StackRadar

opensearchproject/opensearch:2.10.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of opensearchproject/opensearch

opensearchproject/opensearch:2.10.0 resolved to c8f3ebd2a934, scanned 14 Sept 2026: 91 findings, 0 critical; deployed by 1 chart, among them kubernetes-logging.

Radar Score

1,177012169

91 findings on digest c8f3ebd2a934 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.10.0resolves toc8f3ebd2a9341 chart8 days ago0121691,177

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

91 distinct on this digest

Findings for digest c8f3ebd2a934 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
HighGHSA-vgq5-3255-v292kafka-clients@3.5.13.9.1
MediumGHSA-wxr5-93ph-8wr9commons-beanutils@1.9.41.11.0
MediumGHSA-4g8c-wm8x-jfhwnetty-handler@4.1.97.Final4.1.118.Final
MediumGHSA-fh5r-crhr-qrrqcxf-core@4.0.24.0.6
MediumGHSA-p93r-85wp-75v3bcprov-jdk15to18@1.751.80.2
MediumGHSA-w9fj-cfpg-grvvnetty-codec-http2@4.1.97.Final4.1.132.Final
MediumGHSA-j288-q9x7-2f5vcommons-lang@2.6no fix listed
MediumGHSA-j288-q9x7-2f5vcommons-lang3@3.12.03.18.0
MediumGHSA-4jq9-2xhw-jpx7json@2023022720231013
MediumGHSA-78wr-2p64-hpwjcommons-io@2.72.14.0
MediumGHSA-3qp7-7mw8-wx86netty-handler@4.1.97.Final4.1.135.Final
MediumGHSA-rmj7-2vxq-3g9fjackson-databind@2.15.22.18.8
MediumGHSA-j3rv-43j4-c7qmjackson-databind@2.15.22.18.8
MediumGHSA-prj3-ccx8-p6x4netty-codec-http2@4.1.97.Final4.1.124.Final
MediumGHSA-55g7-9cwv-5qfvsnappy-java@1.1.10.31.1.10.4
MediumGHSA-f6hv-jmp6-3vwvnetty-codec-http@4.1.97.Final4.1.133.Final
MediumGHSA-f6hv-jmp6-3vwvnetty-codec-http2@4.1.97.Final4.1.133.Final
MediumGHSA-jppx-w49h-x2qqnetty-codec-http@4.1.97.Final4.1.136.Final
MediumGHSA-hf6x-8p5f-cgmfhttpcore5@5.2.15.4.3
MediumGHSA-x4gw-5cx5-pgmhnetty-handler@4.1.97.Final4.1.135.Final
MediumGHSA-264p-99wq-f4j6ion-java@1.0.2no fix listed
MediumGHSA-2x2g-32r7-p4x8kafka-clients@3.5.13.7.1
LowGHSA-xfrj-6vvc-3xm2xmlsec@2.3.32.3.4
LowGHSA-3pxv-7cmr-fjr4log4j-core@2.20.02.25.4
LowGHSA-v6w3-2prq-h95fjavax.el@3.0.0no fix listed
LowGHSA-57rv-r2g8-2cj3netty-codec-http@4.1.97.Final4.1.133.Final
LowGHSA-mw3v-mmfw-3x2gopensearch-common@2.10.02.19.4
LowGHSA-5qcv-4rpc-jp93kafka-clients@3.5.13.9.2
LowGHSA-pwqr-wmgm-9rr8netty-codec-http@4.1.97.Final4.1.132.Final
LowGHSA-45q3-82m4-75jrnetty-handler-proxy@4.1.97.Final4.1.133.Final
LowGHSA-574f-3g2m-x479bcprov-ext-jdk18on@1.75no fix listed
LowGHSA-574f-3g2m-x479bcprov-jdk15to18@1.75no fix listed
LowGHSA-c4c3-7fpv-j4q5netty-handler@4.1.97.Final4.1.137.Final
LowGHSA-5jpm-x58v-624vnetty-codec-http@4.1.97.Final4.1.108.Final
LowGHSA-qv9r-c865-cp47log4j-api@2.20.02.25.5
LowGHSA-3p8m-j85q-pgmjnetty-codec@4.1.97.Final4.1.125.Final
LowGHSA-mj4r-2hfc-f8p6netty-codec@4.1.97.Final4.1.133.Final
LowGHSA-ghvc-7hp8-2g2vcxf-core@4.0.24.1.7
LowGHSA-c653-97m9-rcg9netty-handler@4.1.97.Final4.1.135.Final
LowGHSA-vc5p-v9hr-52mjlog4j-core@2.20.02.25.3
LowGHSA-6pff-fmh2-4mmfcxf-rt-rs-security-jose@4.0.24.0.5
LowGHSA-93wv-jw9v-4972netty-codec-http2@4.1.97.Final4.1.136.Final
LowGHSA-6jqx-86gh-f27wnetty-codec-http@4.1.97.Final4.1.136.Final
LowGHSA-v435-xc8x-wvr9bcprov-jdk15to18@1.751.78
LowGHSA-mvh2-crg5-v77cnetty-codec-http@4.1.97.Final4.1.136.Final
LowGHSA-558v-64gr-wgg4netty-codec@4.1.97.Final4.1.136.Final
LowGHSA-c3fc-8qff-9hwxbcprov-jdk15to18@1.751.84
LowGHSA-8xfc-gm6g-vgpvbcprov-jdk15to18@1.751.78
LowGHSA-8xfc-gm6g-vgpvbc-fips@1.0.2.31.0.2.5
LowGHSA-wg6q-6289-32hpbcpkix-jdk15to18@1.751.84

Used by

1 chart
ChartVersionTagContainers
kubernetes-loggingkubernetes-logging4.8.02.10.04

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.