StackRadar

qonstrukt/php:8.4-v8-apache container image

Docker Hub

Scanned 15 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of qonstrukt/php

qonstrukt/php:8.4-v8-apache resolved to 089af7925aa1, scanned 15 Sept 2026: 1,428 findings, 37 critical, 39 on KEV; deployed by 1 chart, among them php.

Radar Score

24,0383728502861

1,428 findings on digest 089af7925aa1 · scanned 15 Sept 2026

KEV ×39 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
8.4-v8-apacheresolves to089af7925aa11 chart9 days ago372850286124,038

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

1,428 distinct on this digest

Findings for digest 089af7925aa1 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumUBUNTU-CVE-2017-7038qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-55154imagemagick@8:6.9.12.98+dfsg1-5.2build28:6.9.12.98+dfsg1-5.2ubuntu0.1~esm2
MediumUBUNTU-CVE-2023-40451qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-69ch-w2m2-3vjpgolang.org/x/text@v0.3.00.3.8
MediumUBUNTU-CVE-2023-32393qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-11856curl@8.5.0-2ubuntu10.118.5.0-2ubuntu10.12
MediumUBUNTU-CVE-2021-21775qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30846qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2022-26716qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGO-2022-0433stdlib@go1.14.21.17.9
MediumUBUNTU-CVE-2023-28198qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-42833qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2022-26709qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2022-26710qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-23517qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-23518qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30823qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-43715qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-43010qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30848qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2017-2392qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumGHSA-ppp9-7jff-5vj2golang.org/x/text@v0.3.00.3.7
MediumUBUNTU-CVE-2018-4319qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-63076openssl@3.0.13-0ubuntu3.113.0.13-0ubuntu3.15
MediumUBUNTU-CVE-2018-4270qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-4113qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-4273qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-42009gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
MediumUBUNTU-CVE-2024-27833qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-59375expat@2.6.1-2ubuntu0.4no fix listed
MediumUBUNTU-CVE-2020-3862qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2024-54543qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-43431qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2020-9952qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2026-33846gnutls28@3.8.3-1.1ubuntu3.63.8.3-1.1ubuntu3.6+Fips1.2
MediumGHSA-9v9h-cgj8-h64pcryptography@41.0.742.0.2
MediumUBUNTU-CVE-2022-42826qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-8597qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-8615qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2025-43227qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2018-10126libjpeg-turbo@2.1.5-2ubuntu2no fix listed
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.0.0-20200403201458-baeed622b8d80.52.0
MediumUBUNTU-CVE-2018-11712qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2017-2499qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2023-38572qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-11070qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-30887qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2021-1799qtwebkit-opensource-src@5.212.0~alpha4-36no fix listed
MediumUBUNTU-CVE-2019-6988openjpeg2@2.5.0-2ubuntu0.5no fix listed
MediumUBUNTU-CVE-2026-5450glibc@2.39-0ubuntu8.72.39-0ubuntu8.8

Used by

1 chart
ChartVersionTagContainers
phpqonstruktVerified publisher0.2.08.4-v8-apache1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.