massimolauri/wso2is:5.11.0-centos container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of massimolauri/wso2is
massimolauri/wso2is:5.11.0-centos resolved to e08abf0ce767, scanned 14 Sept 2026: 204 findings, 17 critical, 5 on KEV; deployed by 1 chart, among them is-pattern-1.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
204 distinct on this digest
Findings for digest e08abf0ce767 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-3pxv-7cmr-fjr4 | log4j-core | 2.25.4 |
| Low | GHSA-c5vj-wp4v-mmvx | hazelcast | 5.0.5 |
| Low | GHSA-7v6m-28jr-rg84 | hibernate-validator | 6.2.0.CR1 |
| Low | GHSA-f6jm-9pr8-9c3w | org.wso2.carbon.identity.application.authentication.framework | 5.20.254 |
| Low | GHSA-cfxw-4h78-h7fw | dnsjava | 3.6.0 |
| Low | GHSA-564r-hj7v-mcr5 | spring-expression | 5.2.23.RELEASE |
| Low | GHSA-3wrr-7qpf-2prh | jackson-databind | 2.14.0 |
| Low | GHSA-vrpq-qp53-qv56 | org.eclipse.jgit | 5.13.4.202507202350-r |
| Low | GHSA-xh6m-7cr7-xx66 | hazelcast | no fix listed |
| Low | GHSA-5m3j-pxh7-455p | cxf-rt-rs-service-description | 3.5.9 |
| Low | GHSA-hhhw-99gj-p3c3 | snakeyaml | 1.31 |
| Low | GHSA-6xx3-rg99-gc3p | bcprov-jdk15on | 1.66 |
| Low | GHSA-ghvc-7hp8-2g2v | cxf-core | 3.6.12 |
| Low | GHSA-vc5p-v9hr-52mj | log4j-core | 2.25.3 |
| Low | GHSA-v435-xc8x-wvr9 | bcprov-jdk15on | 1.78 |
| Low | GHSA-rcjj-h6gh-jf3r | groovy-all | 2.4.21 |
| Low | GHSA-8xfc-gm6g-vgpv | bcprov-jdk15on | 1.78 |
| Low | GHSA-wg6q-6289-32hp | bcpkix-jdk15on | 1.84 |
| Low | GHSA-wjxj-5m7g-mg7q | bcprov-jdk15on | no fix listed |
| Low | GHSA-r5w3-xv2f-j59q | spring-expression | no fix listed |
| Low | GHSA-8h4x-xvjp-vf99 | hazelcast | no fix listed |
| Low | GHSA-22wj-vf5f-wrvj | h2 | 2.2.220 |
| Low | GHSA-72m5-fvvv-55m6 | bcprov-jdk15on | 1.61 |
| Low | GHSA-2rmj-mq67-h97g | spring-web | 5.3.38 |
| Low | GHSA-4cx2-fc23-5wg6 | bcpkix-jdk15on | 1.79 |
| Low | GHSA-hw42-3568-wj87 | google-oauth-client | 1.33.3 |
| Low | GHSA-36wv-v2qp-v4g4 | cxf-core | 3.5.11 |
| Low | GHSA-hr8g-6v94-x4m9 | bcprov-jdk15on | no fix listed |
| Low | GHSA-775g-4xr8-78h8 | spring-expression | no fix listed |
| Low | GHSA-x83m-pf6f-pf9g | hibernate-validator | 6.2.0.Final |
| Low | GHSA-6hg6-v5c8-fphq | log4j-core | 2.25.4 |
| Low | GHSA-4gc7-5j7h-4qph | spring-context | no fix listed |
| Low | GHSA-4gc7-5j7h-4qph | spring-web | no fix listed |
| Low | GHSA-xxfh-x98p-j8fr | pax-logging-log4j2 | 1.11.10 |
| Low | GHSA-xpxp-r8hf-wgf6 | org.wso2.carbon.identity.user.store.configuration.ui | 7.5.12 |
| Low | GHSA-r7wm-3cxj-wff9 | jackson-core | 2.18.8 |
| Low | GHSA-hgj6-7826-r7m5 | jackson-databind | 2.18.8 |
| Low | GHSA-wxpp-56q6-5pcg | spring-expression | no fix listed |
| Low | GHSA-5jmj-h7xm-6q6v | jackson-databind | 2.18.9 |
| Low | GHSA-qh8g-58pp-2wxh | jetty-http | 12.0.12 |
| Low | GHSA-9cmq-m9j5-mvww | spring-expression | 5.3.39 |
| Low | GHSA-7c2q-5qmr-v76q | esapi | 2.5.2.0 |
| Low | GHSA-mm44-wc5p-wqhq | cbor | 4.0.0 |
| Low | GHSA-m6cp-vxjx-65j6 | jetty-server | 9.4.41 |
| Low | GHSA-7g45-4rm6-3mm3 | guava | 32.0.0-android |
| Low | GHSA-cp5v-2hmc-3vjx | org.wso2.carbon.identity.application.authentication.endpoint.util | 5.25.707 |
| Low | GHSA-5mg8-w23w-74h3 | guava | 32.0.0-android |
| Low | GHSA-wf8f-6423-gfxg | jackson-core | 2.13.0 |
| Low | GHSA-cj7v-27pg-wf7q | jetty-http | 9.4.47 |
| Low | GHSA-p26g-97m4-6q7c | jetty-server | 9.4.51.v20230217 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| is-pattern-1wso2is-pattern1 | 5.11.0 | 5.11.0-centos | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.