wso2/wso2am:2.6.0 container image
Docker HubScanned 22 Sept 2026
Deployed by 1 of 17,828 indexed charts (latest versions) at this tag.Docker Hub all tags of wso2/wso2am
wso2/wso2am:2.6.0 resolved to fbe0f4059b74, scanned 22 Sept 2026: 820 findings, 19 critical, 3 on KEV; deployed by 1 chart, among them am-pattern-1.
Radar Score
16,6181959347395
820 findings on digest fbe0f4059b74 · scanned 22 Sept 2026
KEV ×3 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
820 distinct on this digest
Findings for digest fbe0f4059b74 as scanned on 22 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 22 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-89157 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2021-20193 | tar | 1.30+dfsg-7ubuntu0.20.04.2 |
| Low | UBUNTU-CVE-2025-29088 | sqlite3 | 3.31.1-4ubuntu0.7 |
| Low | UBUNTU-CVE-2026-40225 | systemd | 245.4-4ubuntu3.24+esm3 |
| Low | UBUNTU-CVE-2026-86139 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2025-9714 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm2 |
| Low | UBUNTU-CVE-2026-58470 | wget | 1.20.3-1ubuntu2.1+esm2 |
| Low | UBUNTU-CVE-2025-8058 | glibc | 2.31-0ubuntu9.18+esm1 |
| Low | UBUNTU-CVE-2026-50813 | sqlite3 | no fix listed |
| Low | GHSA-cp5v-2hmc-3vjx | org.wso2.carbon.identity.application.authentication.endpoint.util | 5.25.707 |
| Low | UBUNTU-CVE-2021-24032 | libzstd | 1.4.4+dfsg-3ubuntu0.1 |
| Low | UBUNTU-CVE-2026-13757 | p11-kit | 0.23.20-1ubuntu0.1+esm1 |
| Low | GHSA-5mg8-w23w-74h3 | guava | 32.0.0-android |
| Low | UBUNTU-CVE-2026-82560 | perl | no fix listed |
| Low | GHSA-hvcg-qmg6-jm4c | netty-codec-http | 4.1.135.Final |
| Low | UBUNTU-CVE-2026-11850 | krb5 | no fix listed |
| Low | UBUNTU-CVE-2026-56132 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-15146 | wget | 1.20.3-1ubuntu2.1+esm3 |
| Low | UBUNTU-CVE-2026-56409 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-40930 | libpng1.6 | 1.6.37-2ubuntu0.1~esm3 |
| Low | UBUNTU-CVE-2025-64506 | libpng1.6 | 1.6.37-2ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2013-4235 | shadow | 1:4.8.1-1ubuntu5.20.04.4 |
| Low | UBUNTU-CVE-2025-45582 | tar | no fix listed |
| Low | UBUNTU-CVE-2026-15534 | perl | 5.30.0-9ubuntu0.5+esm4 |
| Low | UBUNTU-CVE-2026-86144 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2025-14017 | curl | 7.68.0-1ubuntu2.25+esm2 |
| Low | UBUNTU-CVE-2024-10041 | pam | no fix listed |
| Low | UBUNTU-CVE-2026-59850 | libssh | no fix listed |
| Low | UBUNTU-CVE-2026-50812 | sqlite3 | no fix listed |
| Low | UBUNTU-CVE-2026-76781 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2023-4641 | shadow | 1:4.8.1-1ubuntu5.20.04.5 |
| Low | UBUNTU-CVE-2026-34757 | libpng1.6 | 1.6.37-2ubuntu0.1~esm3 |
| Low | UBUNTU-CVE-2026-18938 | p11-kit | 0.23.20-1ubuntu0.1+esm1 |
| Low | UBUNTU-CVE-2026-0989 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm4 |
| Low | GHSA-wf8f-6423-gfxg | jackson-core | 2.13.0 |
| Low | UBUNTU-CVE-2026-22795 | openssl | 1.1.1f-1ubuntu2.24+esm2 |
| Low | GHSA-cj7v-27pg-wf7q | jetty-http | 9.4.47 |
| Low | UBUNTU-CVE-2025-5278 | coreutils | no fix listed |
| Low | UBUNTU-CVE-2025-8114 | libssh | 0.9.3-2ubuntu2.5+esm2 |
| Low | UBUNTU-CVE-2021-4217 | unzip | 6.0-25ubuntu1.1 |
| Low | UBUNTU-CVE-2026-54370 | acl | no fix listed |
| Low | UBUNTU-CVE-2021-36086 | libsepol | 3.0-1ubuntu0.1 |
| Low | UBUNTU-CVE-2026-50219 | expat | 2.2.9-1ubuntu0.8+esm2 |
| Low | UBUNTU-CVE-2025-15649 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-56412 | expat | 2.2.9-1ubuntu0.8+esm2 |
| Low | GHSA-cmjc-qp7j-xgwr | org.wso2.carbon.apimgt.api | 9.31.117 |
| Low | UBUNTU-CVE-2026-56131 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-29111 | systemd | 245.4-4ubuntu3.24+esm3 |
| Low | UBUNTU-CVE-2024-56433 | shadow | no fix listed |
| Low | GHSA-jcp9-796g-pv9p | esapi | 2.1.0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| am-pattern-1wso2 | 2.6.0-7 | 2.6.0 | 2 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.