ibmcom/microclimate-portal:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of ibmcom/microclimate-portal
ibmcom/microclimate-portal:latest resolved to ed5505e5c7ec, scanned 14 Sept 2026: 385 findings, 11 critical, 3 on KEV; deployed by 1 chart, among them ibm-microclimate.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
385 distinct on this digest
Findings for digest ed5505e5c7ec as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | GHSA-jfh8-c2jp-5v3qKEV | log4j-core | 2.12.2 |
| Critical | GHSA-hf23-9pf7-388p | xstream | 1.4.11 |
| Critical | GHSA-f58c-gq56-vjjf | tika-core | 3.2.2 |
| Critical | GHSA-f58c-gq56-vjjf | tika-parsers | 2.0.0 |
| Critical | GHSA-f554-x222-wgf7 | xstream | 1.4.11 |
| Critical | GHSA-7rjr-3q55-vv33KEV | log4j-core | 2.12.2 |
| Critical | GHSA-p6xc-xr62-6r2g | log4j-core | 2.12.3 |
| Critical | GHSA-j9h8-phrw-h4fhKEV | xstream | 1.4.18 |
| Critical | GHSA-9r24-gp44-h3pm | tika-core | 1.18 |
| Critical | GHSA-mw36-7c6c-q4q2 | xstream | 1.4.14-java7 |
| Critical | GHSA-p72g-pv48-7w9x | tika-parsers | 2.0.0-ALPHA |
| High | GHSA-9339-86wc-4qgf | xalan | 2.7.3 |
| High | GHSA-2p3x-qw9c-25hh | xstream | 1.4.16 |
| High | GHSA-7chv-rrw6-w6fc | xstream | 1.4.17 |
| High | GHSA-phwq-j96m-2c2q | ejs | 3.1.7 |
| High | GHSA-8489-44mv-ggj8 | log4j-core | 2.12.4 |
| High | GHSA-c4w7-xm78-47vh | y18n | 3.2.2 |
| High | GHSA-jfvx-7wrx-43fh | xstream | 1.4.15 |
| High | ALPINE-CVE-2018-0732 | openssl | 1.0.2o-r1 |
| High | GHSA-4cch-wxpw-8p28 | xstream | 1.4.15 |
| High | GHSA-4hrm-m67v-5cxr | xstream | 1.4.16 |
| High | GHSA-hwpc-8xqv-jvj4 | xstream | 1.4.16 |
| High | GHSA-w77p-8cfg-2x43 | slf4j-ext | 1.7.26 |
| High | GHSA-hrcp-8f3q-4w2c | xstream | 1.4.16 |
| High | GHSA-4c7m-wxvm-r7gc | netmask | 1.1.0 |
| High | ALPINE-CVE-2019-3822 | curl | 7.61.1-r2 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| High | GHSA-59jw-jqf4-3wq3 | xstream | 1.4.16 |
| High | GHSA-f6hm-88x3-mfjv | xstream | 1.4.16 |
| High | ALPINE-CVE-2018-14618 | curl | 7.61.1-r0 |
| High | GHSA-w573-4hg7-7wgq | decode-uri-component | 0.2.1 |
| High | GHSA-g5w6-mrj7-75h2 | xstream | 1.4.18 |
| High | GHSA-p8pq-r894-fm8f | xstream | 1.4.18 |
| High | GHSA-3jfq-g458-7qm9 | tar | 4.4.14 |
| High | GHSA-35jh-r3h4-6jhm | lodash | 4.17.21 |
| High | GHSA-35jh-r3h4-6jhm | lodash.template | no fix listed |
| High | GHSA-hvv8-336g-rx3m | xstream | 1.4.16 |
| High | GHSA-xw4p-crpj-vjx2 | xstream | 1.4.18 |
| High | GHSA-74cv-f58x-f9wf | xstream | 1.4.16 |
| High | GHSA-w457-6q6x-cgp9 | handlebars | 4.3.0 |
| High | GHSA-f2jv-r9rf-7988 | handlebars | 4.7.7 |
| Medium | GHSA-hrpp-h998-j3pp | qs | 6.5.3 |
| Medium | ALPINE-CVE-2018-0500 | curl | 7.61.0-r0 |
| Medium | ALPINE-CVE-2018-16839 | curl | 7.61.1-r1 |
| Medium | ALPINE-CVE-2018-0739 | openssl | 1.0.2o-r0 |
| Medium | GHSA-j563-grx4-pjpv | xstream | 1.4.20 |
| Medium | ALPINE-CVE-2018-0494 | wget | 1.19.5-r0 |
| Medium | ALPINE-CVE-2018-1000301 | curl | 7.60.0-r0 |
| Medium | ALPINE-CVE-2018-1000300 | curl | 7.60.0-r0 |
| Medium | GHSA-2p57-rm9w-gvfp | ip | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| ibm-microclimateibm-charts | 0.1.0 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.