StackRadar

opencsghq/label-studio:v2.4.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of opencsghq/label-studio

opencsghq/label-studio:v2.4.0 resolved to b4e849fcf94a, scanned 14 Sept 2026: 339 findings, 0 critical; deployed by 1 chart, among them csghub.

Radar Score

3,5840048290

339 findings on digest b4e849fcf94a · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v2.4.0resolves tob4e849fcf94a1 chart8 days ago00482903,584

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

290 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest b4e849fcf94a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-c8rr-9gxc-jprvujson@5.8.05.12.0
LowGHSA-97qj-x29f-37w7nltk@3.9.13.10.3
LowDEBIAN-CVE-2026-24882gnupg2@2.4.7-21+deb13u1no fix listed
LowGHSA-r6ph-v2qm-q3c2cryptography@44.0.246.0.5
LowDEBIAN-CVE-2026-9538perl@5.40.1-6no fix listed
LowDEBIAN-CVE-2026-58050libssh2@1.11.1-1+deb13u11.11.1-1+deb13u2
LowDEBIAN-CVE-2020-15719openldap@2.6.10+dfsg-1no fix listed
LowDEBIAN-CVE-2026-66034libssh2@1.11.1-1+deb13u11.11.1-1+deb13u2
LowGHSA-8359-h9fx-j6v9datamodel-code-generator@0.26.10.62.0
LowGHSA-2mq9-hm29-8qchlabel-studio@1.22.0no fix listed
LowDEBIAN-CVE-2026-82208curl@8.14.1-2+deb13u4no fix listed
LowGHSA-45hq-cxwh-f6vcpillow@11.3.012.3.0
LowGHSA-c38f-wx89-p2xgujson@5.8.05.12.1
LowDEBIAN-CVE-2026-54411pam@1.7.0-5no fix listed
LowGHSA-5x94-69rx-g8h2pillow@11.3.012.3.0
LowGHSA-phj9-mv4w-65pmpillow@11.3.012.3.0
LowDEBIAN-CVE-2026-42497perl@5.40.1-65.40.1-6+deb13u1
LowDEBIAN-CVE-2026-41992gzip@1.13-11.13-1+deb13u1
LowGHSA-5578-w22f-pfx9datamodel-code-generator@0.26.10.64.0
LowGHSA-f2ff-p2ww-7p4psqlparse@0.5.00.6.0
LowGHSA-pwgv-4x5q-6m9fsqlparse@0.5.00.6.0
LowGHSA-8v84-f9pq-wr9xpillow@11.3.012.3.0
LowGHSA-p4rw-rvv2-7xwrnltk@3.9.13.10.3
LowDEBIAN-CVE-2026-12064curl@8.14.1-2+deb13u4no fix listed
LowDEBIAN-CVE-2026-8932curl@8.14.1-2+deb13u4no fix listed
LowGHSA-6ww7-3frv-cqxhnltk@3.9.13.10.3
LowGHSA-jwv3-5hgf-82wwcryptography@44.0.249.0.0
LowDEBIAN-CVE-2025-1372elfutils@0.192-4no fix listed
LowDEBIAN-CVE-2026-8286curl@8.14.1-2+deb13u4no fix listed
LowGHSA-wf93-45jw-7689pip@25.1.126.1.2
LowDEBIAN-CVE-2025-1365elfutils@0.192-4no fix listed
LowDEBIAN-CVE-2026-75803openssl@3.5.6-1~deb13u23.5.7-1~deb13u2
LowGHSA-6r8x-57c9-28j4pillow@11.3.012.3.0
LowGHSA-9hw9-ch79-4vh6pillow@11.3.012.3.0
LowGHSA-jjj6-mw9f-p565pillow@11.3.012.3.0
LowGHSA-xgmm-8j9v-c9wxpyjwt@2.10.12.13.0
LowDEBIAN-CVE-2026-58051libssh2@1.11.1-1+deb13u11.11.1-1+deb13u2
LowDEBIAN-CVE-2026-48959perl@5.40.1-65.40.1-6+deb13u1
LowDEBIAN-CVE-2026-5928glibc@2.41-12+deb13u32.41-12+deb13u4
LowPYSEC-2026-3728nltk@3.9.13.10.0
LowGHSA-3gq4-3j92-5w49nltk@3.9.13.10.3
LowDEBIAN-CVE-2026-6791glibc@2.41-12+deb13u3no fix listed
LowDEBIAN-CVE-2026-8458curl@8.14.1-2+deb13u4no fix listed
LowPYSEC-2026-3740nltk@3.9.13.10.3
LowGHSA-m4p7-r5rc-7g4jpyasn1@0.5.00.6.4
LowGHSA-w3v8-gmh9-3wv7nltk@3.9.13.10.3
LowGHSA-8ppf-4f7h-5ppjpyasn1@0.5.00.6.4
LowGHSA-hm4w-wwcw-mr6rpyasn1@0.5.00.6.4
LowGHSA-954p-556p-r752datamodel-code-generator@0.26.10.61.0
LowGHSA-vfmq-68hx-4jfwlxml@5.3.06.1.0

Used by

1 chart
ChartVersionTagContainers
csghubcsghubVerified publisher2.4.3v2.4.01

Also in older indexed versions (1)

Not counted above: the chart’s latest version no longer references it, or the chart is no longer in the index.

ChartVersionTagContainers
dataflowcsghubVerified publisher2.4.2v2.4.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.