StackRadar

library/kibana:8.18.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of library/kibana

library/kibana:8.18.0 resolved to 04c0fc150f3a, scanned 14 Sept 2026: 448 findings, 4 critical; deployed by 1 chart, among them kibana.

Radar Score

5,7274986349

448 findings on digest 04c0fc150f3a · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.18.0resolves to04c0fc150f3a1 chart8 days ago49863495,727

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

349 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 04c0fc150f3a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-6v7q-wjvx-w8wgbasic-ftp@5.0.35.2.2
LowGHSA-fw9q-39r9-c252langsmith@0.3.70.5.18
LowUBUNTU-CVE-2026-54369acl@2.2.53-6no fix listed
LowUBUNTU-CVE-2026-41989libgcrypt20@1.8.5-5ubuntu1.1no fix listed
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@1.1.111.1.16
LowGHSA-gh4j-gqv2-49f6fast-xml-parser@4.4.15.7.0
LowUBUNTU-CVE-2025-5372libssh@0.9.3-2ubuntu2.5no fix listed
LowUBUNTU-CVE-2026-13595util-linux@2.34-0.1ubuntu9.6no fix listed
LowGHSA-p88m-4jfj-68fvundici@6.19.26.27.0
LowUBUNTU-CVE-2026-54371attr@1:2.4.48-51:2.4.48-5ubuntu0.1~esm1
LowGHSA-vmf3-w455-68vhtar@7.4.37.5.16
LowGHSA-8988-4f7v-96qf@opentelemetry/core@1.15.02.8.0
LowUBUNTU-CVE-2026-0964libssh@0.9.3-2ubuntu2.50.9.3-2ubuntu2.5+esm3
LowUBUNTU-CVE-2026-59848libssh@0.9.3-2ubuntu2.5no fix listed
LowUBUNTU-CVE-2026-5704tar@1.30+dfsg-7ubuntu0.20.04.41.30+dfsg-7ubuntu0.20.04.4+esm3
LowGHSA-5c9x-8gcm-mpgxaxios@1.8.31.15.1
LowGHSA-vf2m-468p-8v99axios@1.8.31.15.1
LowGHSA-x426-x7cc-3fpc@hapi/wreck@18.1.018.1.2
LowUBUNTU-CVE-2026-72522expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-22695libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm2
LowUBUNTU-CVE-2026-56403expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56404expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56405expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56408expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56406expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56407expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56410expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-56411expat@2.2.9-1ubuntu0.8no fix listed
LowUBUNTU-CVE-2026-78410util-linux@2.34-0.1ubuntu9.6no fix listed
LowGHSA-q6x5-8v7m-xcrfprotobufjs@7.2.57.5.6
LowGHSA-q6x5-8v7m-xcrf@protobufjs/utf8@1.1.01.1.1
LowGHSA-866g-f22w-33x8@ai-sdk/provider-utils@2.0.43.0.28
LowUBUNTU-CVE-2025-14104util-linux@2.34-0.1ubuntu9.6no fix listed
LowGHSA-445q-vr5w-6q77axios@1.8.31.15.1
LowUBUNTU-CVE-2025-64505libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm1
LowUBUNTU-CVE-2026-42014gnutls28@3.6.13-2ubuntu1.123.6.13-2ubuntu1.12+esm3
LowUBUNTU-CVE-2026-78409util-linux@2.34-0.1ubuntu9.6no fix listed
LowUBUNTU-CVE-2024-13176openssl@1.1.1f-1ubuntu2.241.1.1f-1ubuntu2.fips.24
LowGHSA-2x7j-588g-ccc2nodemailer@6.9.159.1.0
LowGHSA-5p4m-2wfm-xmqjjs-yaml@4.1.04.3.1
LowUBUNTU-CVE-2025-52099sqlite3@3.31.1-4ubuntu0.63.31.1-4ubuntu0.7
LowUBUNTU-CVE-2026-22801libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm2
LowUBUNTU-CVE-2026-58055nghttp2@1.40.0-1ubuntu0.3no fix listed
LowGHSA-x7hr-w5r2-h6wgprismjs@1.27.01.30.0
LowGHSA-fx83-v9x8-x52wprotobufjs@7.2.57.5.6
LowGHSA-jggg-4jg4-v7c6protobufjs@7.2.57.5.8
LowUBUNTU-CVE-2025-29088sqlite3@3.31.1-4ubuntu0.63.31.1-4ubuntu0.7
LowUBUNTU-CVE-2026-40225systemd@245.4-4ubuntu3.24245.4-4ubuntu3.24+esm3
LowGHSA-48c2-rrv3-qjmpyaml@1.10.21.10.3
LowUBUNTU-CVE-2026-56409expat@2.2.9-1ubuntu0.8no fix listed

Used by

1 chart
ChartVersionTagContainers
kibanawiremindVerified publisher8.5.238.18.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.