StackRadar

ghcr.io/danny-avila/librechat:v0.7.7 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/danny-avila/librechat

ghcr.io/danny-avila/librechat:v0.7.7 resolved to 8c68abbe1cff, scanned 14 Sept 2026: 226 findings, 0 critical; deployed by 1 chart, among them librechat.

Radar Score

2,6350244180

226 findings on digest 8c68abbe1cff · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v0.7.7resolves to8c68abbe1cff1 chart8 days ago02441802,635

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

180 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 8c68abbe1cff as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-gvwx-54wh-qm9jtar@6.2.17.5.17
LowALPINE-CVE-2025-10148curl@8.12.1-r08.14.1-r2
LowGHSA-27v5-c462-wpq7path-to-regexp@8.2.08.4.0
LowGHSA-3644-q5cj-c5c7langsmith@0.1.610.6.0
LowGHSA-rgj7-g3m4-5g8csharp@0.32.60.35.4
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowGHSA-378v-28hj-76wfbn.js@4.12.04.12.3
LowGHSA-337j-9hxr-rhxgreact-router@6.22.07.18.0
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.83.3.16
LowGHSA-w9j2-pvgh-6h63axios@1.7.81.15.1
LowGHSA-mp7j-qc5w-4988websocket-driver@0.7.40.7.5
LowGHSA-2v37-7h3g-55p8nanoid@3.3.83.3.18
LowGHSA-2pr8-phx7-x9h3protobufjs@7.4.07.5.6
LowGHSA-58qx-3vcg-4xpxws@8.18.08.20.1
LowGHSA-3v7f-55p6-f55ppicomatch@2.3.12.3.2
LowGHSA-mh29-5h37-fv8mjs-yaml@4.1.04.1.1
LowGHSA-f38q-mgvj-vph7protobufjs@7.4.07.6.3
LowGHSA-7q8q-rj6j-mhjqaxios@1.7.81.18.0
LowGHSA-h67p-54hq-rp68js-yaml@4.1.04.2.0
LowGHSA-fw9q-39r9-c252langsmith@0.1.610.5.18
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@2.0.12.1.2
LowGHSA-gh4j-gqv2-49f6fast-xml-parser@4.4.15.7.0
LowGHSA-q8mj-m7cp-5q26qs@6.13.06.15.2
LowGHSA-vmf3-w455-68vhtar@6.2.17.5.16
LowGHSA-5c9x-8gcm-mpgxaxios@1.7.81.15.1
LowGHSA-vf2m-468p-8v99axios@1.7.81.15.1
LowGHSA-5v7r-6r5c-r473file-type@18.7.021.3.1
LowGHSA-qx2v-qp2m-jg93postcss@8.4.478.5.10
LowGHSA-4fh9-h7wg-q85mmdast-util-to-hast@13.2.013.2.1
LowGHSA-q6x5-8v7m-xcrf@protobufjs/utf8@1.1.01.1.1
LowGHSA-q6x5-8v7m-xcrfprotobufjs@7.4.07.5.6
LowGHSA-445q-vr5w-6q77axios@1.7.81.15.1
LowGHSA-2x7j-588g-ccc2nodemailer@6.9.159.1.0
LowGHSA-5p4m-2wfm-xmqjjs-yaml@4.1.04.3.1
LowGHSA-jfc7-64v2-mr8c@sigstore/core@1.1.03.2.1
LowGHSA-fx83-v9x8-x52wprotobufjs@7.4.07.5.6
LowGHSA-jggg-4jg4-v7c6protobufjs@7.4.07.5.8
LowGHSA-4mjr-xmp4-gh2gqs@6.13.06.16.0
LowGHSA-48c2-rrv3-qjmpyaml@2.7.02.8.3
LowALPINE-CVE-2026-27171zlib@1.3.1-r21.3.2-r0
LowGHSA-xx6v-rp6x-q39caxios@1.7.81.15.1
LowGHSA-f88m-g3jw-g9cjsharp@0.32.60.35.0
LowGHSA-898c-q2cr-xwhgaxios@1.7.81.16.0
LowGHSA-r7g4-qg5f-qqm2nodemailer@6.9.158.0.8
LowALPINE-CVE-2025-5025curl@8.12.1-r08.14.0-r0
LowGHSA-848j-6mx2-7j84elliptic@6.6.1no fix listed
LowGHSA-rr7j-v2q5-chgvlangsmith@0.1.610.5.19
LowGHSA-wrjc-x8rr-h8h6react-router@6.22.07.18.0
LowGHSA-268h-hp4c-crq3nodemailer@6.9.158.0.9
LowGHSA-wqvq-jvpq-h66fnodemailer@6.9.158.0.9

Used by

1 chart
ChartVersionTagContainers
librechatlibrechat1.8.10v0.7.71

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.