linuxserver/calibre:version-v5.21.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of linuxserver/calibre
linuxserver/calibre:version-v5.21.0 resolved to a847b5b2d860, scanned 14 Sept 2026: 1,483 findings, 16 critical, 3 on KEV; deployed by 1 chart, among them calibre.
Radar Score
22,7731643473947
1,483 findings on digest a847b5b2d860 · scanned 14 Sept 2026
KEV ×3 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
1,483 distinct on this digest
Findings for digest a847b5b2d860 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-12549 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2026-55238 | xrdp | no fix listed |
| Low | UBUNTU-CVE-2026-58471 | wget | 1.19.4-1ubuntu2.2+esm3 |
| Low | UBUNTU-CVE-2026-58472 | wget | 1.19.4-1ubuntu2.2+esm3 |
| Low | UBUNTU-CVE-2026-67306 | freerdp2 | no fix listed |
| Low | UBUNTU-CVE-2025-4516 | python3.6 | 3.6.9-1~18.04ubuntu1.13+esm5 |
| Low | UBUNTU-CVE-2022-34266 | tiff | 4.0.9-5ubuntu0.5 |
| Low | UBUNTU-CVE-2025-14104 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2025-64505 | libpng1.6 | 1.6.34-1ubuntu0.18.04.2+esm1 |
| Low | UBUNTU-CVE-2026-50593 | graphite2 | no fix listed |
| Low | UBUNTU-CVE-2025-6069 | python3.6 | 3.6.9-1~18.04ubuntu1.13+esm6 |
| Low | UBUNTU-CVE-2025-6069 | python2.7 | no fix listed |
| Low | UBUNTU-CVE-2018-18020 | qpdf | 8.0.2-3ubuntu0.1 |
| Low | UBUNTU-CVE-2026-56109 | alsa-lib | no fix listed |
| Low | UBUNTU-CVE-2026-86142 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-78409 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2024-13176 | openssl1.0 | no fix listed |
| Low | UBUNTU-CVE-2024-13176 | openssl | no fix listed |
| Low | GHSA-5p4m-2wfm-xmqj | js-yaml | 4.3.1 |
| Low | UBUNTU-CVE-2025-52099 | sqlite3 | 3.22.0-1ubuntu0.7+esm2 |
| Low | UBUNTU-CVE-2026-33985 | freerdp2 | no fix listed |
| Low | UBUNTU-CVE-2026-33995 | freerdp2 | no fix listed |
| Low | UBUNTU-CVE-2026-4360 | python3.6 | 3.6.9-1~18.04ubuntu1.13+esm10 |
| Low | UBUNTU-CVE-2026-4360 | python2.7 | 2.7.17-1~18.04ubuntu1.13+esm15 |
| Low | UBUNTU-CVE-2026-22801 | libpng1.6 | 1.6.34-1ubuntu0.18.04.2+esm2 |
| Low | UBUNTU-CVE-2026-3446 | python3.6 | no fix listed |
| Low | UBUNTU-CVE-2026-3446 | python2.7 | no fix listed |
| Low | UBUNTU-CVE-2020-21047 | elfutils | 0.170-0.4ubuntu0.1+esm1 |
| Low | UBUNTU-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | UBUNTU-CVE-2026-0716 | libsoup2.4 | no fix listed |
| Low | GHSA-ghr5-ch3p-vcr6 | ejs | 3.1.10 |
| Low | UBUNTU-CVE-2026-58045 | nodejs | no fix listed |
| Low | UBUNTU-CVE-2026-39956 | jq | 1.5+dfsg-2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2026-86138 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2021-20193 | tar | 1.29b-2ubuntu0.3 |
| Low | UBUNTU-CVE-2026-86143 | libxml2 | no fix listed |
| Low | GHSA-4mjr-xmp4-gh2g | qs | 6.16.0 |
| Low | UBUNTU-CVE-2025-49178 | xorg-server | 2:1.19.6-1ubuntu4.15+esm13 |
| Low | UBUNTU-CVE-2022-39282 | freerdp2 | 2.2.0+dfsg1-0ubuntu0.18.04.4 |
| Low | UBUNTU-CVE-2026-33948 | jq | 1.5+dfsg-2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2025-29088 | sqlite3 | 3.22.0-1ubuntu0.7+esm2 |
| Low | UBUNTU-CVE-2026-18090 | gdk-pixbuf | no fix listed |
| Low | UBUNTU-CVE-2026-55639 | xrdp | no fix listed |
| Low | UBUNTU-CVE-2026-58041 | nodejs | no fix listed |
| Low | UBUNTU-CVE-2026-43894 | jq | no fix listed |
| Low | GHSA-48c2-rrv3-qjmp | yaml | 1.10.3 |
| Low | UBUNTU-CVE-2026-42218 | xrdp | no fix listed |
| Low | UBUNTU-CVE-2025-13837 | python2.7 | no fix listed |
| Low | UBUNTU-CVE-2025-13837 | python3.6 | 3.6.9-1~18.04ubuntu1.13+esm8 |
| Low | UBUNTU-CVE-2025-9714 | libxml2 | 2.9.4+dfsg1-6.1ubuntu1.9+esm5 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| calibregeek-cookbookVerified publisher | 5.4.2 | version-v5.21.0 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.