StackRadar

gcr.io/kubecost1/server:prod-1.82.2 container image

Google Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.all tags of gcr.io/kubecost1/server

gcr.io/kubecost1/server:prod-1.82.2 resolved to 2b1a3d08caac, scanned 14 Sept 2026: 277 findings, 3 critical, 1 on KEV; deployed by 1 chart, among them cost-analyzer.

Radar Score

4,12131367194

277 findings on digest 2b1a3d08caac · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
prod-1.82.2resolves to2b1a3d08caac1 chart7 days ago313671944,121

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

277 distinct on this digest

Findings for digest 2b1a3d08caac as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2021-42382busybox@1.33.1-r21.33.1-r6
MediumALPINE-CVE-2021-42384busybox@1.33.1-r21.33.1-r6
MediumALPINE-CVE-2021-42386busybox@1.33.1-r21.33.1-r6
MediumGHSA-x6mj-w4jf-jmgwk8s.io/kubernetes@v1.14.11.15.12
MediumGHSA-w73w-5m7g-f7qcgithub.com/dgrijalva/jwt-go@v3.2.0+incompatibleno fix listed
MediumALPINE-CVE-2021-42383busybox@1.33.1-r21.33.1-r6
MediumGHSA-wxc4-f4m6-wwqvgopkg.in/yaml.v2@v2.2.22.2.8
MediumGHSA-xrjj-mj9h-534mgolang.org/x/net@v0.0.0-20190311183353-d8887717615a0.4.0
MediumGHSA-h86h-8ppg-mxmhgolang.org/x/net@v0.0.0-20190311183353-d8887717615a0.0.0-20210428140749-89ef3d95e781
MediumGHSA-6q6q-88xp-6f2rgopkg.in/yaml.v2@v2.2.22.2.4
MediumGHSA-r5c5-pr8j-pfp7golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.0.0-20190320223903-b7391e95e576
MediumALPINE-CVE-2022-2097openssl@1.1.1k-r01.1.1q-r0
MediumGHSA-69ch-w2m2-3vjpgolang.org/x/text@v0.3.30.3.8
MediumGO-2022-0433stdlib@go1.16.51.17.9
MediumGHSA-cgcv-5272-97prk8s.io/kubernetes@v1.14.11.24.15
MediumGHSA-ppp9-7jff-5vj2golang.org/x/text@v0.3.30.3.7
MediumGHSA-x527-x647-q7gggolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
MediumGHSA-jmrx-5g74-6v2fk8s.io/kubernetes@v1.14.11.16.0-beta.1
MediumGHSA-jmrx-5g74-6v2fk8s.io/client-go@v0.0.0-20190419212732-59781b88d0fa0.17.0
MediumGHSA-gwc9-m7rh-j2wwgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.0.0-20211202192323-5770296d904e
MediumGHSA-vgwf-h737-ff37golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
MediumGHSA-f5wc-c3c7-36mcgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
MediumGO-2021-0243stdlib@go1.16.51.15.14
MediumGO-2022-0273stdlib@go1.16.51.16.8
MediumGHSA-p782-xgp4-8hr8golang.org/x/sys@v0.0.0-20190312061237-fead790013130.0.0-20220412211240-33da011f77ad
MediumGHSA-4f99-4q7p-p3ghgithub.com/sirupsen/logrus@v1.2.01.8.3
MediumGHSA-x3jr-pf6g-c48fgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.0.0-20190424203555-c05e17bb3b2d
MediumGHSA-hqxw-f8mx-cpmwgithub.com/docker/distribution@v2.7.1+incompatible2.8.2-beta.1
MediumGHSA-rm3j-f69w-wqmqgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
MediumGHSA-hcg3-q754-cr77golang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.35.0
MediumGHSA-82hx-w2r5-c2wqk8s.io/apiserver@v0.0.0-20190418213308-0a718f081a3a0.15.10
MediumGO-2022-1144stdlib@go1.16.51.18.9
MediumGHSA-6v2p-p543-phr9golang.org/x/oauth2@v0.0.0-20190402181905-9f3314589c9a0.27.0
LowGHSA-89gr-r52h-f8rxgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowGHSA-qc2g-gmh6-95p4k8s.io/kubernetes@v1.14.11.24.15
LowGHSA-jppx-rxg9-jmrxgolang.org/x/crypto@v0.0.0-20190308221718-c2843e01d9a20.52.0
LowGO-2021-0263stdlib@go1.16.51.16.10
LowGO-2023-1571stdlib@go1.16.51.19.6
LowGHSA-vv39-3w5q-974qk8s.io/kubernetes@v1.14.11.29.13
LowGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.19.11.83.1
LowGHSA-h7wq-jj8r-qm7pk8s.io/kubernetes@v1.14.11.27.0-alpha.1
LowGO-2022-0435stdlib@go1.16.51.17.9
LowGO-2022-0288golang.org/x/net@v0.0.0-20190311183353-d8887717615a0.0.0-20211209124913-491a49abca63
LowGO-2022-0288stdlib@go1.16.51.16.12
LowGO-2023-2102stdlib@go1.16.51.20.10
LowALPINE-CVE-2023-0465openssl@1.1.1k-r01.1.1t-r2
LowGHSA-3x58-xr87-2fcjgithub.com/microcosm-cc/bluemonday@v1.0.41.0.5
LowGO-2021-0264stdlib@go1.16.51.16.10
LowGO-2022-0969stdlib@go1.16.51.18.6
LowGO-2021-0347stdlib@go1.16.51.16.15

Used by

1 chart
ChartVersionTagContainers
cost-analyzerstatcan1.82.2prod-1.82.21

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.