treskon/portrait:DEV-latest container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of treskon/portrait
treskon/portrait:DEV-latest resolved to 88e813f22347, scanned 14 Sept 2026: 330 findings, 3 critical, 1 on KEV; deployed by 1 chart, among them portrait.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
330 distinct on this digest
Findings for digest 88e813f22347 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-wwpq-f5c3-7hvx | spring-boot | no fix listed |
| Low | UBUNTU-CVE-2026-72522 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56403 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56404 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56405 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56408 | expat | no fix listed |
| Low | GHSA-56r7-h6mw-rcfv | elasticsearch | 8.18.8 |
| Low | GHSA-gcjf-9mgh-3p7g | netty-codec-http | 4.1.136.Final |
| Low | GHSA-v8h7-rr48-vmmv | netty-codec-http | 4.1.133.Final |
| Low | UBUNTU-CVE-2026-56406 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56407 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56410 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-56411 | expat | no fix listed |
| Low | GHSA-g9jj-cgmh-9f38 | mariadb-java-client | 3.3.5 |
| Low | UBUNTU-CVE-2026-78410 | util-linux | no fix listed |
| Low | GHSA-563q-j3cm-6jxm | netty-codec-http2 | 4.1.135.Final |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GHSA-5x3r-wrvg-rp6q | netty-codec-http2 | 4.1.135.Final |
| Low | UBUNTU-CVE-2026-78409 | util-linux | no fix listed |
| Low | GHSA-293q-567p-wmwq | spring-security-web | no fix listed |
| Low | UBUNTU-CVE-2026-3441 | binutils | no fix listed |
| Low | GHSA-qxvw-fvwx-5cp7 | mariadb-java-client | 3.3.5 |
| Low | GHSA-25qh-j22f-pwp8 | logback-core | 1.5.19 |
| Low | UBUNTU-CVE-2025-66864 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-4647 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-56409 | expat | no fix listed |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | UBUNTU-CVE-2026-35350 | rust-coreutils | no fix listed |
| Low | UBUNTU-CVE-2026-13757 | p11-kit | no fix listed |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | GHSA-hvcg-qmg6-jm4c | netty-codec-http | 4.1.135.Final |
| Low | UBUNTU-CVE-2026-56132 | expat | no fix listed |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GHSA-957g-f97v-vppc | spring-webmvc | no fix listed |
| Low | UBUNTU-CVE-2026-15534 | perl | 5.40.1-7ubuntu0.2 |
| Low | GHSA-cvc6-q2cp-2xhw | spring-security-oauth2-jose | no fix listed |
| Low | UBUNTU-CVE-2026-56391 | coreutils | 9.7-3ubuntu2.1 |
| Low | UBUNTU-CVE-2026-56391 | coreutils-from | 9.7-3ubuntu2.1 |
| Low | UBUNTU-CVE-2026-35363 | rust-coreutils | no fix listed |
| Low | GHSA-cjpg-rgq5-fr37 | spring-webflux | no fix listed |
| Low | GHSA-cjpg-rgq5-fr37 | spring-webmvc | no fix listed |
| Low | UBUNTU-CVE-2026-35360 | rust-coreutils | no fix listed |
| Low | UBUNTU-CVE-2026-18938 | p11-kit | no fix listed |
| Low | UBUNTU-CVE-2025-5278 | coreutils | 9.7-3ubuntu2.1 |
| Low | UBUNTU-CVE-2025-5278 | coreutils-from | 9.7-3ubuntu2.1 |
| Low | UBUNTU-CVE-2026-35364 | rust-coreutils | no fix listed |
| Low | UBUNTU-CVE-2026-35348 | rust-coreutils | no fix listed |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| portraitportraitVerified publisher | 0.2.13 | DEV-latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.