StackRadar

library/tomcat:8.5.41-alpine container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of library/tomcat

library/tomcat:8.5.41-alpine resolved to 04feaf74f8bb, scanned 14 Sept 2026: 46 findings, 4 critical, 2 on KEV; deployed by 1 chart, among them tomcat.

Radar Score

1,383472312

46 findings on digest 04feaf74f8bb · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.5.41-alpineresolves to04feaf74f8bb1 chart7 days ago4723121,383

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

23 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest 04feaf74f8bb as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-f268-65qc-98vgtomcat-coyote@8.5.418.5.58
MediumALPINE-CVE-2019-5018sqlite@3.26.0-r33.28.0-r0
MediumALPINE-CVE-2019-14697musl@1.1.20-r41.1.20-r5
MediumALPINE-CVE-2019-1551openssl@1.1.1b-r11.1.1d-r2
MediumGHSA-f4qf-m5gf-8jm8tomcat-coyote@8.5.418.5.64
MediumGHSA-wm9w-rjj3-j356tomcat-coyote@8.5.41no fix listed
MediumALPINE-CVE-2020-28196krb5@1.15.5-r01.15.5-r1
MediumALPINE-CVE-2020-11655sqlite@3.26.0-r33.28.0-r3
MediumALPINE-CVE-2021-23841openssl@1.1.1b-r11.1.1j-r0
MediumGHSA-r29c-68gh-xp6xtomcat-coyote@8.5.419.0.118
MediumALPINE-CVE-2020-1971openssl@1.1.1b-r11.1.1i-r0
MediumALPINE-CVE-2019-19244sqlite@3.26.0-r33.28.0-r2
MediumALPINE-CVE-2019-16168sqlite@3.26.0-r33.28.0-r1
MediumALPINE-CVE-2019-2201libjpeg-turbo@1.5.3-r41.5.3-r6
MediumGHSA-7jqf-v358-p8g7tomcat-coyote@8.5.41no fix listed
MediumALPINE-CVE-2019-1549openssl@1.1.1b-r11.1.1d-r0
MediumGHSA-r6j3-px5g-cq3xtomcat-coyote@8.5.418.5.94
MediumALPINE-CVE-2018-14498libjpeg-turbo@1.5.3-r41.5.3-r5
MediumGHSA-25xr-qj8w-c4vftomcat-coyote@8.5.41no fix listed
MediumGHSA-4j3c-42xv-3f84tomcat-coyote@8.5.41no fix listed
MediumGHSA-v682-8vv8-vpwrtomcat-websocket@8.5.418.5.99
MediumALPINE-CVE-2019-19242sqlite@3.26.0-r33.28.0-r2
MediumALPINE-CVE-2019-5094e2fsprogs@1.44.5-r01.44.5-r1

Used by

1 chart
ChartVersionTagContainers
tomcatkubesphereVerified publisher0.4.0-r18.5.41-alpine1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.