StackRadar

jhidalgo3/spring-echo-example:latest container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of jhidalgo3/spring-echo-example

jhidalgo3/spring-echo-example:latest resolved to e08733191ea0, scanned 14 Sept 2026: 95 findings, 3 critical, 2 on KEV; deployed by 1 chart, among them spring-boot-chart.

Radar Score

1,703362660

95 findings on digest e08733191ea0 · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves toe08733191ea01 chart6 days ago3626601,703

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

95 distinct on this digest

Findings for digest e08733191ea0 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalGHSA-36p3-wjmg-h94xKEVspring-beans@5.3.35.3.18
CriticalGHSA-36p3-wjmg-h94xKEVspring-webmvc@5.3.35.3.18
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.272.0
HighGHSA-4wrc-f8pq-fpqpspring-web@5.3.36.0.0
HighGHSA-g5vr-rgqm-vf78spring-webmvc@5.3.3no fix listed
HighGHSA-26vr-8j45-3r4wjetty-server@9.4.35.v202011209.4.39
HighGHSA-gwcr-j4wh-j3cqjetty-servlets@9.4.35.v202011209.4.41
HighGHSA-m394-8rww-3jr7jetty-server@9.4.35.v202011209.4.37
HighGHSA-558x-2xjg-6232spring-expression@5.3.35.3.17
MediumGHSA-cx7f-g6mp-7hqmspring-webmvc@5.3.3no fix listed
MediumGHSA-7phw-cxx7-q9vqspring-webmvc@5.3.35.3.26
MediumGHSA-g5mm-vmx4-3rg7spring-context@5.3.35.3.19
MediumGHSA-ccgv-vj62-xf9hspring-web@5.3.35.3.32
MediumGHSA-57j2-w4cx-62h2jackson-databind@2.11.42.12.6.1
MediumGHSA-hgjh-9rj2-g67jspring-web@5.3.35.3.33
MediumGHSA-668q-qrv7-99fmlogback-core@1.2.31.2.9
MediumGHSA-jjjh-jjxp-wpffjackson-databind@2.11.42.12.7.1
MediumGHSA-rgv9-q543-rqg4jackson-databind@2.11.42.12.7.1
MediumGHSA-3mc7-4q67-w48msnakeyaml@1.271.31
MediumGHSA-g5h3-w546-pj7fspring-boot-actuator-autoconfigure@2.4.22.5.15
MediumGHSA-hh26-6xwr-ggv7spring-beans@5.3.35.3.20
MediumGHSA-9w3m-gqgf-c4p9snakeyaml@1.271.32
MediumGHSA-2wrp-6fg6-hmc5spring-web@5.3.35.3.34
MediumGHSA-c4r9-r8fh-9vj2snakeyaml@1.271.31
MediumGHSA-355h-qmc2-wpwfjetty-http@9.4.35.v202011209.4.60
MediumGHSA-98wm-3w3q-mw94snakeyaml@1.271.31
MediumGHSA-qw69-rqj8-6qw8jetty-server@9.4.35.v202011209.4.51.v20230217
MediumGHSA-3x8x-79m2-3w2wjackson-databind@2.11.42.12.6
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@2.11.42.18.8
MediumGHSA-wxqc-pxw9-g2p8spring-expression@5.3.35.3.27
MediumGHSA-j3rv-43j4-c7qmjackson-databind@2.11.42.18.8
MediumGHSA-h46c-h94j-95f3jackson-core@2.11.42.15.0
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.271.32
MediumGHSA-r936-gwx5-v52fspring-webmvc@5.3.3no fix listed
MediumGHSA-xf96-w227-r7c4spring-boot-autoconfigure@2.4.22.5.15
LowGHSA-g3pr-3p32-fp23micrometer-core@1.6.3no fix listed
LowGHSA-vmq6-5m68-f53mlogback-core@1.2.31.2.13
LowGHSA-vmq6-5m68-f53mlogback-classic@1.2.31.2.13
LowGHSA-2fvj-hgj9-j2grjetty-security@9.4.35.v202011209.4.63
LowGHSA-v6w3-2prq-h95fjakarta.el@3.0.33.0.4
LowGHSA-564r-hj7v-mcr5spring-expression@5.3.35.3.26
LowGHSA-3wrr-7qpf-2prhjackson-databind@2.11.42.14.0
LowGHSA-g8m5-722r-8whqjetty-server@9.4.35.v202011209.4.56
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.271.31
LowGHSA-qv9r-c865-cp47log4j-api@2.13.32.25.5
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.35.v202011209.4.57.v20241219
LowGHSA-jmp9-x22r-554xspring-core@5.3.3no fix listed
LowGHSA-gfwj-fwqj-fp3vspring-web@5.3.35.3.7
LowGHSA-jjfh-589g-3hjxspring-boot-actuator@2.4.22.7.18
LowGHSA-x23c-287f-qqv5spring-webmvc@5.3.3no fix listed

Used by

1 chart
ChartVersionTagContainers
spring-boot-chartjhidalgo3-githubVerified publisher4.0.0latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.