stashapp/stash:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Docker Hub all tags of stashapp/stash
stashapp/stash:latest resolved to 24dbd7607174, scanned 14 Sept 2026: 1,102 findings, 8 critical, 4 on KEV; deployed by 1 chart, among them stash.
Radar Score
15,856824330740
1,102 findings on digest 24dbd7607174 · scanned 14 Sept 2026
KEV ×4 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
1,102 distinct on this digest
Findings for digest 24dbd7607174 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GO-2022-1095 | stdlib | 1.18.8 |
| Low | UBUNTU-CVE-2023-3164 | tiff | 4.1.0+git191117-2ubuntu0.20.04.13 |
| Low | UBUNTU-CVE-2026-13595 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2022-2867 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | UBUNTU-CVE-2022-2868 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | UBUNTU-CVE-2022-2869 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | GO-2023-1621 | stdlib | 1.19.7 |
| Low | UBUNTU-CVE-2026-54371 | attr | 1:2.4.48-5ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2026-1489 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2025-7700 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm11 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-6019 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm7 |
| Low | GO-2025-3563 | stdlib | 1.23.8 |
| Low | UBUNTU-CVE-2024-50612 | libsndfile | 1.0.28-7ubuntu0.3 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-0964 | libssh | 0.9.3-2ubuntu2.5+esm3 |
| Low | GHSA-qgc7-mgm3-q253 | golang.org/ | 0.5.0 |
| Low | UBUNTU-CVE-2023-30086 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | GO-2024-2610 | stdlib | 1.21.8 |
| Low | UBUNTU-CVE-2026-59848 | libssh | no fix listed |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | UBUNTU-CVE-2026-5704 | tar | 1.30+dfsg-7ubuntu0.20.04.4+esm3 |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | golang.org/ | 0.53.0 |
| Low | GO-2026-4337 | stdlib | 1.24.13 |
| Low | UBUNTU-CVE-2023-6004 | libssh | 0.9.3-2ubuntu2.5 |
| Low | GHSA-qccp-gfcp-xxvc | urllib3 | 2.7.0 |
| Low | UBUNTU-CVE-2026-44431 | python-urllib3 | no fix listed |
| Low | UBUNTU-CVE-2023-30775 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | GHSA-44p7-9xx4-hf2g | golang.org/ | 0.38.0 |
| Low | UBUNTU-CVE-2021-33294 | elfutils | 0.176-1.1ubuntu0.1 |
| Low | UBUNTU-CVE-2025-2175 | zvbi | 0.2.35-17ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2020-35538 | libjpeg-turbo | 2.0.3-0ubuntu1.20.04.3 |
| Low | GO-2026-4601 | stdlib | 1.25.8 |
| Low | UBUNTU-CVE-2026-72522 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-22695 | libpng1.6 | 1.6.37-2ubuntu0.1~esm2 |
| Low | UBUNTU-CVE-2024-56827 | openjpeg2 | 2.3.1-1ubuntu4.20.04.4 |
| Low | UBUNTU-CVE-2026-56403 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56404 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56405 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56408 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56406 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56407 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56410 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56411 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-78410 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2025-10256 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm11 |
| Low | UBUNTU-CVE-2025-4516 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm1 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GO-2026-5026 | golang.org/ | 0.55.0 |