piomin/sample-spring-kotlin-microservice:1.1 container image
Docker HubScanned 14 Sept 2026
Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of piomin/sample-spring-kotlin-microservice
piomin/sample-spring-kotlin-microservice:1.1 resolved to 871f784dd6bc, scanned 14 Sept 2026: 483 findings, 10 critical, 5 on KEV; deployed by 2 charts, among them spring-boot-api-app and spring-boot-openshift.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 871f784dd6bc as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-54874 | openssl | 3.0.2-0ubuntu1.29 |
| Low | GHSA-563x-q5rq-57qp | tomcat-embed-core | 9.0.116 |
| Low | UBUNTU-CVE-2026-42766 | openssl | 3.0.2-0ubuntu1.25 |
| Low | UBUNTU-CVE-2025-32990 | gnutls28 | 3.7.3-4ubuntu1.7 |
| Low | UBUNTU-CVE-2024-50602 | expat | 2.4.7-1ubuntu0.5 |
| Low | UBUNTU-CVE-2023-6918 | libssh | 0.9.6-2ubuntu0.22.04.3 |
| Low | UBUNTU-CVE-2025-6020 | pam | 1.4.0-11ubuntu2.6 |
| Low | UBUNTU-CVE-2023-27538 | curl | 7.81.0-1ubuntu1.10 |
| Low | GHSA-hhhw-99gj-p3c3 | snakeyaml | 1.31 |
| Low | UBUNTU-CVE-2026-86145 | pcre2 | no fix listed |
| Low | GHSA-qv9r-c865-cp47 | log4j-api | 2.25.5 |
| Low | UBUNTU-CVE-2024-8096 | curl | 7.81.0-1ubuntu1.18 |
| Low | GHSA-mgvc-8q2h-5pgc | spring-boot-starter-actuator | no fix listed |
| Low | UBUNTU-CVE-2023-47039 | perl | no fix listed |
| Low | GHSA-5mp6-jrq3-r938 | tomcat-embed-core | 9.0.118 |
| Low | UBUNTU-CVE-2025-15281 | glibc | 2.35-0ubuntu3.13 |
| Low | UBUNTU-CVE-2023-1255 | openssl | 3.0.2-0ubuntu1.10 |
| Low | UBUNTU-CVE-2025-6297 | dpkg | 1.21.1ubuntu2.6 |
| Low | GHSA-jmp9-x22r-554x | spring-core | no fix listed |
| Low | GHSA-rv64-5gf8-9qq8 | tomcat-embed-core | 9.0.116 |
| Low | UBUNTU-CVE-2026-42011 | gnutls28 | 3.7.3-4ubuntu1.9 |
| Low | UBUNTU-CVE-2024-12243 | gnutls28 | 3.7.3-4ubuntu1.6 |
| Low | UBUNTU-CVE-2025-32989 | gnutls28 | 3.7.3-4ubuntu1.7 |
| Low | UBUNTU-CVE-2026-9538 | perl | no fix listed |
| Low | GHSA-x4m4-345f-5h5g | tomcat-embed-core | 9.0.117 |
| Low | UBUNTU-CVE-2025-6395 | gnutls28 | 3.7.3-4ubuntu1.7 |
| Low | UBUNTU-CVE-2025-24528 | krb5 | 1.19.2-2ubuntu0.6 |
| Low | GHSA-jjfh-589g-3hjx | spring-boot-actuator | 2.7.18 |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | GHSA-fpj8-gq4v-p354 | tomcat-embed-core | 9.0.113 |
| Low | UBUNTU-CVE-2026-42497 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-41992 | gzip | 1.10-4ubuntu4.2 |
| Low | UBUNTU-CVE-2023-7008 | systemd | 249.11-0ubuntu3.21 |
| Low | GHSA-hgrr-935x-pq79 | tomcat-embed-core | 9.0.110 |
| Low | UBUNTU-CVE-2022-3715 | bash | 5.1-6ubuntu1.1 |
| Low | UBUNTU-CVE-2024-4603 | openssl | 3.0.2-0ubuntu1.17 |
| Low | GHSA-x23c-287f-qqv5 | spring-webmvc | no fix listed |
| Low | UBUNTU-CVE-2026-8932 | curl | 7.81.0-1ubuntu1.27 |
| Low | UBUNTU-CVE-2024-12133 | libtasn1-6 | 4.18.0-4ubuntu0.1 |
| Low | UBUNTU-CVE-2022-4203 | openssl | 3.0.2-0ubuntu1.8 |
| Low | UBUNTU-CVE-2026-8286 | curl | 7.81.0-1ubuntu1.25 |
| Low | UBUNTU-CVE-2026-75803 | openssl | 3.0.2-0ubuntu1.29 |
| Low | UBUNTU-CVE-2024-33602 | glibc | 2.35-0ubuntu3.8 |
| Low | GHSA-rc42-6c7j-7h5r | spring-boot | no fix listed |
| Low | UBUNTU-CVE-2026-4046 | glibc | 2.35-0ubuntu3.14 |
| Low | UBUNTU-CVE-2026-0966 | libssh | 0.9.6-2ubuntu0.22.04.6 |
| Low | GHSA-42wg-hm62-jcwg | tomcat-embed-core | 9.0.106 |
| Low | UBUNTU-CVE-2026-48959 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-59843 | libssh | 0.9.6-2ubuntu0.22.04.8 |
| Low | UBUNTU-CVE-2026-5928 | glibc | 2.35-0ubuntu3.14 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| spring-boot-api-apppiominVerified publisher | 0.3.11 | 1.1 | 1 |
| spring-boot-openshiftpiominVerified publisher | 0.3.11 | 1.1 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.