xetusoss/archiva:v2.2.5 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of xetusoss/archiva
xetusoss/archiva:v2.2.5 resolved to 88f25242b9ee, scanned 14 Sept 2026: 232 findings, 12 critical, 4 on KEV; deployed by 1 chart, among them archiva.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
45 distinct on this digest
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 88f25242b9ee as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2018-1000654 | libtasn1 | 4.14-r0 |
| Low | GHSA-5mf7-26mw-3rqr | tika-core | 1.18 |
| Low | GHSA-3pxv-7cmr-fjr4 | log4j-core | 2.25.4 |
| Low | ALPINE-CVE-2019-5188 | e2fsprogs | 1.44.5-r2 |
| Low | GHSA-fjpj-2g6w-x25r | snappy-java | 1.1.10.1 |
| Low | GHSA-7v6m-28jr-rg84 | hibernate-validator | 6.2.0.CR1 |
| Low | GHSA-6fmv-xxpf-w3cw | plexus-utils | 3.6.1 |
| Low | ALPINE-CVE-2020-14363 | libx11 | 1.6.12-r0 |
| Low | GHSA-564r-hj7v-mcr5 | spring-expression | 5.2.23.RELEASE |
| Low | GHSA-8wv5-x4w7-5gww | libthrift | 0.24.0 |
| Low | GHSA-7pwc-h2j2-rjgj | libthrift | 0.23.0 |
| Low | GHSA-hp2x-6vrm-7j7v | archiva-common | no fix listed |
| Low | GHSA-hhhw-99gj-p3c3 | snakeyaml | 1.31 |
| Low | ALPINE-CVE-2019-1563 | openssl | 1.1.1d-r0 |
| Low | GHSA-ghvc-7hp8-2g2v | cxf-core | 3.6.12 |
| Low | GHSA-vc5p-v9hr-52mj | log4j-core | 2.25.3 |
| Low | GHSA-h383-gmxw-35v2 | log4j-1.2-api | 2.25.4 |
| Low | GHSA-r5w3-xv2f-j59q | spring-expression | no fix listed |
| Low | ALPINE-CVE-2021-23839 | openssl | 1.1.1j-r0 |
| Low | ALPINE-CVE-2020-14344 | libx11 | 1.6.10-r0 |
| Low | GHSA-2rmj-mq67-h97g | spring-web | 5.3.38 |
| Low | ALPINE-CVE-2019-1547 | openssl | 1.1.1d-r0 |
| Low | GHSA-36wv-v2qp-v4g4 | cxf-core | 3.5.11 |
| Low | GHSA-775g-4xr8-78h8 | spring-expression | no fix listed |
| Low | GHSA-xgq8-jq9w-77r5 | archiva-common | 2.2.9 |
| Low | ALPINE-CVE-2020-28928 | musl | 1.1.20-r6 |
| Low | GHSA-x83m-pf6f-pf9g | hibernate-validator | 6.2.0.Final |
| Low | GHSA-4gc7-5j7h-4qph | spring-context | no fix listed |
| Low | GHSA-4gc7-5j7h-4qph | spring-web | no fix listed |
| Low | GHSA-r7wm-3cxj-wff9 | jackson-core | 2.18.8 |
| Low | GHSA-jcwr-x25h-x5fh | plexus-utils | 3.0.24 |
| Low | GHSA-hgj6-7826-r7m5 | jackson-databind | 2.18.8 |
| Low | GHSA-wxpp-56q6-5pcg | spring-expression | no fix listed |
| Low | GHSA-qh8g-58pp-2wxh | jetty-http | 12.0.12 |
| Low | GHSA-9cmq-m9j5-mvww | spring-expression | 5.3.39 |
| Low | GHSA-m6cp-vxjx-65j6 | jetty-server | 9.4.41 |
| Low | GHSA-7g45-4rm6-3mm3 | guava | 32.0.0-android |
| Low | GHSA-5mg8-w23w-74h3 | guava | 32.0.0-android |
| Low | GHSA-wf8f-6423-gfxg | jackson-core | 2.13.0 |
| Low | GHSA-cj7v-27pg-wf7q | jetty-http | 9.4.47 |
| Low | GHSA-p26g-97m4-6q7c | jetty-server | 9.4.51.v20230217 |
| Low | GHSA-659m-px2c-25wj | spring-core | no fix listed |
| Low | GHSA-4wp7-92pw-q264 | spring-context | no fix listed |
| Low | GHSA-9f52-rjqv-25qv | spring-expression | no fix listed |
| Low | GHSA-58qw-p7qm-5rvh | jetty-xml | 9.4.52.v20230823 |