StackRadar

sonatype/nexus3:3.53.0 container image

Docker Hub

Scanned 15 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of sonatype/nexus3

sonatype/nexus3:3.53.0 resolved to 4bd975493104, scanned 15 Sept 2026: 248 findings, 9 critical, 4 on KEV; deployed by 1 chart, among them nexus3.

Radar Score

4,46291075154

248 findings on digest 4bd975493104 · scanned 15 Sept 2026

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
3.53.0resolves to4bd9754931041 chart8 days ago910751544,462

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

248 distinct on this digest

Findings for digest 4bd975493104 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowRHSA-2026:66451glib2@2.56.4-159.el80:2.56.4-178.el8_10
LowGHSA-fcvm-3cpj-f9qxshiro-core@1.10.02.2.0
LowRHSA-2026:58938sqlite@3.26.0-17.el8_70:3.26.0-21.el8_10
LowRHSA-2023:3840sqlite@3.26.0-17.el8_70:3.26.0-18.el8_8
LowRHSA-2026:47117libgcrypt@1.8.5-7.el8_60:1.8.5-8.el8_10
LowGHSA-xv6h-r36f-3gp5keycloak-saml-core@12.0.326.5.4
LowGHSA-xv6h-r36f-3gp5keycloak-saml-adapter-core@12.0.326.5.4
LowRHSA-2023:4176java-1.8.0-openjdk@1:1.8.0.372.b07-1.el8_71:1.8.0.382.b05-2.el8
LowRHSA-2025:8411krb5@1.18.2-22.el8_70:1.18.2-32.el8_10
LowRHSA-2026:0728gnupg2@2.2.20-3.el8_60:2.2.20-4.el8_10
LowRHSA-2024:1818java-1.8.0-openjdk@1:1.8.0.372.b07-1.el8_71:1.8.0.412.b08-2.el8
LowGHSA-r7wm-3cxj-wff9jackson-core@2.14.12.18.8
LowRHSA-2025:8958libxml2@2.9.7-15.el8_7.10:2.9.7-20.el8_10
LowRHSA-2026:33126glibc@2.28-211.el80:2.28-251.el8_10.38
LowGHSA-2hjr-vmf3-xwvpelasticsearch@2.4.37.17.16
LowRHSA-2026:13285libcap@2.48-4.el80:2.48-6.el8_10.1
LowRHSA-2026:64809expat@2.2.5-10.el8_7.10:2.5.0-2.el8_10.2
LowRHSA-2025:3828glibc@2.28-211.el80:2.28-251.el8_10.16
LowRHSA-2026:20587glibc@2.28-211.el80:2.28-251.el8_10.37
LowRHSA-2024:0786nss@3.79.0-11.el8_70:3.90.0-6.el8_9
LowGHSA-c6r4-qjmw-cvj2shiro-web@1.10.02.2.0
LowGHSA-hgj6-7826-r7m5jackson-databind@2.14.12.18.8
LowRHSA-2026:43420acl@2.2.53-1.el80:2.4.0-1.el8_10
LowRHSA-2025:1517libxml2@2.9.7-15.el8_7.10:2.9.7-18.el8_10.2
LowRHSA-2025:21977libssh@0.9.6-3.el80:0.9.6-16.el8_10
LowGHSA-5jmj-h7xm-6q6vjackson-databind@2.14.12.18.9
LowGHSA-qh8g-58pp-2wxhjetty-http@9.4.51.v2023021712.0.12
LowGHSA-7p3p-8qv8-m2vhjetty-server@9.4.51.v20230217no fix listed
LowGHSA-2c6g-pfx3-w7h8resteasy-multipart-provider@3.15.3.Final3.15.5.Final
LowRHSA-2026:1852util-linux@2.32.1-39.el8_70:2.32.1-48.el8_10
LowGHSA-3gh6-v5v9-6v9jjetty-servlets@9.4.51.v202302179.4.52
LowGHSA-7g45-4rm6-3mm3guava@30.1.1-jre32.0.0-android
LowRHSA-2026:55804nghttp2@1.33.0-3.el8_2.10:1.33.0-6.el8_10.3
LowRHSA-2026:11349libxml2@2.9.7-15.el8_7.10:2.9.7-21.el8_10.4
LowRHSA-2026:56133attr@2.4.48-3.el80:2.6.0-1.el8_10
LowGHSA-5mg8-w23w-74h3guava@30.1.1-jre32.0.0-android
LowGHSA-g9fw-9x87-rmrjelasticsearch@2.4.36.8.13
LowGHSA-wf8f-6423-gfxgjackson-core@2.11.22.13.0
LowGHSA-5v8f-xx9m-wj44elasticsearch@2.4.37.17.23
LowGHSA-pmhh-3w7g-xqp8jsoup@1.15.31.23.1
LowRHSA-2026:61248libxml2@2.9.7-15.el8_7.10:2.9.7-21.el8_10.7
LowRHBA-2026:47115coreutils@8.30-13.el80:8.30-20.el8_10
LowRHSA-2025:12980glibc@2.28-211.el80:2.28-251.el8_10.25
LowRHSA-2023:7187procps-ng@3.3.15-9.el80:3.3.15-14.el8
LowGHSA-wjpw-4j6x-6rwhjetty-http@9.4.51.v20230217no fix listed
LowGHSA-58qw-p7qm-5rvhjetty-xml@9.4.51.v202302179.4.52.v20230823
LowRHSA-2026:36734libxml2@2.9.7-15.el8_7.10:2.9.7-21.el8_10.6
LowGHSA-c4qc-4q9p-m9q9shiro-core@1.10.02.1.0

Used by

1 chart
ChartVersionTagContainers
nexus3huangchengwu-helm-chart0.1.03.53.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.