StackRadar

ghcr.io/crazy-max/firefox-syncserver:1.8.0 container image

GitHub Container Registry

Scanned 20 Sept 2026

Deployed by 1 of 17,813 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/crazy-max/firefox-syncserver

ghcr.io/crazy-max/firefox-syncserver:1.8.0 resolved to ab1a959d8105, scanned 20 Sept 2026: 86 findings, 0 critical; deployed by 1 chart, among them firefox-syncserver.

Radar Score

1,377043547

86 findings on digest ab1a959d8105 · scanned 20 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
1.8.0resolves toab1a959d81051 chartyesterday0435471,377

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

35 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest ab1a959d8105 as scanned on 20 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 20 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-rhm9-p9w5-fwm7cryptography@3.3.13.3.2
MediumALPINE-CVE-2021-36159apk-tools@2.10.4-r22.10.7-r0
MediumALPINE-CVE-2020-28196krb5@1.17-r01.17.2-r0
MediumALPINE-CVE-2020-11655sqlite@3.28.0-r23.28.0-r3
MediumGHSA-w3h3-4rj7-4ph4gunicorn@19.6.022.0.0
MediumALPINE-CVE-2021-23841openssl@1.1.1g-r01.1.1j-r0
MediumALPINE-CVE-2020-1971openssl@1.1.1g-r01.1.1i-r0
MediumALPINE-CVE-2021-32027postgresql@11.10-r011.12-r0
MediumGHSA-cx63-2mw6-8hw5setuptools@44.1.070.0.0
MediumGHSA-38jv-5279-wg99urllib3@1.24.32.6.3
MediumGHSA-qwmp-2cf2-g9g6wheel@0.34.20.38.1
MediumGHSA-r9hx-vwmv-q579setuptools@44.1.065.5.1
MediumPYSEC-2025-49setuptools@44.1.078.1.1
MediumGHSA-v973-fxgf-6xhpmako@1.1.31.2.2
MediumALPINE-CVE-2020-14765mariadb@10.3.25-r010.3.27-r0
MediumGHSA-4f7p-27jc-3c36waitress@1.4.42.1.1
MediumGHSA-j8r2-6x86-q33qrequests@2.20.02.31.0
MediumGHSA-v9hf-5j83-6xpppymysql@0.10.11.1.1
MediumPYSEC-2023-192urllib3@1.24.32.0.6
MediumGHSA-wqvq-5m8c-6g24urllib3@1.24.31.25.9
MediumPYSEC-2024-60idna@2.73.7
MediumGHSA-3f84-rpwh-47g6waitress@1.4.43.0.1
MediumGHSA-ffqj-6fqr-9h24pyjwt@1.7.12.4.0
MediumALPINE-CVE-2021-2166mariadb@10.3.25-r010.3.29-r0
MediumGHSA-9v9h-cgj8-h64pcryptography@3.3.142.0.2
MediumGHSA-2xpw-w6gg-jr37urllib3@1.24.32.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.24.32.6.0
MediumGHSA-3ww4-gg4f-jr7fcryptography@3.3.142.0.0
MediumALPINE-CVE-2021-32028postgresql@11.10-r011.12-r0
MediumPYSEC-2023-254cryptography@3.3.141.0.6
MediumALPINE-CVE-2021-32029postgresql@11.10-r011.12-r0
MediumGHSA-2h4p-vjrc-8xpqmako@1.1.31.3.12
MediumGHSA-w7pp-m8wf-vj6rcryptography@3.3.139.0.1
MediumALPINE-CVE-2020-14812mariadb@10.3.25-r010.3.27-r0
MediumGHSA-5xp3-jfq3-5q8xpip@20.0.221.1

Used by

1 chart
ChartVersionTagContainers
firefox-syncservernicholaswildeVerified publisher0.1.31.8.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 20 Sept 2026 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.