thingsboard/tb-postgres:latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of thingsboard/tb-postgres
thingsboard/tb-postgres:latest resolved to 2d17e4e36edc, scanned 14 Sept 2026: 500 findings, 0 critical; deployed by 1 chart, among them thingsboard.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
421 distinct on this digest
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 2d17e4e36edc as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-54874 | openssl | no fix listed |
| Low | GHSA-563x-q5rq-57qp | tomcat-embed-core | 10.1.52 |
| Low | DEBIAN-CVE-2026-42766 | openssl | 3.0.20-1~deb12u2 |
| Low | DEBIAN-CVE-2026-74860 | libxml2 | no fix listed |
| Low | GHSA-4qhr-g3c6-fcfx | netty-codec-xml | 4.1.136.Final |
| Low | DEBIAN-CVE-2025-69720 | ncurses | no fix listed |
| Low | DEBIAN-CVE-2026-34980 | cups | no fix listed |
| Low | GHSA-mgp5-rv84-w37q | tomcat-embed-core | 10.1.52 |
| Low | GHSA-5pvg-856g-cp85 | netty-resolver-dns | 4.1.135.Final |
| Low | DEBIAN-CVE-2025-6020 | pam | 1.5.2-6+deb12u2 |
| Low | DEBIAN-CVE-2026-86145 | pcre2 | 10.42-1+deb12u1 |
| Low | GHSA-qv9r-c865-cp47 | log4j-api | 2.25.5 |
| Low | DEBIAN-CVE-2026-58011 | glib2.0 | no fix listed |
| Low | GHSA-5mp6-jrq3-r938 | tomcat-embed-core | 10.1.55 |
| Low | DEBIAN-CVE-2025-15281 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2025-6297 | dpkg | 1.21.23 |
| Low | GHSA-3244-j874-rhc2 | netty-codec-redis | 4.1.135.Final |
| Low | GHSA-5w86-c3rq-vjj7 | netty-codec-redis | 4.1.135.Final |
| Low | GHSA-6ghj-frrj-jjj3 | netty-codec-redis | 4.1.135.Final |
| Low | GHSA-mj4r-2hfc-f8p6 | netty-codec | 4.1.133.Final |
| Low | GHSA-rv64-5gf8-9qq8 | tomcat-embed-core | 10.1.54 |
| Low | DEBIAN-CVE-2026-45186 | expat | no fix listed |
| Low | DEBIAN-CVE-2026-42011 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | GHSA-c653-97m9-rcg9 | netty-handler | 4.1.135.Final |
| Low | GHSA-v74w-7mr3-4qg3 | netty-codec-xml | 4.1.136.Final |
| Low | DEBIAN-CVE-2026-9538 | perl | no fix listed |
| Low | GHSA-x4m4-345f-5h5g | tomcat-embed-core | 10.1.54 |
| Low | GHSA-93wv-jw9v-4972 | netty-codec-http2 | 4.1.136.Final |
| Low | DEBIAN-CVE-2020-15719 | openldap | no fix listed |
| Low | GHSA-6jqx-86gh-f27w | netty-codec-http | 4.1.136.Final |
| Low | DEBIAN-CVE-2026-0990 | libxml2 | 2.9.14+dfsg-1.3~deb12u6 |
| Low | DEBIAN-CVE-2026-21932 | openjdk-17 | 17.0.18+8-1~deb12u1 |
| Low | DEBIAN-CVE-2025-7458 | sqlite3 | no fix listed |
| Low | GHSA-mvh2-crg5-v77c | netty-codec-http | 4.1.136.Final |
| Low | GHSA-vhch-2wf3-m8rp | netty-codec-stomp | 4.1.136.Final |
| Low | GHSA-fpj8-gq4v-p354 | tomcat-embed-core | 10.1.50 |
| Low | DEBIAN-CVE-2026-54411 | pam | no fix listed |
| Low | DEBIAN-CVE-2026-2219 | dpkg | 1.21.23 |
| Low | DEBIAN-CVE-2026-42497 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-41992 | gzip | no fix listed |
| Low | GHSA-hgrr-935x-pq79 | tomcat-embed-core | 10.1.47 |
| Low | GHSA-558v-64gr-wgg4 | netty-codec | 4.1.136.Final |
| Low | GHSA-c3fc-8qff-9hwx | bcprov-jdk18on | 1.84 |
| Low | GHSA-x23c-287f-qqv5 | spring-webflux | 6.2.19 |
| Low | GHSA-x23c-287f-qqv5 | spring-webmvc | 6.2.19 |
| Low | DEBIAN-CVE-2026-75803 | openssl | no fix listed |
| Low | GHSA-676x-f7gg-47vc | netty-resolver-dns | 4.1.135.Final |
| Low | DEBIAN-CVE-2026-4046 | glibc | 2.36-9+deb12u14 |
| Low | GHSA-wg6q-6289-32hp | bcpkix-jdk18on | 1.84 |
| Low | DEBIAN-CVE-2025-14512 | glib2.0 | 2.74.6-2+deb12u8 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| thingsboardcetic | 0.1.2 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.