itzg/minecraft-server:2026.9.2 container image
Docker HubScanned 29 Sept 2026
Deployed by 1 of 17,939 indexed charts (latest versions) at this tag.Docker Hub all tags of itzg/minecraft-server
itzg/minecraft-server:2026.9.2 resolved to de5d1b1a83eb, scanned 29 Sept 2026: 496 findings, 0 critical; deployed by 1 chart, among them minecraft.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
496 distinct on this digest
Findings for digest de5d1b1a83eb as scanned on 29 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 29 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-53789 | rsync | no fix listed |
| Low | UBUNTU-CVE-2025-5222 | icu | no fix listed |
| Low | UBUNTU-CVE-2026-59184 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-59187 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-70457 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-16277 | rpcbind | no fix listed |
| Low | UBUNTU-CVE-2026-42015 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2018-1000021 | git | no fix listed |
| Low | UBUNTU-CVE-2026-23952 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |
| Low | UBUNTU-CVE-2026-19672 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-25898 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2026-70454 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-26284 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | GO-2024-2887 | stdlib | 1.21.11 |
| Low | GHSA-gx83-3vf8-gh7j | jackson-databind | 3.1.6 |
| Low | UBUNTU-CVE-2026-53792 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-68516 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-70462 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-33900 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm11 |
| Low | UBUNTU-CVE-2023-51257 | netpbm-free | no fix listed |
| Low | UBUNTU-CVE-2016-2781 | coreutils | no fix listed |
| Low | UBUNTU-CVE-2021-45261 | patch | no fix listed |
| Low | UBUNTU-CVE-2026-63388 | libevent | no fix listed |
| Low | GHSA-3pjw-73gf-8qr5 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-82049 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-25897 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2021-26945 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-53786 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-70459 | rsync | no fix listed |
| Low | GHSA-5gvw-p9qm-jgwh | jackson-databind | 3.1.5 |
| Low | UBUNTU-CVE-2026-45031 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-84366 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-53466 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-53803 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-46523 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-87910 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2024-52616 | avahi | no fix listed |
| Low | UBUNTU-CVE-2026-75466 | libjpeg-turbo | no fix listed |
| Low | UBUNTU-CVE-2026-15806 | python3.12 | no fix listed |
| Low | GHSA-rcqc-6cw3-h962 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2025-68618 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm5 |
| Low | UBUNTU-CVE-2025-55160 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2026-53788 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-45664 | imagemagick | no fix listed |
| Low | GHSA-jhq6-gfmj-v8fx | logback-core | 1.5.34 |
| Low | UBUNTU-CVE-2025-12495 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-12839 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-78408 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-32636 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |