StackRadar

stashapp/stash:latest container image

Docker Hub

Scanned 15 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of stashapp/stash

stashapp/stash:latest resolved to 24dbd7607174, scanned 15 Sept 2026: 1,112 findings, 7 critical, 4 on KEV; deployed by 1 chart, among them stash.

Radar Score

15,917725330750

1,112 findings on digest 24dbd7607174 · scanned 15 Sept 2026

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves to24dbd76071741 chart9 days ago72533075015,917

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

750 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 24dbd7607174 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-22795openssl@1.1.1f-1ubuntu2.31.1.1f-1ubuntu2.24+esm2
LowGO-2025-4007stdlib@go1.13.151.24.9
LowGO-2026-6355golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.56.0
LowGO-2026-4980stdlib@go1.13.151.25.10
LowUBUNTU-CVE-2024-7883llvm-toolchain-11@1:11.0.0-2~ubuntu20.04.1no fix listed
LowGO-2026-5039stdlib@go1.13.151.25.11
LowUBUNTU-CVE-2025-3360glib2.0@2.64.6-1~ubuntu20.04.32.64.6-1~ubuntu20.04.9+esm1
LowUBUNTU-CVE-2025-6075python3.8@3.8.5-1~20.04.23.8.10-0ubuntu1~20.04.18+esm3
LowUBUNTU-CVE-2025-8114libssh@0.9.3-2ubuntu2.10.9.3-2ubuntu2.5+esm2
LowUBUNTU-CVE-2026-1484glib2.0@2.64.6-1~ubuntu20.04.3no fix listed
LowUBUNTU-CVE-2026-75145ffmpeg@7:4.2.4-1ubuntu0.1no fix listed
LowGO-2025-4013stdlib@go1.13.151.24.8
LowGO-2025-3849stdlib@go1.13.151.23.12
LowGO-2026-4946stdlib@go1.13.151.25.9
LowUBUNTU-CVE-2026-54370acl@2.2.53-6no fix listed
LowGO-2026-5066golang.org/x/image@v0.0.0-20190802002840-cff245a6509b0.43.0
LowUBUNTU-CVE-2026-56412expat@2.2.9-1build1no fix listed
LowUBUNTU-CVE-2026-70631ffmpeg@7:4.2.4-1ubuntu0.17:4.2.7-0ubuntu0.1+esm17
LowGO-2026-4961golang.org/x/image@v0.0.0-20190802002840-cff245a6509b0.42.0
LowUBUNTU-CVE-2026-70629ffmpeg@7:4.2.4-1ubuntu0.17:4.2.7-0ubuntu0.1+esm17
LowUBUNTU-CVE-2026-70630ffmpeg@7:4.2.4-1ubuntu0.17:4.2.7-0ubuntu0.1+esm17
LowUBUNTU-CVE-2021-36086libsepol@3.0-13.0-1ubuntu0.1
LowUBUNTU-CVE-2026-56131expat@2.2.9-1build1no fix listed
LowUBUNTU-CVE-2026-50219expat@2.2.9-1build1no fix listed
LowUBUNTU-CVE-2025-15649perl@5.30.0-9ubuntu0.2no fix listed
LowGO-2026-4603stdlib@go1.13.151.25.8
LowUBUNTU-CVE-2026-0864python3.8@3.8.5-1~20.04.2no fix listed
LowUBUNTU-CVE-2026-0988glib2.0@2.64.6-1~ubuntu20.04.3no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.55.0
LowGO-2026-6354golang.org/x/crypto@v0.0.0-20200622213623-75b288015ac90.56.0
LowUBUNTU-CVE-2026-29111systemd@245.4-4ubuntu3.5245.4-4ubuntu3.24+esm3
LowUBUNTU-CVE-2025-7039glib2.0@2.64.6-1~ubuntu20.04.32.64.6-1~ubuntu20.04.9+esm1
LowGO-2026-4982stdlib@go1.13.151.25.10
LowGO-2026-6091stdlib@go1.13.151.25.13
LowUBUNTU-CVE-2024-56433shadow@1:4.8.1-1ubuntu5.20.04no fix listed
LowUBUNTU-CVE-2026-41991gzip@1.10-0ubuntu4no fix listed
LowGO-2026-6180golang.org/x/mod@v0.3.00.40.0
LowUBUNTU-CVE-2026-89157pcre2@10.34-7no fix listed
LowUBUNTU-CVE-2026-40226systemd@245.4-4ubuntu3.5no fix listed
LowUBUNTU-CVE-2025-61143tiff@4.1.0+git191117-2ubuntu0.20.04.14.1.0+git191117-2ubuntu0.20.04.14+esm3
LowGO-2025-3750stdlib@go1.13.151.23.10
LowGO-2026-4864stdlib@go1.13.151.25.9
LowGO-2025-3447stdlib@go1.13.151.22.12
LowGO-2026-4865stdlib@go1.13.151.25.9
LowGO-2026-4869stdlib@go1.13.151.25.9
LowGO-2026-4340stdlib@go1.13.151.24.12
LowGO-2025-4175stdlib@go1.13.151.24.11
LowUBUNTU-CVE-2025-4877libssh@0.9.3-2ubuntu2.10.9.3-2ubuntu2.5+esm1
LowUBUNTU-CVE-2026-89092glibc@2.31-0ubuntu9.2no fix listed
LowUBUNTU-CVE-2026-18374glibc@2.31-0ubuntu9.2no fix listed

Used by

1 chart
ChartVersionTagContainers
stashgeek-cookbookVerified publisher3.4.2latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.