | GHSA-g47c-3xmw-q6m2 | djangorestframework | 3.17.2 |
| Low | ALPINE-CVE-2026-32776 | expat | 2.7.5-r0 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.5-r22 |
| Low | ALPINE-CVE-2026-42770 | openssl | 3.5.7-r0 |
| Low | GHSA-m959-cc7f-wv43 | cryptography | 46.0.6 |
| Low | GHSA-gj48-438w-jh9v | bleach | 6.4.0 |
| Low | GHSA-5xmw-vc9v-4wf2 | pillow | 12.2.0 |
| Low | ALPINE-CVE-2026-56131 | expat | 2.8.2-r0 |
| Low | GHSA-r73j-pqj5-w3x7 | pillow | 12.2.0 |
| Low | ALPINE-CVE-2026-28755 | nginx | 1.28.3-r0 |
| Low | GHSA-jp4c-xjxw-mgf9 | pip | 26.1 |
| Low | GHSA-jq35-7prp-9v3f | pyjwt | 2.13.0 |
| Low | GHSA-wjx4-4jcj-g98j | pillow | 12.2.0 |
| Low | GHSA-fhv5-28vv-h8m8 | pyjwt | 2.13.0 |
| Low | GHSA-cfqr-cjx5-5jcm | sqlparse | 0.6.0 |
| Low | GHSA-993g-76c3-p5m4 | pyjwt | 2.13.0 |
| Low | GHSA-4x4j-2g7c-83w6 | pillow | 12.3.0 |
| Low | GHSA-58qw-9mgm-455v | pip | 26.1 |
| Low | PYSEC-2026-3955 | nltk | no fix listed |
| Low | GHSA-3h9f-r86x-qvjx | django | 5.2.16 |
| Low | ALPINE-CVE-2026-27456 | util-linux | 2.41.4-r0 |
| Low | GHSA-vp2x-qp44-57v7 | nltk | 3.10.3 |
| Low | GHSA-923m-gv2p-w5qp | django | 5.2.15 |
| Low | GHSA-r5vv-ff45-prp2 | datamodel-code-generator | 0.63.0 |
| Low | ALPINE-CVE-2026-41080 | expat | 2.8.1-r0 |
| Low | GHSA-8cjm-8mp7-r2xf | django | 5.2.15 |
| Low | GHSA-h7pc-vwp9-298g | django | 5.2.15 |
| Low | GHSA-5239-wwwm-4pmq | pygments | 2.20.0 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| label-studioinseefrlab | 2.3.1 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.