stashapp/stash-box:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of stashapp/stash-box
stashapp/stash-box:latest resolved to a534c8afdf39, scanned 14 Sept 2026: 851 findings, 1 critical; deployed by 1 chart, among them stash-box.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
851 distinct on this digest
Findings for digest a534c8afdf39 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2025-61144 | tiff | 4.5.1+git230720-4ubuntu2.5 |
| Low | UBUNTU-CVE-2026-6238 | glibc | 2.39-0ubuntu8.8 |
| Low | UBUNTU-CVE-2024-32618 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-32619 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-25898 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2024-29165 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-53532 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-68618 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm5 |
| Low | UBUNTU-CVE-2026-3731 | libssh | 0.10.6-2ubuntu0.4 |
| Low | UBUNTU-CVE-2025-55160 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2025-65018 | libpng1.6 | 1.6.43-5ubuntu0.1 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | UBUNTU-CVE-2026-5435 | glibc | 2.39-0ubuntu8.8 |
| Low | UBUNTU-CVE-2026-34734 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-68431 | libheif | 1.17.6-1ubuntu4.2 |
| Low | UBUNTU-CVE-2024-29158 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29160 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29162 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29163 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-59981 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-12495 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-12839 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-59933 | vips | no fix listed |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | UBUNTU-CVE-2026-33900 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm11 |
| Low | UBUNTU-CVE-2026-59189 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-7017 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | UBUNTU-CVE-2026-16118 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2025-69204 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm5 |
| Low | UBUNTU-CVE-2026-32814 | libheif | 1.17.6-1ubuntu4.4 |
| Low | UBUNTU-CVE-2026-4426 | libarchive | 3.7.2-2ubuntu0.7 |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | UBUNTU-CVE-2024-52615 | avahi | no fix listed |
| Low | UBUNTU-CVE-2025-50420 | poppler | 24.02.0-1ubuntu9.6 |
| Low | UBUNTU-CVE-2026-11822 | sqlite3 | 3.45.1-1ubuntu2.6 |
| Low | UBUNTU-CVE-2026-11824 | sqlite3 | 3.45.1-1ubuntu2.6 |
| Low | UBUNTU-CVE-2026-25897 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm7 |
| Low | UBUNTU-CVE-2025-4598 | systemd | 255.4-1ubuntu8.8 |
| Low | UBUNTU-CVE-2026-26199 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-27622 | openexr | 3.1.5-5.1ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2025-52886 | poppler | 24.02.0-1ubuntu9.5 |
| Low | UBUNTU-CVE-2026-59186 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-15079 | curl | 8.5.0-2ubuntu10.7 |
| Low | UBUNTU-CVE-2026-33327 | vips | no fix listed |
| Low | UBUNTU-CVE-2026-35591 | vips | no fix listed |
| Low | UBUNTU-CVE-2026-32775 | libexif | 0.6.24-1ubuntu0.24.04.1 |
| Low | UBUNTU-CVE-2026-59184 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-26066 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm8 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |