StackRadar

kusionstack/kusion:v0.14.0 container image

Docker Hub

Scanned 15 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of kusionstack/kusion

kusionstack/kusion:v0.14.0 resolved to 126c8f0b0976, scanned 15 Sept 2026: 626 findings, 2 critical, 2 on KEV; deployed by 1 chart, among them kusion.

Radar Score

6,4162583535

626 findings on digest 126c8f0b0976 · scanned 15 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v0.14.0resolves to126c8f0b09761 chart9 days ago25835356,416

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

626 distinct on this digest

Findings for digest 126c8f0b0976 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-66382expat@2.4.7-1ubuntu0.5no fix listed
LowGHSA-m7cr-m3pv-hgrpgithub.com/go-git/go-git/v5@v5.12.05.19.1
LowUBUNTU-CVE-2026-24515expat@2.4.7-1ubuntu0.52.4.7-1ubuntu0.7
LowUBUNTU-CVE-2026-40228systemd@249.11-0ubuntu3.12no fix listed
LowUBUNTU-CVE-2026-32778expat@2.4.7-1ubuntu0.5no fix listed
LowUBUNTU-CVE-2025-30258gnupg2@2.2.27-3ubuntu2.12.2.27-3ubuntu2.3
LowUBUNTU-CVE-2025-9165tiff@4.3.0-6ubuntu0.104.3.0-6ubuntu0.12
LowGHSA-gm2x-2g9h-ccm8github.com/go-git/go-git/v5@v5.12.05.17.1
LowGHSA-6vgw-5pg2-w6jppip@22.0.226.0
LowUBUNTU-CVE-2026-1703python-pip@22.0.2+dfsg-1ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-15310python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2026-53910diffutils@1:3.8-0ubuntu21:3.8-0ubuntu2.1
LowUBUNTU-CVE-2026-6879python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2025-8534tiff@4.3.0-6ubuntu0.104.3.0-6ubuntu0.11
LowUBUNTU-CVE-2026-89162pcre2@10.39-3ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-89156pcre2@10.39-3ubuntu0.1no fix listed
LowGHSA-xf85-363p-868woras.land/oras-go@v1.2.5no fix listed
LowGHSA-xf85-363p-868woras.land/oras-go/v2@v2.5.02.6.1
LowUBUNTU-CVE-2026-0967libssh@0.9.6-2ubuntu0.22.04.30.9.6-2ubuntu0.22.04.6
LowUBUNTU-CVE-2025-66861binutils@2.38-4ubuntu2.6no fix listed
LowUBUNTU-CVE-2026-35388openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.15
LowUBUNTU-CVE-2026-18503python3.10@3.10.12-1~22.04.8no fix listed
LowUBUNTU-CVE-2026-73283openssh@1:8.9p1-3ubuntu0.101:8.9p1-3ubuntu0.17
LowUBUNTU-CVE-2026-5958sed@4.8-1ubuntu24.8-1ubuntu2.1
LowUBUNTU-CVE-2026-6368glibc@2.35-0ubuntu3.82.35-0ubuntu3.15
NoneUBUNTU-CVE-2026-19582binutils@2.38-4ubuntu2.6no fix listed

Used by

1 chart
ChartVersionTagContainers
kusionkusionstackVerified publisher0.14.1v0.14.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.