StackRadar

rancher/shell:v0.8.2 container image

Docker Hub

Scanned 24 Sept 2026

Deployed by 4 of 17,837 indexed charts (latest versions) at this tag.Docker Hub all tags of rancher/shell

rancher/shell:v0.8.2 resolved to 1eeed72d4eda, scanned 24 Sept 2026: 61 findings, 0 critical; deployed by 4 charts, among them rancher, rancher and rancher.

Radar Score

56900655

61 findings on digest 1eeed72d4eda · scanned 24 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v0.8.2resolves to1eeed72d4eda4 chartstoday00655569

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

61 distinct on this digest

Findings for digest 1eeed72d4eda as scanned on 24 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 24 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-5cgq-3rg8-m6cvgolang.org/x/crypto@v0.50.00.52.0
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.50.00.52.0
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.50.00.52.0
MediumGHSA-m37j-52j7-pjw7oras.land/oras-go/v2@v2.6.02.6.2
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.50.00.52.0
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-cvxm-645q-p574github.com/containerd/containerd/v2@v2.2.42.2.5
LowGHSA-2v4p-qf9q-27wjgoogle.golang.org/grpc@v1.79.31.82.2
LowGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.79.31.83.1
LowGHSA-33vj-92qq-66hcgithub.com/containerd/containerd/v2@v2.2.42.2.5
LowGHSA-q4h4-gmj2-qvw2golang.org/x/crypto@v0.50.00.52.0
LowGHSA-w879-237q-wc7rgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-8xwf-rjm4-xvhvoras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-jxpm-75mh-9fp7oras.land/oras-go/v2@v2.6.02.6.1
LowGHSA-hc8v-wwc9-vgxmgithub.com/go-git/go-git/v5@v5.19.15.19.2
LowGHSA-fxhp-mv3v-67qporas.land/oras-go/v2@v2.6.02.6.2
LowGHSA-xhf5-7wjv-pqxpgithub.com/containerd/containerd@v1.7.321.7.33
LowGHSA-xhf5-7wjv-pqxpgithub.com/containerd/containerd/v2@v2.2.42.2.5
LowGHSA-qgq7-7hm3-q39jgithub.com/go-git/go-git/v5@v5.19.15.19.2
LowGHSA-45gg-vh54-h5m9golang.org/x/crypto@v0.50.00.52.0
LowGHSA-5cv4-jp36-h3mwgolang.org/x/net@v0.53.00.55.0
LowGHSA-jpcc-p29g-p8mqgithub.com/containerd/containerd@v1.7.321.7.33
LowGHSA-jpcc-p29g-p8mqgithub.com/containerd/containerd/v2@v2.2.42.2.5
LowGHSA-qc2q-p7wx-3px3google.golang.org/grpc@v1.79.31.83.1
LowGHSA-qpw4-5x99-6vjpgolang.org/x/crypto@v0.50.00.52.0
LowGHSA-78mq-xcr3-xm33golang.org/x/crypto@v0.50.00.52.0
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.79.31.82.1
LowGHSA-xmrv-pmrh-hhx2github.com/aws/aws-sdk-go-v2/service/s3@v1.97.11.97.3
LowGHSA-rgh6-rfwx-v388github.com/containerd/containerd/v2@v2.2.42.2.5
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.50.00.52.0
LowGHSA-7jxh-36q5-gcqvgithub.com/containerd/containerd@v1.7.321.7.35
LowGHSA-7jxh-36q5-gcqvgithub.com/containerd/containerd/v2@v2.2.42.2.8
LowGO-2026-5026golang.org/x/net@v0.53.00.55.0
LowGHSA-h7vf-4x9w-h99voras.land/oras-go/v2@v2.6.02.6.2
LowGO-2026-5942golang.org/x/net@v0.53.00.56.0
LowGHSA-vh4v-2xq2-g5cgoras.land/oras-go/v2@v2.6.02.6.1
LowGO-2026-5970golang.org/x/text@v0.36.00.39.0
LowGO-2026-6355golang.org/x/crypto@v0.50.00.56.0
LowGO-2026-5064github.com/containerd/containerd@v1.7.32no fix listed
LowGO-2026-5158go.opentelemetry.io/otel@v1.43.01.42.0
LowGO-2025-3887helm@4.2.4no fix listed
LowGO-2025-3888helm@4.2.4no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.50.00.55.0
LowGO-2026-6354golang.org/x/crypto@v0.50.00.56.0
LowGO-2026-5338github.com/containerd/containerd@v1.7.32no fix listed
LowGO-2026-6180golang.org/x/mod@v0.35.00.40.0
LowGO-2026-5025golang.org/x/net@v0.53.00.55.0
LowGO-2026-5027golang.org/x/net@v0.53.00.55.0

Used by

4 charts
ChartVersionTagContainers
rancherrancher-stable2.15.2v0.8.22
rancherrancher-latest2.15.2v0.8.22
rancherwener2.15.2v0.8.22
rancherwenerme2.15.2v0.8.22

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 24 Sept 2026 · advisories as of 24 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.