qonstrukt/php:8.4-v8-apache container image
Docker HubScanned 15 Sept 2026
Deployed by 1 of 17,790 indexed charts (latest versions) at this tag.Docker Hub all tags of qonstrukt/php
qonstrukt/php:8.4-v8-apache resolved to 089af7925aa1, scanned 15 Sept 2026: 1,428 findings, 37 critical, 39 on KEV; deployed by 1 chart, among them php.
Radar Score
24,0383728502861
1,428 findings on digest 089af7925aa1 · scanned 15 Sept 2026
KEV ×39 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
1,428 distinct on this digest
Findings for digest 089af7925aa1 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-45031 | imagemagick | no fix listed |
| Low | GO-2022-1038 | stdlib | 1.18.7 |
| Low | UBUNTU-CVE-2026-47064 | mysql-8.0 | 8.0.46-0ubuntu0.24.04.4 |
| Low | UBUNTU-CVE-2024-44192 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-6811 | php-mongodb | no fix listed |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | UBUNTU-CVE-2026-46523 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2025-43228 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2025-43441 | qtwebkit-opensource-src | no fix listed |
| Low | GO-2023-1570 | stdlib | 1.19.6 |
| Low | UBUNTU-CVE-2026-32636 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |
| Low | UBUNTU-CVE-2026-11979 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2026-86140 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2025-30348 | qtbase-opensource-src | no fix listed |
| Low | GO-2022-0531 | stdlib | 1.17.11 |
| Low | GO-2024-2600 | stdlib | 1.21.8 |
| Low | UBUNTU-CVE-2026-25986 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2025-15367 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-59847 | libssh | 0.10.6-2ubuntu0.5 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | UBUNTU-CVE-2023-42843 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2025-43535 | qtwebkit-opensource-src | no fix listed |
| Low | GO-2024-2609 | stdlib | 1.21.8 |
| Low | UBUNTU-CVE-2026-26983 | imagemagick | no fix listed |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | GO-2023-1751 | stdlib | 1.19.9 |
| Low | GO-2023-1753 | stdlib | 1.19.9 |
| Low | UBUNTU-CVE-2026-22693 | harfbuzz | no fix listed |
| Low | UBUNTU-CVE-2026-54411 | pam | 1.5.3-5ubuntu5.6 |
| Low | UBUNTU-CVE-2026-45664 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-15037 | qtbase-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-25988 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |
| Low | UBUNTU-CVE-2026-84366 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-25983 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2026-25798 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |
| Low | UBUNTU-CVE-2025-30427 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-33899 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2025-43432 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2025-24216 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2025-12119 | php-mongodb | no fix listed |
| Low | UBUNTU-CVE-2022-32933 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-19487 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-82474 | sudo | no fix listed |
| Low | UBUNTU-CVE-2025-43501 | qtwebkit-opensource-src | no fix listed |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | UBUNTU-CVE-2025-43368 | qtwebkit-opensource-src | no fix listed |
| Low | UBUNTU-CVE-2026-89158 | pcre2 | no fix listed |
| Low | GO-2023-2041 | stdlib | 1.20.8 |
| Low | UBUNTU-CVE-2026-24484 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9 |
| Low | UBUNTU-CVE-2026-55594 | imagemagick | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| phpqonstruktVerified publisher | 0.2.0 | 8.4-v8-apache | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.