StackRadar

mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of mojaloop/reporting-hub-bop-experience-api-svc

mojaloop/reporting-hub-bop-experience-api-svc:v2.0.4 resolved to 265102a049d6, scanned 14 Sept 2026: 194 findings, 0 critical; deployed by 2 charts, among them finance-portal and reporting-hub-bop-experience-api-svc.

Radar Score

2,3180333158

194 findings on digest 265102a049d6 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v2.0.4resolves to265102a049d62 charts4 days ago03331582,318

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

158 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 265102a049d6 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-r6q2-hw4h-h46wtar@6.2.17.5.4
LowGHSA-2883-xcg3-v3hhjs-yaml@4.1.04.3.2
LowGHSA-4c8g-83qw-93j6fast-uri@3.0.63.1.3
LowGHSA-3w6x-2g7m-8v23axios@1.9.01.15.2
LowGHSA-r292-9mhp-454mtar@6.2.17.5.21
LowGHSA-r4q5-vmmm-2653follow-redirects@1.15.91.16.0
LowALPINE-CVE-2025-15468openssl@3.3.3-r03.3.6-r0
LowGHSA-r28c-9q8g-f849postcss@7.0.398.5.18
LowGHSA-jvwf-75h9-cwggprotobufjs@7.5.37.5.6
LowGHSA-fj3w-jwp8-x2g3fast-xml-parser@4.5.34.5.4
LowGHSA-rm97-x556-q36hsanitize-html@1.27.52.12.1
LowGHSA-w5hq-g745-h8pquuid@11.1.011.1.1
LowGHSA-w4pp-8pjf-rmxwpacote@20.0.021.5.1
LowGHSA-9ppj-qmqm-q256tar@6.2.17.5.11
LowGHSA-2mjp-6q6p-2qxmundici@7.10.07.24.0
LowGHSA-3p68-rc4w-qgx5axios@1.9.01.15.0
LowGHSA-jqh4-m9w3-8hp9axios@1.9.01.18.0
LowGHSA-7fh5-64p2-3v2jpostcss@7.0.398.4.31
LowGHSA-64mm-vxmg-q3vjhttp-proxy-middleware@3.0.53.0.6
LowGHSA-gcq2-9pq2-cxqmhttp-proxy-middleware@3.0.53.0.7
LowGHSA-f886-m6hf-6m8vbrace-expansion@2.0.12.0.3
LowGHSA-fxqj-rqcc-2cmppostcss@7.0.398.5.23
LowGHSA-42h9-826w-cgv3axios@1.9.01.18.0
LowGHSA-pmv8-rq9r-6j72axios@1.9.01.18.0
LowGHSA-vhjm-w67q-g75c@hapi/wreck@18.1.018.1.1
LowGHSA-83g3-92jg-28cxtar@6.2.17.5.8
LowGHSA-g9mf-h72j-4rw9undici@7.10.07.18.2
LowGHSA-jqff-g426-hqxpfast-uri@3.0.63.1.6
LowGHSA-w8wr-v893-vjvptar@6.2.17.5.18
LowGHSA-m7pr-hjqh-92cmaxios@1.9.01.15.1
LowGHSA-7p8r-x3mc-p8w7fast-uri@3.0.63.1.5
LowGHSA-f65p-4m7j-42xcfast-uri@3.0.63.1.6
LowGHSA-jp2q-39xq-3w4gfast-xml-parser@4.5.34.5.5
LowGHSA-mmx7-hfxf-jppxaxios@1.9.01.18.0
LowALPINE-CVE-2026-40200musl@1.2.5-r91.2.5-r11
LowALPINE-CVE-2025-66199openssl@3.3.3-r03.3.6-r0
LowGHSA-44fc-8fm5-q62hconvict@6.2.46.2.5
LowGHSA-hf2r-9gf9-rwchconvict@6.2.46.2.5
LowGHSA-52v5-jr5w-gjxrsigstore@3.0.04.1.1
LowGHSA-pr7r-676h-xcf6undici@7.10.07.28.0
LowGHSA-q7cg-457f-vx79joi@17.13.317.13.4
LowGHSA-p9pc-299p-vxgpyargs-parser@11.1.113.1.2
LowALPINE-CVE-2026-22796openssl@3.3.3-r03.3.6-r0
LowGHSA-gvwx-54wh-qm9jtar@6.2.17.5.17
LowGHSA-27v5-c462-wpq7path-to-regexp@8.2.08.4.0
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowGHSA-w9j2-pvgh-6h63axios@1.9.01.15.1
LowGHSA-jxwj-j7wr-gfrwsanitize-html@1.27.52.17.6
LowGHSA-2pr8-phx7-x9h3protobufjs@7.5.37.5.6
LowGHSA-jr45-8vmc-qm54undici@7.10.07.29.0

Used by

2 charts

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.