StackRadar

ghcr.io/cosmo-tech/cosmotech-copilot-api:latest container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/cosmo-tech/cosmotech-copilot-api

ghcr.io/cosmo-tech/cosmotech-copilot-api:latest resolved to a2be95de450c, scanned 14 Sept 2026: 1,050 findings, 1 critical; deployed by 1 chart, among them cosmotech-copilot-api.

Radar Score

11,20514158883

1,050 findings on digest a2be95de450c · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves toa2be95de450c1 chart9 days ago1415888311,205

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

883 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest a2be95de450c as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-61870imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u12
LowPYSEC-2026-3721pip@23.0.126.2
LowDEBIAN-CVE-2026-59186openexr@3.1.13-2no fix listed
LowGHSA-69f9-5gxw-wvc2aiohttp@3.8.53.13.3
LowDEBIAN-CVE-2025-15079curl@8.14.1-2+deb13u2no fix listed
LowDEBIAN-CVE-2026-60001openssh@1:10.0p1-7no fix listed
LowDEBIAN-CVE-2026-56374imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u12
LowDEBIAN-CVE-2025-12781python3.13@3.13.5-2no fix listed
LowGHSA-mq26-g339-26xfpip@23.0.123.3
LowDEBIAN-CVE-2026-58471wget@1.25.0-2no fix listed
LowDEBIAN-CVE-2026-58472wget@1.25.0-2no fix listed
LowDEBIAN-CVE-2026-61863imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u12
LowDEBIAN-CVE-2026-61866imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u12
LowDEBIAN-CVE-2025-15366python3.13@3.13.5-2no fix listed
LowDEBIAN-CVE-2026-87910python3.13@3.13.5-2no fix listed
LowGHSA-cpwx-vrp4-4pq7jinja2@3.1.33.1.6
LowDEBIAN-CVE-2026-59184openexr@3.1.13-2no fix listed
LowGHSA-9548-qrrj-x5pjaiohttp@3.8.53.12.14
LowDEBIAN-CVE-2026-59187openexr@3.1.13-2no fix listed
LowDEBIAN-CVE-2005-0406imagemagick@8:7.1.1.43+dfsg1-1+deb13u5no fix listed
LowDEBIAN-CVE-2026-6429curl@8.14.1-2+deb13u28.14.1-2+deb13u4
LowGHSA-hpj7-wq8m-9hgpaiohttp@3.8.53.14.1
LowGHSA-q25c-c977-4cmhlangchain-community@0.0.190.2.9
LowDEBIAN-CVE-2026-21968mariadb@1:11.8.3-0+deb13u111.8.6-0+deb13u1
LowDEBIAN-CVE-2026-55577imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u11
LowDEBIAN-CVE-2026-45031imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u9
LowDEBIAN-CVE-2026-22695libpng1.6@1.6.48-1+deb13u11.6.48-1+deb13u2
LowGHSA-mf9w-mj56-hr94python-dotenv@1.0.01.2.2
LowGHSA-c427-h43c-vf67aiohttp@3.8.53.13.4
LowDEBIAN-CVE-2026-46523imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u9
LowGHSA-3644-q5cj-c5c7langsmith@0.0.870.8.0
LowGHSA-3644-q5cj-c5c7langchain@0.1.60.3.30
LowDEBIAN-CVE-2026-1965curl@8.14.1-2+deb13u28.14.1-2+deb13u4
LowDEBIAN-CVE-2022-0563util-linux@2.41-5no fix listed
LowDEBIAN-CVE-2026-4878libcap2@1:2.75-10+b31:2.75-10+deb13u1
LowGHSA-7833-fr7j-v32qgitpython@3.1.423.1.59
LowDEBIAN-CVE-2026-35549mariadb@1:11.8.3-0+deb13u11:11.8.6-0+deb13u1
LowDEBIAN-CVE-2026-11979libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2no fix listed
LowDEBIAN-CVE-2026-7168curl@8.14.1-2+deb13u28.14.1-2+deb13u4
LowPYSEC-2026-2104aiohttp@3.8.53.14.0
LowDEBIAN-CVE-2026-86140libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2no fix listed
LowDEBIAN-CVE-2026-33905imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u8
LowDEBIAN-CVE-2007-2768openssh@1:10.0p1-7no fix listed
LowDEBIAN-CVE-2025-15367python3.13@3.13.5-2no fix listed
LowDEBIAN-CVE-2026-68516openexr@3.1.13-2no fix listed
LowDEBIAN-CVE-2026-3783curl@8.14.1-2+deb13u28.14.1-2+deb13u4
LowDEBIAN-CVE-2026-4873curl@8.14.1-2+deb13u28.14.1-2+deb13u4
LowDSA-6189-1libpng1.6@1.6.48-1+deb13u11.6.48-1+deb13u4
LowDEBIAN-CVE-2026-59999openssh@1:10.0p1-7no fix listed
LowDEBIAN-CVE-2026-26983imagemagick@8:7.1.1.43+dfsg1-1+deb13u58:7.1.1.43+dfsg1-1+deb13u6

Used by

1 chart
ChartVersionTagContainers
cosmotech-copilot-apicosmotech-apiVerified publisher0.1.1latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.