StackRadar

library/sonarqube:8.2-community container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of library/sonarqube

library/sonarqube:8.2-community resolved to a246bc64207e, scanned 14 Sept 2026: 258 findings, 10 critical, 7 on KEV; deployed by 1 chart, among them sonarqube.

Radar Score

5,4601014108126

258 findings on digest a246bc64207e · scanned 14 Sept 2026

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.2-communityresolves toa246bc64207e1 chart5 days ago10141081265,460

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

258 distinct on this digest

Findings for digest a246bc64207e as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalGHSA-jfh8-c2jp-5v3qKEVlog4j-core@2.11.12.12.2
CriticalGHSA-83qj-6fr2-vhqgKEVtomcat-embed-core@8.5.41no fix listed
CriticalGHSA-c9hw-wf7x-jp9jKEVtomcat-embed-core@8.5.418.5.51
CriticalGHSA-7rjr-3q55-vv33KEVlog4j-core@2.11.12.12.2
CriticalGHSA-p6xc-xr62-6r2glog4j-core@2.11.12.12.3
CriticalGHSA-45hx-wfhj-473xh2@1.4.1992.1.210
CriticalGHSA-h376-j262-vhq6h2@1.4.1992.0.206
CriticalGHSA-mjmj-j48q-9wg2snakeyaml@1.172.0
CriticalGHSA-5j33-cvvr-w245tomcat-embed-core@8.5.41no fix listed
CriticalGHSA-3p2h-wqq4-wf4htomcat-embed-core@8.5.41no fix listed
HighGHSA-8489-44mv-ggj8log4j-core@2.11.12.12.4
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@8.5.41no fix listed
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@8.5.41no fix listed
HighGHSA-344f-f5vg-2jfjtomcat-embed-core@8.5.418.5.55
HighGHSA-qppj-fm5r-hxr3KEVtomcat-embed-core@8.5.418.5.94
HighGHSA-rvwf-54qp-4r6vsnakeyaml@1.171.26
HighGHSA-53hp-jpwq-2jgqtomcat-embed-core@8.5.418.5.55
HighGHSA-7w75-32cg-r6g2tomcat-embed-core@8.5.418.5.99
HighGHSA-j39c-c8hj-x4j3tomcat-embed-core@8.5.418.5.63
HighGHSA-288c-cq4h-88gqjackson-databind@2.10.12.10.5.1
HighGHSA-53x6-4x5p-rrvvcommons-compress@1.181.19
HighGHSA-cqqj-4p63-rrmmnetty-codec-http@4.1.32.Final4.1.44
HighDLA-3621-1KEVnghttp2@1.36.0-2+deb10u11.36.0-2+deb10u2
HighDSA-4777-1KEVfreetype@2.9.1-3+deb10u12.9.1-3+deb10u2
MediumDSA-5169-1openssl@1.1.1d-0+deb10u31.1.1n-0+deb10u3
MediumDLA-3807-1glibc@2.28-102.28-10+deb10u3
MediumDSA-4963-1openssl@1.1.1d-0+deb10u31.1.1d-0+deb10u7
MediumGHSA-4jrv-ppp4-jm57gson@2.8.52.8.9
MediumGHSA-mc84-pj99-q6hhcommons-compress@1.181.21
MediumDLA-3804-1nghttp2@1.36.0-2+deb10u11.36.0-2+deb10u3
MediumGHSA-3f7h-mf4q-vrm4woodstox-core@5.0.35.4.0
MediumDSA-4845-1openldap@2.4.47+dfsg-3+deb10u12.4.47+dfsg-3+deb10u5
MediumDSA-5139-1openssl@1.1.1d-0+deb10u31.1.1n-0+deb10u2
MediumGHSA-crv7-7245-f45fcommons-compress@1.181.21
MediumGHSA-7hfm-57qf-j43qcommons-compress@1.181.21
MediumGHSA-24rp-q3w6-vc56postgresql@42.2.842.2.28
MediumDLA-3449-1openssl@1.1.1d-0+deb10u31.1.1n-0+deb10u5
MediumGHSA-2rvv-w9r2-rg7mtomcat-embed-core@8.5.418.5.60
MediumDSA-5103-1openssl@1.1.1d-0+deb10u31.1.1d-0+deb10u8
MediumGHSA-9xcj-c8cr-8c3ctomcat-embed-core@8.5.418.5.50
MediumGHSA-xqfj-vm6h-2x34commons-compress@1.181.21
MediumDSA-5140-1openldap@2.4.47+dfsg-3+deb10u12.4.47+dfsg-3+deb10u7
MediumDSA-4860-1openldap@2.4.47+dfsg-3+deb10u12.4.47+dfsg-3+deb10u6
MediumDSA-4875-1openssl@1.1.1d-0+deb10u31.1.1d-0+deb10u6
MediumGHSA-mm9x-g8pc-w292netty-handler@4.1.32.Final4.1.46
MediumDLA-3325-1openssl@1.1.1d-0+deb10u31.1.1n-0+deb10u4
MediumDSA-5111-1zlib@1:1.2.11.dfsg-11:1.2.11.dfsg-1+deb10u1
MediumGHSA-jgwr-3qm3-26f3tomcat-embed-core@8.5.418.5.61
MediumDSA-4855-1openssl@1.1.1d-0+deb10u31.1.1d-0+deb10u5
MediumGHSA-j8wc-gxx9-82hxxmlsec@2.1.42.1.7

Used by

1 chart
ChartVersionTagContainers
sonarqubewebencryptor6.7.38.2-community1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.