inseefrlab/onyxia-api:v4.12.0 container image
Docker HubScanned 3 Oct 2026
Deployed by 1 of 17,985 indexed charts (latest versions) at this tag.Docker Hub all tags of inseefrlab/onyxia-api
inseefrlab/onyxia-api:v4.12.0 resolved to b377aec3ead1, scanned 3 Oct 2026: 320 findings, 0 critical; deployed by 1 chart, among them onyxia.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
320 distinct on this digest
Findings for digest b377aec3ead1 as scanned on 3 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 3 Oct 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-5gvw-p9qm-jgwh | jackson-databind | 2.21.5 |
| Low | USN-8691-1 | attr | 1:2.5.2-1ubuntu0.1 |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | GHSA-m4cv-j2px-7723 | netty-codec-http | 4.1.133.Final |
| Low | GHSA-3chg-m5w7-qfv5 | spring-webmvc | 6.2.19 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GHSA-rcqc-6cw3-h962 | jackson-databind | 2.21.4 |
| Low | UBUNTU-CVE-2025-14831 | gnutls28 | 3.8.3-1.1ubuntu3.5+Fips1.1 |
| Low | GHSA-jhq6-gfmj-v8fx | logback-core | 1.5.34 |
| Low | GO-2025-3887 | helm | no fix listed |
| Low | GO-2025-3888 | helm | no fix listed |
| Low | UBUNTU-CVE-2026-78408 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-103111 | pcre2 | no fix listed |
| Low | GO-2026-4980 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-7017 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | UBUNTU-CVE-2026-42767 | openssl | 3.0.13-0ubuntu3.11 |
| Low | GHSA-gcjf-9mgh-3p7g | netty-codec-http | 4.1.136.Final |
| Low | USN-8510-1 | tar | 1.35+dfsg-3ubuntu0.2 |
| Low | UBUNTU-CVE-2026-77117 | glibc | 2.39-0ubuntu8.9 |
| Low | UBUNTU-CVE-2026-80489 | glibc | 2.39-0ubuntu8.9 |
| Low | GHSA-38f8-5428-x5cv | netty-codec-http | 4.1.133.Final |
| Low | UBUNTU-CVE-2026-58471 | wget | 1.21.4-1ubuntu4.3 |
| Low | UBUNTU-CVE-2026-58472 | wget | 1.21.4-1ubuntu4.3 |
| Low | GHSA-72pg-x5f8-j25j | spring-webflux | 6.2.19 |
| Low | GHSA-72pg-x5f8-j25j | spring-webmvc | 6.2.19 |
| Low | GHSA-wjgm-6hv5-3cvf | jackson-databind | 2.21.6 |
| Low | GHSA-563q-j3cm-6jxm | netty-codec-http2 | 4.1.135.Final |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GO-2026-4982 | stdlib | 1.25.10 |
| Low | GO-2026-5025 | golang.org/ | 0.55.0 |
| Low | GHSA-5x3r-wrvg-rp6q | netty-codec-http2 | 4.1.135.Final |
| Low | GHSA-83f7-v6px-pp3h | spring-webflux | 6.2.19 |
| Low | UBUNTU-CVE-2026-78410 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-102633 | expat | no fix listed |
| Low | GO-2026-6091 | stdlib | 1.25.13 |
| Low | GHSA-mq64-j8f9-9gcj | spring-webmvc | 6.2.19 |
| Low | GHSA-mq64-j8f9-9gcj | spring-webflux | 6.2.19 |
| Low | GHSA-hjcp-jmpx-g3qm | httpclient5 | 5.6.3 |
| Low | GHSA-wxpp-56q6-5pcg | spring-expression | 6.2.19 |
| Low | UBUNTU-CVE-2026-89158 | pcre2 | no fix listed |
| Low | GHSA-8c42-7qj2-3j46 | netty-codec-http | 4.1.137.Final |
| Low | GHSA-x2r2-rvhq-2mqv | spring-security-web | 6.5.11 |
| Low | GHSA-9fxm-vc8v-hj55 | jackson-databind | 2.21.4 |
| Low | USN-8477-2 | tar | 1.35+dfsg-3ubuntu0.3 |
| Low | GHSA-5jmj-h7xm-6q6v | jackson-databind | 2.21.5 |
| Low | UBUNTU-CVE-2026-19487 | perl | 5.38.2-3.2ubuntu0.6 |
| Low | GO-2026-4976 | stdlib | 1.25.10 |
| Low | GO-2026-5039 | stdlib | 1.25.11 |
| Low | GHSA-293q-567p-wmwq | spring-security-web | 6.5.11 |