linuxserver/unifi-controller:8.0.24 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of linuxserver/unifi-controller
linuxserver/unifi-controller:8.0.24 resolved to 0ae315a3a456, scanned 14 Sept 2026: 789 findings, 12 critical, 4 on KEV; deployed by 1 chart, among them unifi-controller.
Radar Score
789 findings on digest 0ae315a3a456 · scanned 14 Sept 2026
KEV ×4 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
Findings for digest 0ae315a3a456 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-22695 | libpng1.6 | 1.6.37-2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2026-56403 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56404 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56405 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56408 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56406 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56407 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56410 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56411 | expat | no fix listed |
| Low | UBUNTU-CVE-2025-12657 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-78410 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-22021 | openjdk-17 | 17.0.19+10-1~20.04.2 |
| Low | UBUNTU-CVE-2026-47021 | openjdk-17 | 17.0.20+8-1~20.04 |
| Low | GHSA-9cmq-m9j5-mvww | spring-expression | 5.3.39 |
| Low | UBUNTU-CVE-2025-30754 | openjdk-17 | 17.0.16+8~us1-0ubuntu1~20.04.6 |
| Low | UBUNTU-CVE-2025-14104 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2025-64505 | libpng1.6 | 1.6.37-2ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2026-50593 | graphite2 | no fix listed |
| Low | UBUNTU-CVE-2026-56109 | alsa-lib | no fix listed |
| Low | UBUNTU-CVE-2026-13074 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-42014 | gnutls28 | 3.6.13-2ubuntu1.12+esm3 |
| Low | UBUNTU-CVE-2024-20945 | openjdk-17 | 17.0.10+7-1~20.04.1 |
| Low | UBUNTU-CVE-2026-46917 | openjdk-17 | 17.0.20+8-1~20.04 |
| Low | UBUNTU-CVE-2026-47027 | openjdk-17 | 17.0.20+8-1~20.04 |
| Low | UBUNTU-CVE-2026-78409 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2024-13176 | openssl | 1.1.1f-1ubuntu2.24 |
| Low | UBUNTU-CVE-2025-52099 | sqlite3 | 3.31.1-4ubuntu0.7 |
| Low | UBUNTU-CVE-2026-6915 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-22013 | openjdk-17 | 17.0.19+10-1~20.04.2 |
| Low | UBUNTU-CVE-2026-3441 | binutils | no fix listed |
| Low | UBUNTU-CVE-2025-5244 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2025-5245 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2026-70907 | openjdk-17 | no fix listed |
| Low | GHSA-7g45-4rm6-3mm3 | guava | 32.0.0-android |
| Low | UBUNTU-CVE-2025-69652 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-22801 | libpng1.6 | 1.6.37-2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2024-21210 | openjdk-17 | 17.0.13+11-2ubuntu1~20.04 |
| Low | UBUNTU-CVE-2025-1153 | binutils | 2.34-6ubuntu1.11 |
| Low | UBUNTU-CVE-2025-7545 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2026-13057 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2025-69651 | binutils | no fix listed |
| Low | GHSA-25qh-j22f-pwp8 | logback-core | 1.3.16 |
| Low | UBUNTU-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | UBUNTU-CVE-2025-66864 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-39956 | jq | 1.6-1ubuntu0.20.04.1+esm2 |
| Low | UBUNTU-CVE-2026-4647 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-33948 | jq | 1.6-1ubuntu0.20.04.1+esm2 |
| Low | UBUNTU-CVE-2025-29088 | sqlite3 | 3.31.1-4ubuntu0.7 |
| Low | UBUNTU-CVE-2024-21094 | openjdk-17 | 17.0.11+9-1~20.04.2 |
| Low | UBUNTU-CVE-2025-11083 | binutils | 2.34-6ubuntu1.11+esm2 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| unifi-controllerqonstruktVerified publisher | 2.6.1 | 8.0.24 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.