ghcr.io/akash-network/provider-proxy:1.4.3 container image
GitHub Container RegistryScanned 27 Sept 2026
Deployed by 1 of 17,911 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/akash-network/provider-proxy
ghcr.io/akash-network/provider-proxy:1.4.3 resolved to 53f533d7c6f8, scanned 27 Sept 2026: 249 findings, 1 critical; deployed by 1 chart, among them provider-proxy.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
249 distinct on this digest
Findings for digest 53f533d7c6f8 as scanned on 27 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 27 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2025-15467 | openssl | 3.3.6-r0 |
| High | GHSA-r5fr-rjxr-66jc | lodash | 4.18.0 |
| Medium | ALPINE-CVE-2026-45447 | openssl | 3.3.7-r1 |
| Medium | ALPINE-CVE-2026-42945 | nginx | 1.26.3-r1 |
| Medium | GHSA-v778-237x-gjrc | golang.org/ | 0.31.0 |
| Medium | ALPINE-CVE-2026-9256 | nginx | 1.26.3-r1 |
| Medium | ALPINE-CVE-2026-42055 | nginx | 1.26.3-r2 |
| Medium | ALPINE-CVE-2026-49975 | nginx | 1.26.3-r1 |
| Medium | GHSA-2w6w-674q-4c4q | handlebars | 4.7.9 |
| Medium | GHSA-5j98-mcp5-4vw2 | glob | 10.5.0 |
| Medium | ALPINE-CVE-2026-28388 | openssl | 3.3.7-r0 |
| Medium | ALPINE-CVE-2026-28389 | openssl | 3.3.7-r0 |
| Medium | ALPINE-CVE-2026-34182 | openssl | 3.3.7-r1 |
| Medium | GHSA-rf6f-7fwh-wjgh | flatted | 3.4.2 |
| Medium | ALPINE-CVE-2026-63076 | openssl | 3.3.7-r1 |
| Medium | GHSA-5rq4-664w-9x2c | basic-ftp | 5.2.0 |
| Medium | ALPINE-CVE-2026-42533 | nginx | 1.26.3-r2 |
| Medium | ALPINE-CVE-2025-9230 | openssl | 3.3.5-r0 |
| Medium | ALPINE-CVE-2025-9231 | openssl | 3.3.5-r0 |
| Medium | GHSA-x527-x647-q7gg | golang.org/ | 0.52.0 |
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | GHSA-f23m-r3pf-42rh | lodash | 4.18.0 |
| Medium | GHSA-xxjr-mmjv-4gpg | lodash | 4.17.23 |
| Medium | ALPINE-CVE-2026-28387 | openssl | 3.3.7-r0 |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | GHSA-vgwf-h737-ff37 | golang.org/ | 0.52.0 |
| Medium | GHSA-3mfm-83xf-c92r | handlebars | 4.7.9 |
| Medium | ALPINE-CVE-2026-31790 | openssl | 3.3.7-r0 |
| Medium | ALPINE-CVE-2026-63072 | openssl | 3.3.7-r1 |
| Medium | GHSA-xhpv-hc6g-r9c6 | handlebars | 4.7.9 |
| Medium | GHSA-25h7-pfq9-p65f | flatted | 3.4.0 |
| Medium | ALPINE-CVE-2025-23419 | nginx | 1.26.3-r0 |
| Medium | GHSA-4f99-4q7p-p3gh | github.com/ | 1.9.1 |
| Medium | ALPINE-CVE-2025-9232 | openssl | 3.3.5-r0 |
| Medium | ALPINE-CVE-2026-9076 | openssl | 3.3.7-r1 |
| Medium | ALPINE-CVE-2025-69421 | openssl | 3.3.6-r0 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | GHSA-96hv-2xvq-fx4p | ws | 7.5.11 |
| Medium | ALPINE-CVE-2025-69420 | openssl | 3.3.6-r0 |
| Medium | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Medium | GHSA-jppx-rxg9-jmrx | golang.org/ | 0.52.0 |
| Medium | GHSA-3xgq-45jj-v275 | cross-spawn | 7.0.5 |
| Medium | GHSA-3ppc-4f35-3m26 | minimatch | 3.1.3 |
| Medium | GHSA-34x7-hfp2-rc4v | tar | 7.5.7 |
| Medium | ALPINE-CVE-2026-28390 | openssl | 3.3.7-r0 |
| Low | GHSA-45rx-2jwx-cxfr | @opentelemetry/ | 2.9.0 |
| Low | GHSA-ph9p-34f9-6g65 | tmp | 0.2.6 |
| Low | GHSA-9cx6-37pm-9jff | handlebars | 4.7.9 |
| Low | ALPINE-CVE-2026-31789 | openssl | 3.3.7-r0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| provider-proxyovrclk-2 | 0.1.1 | 1.4.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.