StackRadar

gcr.io/google-samples/microservices-demo/currencyservice:v0.2.3 container image

Google Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.all tags of gcr.io/google-samples/microservices-demo/currencyservice

gcr.io/google-samples/microservices-demo/currencyservice:v0.2.3 resolved to 49d458a3650f, scanned 14 Sept 2026: 271 findings, 1 critical, 1 on KEV; deployed by 1 chart, among them online-boutique.

Radar Score

3,6651952209

271 findings on digest 49d458a3650f · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v0.2.3resolves to49d458a3650f1 chart8 days ago19522093,665

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

271 distinct on this digest

Findings for digest 49d458a3650f as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-ppp9-7jff-5vj2golang.org/x/text@v0.3.40.3.7
MediumGHSA-43f8-2h32-f4cjhosted-git-info@2.8.82.8.9
MediumGHSA-8r3f-844c-mc37google.golang.org/protobuf@v1.25.01.33.0
MediumGHSA-5gfm-wpxj-wjgqnode-forge@0.10.01.3.2
MediumGHSA-x4jg-mjrx-434gnode-forge@0.10.01.3.0
MediumGO-2021-0243stdlib@go1.15.61.15.14
MediumGO-2022-0273stdlib@go1.15.61.16.8
MediumGHSA-p782-xgp4-8hr8golang.org/x/sys@v0.0.0-20201204225414-ed752295db880.0.0-20220412211240-33da011f77ad
MediumGHSA-3xgq-45jj-v275cross-spawn@5.1.06.0.6
MediumGO-2022-1144stdlib@go1.15.61.18.9
MediumGHSA-pfrx-2q88-qq97got@6.7.111.8.5
MediumGHSA-3ppc-4f35-3m26minimatch@3.0.43.1.3
LowGHSA-vcc3-ghjq-m6frdecode-uri-component@0.2.00.5.0
LowGHSA-hj48-42vr-x3v9path-parse@1.0.61.0.7
LowGHSA-cfm4-qjh2-4765node-forge@0.10.01.3.0
LowGHSA-hcrg-fc28-fcg5parse-duration@1.0.02.1.3
LowGHSA-34x7-hfp2-rc4vtar@4.4.137.5.7
LowGO-2021-0263stdlib@go1.15.61.16.10
LowGO-2023-1571stdlib@go1.15.61.19.6
LowGHSA-554w-wpv2-vw27node-forge@0.10.01.3.2
LowGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.34.01.83.1
LowGHSA-685m-2w69-288qprotobufjs@6.10.27.5.6
LowGHSA-75px-5xx7-5xc7protobufjs@6.10.27.5.6
LowGHSA-rgw5-rvv9-x895brace-expansion@1.1.111.1.18
LowGO-2022-0435stdlib@go1.15.61.17.9
LowGHSA-f5x3-32g6-xq36tar@4.4.136.2.1
LowGO-2022-0288golang.org/x/net@v0.0.0-20201202161906-c7110b5ffcbb0.0.0-20211209124913-491a49abca63
LowGO-2022-0288stdlib@go1.15.61.16.12
LowGHSA-5m6q-g25r-mvwxnode-forge@0.10.01.4.0
LowGO-2023-2102stdlib@go1.15.61.20.10
LowGHSA-qffp-2rhf-9h96tar@4.4.137.5.10
LowGO-2022-0236stdlib@go1.15.61.15.12
LowGHSA-23hp-3jrh-7fpwtar@4.4.137.5.19
LowGHSA-q67f-28xg-22rwnode-forge@0.10.01.4.0
LowGHSA-hmw2-7cc7-3qxxform-data@2.3.32.5.6
LowGO-2021-0240stdlib@go1.15.61.15.13
LowGHSA-7r86-cg39-jmmjminimatch@3.0.43.1.3
LowGO-2021-0242stdlib@go1.15.61.15.13
LowGHSA-8qq5-rm4j-mr97tar@4.4.137.5.3
LowGO-2021-0264stdlib@go1.15.61.16.10
LowGO-2022-0969stdlib@go1.15.61.18.6
LowGHSA-776f-qx25-q3ccxml2js@0.4.230.5.0
LowGO-2021-0239stdlib@go1.15.61.15.13
LowGO-2021-0347stdlib@go1.15.61.16.15
LowGO-2021-0245stdlib@go1.15.61.15.15
LowGHSA-23c5-xmqv-rm74minimatch@3.0.43.1.4
LowGHSA-ppp5-5v6c-4jwpnode-forge@0.10.01.4.0
LowGO-2021-0319stdlib@go1.15.61.16.14
LowGHSA-mh99-v99m-4gvgbrace-expansion@1.1.111.1.17
LowGHSA-wcpc-wj8m-hjx6protobufjs@6.10.27.6.1

Used by

1 chart
ChartVersionTagContainers
online-boutiquekubesphere-testVerified publisher0.1.0v0.2.31

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.