jingking/geonetwork-hnap:4.2.8 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of jingking/geonetwork-hnap
jingking/geonetwork-hnap:4.2.8 resolved to 43e74ab234e1, scanned 14 Sept 2026: 584 findings, 10 critical, 1 on KEV; deployed by 1 chart, among them geonetwork-k8s.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
584 distinct on this digest
Findings for digest 43e74ab234e1 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-c2q3-4qrh-fm48 | jackson-databind | 2.9.10.5 |
| Medium | GHSA-cmfg-87vq-g5g4 | jackson-databind | 2.9.9.1 |
| Medium | GHSA-x3x3-qwjq-8gj4 | cxf-core | 3.4.10 |
| Medium | GHSA-7vx9-xjhr-rw6h | jetty-server | 9.4.16.v20190411 |
| Medium | GHSA-789v-h9hw-38pg | soap | no fix listed |
| Medium | GHSA-h2f4-v4c4-6wx4 | jetty-server | 9.4.12.v20180830 |
| Medium | GHSA-ccgv-vj62-xf9h | spring-web | 5.3.32 |
| Medium | GHSA-95cm-88f5-f2c7 | jackson-databind | 2.9.10.4 |
| Medium | UBUNTU-CVE-2019-1010023 | glibc | no fix listed |
| Medium | GHSA-57j2-w4cx-62h2 | jackson-databind | 2.12.6.1 |
| Medium | GHSA-27xj-rqx5-2255 | jackson-databind | 2.9.10.4 |
| Medium | UBUNTU-CVE-2023-0215 | openssl | 1.1.1f-1ubuntu2.fips.17 |
| Medium | GHSA-7rp6-w7mg-h8rw | jena-core | 4.2.0 |
| Medium | GHSA-rpr3-cw39-3pxh | jackson-databind | 2.9.10.4 |
| Medium | GHSA-qmqc-x3r4-6v39 | jackson-databind | 2.9.10 |
| Medium | GHSA-hgg6-8x62-m9gf | cxf-core | 3.0.13 |
| Medium | UBUNTU-CVE-2021-46848 | libtasn1-6 | 4.16.0-2ubuntu0.1+esm1 |
| Medium | UBUNTU-CVE-2024-45490 | expat | 2.2.9-1ubuntu0.7 |
| Medium | UBUNTU-CVE-2023-0464 | openssl | 1.1.1f-1ubuntu2.fips.18 |
| Medium | GHSA-mmxm-8w33-wc4h | http2-common | 9.4.58 |
| Medium | UBUNTU-CVE-2024-37371 | krb5 | 1.17-6ubuntu4.6 |
| Medium | GHSA-98qh-xjc8-98pq | postgresql | 42.7.11 |
| Medium | GHSA-hgjh-9rj2-g67j | spring-web | 5.3.33 |
| Medium | GHSA-c4q5-6c82-3qpw | spring-security-web | 5.7.13 |
| Medium | UBUNTU-CVE-2017-11164 | pcre3 | no fix listed |
| Medium | UBUNTU-CVE-2024-4741 | openssl | 1.1.1f-1ubuntu2.23 |
| Medium | GHSA-jjjh-jjxp-wpff | jackson-databind | 2.12.7.1 |
| Medium | GHSA-rgv9-q543-rqg4 | jackson-databind | 2.12.7.1 |
| Medium | GHSA-735f-pc8j-v9w8 | protobuf-java | 3.25.5 |
| Medium | GHSA-3mc7-4q67-w48m | snakeyaml | 1.31 |
| Medium | GHSA-rp9p-863f-9c4h | activemq-core | 5.8.0 |
| Medium | GHSA-c9gx-27hq-wcvj | activemq-core | 5.9.0 |
| Medium | GHSA-rwqr-m72q-v6cm | batik-bridge | 1.16 |
| Medium | UBUNTU-CVE-2026-19931 | curl | no fix listed |
| Medium | UBUNTU-CVE-2021-33560 | libgcrypt20 | 1.8.5-5ubuntu1.fips.1.1 |
| Medium | UBUNTU-CVE-2023-3446 | openssl | 1.1.1f-1ubuntu2.fips.20 |
| Medium | UBUNTU-CVE-2016-20013 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2023-31486 | perl | no fix listed |
| Medium | GHSA-86wm-rrjm-8wh8 | jetty-server | 9.4.35.v20201120 |
| Medium | GHSA-fh5r-crhr-qrrq | cxf-core | 3.5.10 |
| Medium | GHSA-xc67-hjx6-cgg6 | jetty-server | 9.4.17.v20190418 |
| Medium | GHSA-hrmr-f5m6-m9pq | commons-compress | 1.18 |
| Medium | UBUNTU-CVE-2018-5709 | krb5 | no fix listed |
| Medium | GHSA-rqph-vqwm-22vc | spring-messaging | 5.2.22.RELEASE |
| Medium | UBUNTU-CVE-2024-28757 | expat | no fix listed |
| Medium | UBUNTU-CVE-2023-52425 | expat | no fix listed |
| Medium | GHSA-r38f-c4h4-hqq2 | postgresql | 42.3.7 |
| Medium | GHSA-qcwq-55hx-v3vh | snappy-java | 1.1.10.1 |
| Medium | UBUNTU-CVE-2011-10043 | perl | no fix listed |
| Medium | UBUNTU-CVE-2022-2097 | openssl | 1.1.1f-1ubuntu2.fips.16 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| geonetwork-k8sgeonetwork-k8sVerified publisher | 4.2.8 | 4.2.8 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.