itzg/bungeecord:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of itzg/bungeecord
itzg/bungeecord:latest resolved to 1c59f9631f3b, scanned 14 Sept 2026: 388 findings, 0 critical; deployed by 1 chart, among them minecraft-proxy.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
388 distinct on this digest
Findings for digest 1c59f9631f3b as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-59189 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-7017 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-15806 | python3.14 | no fix listed |
| Low | UBUNTU-CVE-2026-16118 | glib2.0 | no fix listed |
| Low | GHSA-3pjw-73gf-8qr5 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-27622 | openexr | 3.1.13-2ubuntu0.26.04.1~esm1 |
| Low | UBUNTU-CVE-2026-59186 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-12781 | python3.14 | no fix listed |
| Low | UBUNTU-CVE-2026-59184 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-26283 | imagemagick | no fix listed |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | UBUNTU-CVE-2026-59187 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-55577 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-45031 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-46523 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-32636 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-11979 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-86140 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-68516 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-68513 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-26983 | imagemagick | no fix listed |
| Low | GHSA-9fxm-vc8v-hj55 | jackson-databind | 3.1.4 |
| Low | GHSA-r7wm-3cxj-wff9 | jackson-core | 3.1.4 |
| Low | UBUNTU-CVE-2026-45664 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-84366 | python3.14 | no fix listed |
| Low | UBUNTU-CVE-2026-35368 | rust-coreutils | no fix listed |
| Low | UBUNTU-CVE-2026-33899 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-19487 | perl | 5.40.1-7ubuntu0.2 |
| Low | UBUNTU-CVE-2026-82474 | sudo | no fix listed |
| Low | UBUNTU-CVE-2026-55594 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-35341 | rust-coreutils | no fix listed |
| Low | GHSA-5hh8-q8hv-fr38 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-78408 | util-linux | no fix listed |
| Low | GHSA-hgj6-7826-r7m5 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-54369 | acl | no fix listed |
| Low | UBUNTU-CVE-2026-75466 | libjpeg-turbo | no fix listed |
| Low | UBUNTU-CVE-2026-13595 | util-linux | 2.41.3-3ubuntu2.2 |
| Low | UBUNTU-CVE-2026-34380 | openexr | 3.1.13-2ubuntu0.26.04.1~esm1 |
| Low | UBUNTU-CVE-2026-54371 | attr | 1:2.5.2-4ubuntu0.1 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GHSA-5jmj-h7xm-6q6v | jackson-databind | 3.1.4 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-35352 | rust-coreutils | no fix listed |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | GO-2026-4337 | stdlib | 1.24.13 |
| Low | UBUNTU-CVE-2026-25971 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-53467 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-30929 | imagemagick | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| minecraft-proxyminecraft-server-chartsVerified publisher | 3.10.0 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.