mbentley/omada-controller:4.3 container image
Docker HubScanned 14 Sept 2026
Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of mbentley/omada-controller
mbentley/omada-controller:4.3 resolved to f4e682274bed, scanned 14 Sept 2026: 709 findings, 17 critical, 5 on KEV; deployed by 2 charts, among them omada-controller and omada-controller.
Radar Score
709 findings on digest f4e682274bed · scanned 14 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest f4e682274bed as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2024-20926 | openjdk-8 | 8u402-ga-2ubuntu1~18.04 |
| Low | UBUNTU-CVE-2024-50602 | expat | 2.2.5-3ubuntu0.9+esm2 |
| Low | UBUNTU-CVE-2026-34980 | cups | no fix listed |
| Low | GHSA-g8m5-722r-8whq | jetty-server | 9.4.56 |
| Low | UBUNTU-CVE-2023-22081 | openjdk-8 | 8u392-ga-1~18.04 |
| Low | UBUNTU-CVE-2025-6020 | pam | no fix listed |
| Low | UBUNTU-CVE-2023-7104 | sqlite3 | 3.22.0-1ubuntu0.7+esm1 |
| Low | UBUNTU-CVE-2019-6488 | glibc | no fix listed |
| Low | UBUNTU-CVE-2025-6709 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2024-35235 | cups | 2.2.7-1ubuntu2.10+esm4 |
| Low | UBUNTU-CVE-2026-13059 | mongodb | no fix listed |
| Low | GHSA-qv9r-c865-cp47 | log4j-api | 2.25.5 |
| Low | UBUNTU-CVE-2023-43787 | libx11 | 2:1.6.4-3ubuntu0.4+esm2 |
| Low | GHSA-6xx3-rg99-gc3p | bcprov-ext-jdk15on | 1.66 |
| Low | GHSA-gmg8-593g-7mv3 | poi-ooxml | 5.4.0 |
| Low | UBUNTU-CVE-2023-47039 | perl | no fix listed |
| Low | UBUNTU-CVE-2025-15281 | glibc | 2.27-3ubuntu1.6+esm6 |
| Low | GHSA-q4rv-gq96-w7c5 | jetty-server | 9.4.57.v20241219 |
| Low | UBUNTU-CVE-2026-47057 | openjdk-8 | 8u502-ga~us1-0ubuntu1~18.04 |
| Low | UBUNTU-CVE-2025-6297 | dpkg | no fix listed |
| Low | UBUNTU-CVE-2019-1563 | openssl | 1.1.1-1ubuntu2.fips.2.1~18.04.6.1 |
| Low | UBUNTU-CVE-2026-42011 | gnutls28 | 3.5.18-1ubuntu1.6+esm4 |
| Low | UBUNTU-CVE-2024-12243 | gnutls28 | 3.5.18-1ubuntu1.6+esm3 |
| Low | GHSA-vc5p-v9hr-52mj | log4j-core | 2.25.3 |
| Low | UBUNTU-CVE-2021-20333 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-9538 | perl | no fix listed |
| Low | UBUNTU-CVE-2021-26720 | avahi | no fix listed |
| Low | UBUNTU-CVE-2025-3083 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-21932 | openjdk-8 | 8u482-ga~us1-0ubuntu1~18.04 |
| Low | UBUNTU-CVE-2025-24528 | krb5 | no fix listed |
| Low | GHSA-jjfh-589g-3hjx | spring-boot-actuator | 2.7.18 |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | UBUNTU-CVE-2024-20921 | openjdk-8 | 8u402-ga-2ubuntu1~18.04 |
| Low | UBUNTU-CVE-2026-42497 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-41992 | gzip | no fix listed |
| Low | UBUNTU-CVE-2023-7008 | systemd | no fix listed |
| Low | GHSA-5whc-4q84-fj73 | spring-data-mongodb | no fix listed |
| Low | UBUNTU-CVE-2024-10921 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2023-4421 | nss | no fix listed |
| Low | GHSA-x23c-287f-qqv5 | spring-webmvc | no fix listed |
| Low | UBUNTU-CVE-2024-12133 | libtasn1-6 | no fix listed |
| Low | GHSA-9jwc-q6j3-8g9g | poi | 4.1.1 |
| Low | UBUNTU-CVE-2024-20919 | openjdk-8 | 8u402-ga-2ubuntu1~18.04 |
| Low | UBUNTU-CVE-2026-82071 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2024-33602 | glibc | 2.27-3ubuntu1.6+esm3 |
| Low | UBUNTU-CVE-2021-32036 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2025-6713 | mongodb | no fix listed |
| Low | UBUNTU-CVE-2026-18691 | mongodb | no fix listed |
| Low | GHSA-rc42-6c7j-7h5r | spring-boot | no fix listed |
| Low | UBUNTU-CVE-2026-4046 | glibc | no fix listed |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| omada-controllergeek-cookbookVerified publisher | 4.4.2 | 4.3 | 1 |
| omada-controllerandrelote-k8sVerified publisher | 4.5.0 | 4.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.