StackRadar

tooljet/tooljet-ce:v1.18.0 container image

Docker Hub

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of tooljet/tooljet-ce

tooljet/tooljet-ce:v1.18.0 resolved to c85a4720e42e, scanned 14 Sept 2026: 386 findings, 0 critical, 2 on KEV; deployed by 1 chart, among them tooljet.

Radar Score

5,41006101279

386 findings on digest c85a4720e42e · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v1.18.0resolves toc85a4720e42e1 chart5 days ago061012795,410

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

101 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest c85a4720e42e as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-pq67-2wwv-3xjxtar-fs@2.1.12.1.2
MediumGHSA-f8q6-p94x-37v3minimatch@3.0.43.0.5
MediumDLA-3559-1libssh2@1.8.0-2.11.8.0-2.1+deb10u1
MediumDLA-3477-1python3.7@3.7.3-2+deb10u33.7.3-2+deb10u5
MediumGHSA-h53w-7qw7-vh5csnowflake-sdk@1.6.61.6.21
MediumGHSA-xq3m-2v4x-88ggprotobufjs@6.11.27.5.5
MediumGHSA-72xf-g2v4-qvf3tough-cookie@4.0.04.1.3
MediumGHSA-5955-9wpr-37jhtar@4.4.134.4.18
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@3.8.14.1.1
MediumDSA-4944-1krb5@1.17-3+deb10u11.17-3+deb10u2
MediumGHSA-jf5r-8hm2-f872url-parse@1.5.41.5.9
MediumGHSA-cgfm-xwp7-2cvrsanitize-html@2.7.02.7.1
MediumDSA-5119-1subversion@1.10.4-1+deb10u21.10.4-1+deb10u3
MediumGHSA-x9vf-53q3-cvx6@casl/ability@5.3.16.7.5
MediumGHSA-hjp8-2cm3-cc45requestretry@6.0.07.0.0
MediumGHSA-3h5v-q93c-6h6qws@6.2.26.2.3
MediumGHSA-pjwm-pj3p-43mvaxios@0.26.00.32.0
MediumGHSA-jr5f-v2jv-69x6axios@0.26.00.30.0
MediumGHSA-95m3-7q98-8xr5sha.js@2.4.112.4.12
MediumGHSA-4w2v-q235-vp99axios@0.19.20.21.1
MediumGHSA-xwcq-pm8m-c4vfcrypto-js@4.1.14.2.0
MediumGHSA-5gfm-wpxj-wjgqnode-forge@1.2.11.3.2
MediumGHSA-5528-5vmv-3xc2multer@1.4.42.1.1
MediumGHSA-x4jg-mjrx-434gnode-forge@1.2.11.3.0
MediumGHSA-f23m-r3pf-42rhlodash@4.17.214.18.0
MediumGHSA-xxjr-mmjv-4gpglodash@4.17.214.17.23
MediumGHSA-4jv9-3563-23j3knex@0.95.152.4.0
MediumGHSA-v52c-386h-88mcmulter@1.4.42.1.0
MediumGHSA-xf7r-hgr6-v32pmulter@1.4.42.1.0
MediumGHSA-2v35-w6hq-6mfw@xmldom/xmldom@0.7.50.8.13
MediumGHSA-8v38-pw62-9cw2url-parse@1.5.41.5.7
MediumDLA-3530-1openssl@1.1.1d-0+deb10u61.1.1n-0+deb10u6
MediumDLA-3213-1krb5@1.17-3+deb10u11.17-3+deb10u5
MediumDLA-3613-1curl@7.64.0-4+deb10u27.64.0-4+deb10u7
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.70.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@3.2.03.3.0
MediumGHSA-cpq7-6gpm-g9rccipher-base@1.0.41.0.5
MediumGHSA-8cj5-5rvv-wf4vtar-fs@2.1.12.1.3
MediumGHSA-99f4-grh7-6pcq@grpc/grpc-js@1.4.61.9.16
MediumDLA-3175-1python3.7@3.7.3-2+deb10u33.7.3-2+deb10u4
MediumGHSA-3xgq-45jj-v275cross-spawn@5.1.06.0.6
MediumGHSA-p92q-9vqr-4j8vaxios@0.26.00.32.0
MediumGHSA-vj76-c3g6-qr5vtar-fs@2.1.12.1.4
MediumGHSA-pfrx-2q88-qq97got@6.7.111.8.5
MediumGHSA-qwcr-r2fm-qrc7body-parser@1.20.01.20.3
MediumGHSA-f6ww-3ggp-fr8h@xmldom/xmldom@0.7.50.8.13
MediumDLA-3152-1glibc@2.28-102.28-10+deb10u2
MediumGHSA-96hv-2xvq-fx4pws@6.2.26.2.4
MediumGHSA-3ppc-4f35-3m26minimatch@3.0.43.1.3
MediumGHSA-pf86-5x62-jrwfaxios@0.26.00.31.1

Used by

1 chart
ChartVersionTagContainers
tooljetkrzwiatrzyk1.1.1v1.18.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.