platform9community/customers-service:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of platform9community/customers-service
platform9community/customers-service:latest resolved to 2089811e5cc6, scanned 14 Sept 2026: 537 findings, 11 critical, 6 on KEV; deployed by 1 chart, among them spring-petclinic-cloud.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
Findings for digest 2089811e5cc6 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2024-0727 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm4 |
| Medium | GHSA-f3jh-qvm4-mg39 | spring-security-core | 5.7.12 |
| Medium | GHSA-98wm-3w3q-mw94 | snakeyaml | 1.31 |
| Medium | UBUNTU-CVE-2015-8985 | glibc | no fix listed |
| Medium | UBUNTU-CVE-2023-26604 | systemd | no fix listed |
| Medium | UBUNTU-CVE-2025-13151 | libtasn1-6 | 4.13-2ubuntu0.1~esm1 |
| Medium | UBUNTU-CVE-2021-4209 | gnutls28 | 3.5.18-1ubuntu1.6 |
| Medium | UBUNTU-CVE-2022-29458 | ncurses | 6.1-1ubuntu1.18.04.1 |
| Medium | GHSA-h3x4-894j-xpx5 | tomcat-embed-core | 9.0.121 |
| Medium | UBUNTU-CVE-2019-1010024 | glibc | no fix listed |
| Medium | GHSA-3x8x-79m2-3w2w | jackson-databind | 2.12.6 |
| Medium | GHSA-rmj7-2vxq-3g9f | jackson-databind | 2.18.8 |
| Medium | GHSA-wxqc-pxw9-g2p8 | spring-expression | 5.2.24.RELEASE |
| Medium | UBUNTU-CVE-2026-5450 | glibc | no fix listed |
| Medium | GHSA-2p5w-cvg5-gc5c | hibernate-core | no fix listed |
| Medium | UBUNTU-CVE-2024-9143 | openssl | no fix listed |
| Medium | GHSA-j3rv-43j4-c7qm | jackson-databind | 2.18.8 |
| Medium | UBUNTU-CVE-2023-3817 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm3 |
| Medium | GO-2021-0243 | stdlib | 1.15.14 |
| Medium | GHSA-gcx9-497g-6cp6 | tomcat-embed-core | 9.0.121 |
| Medium | GO-2022-0273 | stdlib | 1.16.8 |
| Medium | GHSA-p782-xgp4-8hr8 | golang.org/ | 0.0.0-20220412211240-33da011f77ad |
| Medium | UBUNTU-CVE-2020-23026 | gcc-8 | no fix listed |
| Medium | UBUNTU-CVE-2023-29491 | ncurses | 6.1-1ubuntu1.18.04.1 |
| Medium | GHSA-h46c-h94j-95f3 | jackson-core | 2.15.0 |
| Medium | UBUNTU-CVE-2026-34180 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm9 |
| Medium | UBUNTU-CVE-2026-7383 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm9 |
| Medium | GHSA-w37g-rhq8-7m4j | snakeyaml | 1.32 |
| Medium | UBUNTU-CVE-2025-69720 | ncurses | 6.1-1ubuntu1.18.04.1+esm3 |
| Medium | UBUNTU-CVE-2024-33601 | glibc | 2.27-3ubuntu1.6+esm3 |
| Medium | UBUNTU-CVE-2026-8376 | perl | 5.26.1-6ubuntu0.7+esm2 |
| Medium | UBUNTU-CVE-2026-5260 | gnutls28 | 3.5.18-1ubuntu1.6+esm3 |
| Medium | UBUNTU-CVE-2023-4813 | glibc | 2.27-3ubuntu1.6+esm1 |
| Medium | GHSA-xf96-w227-r7c4 | spring-boot-autoconfigure | 2.5.15 |
| Medium | UBUNTU-CVE-2020-16156 | perl | 5.26.1-6ubuntu0.6 |
| Medium | UBUNTU-CVE-2026-28388 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm8 |
| Medium | GHSA-3cqm-mf7h-prrj | okhttp | 4.9.2 |
| Medium | UBUNTU-CVE-2025-69421 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm7 |
| Medium | GHSA-mf92-479x-3373 | spring-security-web | no fix listed |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | UBUNTU-CVE-2026-28387 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm8 |
| Medium | UBUNTU-CVE-2025-32988 | gnutls28 | 3.5.18-1ubuntu1.6+esm2 |
| Medium | UBUNTU-CVE-2021-3999 | glibc | 2.27-3ubuntu1.5 |
| Medium | GHSA-gx5v-xp9w-j4cg | tomcat-embed-core | 9.0.118 |
| Medium | GHSA-wx54-3278-m5g4 | spring-security-core | 5.5.7 |
| Medium | UBUNTU-CVE-2026-28389 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm8 |
| Medium | UBUNTU-CVE-2026-28390 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm8 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| spring-petclinic-cloudplatform9-communityVerified publisher | 0.2.0 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.