gcr.io/ml-pipeline/api-server:2.3.0 container image
Google Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.all tags of gcr.io/ml-pipeline/api-server
gcr.io/ml-pipeline/api-server:2.3.0 resolved to 39661bd823e8, scanned 14 Sept 2026: 372 findings, 0 critical; deployed by 1 chart, among them kubeflow.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
372 distinct on this digest
Findings for digest 39661bd823e8 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2025-32990 | gnutls28 | 3.7.9-2+deb12u5 |
| Medium | DEBIAN-CVE-2026-34180 | openssl | 3.0.20-1~deb12u2 |
| Medium | GHSA-pc3f-x583-g7j2 | github.com/ | 0.5.1 |
| Medium | DEBIAN-CVE-2025-31115 | xz-utils | 5.4.1-1 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.0.20-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-8376 | perl | no fix listed |
| Medium | DEBIAN-CVE-2025-9232 | openssl | 3.0.17-1~deb12u3 |
| Medium | DEBIAN-CVE-2026-5260 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | DEBIAN-CVE-2026-28388 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2025-69421 | openssl | 3.0.18-1~deb12u2 |
| Medium | GHSA-xrqc-7xgx-c9vh | github.com/ | 3.6.14 |
| Medium | GHSA-6v2p-p543-phr9 | golang.org/ | 0.27.0 |
| Medium | DEBIAN-CVE-2026-28387 | openssl | 3.0.19-1~deb12u2 |
| Medium | GHSA-3wf5-g532-rcrr | github.com/ | 3.7.11 |
| Medium | DEBIAN-CVE-2026-28389 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-28390 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2019-1010025 | glibc | no fix listed |
| Low | DEBIAN-CVE-2025-69420 | openssl | 3.0.18-1~deb12u2 |
| Low | DEBIAN-CVE-2026-57433 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-13221 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-42496 | perl | no fix listed |
| Low | DEBIAN-CVE-2024-56406 | perl | 5.36.0-7+deb12u2 |
| Low | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Low | GHSA-qc2g-gmh6-95p4 | k8s.io/ | 1.24.15 |
| Low | GHSA-jppx-rxg9-jmrx | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2026-9076 | openssl | 3.0.20-1~deb12u2 |
| Low | DEBIAN-CVE-2024-10524 | wget | no fix listed |
| Low | GHSA-p84v-gxvw-73pf | github.com/ | 3.6.12 |
| Low | DEBIAN-CVE-2026-12087 | perl | no fix listed |
| Low | GHSA-vv39-3w5q-974q | k8s.io/ | 1.29.13 |
| Low | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Low | GHSA-h7wq-jj8r-qm7p | k8s.io/ | 1.27.0-alpha.1 |
| Low | GHSA-c2hv-4pfj-mm2r | github.com/ | 3.6.12 |
| Low | DEBIAN-CVE-2026-0915 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2025-4802 | glibc | 2.36-9+deb12u11 |
| Low | DEBIAN-CVE-2023-50495 | ncurses | no fix listed |
| Low | DEBIAN-CVE-2026-63072 | openssl | no fix listed |
| Low | GHSA-jcc8-g2q4-9fxq | github.com/ | 3.7.14 |
| Low | GHSA-48p8-g2fx-3wwm | github.com/ | 3.7.15 |
| Low | DEBIAN-CVE-2026-45445 | openssl | 3.0.20-1~deb12u2 |
| Low | GHSA-93mq-9ffx-83m2 | github.com/ | 1.17.0 |
| Low | DEBIAN-CVE-2026-85091 | zlib | no fix listed |
| Low | DEBIAN-CVE-2021-31879 | wget | no fix listed |
| Low | DEBIAN-CVE-2026-42013 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | DEBIAN-CVE-2026-0861 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2026-58469 | wget | no fix listed |