StackRadar

louislam/uptime-kuma:2.5.4 container image

Docker Hub

Scanned 20 Sept 2026

Deployed by 4 of 17,813 indexed charts (latest versions) at this tag.Docker Hub all tags of louislam/uptime-kuma

louislam/uptime-kuma:2.5.4 resolved to 917318f9d7be, scanned 20 Sept 2026: 3,047 findings, 3 critical, 3 on KEV; deployed by 4 charts, among them uptime-kuma, uptime-kuma and uptime-kuma.

Radar Score

30,707322482,793

3,047 findings on digest 917318f9d7be · scanned 20 Sept 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.5.4resolves to917318f9d7be3 charts4 days ago322482,79330,707

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

3,047 distinct on this digest

Findings for digest 917318f9d7be as scanned on 20 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 20 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-91723chromium@148.0.7778.178-1~deb12u1153.0.8010.47-1
LowDEBIAN-CVE-2026-13945chromium@148.0.7778.178-1~deb12u1150.0.7871.46-1~deb12u1
LowDEBIAN-CVE-2026-13948chromium@148.0.7778.178-1~deb12u1150.0.7871.46-1~deb12u1
LowDEBIAN-CVE-2026-10011chromium@148.0.7778.178-1~deb12u1148.0.7778.215-1~deb12u1
LowDEBIAN-CVE-2026-91708chromium@148.0.7778.178-1~deb12u1153.0.8010.47-1
LowDEBIAN-CVE-2026-12032chromium@148.0.7778.178-1~deb12u1149.0.7827.114-1~deb12u1
LowDEBIAN-CVE-2026-84328chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-84331chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-84355chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-18000chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-15115chromium@148.0.7778.178-1~deb12u1150.0.7871.114-1~deb12u1
LowDEBIAN-CVE-2026-84359chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-13942chromium@148.0.7778.178-1~deb12u1150.0.7871.46-1~deb12u1
LowDEBIAN-CVE-2026-17957chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-9991chromium@148.0.7778.178-1~deb12u1148.0.7778.215-1~deb12u1
LowDEBIAN-CVE-2026-13955chromium@148.0.7778.178-1~deb12u1150.0.7871.46-1~deb12u1
LowDEBIAN-CVE-2026-86141libxml2@2.9.14+dfsg-1.3~deb12u5no fix listed
LowDEBIAN-CVE-2026-9959chromium@148.0.7778.178-1~deb12u1148.0.7778.215-1~deb12u1
LowGHSA-vpq2-c234-7xj6@tootallnate/once@1.1.22.0.1
LowDEBIAN-CVE-2025-52968xdg-utils@1.1.3-4.1no fix listed
LowDEBIAN-CVE-2026-17997chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-15310python3.11@3.11.2-6+deb12u7no fix listed
LowDEBIAN-CVE-2026-57062gnupg2@2.2.40-1.1+deb12u2no fix listed
LowDEBIAN-CVE-2026-17860chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-17984chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-53910diffutils@1:3.8-4no fix listed
LowDEBIAN-CVE-2026-6879python3.11@3.11.2-6+deb12u7no fix listed
LowDEBIAN-CVE-2005-1119sudo@1.9.13p3-1+deb12u4no fix listed
LowDEBIAN-CVE-2026-24515expat@2.5.0-1+deb12u2no fix listed
LowDEBIAN-CVE-2026-78936chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-78949chromium@148.0.7778.178-1~deb12u1152.0.7977.75-1~deb12u1
LowDEBIAN-CVE-2026-18743popt@1.19+dfsg-1no fix listed
LowDEBIAN-CVE-2026-87525chromium@148.0.7778.178-1~deb12u1153.0.8010.47-1
LowDEBIAN-CVE-2025-9165tiff@4.5.0-6+deb12u4no fix listed
LowDEBIAN-CVE-2026-18739popt@1.19+dfsg-1no fix listed
LowDEBIAN-CVE-2026-18503python3.11@3.11.2-6+deb12u7no fix listed
LowDEBIAN-CVE-2024-13978tiff@4.5.0-6+deb12u4no fix listed
LowGHSA-8wmf-6v46-5gfggo.opentelemetry.io/otel/exporters/otlp/otlptrace@v1.43.01.45.0
LowGHSA-8wmf-6v46-5gfggo.opentelemetry.io/otel/sdk@v1.43.01.45.0
LowDEBIAN-CVE-2025-8534tiff@4.5.0-6+deb12u4no fix listed
LowDEBIAN-CVE-2026-18011chromium@148.0.7778.178-1~deb12u1151.0.7922.71-1~deb12u1
LowDEBIAN-CVE-2026-6368glibc@2.36-9+deb12u14no fix listed
LowDEBIAN-CVE-2026-18839popt@1.19+dfsg-1no fix listed
LowGHSA-5cpq-8wj7-hf2vcryptography@38.0.441.0.0
LowGHSA-jm77-qphf-c4w8cryptography@38.0.441.0.3
LowGHSA-v8gr-m533-ghj9cryptography@38.0.441.0.4
NoneDEBIAN-CVE-2026-3479python3.11@3.11.2-6+deb12u7no fix listed

Used by

4 charts
ChartVersionTagContainers
uptime-kumahelmforgeVerified publisher1.5.132.5.41
uptime-kumaadnoctemVerified publisher0.4.12.5.41
uptime-kumancsaVerified publisher1.7.22.5.41
uptime-kumaschoenwald1.0.102.5.4unmeasured: HTTP 429 resolving manifest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 20 Sept 2026 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.