StackRadar

qonstrukt/php:8.4-v8-apache container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of qonstrukt/php

qonstrukt/php:8.4-v8-apache resolved to 089af7925aa1, scanned 14 Sept 2026: 1,417 findings, 37 critical, 39 on KEV; deployed by 1 chart, among them php.

Radar Score

23,9643728502850

1,417 findings on digest 089af7925aa1 · scanned 14 Sept 2026

KEV ×39 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.4-v8-apacheresolves to089af7925aa11 chart9 days ago372850285023,964

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

502 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest 089af7925aa1 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumUBUNTU-CVE-2023-23518qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30823qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-43715qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-43010qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30848qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2017-2392qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-ppp9-7jff-5vj2golang.org/x/text@v0.3.00.3.7
MediumUBUNTU-CVE-2018-4319qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-4270qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-4113qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-4273qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-42009gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
MediumUBUNTU-CVE-2026-63076openssl@3.0.13-0ubuntu3.113.0.13-0ubuntu3.15
MediumUBUNTU-CVE-2024-27833qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-59375expat@2.6.1-2ubuntu0.4no fix listed
MediumUBUNTU-CVE-2020-3862qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2024-54543qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-43431qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2020-9952qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-33846gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
MediumGHSA-9v9h-cgj8-h64pcryptography@41.0.742.0.2
MediumUBUNTU-CVE-2022-42826qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-8597qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-8615qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-43227qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-10126libjpeg-turbo@2.1.5-2ubuntu2no fix listed
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d80.52.0
MediumUBUNTU-CVE-2018-11712qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2017-2499qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-38572qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-11070qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30887qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-1799qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-6988openjpeg2@2.5.0-2ubuntu0.5no fix listed
MediumUBUNTU-CVE-2026-5450glibc@2.39-0ubuntu8.72.39-0ubuntu8.8
MediumUBUNTU-CVE-2026-28955qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-3ww4-gg4f-jr7fcryptography@41.0.742.0.0
MediumGHSA-gwc9-m7rh-j2wwgolang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d80.0.0-20211202192323-5770296d904e
MediumUBUNTU-CVE-2021-30897qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2017-2386qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-56379imagemagick@8:6.9.12.98+dfsg1-5.2build2no fix listed
MediumUBUNTU-CVE-2025-24189qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d80.52.0
MediumUBUNTU-CVE-2017-2424qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-14669postgresql-16@16.14-0ubuntu0.24.04.116.15-0ubuntu0.24.04.1
MediumUBUNTU-CVE-2017-2528qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2022-22589qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d80.52.0
MediumGO-2021-0243stdlib@go1.14.21.15.14
MediumUBUNTU-CVE-2017-2486qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed

Used by

1 chart
ChartVersionTagContainers
phpqonstruktVerified publisher0.2.08.4-v8-apache1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.