StackRadar

ghcr.io/cosmo-workspace/dev-code-server:v0.0.3 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/cosmo-workspace/dev-code-server

ghcr.io/cosmo-workspace/dev-code-server:v0.0.3 resolved to 16fda01ae58a, scanned 14 Sept 2026: 1,307 findings, 2 critical, 1 on KEV; deployed by 1 chart, among them dev-code-server.

Radar Score

14,301272071,087

1,307 findings on digest 16fda01ae58a · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v0.0.3resolves to16fda01ae58a1 chart8 days ago272071,08714,301

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

1,307 distinct on this digest

Findings for digest 16fda01ae58a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-6v2p-p543-phr9golang.org/x/oauth2@v0.10.00.27.0
MediumGHSA-hwx4-2j3j-g496pnpm@10.8.010.34.0
MediumDEBIAN-CVE-2026-16239postgresql-15@15.12-0+deb12u215.19-0+deb12u1
MediumDEBIAN-CVE-2026-28387openssl@3.0.15-1~deb12u13.0.19-1~deb12u2
MediumDEBIAN-CVE-2015-9019libxslt@1.1.35-1+deb12u1no fix listed
MediumDEBIAN-CVE-2026-11940python3.11@3.11.2-6+deb12u5no fix listed
MediumDEBIAN-CVE-2026-42216openexr@3.1.5-5no fix listed
MediumDEBIAN-CVE-2026-32740libheif@1.15.1-1+deb12u1no fix listed
MediumDEBIAN-CVE-2024-52005git@1:2.39.5-0+deb12u2no fix listed
MediumDEBIAN-CVE-2026-32327apr-util@1.6.3-11.6.3-1+deb12u1
MediumGHSA-96hv-2xvq-fx4pws@8.18.08.21.0
MediumGHSA-3ppc-4f35-3m26minimatch@3.1.23.1.3
MediumDEBIAN-CVE-2026-48163mariadb@1:10.11.11-0+deb12u11:10.11.18-0+deb12u1
MediumDEBIAN-CVE-2026-28389openssl@3.0.15-1~deb12u13.0.19-1~deb12u2
MediumDEBIAN-CVE-2026-28390openssl@3.0.15-1~deb12u13.0.19-1~deb12u2
MediumDEBIAN-CVE-2019-1010025glibc@2.36-9+deb12u10no fix listed
LowDEBIAN-CVE-2025-69420openssl@3.0.15-1~deb12u13.0.18-1~deb12u2
LowDEBIAN-CVE-2026-57433perl@5.36.0-7+deb12u1no fix listed
LowDEBIAN-CVE-2026-6653libxml2@2.9.14+dfsg-1.3~deb12u1no fix listed
LowGHSA-j3q9-mxjg-w52fpath-to-regexp@8.2.08.4.0
LowGHSA-vxpw-j846-p89qundici@6.21.26.27.0
LowDEBIAN-CVE-2025-46835git@1:2.39.5-0+deb12u21:2.39.5-0+deb12u3
LowDEBIAN-CVE-2026-27135nghttp2@1.52.0-1+deb12u21.52.0-1+deb12u3
LowDEBIAN-CVE-2026-13221perl@5.36.0-7+deb12u1no fix listed
LowDEBIAN-CVE-2026-33412vim@2:9.0.1378-2+deb12u2no fix listed
LowDEBIAN-CVE-2026-42496perl@5.36.0-7+deb12u1no fix listed
LowDEBIAN-CVE-2026-33636libpng1.6@1.6.39-21.6.39-2+deb12u4
LowDEBIAN-CVE-2025-62171imagemagick@8:6.9.11.60+dfsg-1.6+deb12u28:6.9.11.60+dfsg-1.6+deb12u5
LowDEBIAN-CVE-2024-56406perl@5.36.0-7+deb12u15.36.0-7+deb12u2
LowDEBIAN-CVE-2025-0840binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-56367imagemagick@8:6.9.11.60+dfsg-1.6+deb12u28:6.9.11.60+dfsg-1.6+deb12u12
LowDEBIAN-CVE-2026-63385libevent@2.1.12-stable-8no fix listed
LowDEBIAN-CVE-2026-14662postgresql-15@15.12-0+deb12u215.19-0+deb12u1
LowGHSA-qc2g-gmh6-95p4k8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.24.15
LowDEBIAN-CVE-2023-39616aom@3.6.0-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-6477postgresql-15@15.12-0+deb12u215.18-0+deb12u1
LowDEBIAN-CVE-2026-26284imagemagick@8:6.9.11.60+dfsg-1.6+deb12u28:6.9.11.60+dfsg-1.6+deb12u8
LowDEBIAN-CVE-2017-7475cairo@1.16.0-7no fix listed
LowGHSA-34x7-hfp2-rc4vtar@6.2.17.5.7
LowDEBIAN-CVE-2026-44168mariadb@1:10.11.11-0+deb12u11:10.11.18-0+deb12u1
LowDEBIAN-CVE-2023-40403libxslt@1.1.35-1+deb12u11.1.35-1+deb12u2
LowDEBIAN-CVE-2026-35385openssh@1:9.2p1-2+deb12u51:9.2p1-2+deb12u10
LowDEBIAN-CVE-2026-41142openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-9076openssl@3.0.15-1~deb12u13.0.20-1~deb12u2
LowDEBIAN-CVE-2026-82209curl@7.88.1-10+deb12u12no fix listed
LowDEBIAN-CVE-2026-14664postgresql-15@15.12-0+deb12u215.19-0+deb12u1
LowDEBIAN-CVE-2026-14670postgresql-15@15.12-0+deb12u215.19-0+deb12u1
LowDEBIAN-CVE-2026-15742postgresql-15@15.12-0+deb12u215.19-0+deb12u1
LowDEBIAN-CVE-2026-62292libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2025-40780bind9@1:9.18.33-1~deb12u21:9.18.41-1~deb12u1

Used by

1 chart
ChartVersionTagContainers
dev-code-servercosmoVerified publisher0.0.7v0.0.31

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.