itzg/minecraft-server:2026.9.2 container image
Docker HubScanned 29 Sept 2026
Deployed by 1 of 17,939 indexed charts (latest versions) at this tag.Docker Hub all tags of itzg/minecraft-server
itzg/minecraft-server:2026.9.2 resolved to de5d1b1a83eb, scanned 29 Sept 2026: 496 findings, 0 critical; deployed by 1 chart, among them minecraft.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
496 distinct on this digest
Findings for digest de5d1b1a83eb as scanned on 29 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 29 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-53785 | rsync | no fix listed |
| Low | UBUNTU-CVE-2026-25638 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9 |
| Low | UBUNTU-CVE-2026-26983 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-24484 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9 |
| Low | UBUNTU-CVE-2026-28687 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-57175 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-55594 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-49839 | jq | no fix listed |
| Low | UBUNTU-CVE-2026-41989 | libgcrypt20 | 1.12.0-2ubuntu0.1~Fips1~rc11 |
| Low | UBUNTU-CVE-2026-42014 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-5hh8-q8hv-fr38 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-56406 | expat | 2.6.1-2ubuntu0.6 |
| Low | UBUNTU-CVE-2026-56407 | expat | 2.6.1-2ubuntu0.6 |
| Low | UBUNTU-CVE-2025-29481 | libbpf | no fix listed |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-28494 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-56403 | expat | 2.6.1-2ubuntu0.5 |
| Low | UBUNTU-CVE-2026-55371 | openexr | no fix listed |
| Low | GHSA-hgj6-7826-r7m5 | jackson-databind | 3.1.4 |
| Low | GO-2026-4337 | stdlib | 1.24.13 |
| Low | UBUNTU-CVE-2026-86139 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-65979 | openexr | no fix listed |
| Low | GO-2024-3105 | stdlib | 1.22.7 |
| Low | UBUNTU-CVE-2026-78409 | util-linux | no fix listed |
| Low | GO-2025-3563 | stdlib | 1.23.8 |
| Low | UBUNTU-CVE-2026-86142 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-89157 | pcre2 | no fix listed |
| Low | GO-2026-4601 | stdlib | 1.25.8 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-89161 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-8674 | glibc | no fix listed |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-28686 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-45358 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-53467 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-64685 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-3446 | python3.12 | no fix listed |
| Low | GO-2026-4342 | stdlib | 1.24.12 |
| Low | UBUNTU-CVE-2026-44663 | openexr | no fix listed |
| Low | GHSA-vvgp-rfg2-7rr6 | jackson-databind | 3.1.5 |
| Low | UBUNTU-CVE-2025-55212 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2026-72522 | expat | 2.6.1-2ubuntu0.6 |
| Low | UBUNTU-CVE-2026-40169 | imagemagick | no fix listed |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | UBUNTU-CVE-2026-30937 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm12 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | UBUNTU-CVE-2025-55005 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-28690 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm10 |
| Low | UBUNTU-CVE-2026-86138 | libxml2 | no fix listed |