ghcr.io/data-fair/metrics:0 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/data-fair/metrics
ghcr.io/data-fair/metrics:0 resolved to a8d40779eeae, scanned 14 Sept 2026: 222 findings, 2 critical, 1 on KEV; deployed by 1 chart, among them data-fair.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
149 distinct on this digest
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest a8d40779eeae as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-vcc3-ghjq-m6fr | decode-uri-component | 0.5.0 |
| Low | GHSA-rhx6-c78j-4q9w | path-to-regexp | 0.1.12 |
| Low | GHSA-v62p-rq8g-8h59 | pbkdf2 | 3.1.3 |
| Low | ALPINE-CVE-2023-38546 | curl | 8.4.0-r0 |
| Low | GHSA-62hf-57xw-28j9 | axios | 0.31.1 |
| Low | GHSA-h7cp-r72f-jxh6 | pbkdf2 | 3.1.3 |
| Low | GHSA-hhhv-q57g-882q | jose | 2.0.7 |
| Low | GHSA-34x7-hfp2-rc4v | tar | 7.5.7 |
| Low | GHSA-q8qp-cvcw-x6jj | axios | 1.15.2 |
| Low | GHSA-3g43-6gmg-66jw | axios | 0.31.1 |
| Low | GHSA-cxjh-pqwp-8mfp | follow-redirects | 1.15.6 |
| Low | GHSA-ph9p-34f9-6g65 | tmp | 0.2.6 |
| Low | GHSA-hfxv-24rg-xrqf | axios | 0.32.0 |
| Low | GHSA-j5f8-grm9-p9fc | axios | 0.32.0 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 1.1.18 |
| Low | GHSA-f5x3-32g6-xq36 | tar | 6.2.1 |
| Low | GHSA-6g55-p6wh-862q | postcss | 8.5.12 |
| Low | GHSA-pmwg-cvhr-8vh7 | axios | 0.31.1 |
| Low | GHSA-qffp-2rhf-9h96 | tar | 7.5.10 |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | GHSA-52cp-r559-cp3m | js-yaml | 3.15.0 |
| Low | GHSA-q6wq-5p59-983w | parse-url | 6.0.1 |
| Low | GHSA-jv3g-j58f-9mq9 | jose | 2.0.6 |
| Low | GHSA-hmw2-7cc7-3qxx | form-data | 4.0.6 |
| Low | GHSA-7r86-cg39-jmmj | minimatch | 3.1.3 |
| Low | GHSA-c27g-q93r-2cwf | launch-editor | 2.9.0 |
| Low | GHSA-3jp5-5f8r-q2wg | vuetify | 3.0.0-alpha.10 |
| Low | GHSA-x9w5-v3q2-3rhw | browserify-sign | 4.2.2 |
| Low | GHSA-952p-6rrq-rcjv | micromatch | 4.0.8 |
| Low | GHSA-8qq5-rm4j-mr97 | tar | 7.5.3 |
| Low | GHSA-fvcv-3m26-pcqx | axios | 0.31.0 |
| Low | GHSA-jpp7-7chh-cf67 | parse-url | 6.0.1 |
| Low | ALPINE-CVE-2024-8096 | curl | 8.10.0-r0 |
| Low | GHSA-23c5-xmqv-rm74 | minimatch | 3.1.4 |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 1.1.17 |
| Low | GHSA-8g77-54rh-46hx | parse-git-config | no fix listed |
| Low | GHSA-73rr-hh4g-fpgx | diff | 5.2.2 |
| Low | GHSA-w27v-7q3p-w38r | svgo | 2.8.4 |
| Low | GHSA-73wf-gq98-2v4g | browserslist | 4.28.7 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | GHSA-vj54-72f3-p5jv | devalue | 5.3.2 |
| Low | GHSA-jchw-25xp-jwwc | follow-redirects | 1.15.4 |
| Low | GHSA-pqw5-jmp5-px4v | parse-url | 8.1.0 |
| Low | GHSA-rv95-896h-c2vc | express | 4.19.2 |
| Low | GHSA-c2c7-rcm5-vvqj | picomatch | 2.3.2 |
| Low | ALPINE-CVE-2023-46219 | curl | 8.5.0-r0 |
| Low | ALPINE-CVE-2024-4603 | openssl | 3.1.5-r0 |
| Low | GHSA-737v-mqg7-c878 | defu | 6.1.5 |
| Low | GHSA-2g4f-4pwh-qvx6 | ajv | 6.14.0 |
| Low | ALPINE-CVE-2024-0853 | curl | 8.6.0-r0 |