StackRadar

ghcr.io/comet-ml/opik/opik-python-backend:2.2.96 container image

GitHub Container Registry

Scanned 10 Oct 2026

Deployed by 1 of 18,087 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/comet-ml/opik/opik-python-backend

ghcr.io/comet-ml/opik/opik-python-backend:2.2.96 resolved to 7cd6d608b6a4, scanned 10 Oct 2026: 67 findings, 0 critical; deployed by 1 chart, among them opik.

Radar Score

59100364

67 findings on digest 7cd6d608b6a4 · scanned 10 Oct 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.2.96resolves to7cd6d608b6a41 charttoday00364591

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

67 distinct on this digest

Findings for digest 7cd6d608b6a4 as scanned on 10 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 10 Oct 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGO-2026-5026golang.org/x/net@v0.50.00.55.0
MediumGHSA-2v4p-qf9q-27wjgoogle.golang.org/grpc@v1.80.01.82.2
MediumGHSA-vp52-pcj8-j9qcgoogle.golang.org/grpc@v1.80.01.83.1
LowGO-2026-4918golang.org/x/net@v0.50.00.53.0
LowGO-2026-4559golang.org/x/net@v0.50.00.51.0
LowGO-2026-5942golang.org/x/net@v0.50.00.56.0
LowGO-2026-6355golang.org/x/crypto@v0.55.00.56.0
LowGHSA-vxq7-64xx-v4gwurllib3@2.7.02.8.0
LowALPINE-CVE-2026-85091zlib@1.3.2-r01.3.2-r1
LowGO-2026-5970golang.org/x/text@v0.38.00.39.0
LowGO-2026-6303golang.org/x/crypto@v0.53.00.55.0
LowGO-2026-6354golang.org/x/crypto@v0.55.00.56.0
LowGHSA-pxq6-2prw-chj9github.com/docker/docker@v28.5.2+incompatibleno fix listed
LowGHSA-hfg8-hc9c-6c3hgithub.com/moby/go-archive@v0.2.00.3.0
LowGO-2026-5841github.com/klauspost/compress@v1.18.51.18.7
LowGHSA-29vq-49wr-vm6xwerkzeug@3.1.33.1.6
LowGHSA-hgf8-39gv-g3f2werkzeug@3.1.33.1.4
LowGHSA-5cv4-jp36-h3mwgolang.org/x/net@v0.50.00.55.0
LowGO-2026-6180golang.org/x/mod@v0.36.00.40.0
LowGHSA-pg57-6jwg-q645github.com/containerd/containerd/v2@v2.3.52.3.6
LowGO-2026-4887github.com/docker/docker@v28.5.2+incompatibleno fix listed
LowGHSA-8988-9cw3-xx77urllib3@2.7.02.8.0
LowGHSA-gh4c-6fx4-qh6gurllib3@2.7.02.8.0
LowALPINE-CVE-2026-103111pcre2@10.48-r010.49-r0
LowGHSA-g6x2-hccm-hh4mwerkzeug@3.1.33.1.9
LowGHSA-qc2q-p7wx-3px3google.golang.org/grpc@v1.80.01.83.1
LowGO-2026-6179golang.org/x/mod@v0.36.00.40.0
LowGO-2026-5025golang.org/x/net@v0.50.00.55.0
LowGHSA-87hc-h4r5-73f7werkzeug@3.1.33.1.5
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.80.01.82.1
LowGHSA-65pc-fj4g-8rjxidna@3.113.15
LowALPINE-CVE-2026-58055nghttp2@1.69.0-r01.70.0-r0
LowGHSA-x86f-5xw2-fm2rgithub.com/docker/docker@v28.5.2+incompatibleno fix listed
LowGHSA-7jxh-36q5-gcqvgithub.com/containerd/containerd/v2@v2.3.42.3.5
LowGO-2026-5027golang.org/x/net@v0.50.00.55.0
LowGO-2026-5029golang.org/x/net@v0.50.00.55.0
LowGO-2026-5030golang.org/x/net@v0.50.00.55.0
LowGO-2026-5158go.opentelemetry.io/otel@v1.43.01.42.0
LowGO-2026-6612golang.org/x/net@v0.59.00.60.0
LowGO-2026-6612stdlib@go1.26.81.26.9
LowGO-2026-6603stdlib@go1.26.81.26.9
LowGO-2026-6603golang.org/x/net@v0.59.00.60.0
LowGO-2026-6611stdlib@go1.26.81.26.9
LowGO-2026-6611golang.org/x/net@v0.59.00.60.0
LowGHSA-rg2x-37c3-w2rhgithub.com/docker/docker@v28.5.2+incompatibleno fix listed
LowGO-2026-6604stdlib@go1.26.81.26.9
LowPYSEC-2026-2151flask@3.1.03.1.3
LowGO-2026-6610stdlib@go1.26.81.26.9
LowGO-2026-6610golang.org/x/net@v0.59.00.60.0
LowGO-2026-6599stdlib@go1.26.81.26.9

Used by

1 chart
ChartVersionTagContainers
opikopikOfficialVerified publisher2.2.962.2.962

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 10 Oct 2026 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.