StackRadar

jmferrer/azure-devops-agent:latest container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of jmferrer/azure-devops-agent

jmferrer/azure-devops-agent:latest resolved to 030f68ec6998, scanned 14 Sept 2026: 918 findings, 11 critical, 3 on KEV; deployed by 1 chart, among them azure-pipelines-agent.

Radar Score

14,6731132307568

918 findings on digest 030f68ec6998 · scanned 14 Sept 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves to030f68ec69981 chart7 days ago113230756814,673

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

568 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 030f68ec6998 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-50219expat@2.1.0-7ubuntu0.16.04.5no fix listed
LowUBUNTU-CVE-2025-15649perl@5.22.1-9ubuntu0.6no fix listed
LowGO-2026-4603stdlib@go1.13.51.25.8
LowUBUNTU-CVE-2026-0864python3.5@3.5.2-2ubuntu0~16.04.9no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.0.0-20191028145041-f83a4685e1520.55.0
LowGHSA-jp4c-xjxw-mgf9pip@9.0.326.1
LowGO-2026-6354golang.org/x/crypto@v0.0.0-20191028145041-f83a4685e1520.56.0
LowGO-2026-4982stdlib@go1.13.51.25.10
LowGO-2026-6091stdlib@go1.13.51.25.13
LowUBUNTU-CVE-2024-56433shadow@1:4.2-3.1ubuntu5.4no fix listed
LowGO-2026-5338github.com/containerd/containerd@v1.3.0no fix listed
LowUBUNTU-CVE-2026-41991gzip@1.6-4ubuntu11.6-4ubuntu1+esm2
LowUBUNTU-CVE-2026-40226systemd@229-4ubuntu21.27no fix listed
LowGO-2025-3750stdlib@go1.13.51.23.10
LowGO-2026-4864stdlib@go1.13.51.25.9
LowGO-2024-2913github.com/moby/moby@v0.7.3-0.20190826074503-38ab9da0030920.10.9+incompatible
LowGO-2025-3447stdlib@go1.13.51.22.12
LowGO-2026-4865stdlib@go1.13.51.25.9
LowGO-2026-4869stdlib@go1.13.51.25.9
LowGO-2026-4340stdlib@go1.13.51.24.12
LowGO-2025-4175stdlib@go1.13.51.24.11
LowPYSEC-2026-177pyjwt@1.7.12.13.0
LowUBUNTU-CVE-2026-18374glibc@2.23-0ubuntu11no fix listed
LowUBUNTU-CVE-2026-19617lvm2@2:1.02.110-1ubuntu10no fix listed
LowUBUNTU-CVE-2021-36084libsepol@2.4-22.4-2ubuntu0.1~esm1
LowUBUNTU-CVE-2026-54679jq@1.5+dfsg-1ubuntu0.1no fix listed
LowGHSA-mrfv-m5wm-5w6wpynacl@1.3.01.6.2
LowGHSA-6xv5-86q9-7xr8github.com/cyphar/filepath-securejoin@v0.2.20.2.4
LowGHSA-7ww5-4wqc-m92cgithub.com/containerd/containerd@v1.3.01.6.26
LowGHSA-xmmx-7jpf-fx42github.com/moby/moby@v0.7.3-0.20190826074503-38ab9da0030920.10.11
LowUBUNTU-CVE-2026-19542glibc@2.23-0ubuntu11no fix listed
LowUBUNTU-CVE-2026-53613util-linux@2.27.1-6ubuntu3.10no fix listed
LowUBUNTU-CVE-2026-53615util-linux@2.27.1-6ubuntu3.10no fix listed
LowUBUNTU-CVE-2026-77117glibc@2.23-0ubuntu11no fix listed
LowUBUNTU-CVE-2026-80489glibc@2.23-0ubuntu11no fix listed
LowPYSEC-2026-175pyjwt@1.7.12.13.0
LowUBUNTU-CVE-2021-36085libsepol@2.4-22.4-2ubuntu0.1~esm1
LowUBUNTU-CVE-2021-36087libsepol@2.4-22.4-2ubuntu0.1~esm1
LowUBUNTU-CVE-2025-68160openssl@1.0.2g-1ubuntu4.151.0.2g-1ubuntu4.20+esm14
LowGO-2026-4403stdlib@go1.13.51.23.9
LowUBUNTU-CVE-2023-29383shadow@1:4.2-3.1ubuntu5.4no fix listed
LowGO-2026-5025golang.org/x/net@v0.0.0-20191028085509-fe3aa8a452710.55.0
LowGO-2026-4970stdlib@go1.13.51.25.12
LowGHSA-jfvp-7x6p-h2pvgithub.com/opencontainers/runc@v0.1.11.1.14
LowUBUNTU-CVE-2019-19126glibc@2.23-0ubuntu112.23-0ubuntu11.2
LowGO-2026-5027golang.org/x/net@v0.0.0-20191028085509-fe3aa8a452710.55.0
LowGO-2026-5029golang.org/x/net@v0.0.0-20191028085509-fe3aa8a452710.55.0
LowGO-2026-5030golang.org/x/net@v0.0.0-20191028085509-fe3aa8a452710.55.0
LowGHSA-58qw-9mgm-455vpip@9.0.326.1
LowUBUNTU-CVE-2026-42250bzip2@1.0.6-8ubuntu0.21.0.6-8ubuntu0.2+esm1

Used by

1 chart
ChartVersionTagContainers
azure-pipelines-agentfermosit0.0.1latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.