ibmcom/microclimate-theia:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of ibmcom/microclimate-theia
ibmcom/microclimate-theia:latest resolved to e17bdccc5030, scanned 14 Sept 2026: 1,525 findings, 33 critical, 8 on KEV; deployed by 1 chart, among them ibm-microclimate.
Radar Score
1,525 findings on digest e17bdccc5030 · scanned 14 Sept 2026
KEV ×8 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
Findings for digest e17bdccc5030 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-g5mm-vmx4-3rg7 | spring-context | 5.2.21.RELEASE |
| Medium | GHSA-cf6r-3wgc-h863 | jackson-databind | 2.8.11.5 |
| Medium | UBUNTU-CVE-2019-8907 | file | 1:5.25-2ubuntu1.2 |
| Medium | UBUNTU-CVE-2019-9674 | python2.7 | 2.7.12-1ubuntu0~16.04.12 |
| Medium | GHSA-8hfj-j24r-96c4 | moment | 2.29.2 |
| Medium | GHSA-4g42-gqrg-4633 | struts-core | no fix listed |
| Medium | GHSA-6v52-mj5r-7j2m | tomcat-embed-core | 8.5.32 |
| Medium | UBUNTU-CVE-2017-11499 | nodejs | no fix listed |
| Medium | GHSA-43gc-mjxg-gvrq | xstream | 1.4.16 |
| Medium | UBUNTU-CVE-2019-16056 | python2.7 | 2.7.12-1ubuntu0~16.04.9 |
| Medium | UBUNTU-CVE-2018-16890 | curl | 7.47.0-1ubuntu2.12 |
| Medium | GHSA-cmfg-87vq-g5g4 | jackson-databind | 2.8.11.4 |
| Medium | GHSA-x3x3-qwjq-8gj4 | cxf-core | 3.4.10 |
| Medium | GHSA-wc69-rhjr-hc9g | moment | 2.29.4 |
| Medium | UBUNTU-CVE-2018-5732 | isc-dhcp | 4.3.3-5ubuntu12.9 |
| Medium | UBUNTU-CVE-2021-39537 | ncurses | 6.0+20160213-1ubuntu1+esm2 |
| Medium | UBUNTU-CVE-2021-22939 | nodejs | no fix listed |
| Medium | GHSA-hcxq-x77q-3469 | plexus-archiver | 3.6.0 |
| Medium | GHSA-8mfc-v7wv-p62g | yarn | 1.22.0 |
| Medium | GHSA-mc23-976p-j42x | xterm | 3.8.1 |
| Medium | UBUNTU-CVE-2019-13638 | patch | 2.7.5-1ubuntu0.16.04.2 |
| Medium | UBUNTU-CVE-2019-1551 | openssl | 1.0.2g-1ubuntu4.16 |
| Medium | GHSA-f4qf-m5gf-8jm8 | tomcat-embed-core | 8.5.64 |
| Medium | UBUNTU-CVE-2018-1060 | python2.7 | 2.7.12-1ubuntu0~16.04.4 |
| Medium | UBUNTU-CVE-2017-7186 | pcre3 | 2:8.38-3.1ubuntu0.1~esm2 |
| Medium | UBUNTU-CVE-2017-7186 | pcre2 | no fix listed |
| Medium | UBUNTU-CVE-2019-13565 | openldap | 2.4.42+dfsg-2ubuntu3.6 |
| Medium | UBUNTU-CVE-2019-20367 | libbsd | 0.8.2-1ubuntu0.1 |
| Medium | GHSA-p6mc-m468-83gw | lodash | 4.17.19 |
| Medium | GHSA-cxfm-5m4g-x7xp | xstream | 1.4.18 |
| Medium | UBUNTU-CVE-2018-12697 | binutils | 2.26.1-1ubuntu1~16.04.8+esm1 |
| Medium | GHSA-ccgv-vj62-xf9h | spring-web | no fix listed |
| Medium | UBUNTU-CVE-2017-10790 | libtasn1-6 | 4.7-3ubuntu0.16.04.3 |
| Medium | UBUNTU-CVE-2019-5739 | nodejs | no fix listed |
| Medium | GHSA-7hwc-46rm-65jh | xstream | 1.4.10 |
| Medium | UBUNTU-CVE-2019-1010023 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2018-1061 | python2.7 | 2.7.12-1ubuntu0~16.04.4 |
| Medium | GHSA-56p8-3fh9-4cvq | xstream | 1.4.16 |
| Medium | GHSA-57j2-w4cx-62h2 | jackson-databind | 2.12.6.1 |
| Medium | UBUNTU-CVE-2019-9936 | sqlite3 | 3.11.0-1ubuntu1.2 |
| Medium | UBUNTU-CVE-2022-1587 | pcre2 | no fix listed |
| Medium | GHSA-hr2v-3952-633q | deep-extend | 0.5.1 |
| Medium | UBUNTU-CVE-2021-35942 | glibc | 2.23-0ubuntu11.3+esm2 |
| Medium | UBUNTU-CVE-2021-46143 | expat | 2.1.0-7ubuntu0.16.04.5+esm2 |
| Medium | UBUNTU-CVE-2017-15938 | binutils | 2.26.1-1ubuntu1~16.04.8+esm1 |
| Medium | UBUNTU-CVE-2019-17514 | python2.7 | 2.7.12-1ubuntu0~16.04.12 |
| Medium | UBUNTU-CVE-2020-8286 | curl | 7.47.0-1ubuntu2.18 |
| Medium | UBUNTU-CVE-2016-6131 | binutils | 2.26.1-1ubuntu1~16.04.8+esm1 |
| Medium | GHSA-wm9w-rjj3-j356 | tomcat-embed-core | no fix listed |
| Medium | UBUNTU-CVE-2017-6004 | pcre3 | 2:8.38-3.1ubuntu0.1~esm2 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| ibm-microclimateibm-charts | 0.1.0 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.