opencsghq/agenticflow:ee-v0.6.5-2 container image
Docker HubScanned 17 Sept 2026
Deployed by 1 of 17,797 indexed charts (latest versions) at this tag.Docker Hub all tags of opencsghq/agenticflow
opencsghq/agenticflow:ee-v0.6.5-2 resolved to 41cba9c366f1, scanned 17 Sept 2026: 927 findings, 8 critical, 7 on KEV; deployed by 1 chart, among them csghub.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
927 distinct on this digest
Findings for digest 41cba9c366f1 as scanned on 17 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 17 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-54371 | attr | no fix listed |
| Low | PYSEC-2026-3788 | gitpython | 3.1.59 |
| Low | DEBIAN-CVE-2026-77117 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-80489 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-75141 | ffmpeg | no fix listed |
| Low | DEBIAN-CVE-2026-75142 | ffmpeg | no fix listed |
| Low | DEBIAN-CVE-2026-75144 | ffmpeg | no fix listed |
| Low | DEBIAN-CVE-2026-86144 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-52491 | tiff | no fix listed |
| Low | GHSA-2c2j-9gv5-cj73 | starlette | 0.47.2 |
| Low | DEBIAN-CVE-2023-1916 | tiff | no fix listed |
| Low | GHSA-7432-952r-cw78 | authlib | 1.6.9 |
| Low | DEBIAN-CVE-2026-13858 | ffmpeg | no fix listed |
| Low | PYSEC-2026-3721 | pip | 26.2 |
| Low | GHSA-69f9-5gxw-wvc2 | aiohttp | 3.13.3 |
| Low | GO-2023-2375 | stdlib | 1.20.0 |
| Low | DEBIAN-CVE-2025-15079 | curl | no fix listed |
| Low | GHSA-3gqm-fcw5-w839 | nltk | 3.10.0 |
| Low | GHSA-xqxw-r767-67m7 | mem0ai | 2.0.0b2 |
| Low | GHSA-9548-qrrj-x5pj | aiohttp | 3.12.14 |
| Low | DEBIAN-CVE-2026-22796 | openssl | 3.0.18-1~deb12u2 |
| Low | DEBIAN-CVE-2026-25835 | mbedtls | no fix listed |
| Low | GO-2023-2382 | stdlib | 1.20.12 |
| Low | DEBIAN-CVE-2026-6429 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-65706 | ffmpeg | no fix listed |
| Low | GHSA-hpj7-wq8m-9hgp | aiohttp | 3.14.1 |
| Low | DEBIAN-CVE-2024-22365 | pam | 1.5.2-6+deb12u2 |
| Low | DEBIAN-CVE-2026-64833 | ffmpeg | no fix listed |
| Low | GHSA-gfwx-w7gr-fvh7 | nltk | 3.9.4 |
| Low | GO-2024-2599 | stdlib | 1.21.8 |
| Low | GHSA-fjqc-hq36-qh5p | langgraph-checkpoint | 4.1.1 |
| Low | GHSA-mf9w-mj56-hr94 | python-dotenv | 1.2.2 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | GHSA-c427-h43c-vf67 | aiohttp | 3.13.4 |
| Low | GHSA-87hc-h4r5-73f7 | werkzeug | 3.1.5 |
| Low | GHSA-fv5p-p927-qmxr | langchain-text-splitters | 1.1.2 |
| Low | GHSA-3644-q5cj-c5c7 | langsmith | 0.8.0 |
| Low | GHSA-3644-q5cj-c5c7 | langchain | 0.3.30 |
| Low | DEBIAN-CVE-2026-86142 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-1965 | curl | no fix listed |
| Low | DEBIAN-CVE-2022-0563 | util-linux | no fix listed |
| Low | GHSA-9f5j-8jwj-x28g | ecdsa | 0.19.2 |
| Low | DEBIAN-CVE-2025-3576 | krb5 | 1.20.1-2+deb12u4 |
| Low | DEBIAN-CVE-2026-86140 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-4878 | libcap2 | 1:2.66-4+deb12u3 |
| Low | GHSA-7833-fr7j-v32q | gitpython | 3.1.59 |
| Low | DEBIAN-CVE-2026-11979 | libxml2 | no fix listed |
| Low | PYSEC-2026-2104 | aiohttp | 3.14.0 |
| Low | GO-2024-2600 | stdlib | 1.21.8 |
| Low | DEBIAN-CVE-2026-4873 | curl | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| csghubcsghubVerified publisher | 2.5.0 | ee-v0.6.5-2 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.