StackRadar

ghcr.io/data-fair/metrics:0 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/data-fair/metrics

ghcr.io/data-fair/metrics:0 resolved to a8d40779eeae, scanned 14 Sept 2026: 222 findings, 2 critical, 1 on KEV; deployed by 1 chart, among them data-fair.

Radar Score

3,3572863149

222 findings on digest a8d40779eeae · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
0resolves toa8d40779eeae1 chart8 days ago28631493,357

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

63 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest a8d40779eeae as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2024-7264curl@8.1.2-r08.9.1-r0
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-xvch-5gv4-984hminimist@1.2.51.2.6
MediumALPINE-CVE-2024-5535openssl@3.1.1-r13.1.6-r0
MediumGHSA-9c47-m6qq-7p4hjson5@2.2.02.2.2
MediumALPINE-CVE-2022-48174busybox@1.36.1-r01.36.1-r1
MediumGHSA-76p3-8jx3-jpfqloader-utils@2.0.22.0.3
MediumALPINE-CVE-2024-6197curl@8.1.2-r08.9.0-r0
MediumGHSA-7f3x-x4pr-wqhjparse-url@6.0.06.0.1
MediumGHSA-fjxv-7rqg-78g4form-data@4.0.04.0.4
MediumALPINE-CVE-2023-5363openssl@3.1.1-r13.1.4-r0
MediumGHSA-4wf5-vphf-c2xcterser@4.8.04.8.1
MediumALPINE-CVE-2024-4741openssl@3.1.1-r13.1.6-r0
MediumGHSA-c2qf-rxjj-qqgwsemver@7.3.57.5.2
MediumGHSA-43fc-jf86-j433axios@0.21.40.30.3
MediumGHSA-r683-j2x4-v87gnode-fetch@2.6.62.6.7
MediumALPINE-CVE-2023-3446openssl@3.1.1-r13.1.1-r3
MediumGHSA-hhq3-ff78-jv3gloader-utils@2.0.22.0.4
MediumGHSA-j9fq-vwqv-2fm2parse-url@6.0.08.1.0
MediumGHSA-3rfm-jhwj-7488loader-utils@2.0.22.0.4
MediumGHSA-rp65-9cf3-cjxrnth-check@1.0.22.0.1
MediumGHSA-f8q6-p94x-37v3minimatch@3.0.43.0.5
MediumGHSA-fhg7-m89q-25r3ua-parser-js@0.7.310.7.33
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@4.1.04.1.1
MediumGHSA-35jp-ww65-95whaxios@1.4.01.16.0
MediumALPINE-CVE-2023-5678openssl@3.1.1-r13.1.4-r1
MediumALPINE-CVE-2023-6129openssl@3.1.1-r13.1.4-r3
MediumGHSA-grv7-fg5c-xmjgbraces@3.0.23.0.3
MediumGHSA-3h5v-q93c-6h6qws@7.5.57.5.10
MediumGHSA-pjwm-pj3p-43mvaxios@0.21.40.32.0
MediumALPINE-CVE-2024-9681curl@8.1.2-r08.11.0-r0
MediumALPINE-CVE-2024-0727openssl@3.1.1-r13.1.4-r5
MediumGHSA-jr5f-v2jv-69x6axios@0.21.40.30.0
MediumGHSA-95m3-7q98-8xr5sha.js@2.4.112.4.12
MediumGHSA-8hc4-vh64-cxmjaxios@1.4.01.7.4
MediumGHSA-wr3j-pwj9-hqq6webpack-dev-middleware@4.3.05.3.4
MediumGHSA-4p35-cfcx-8653parse-url@6.0.06.0.1
MediumALPINE-CVE-2025-0725curl@8.1.2-r08.12.0-r0
MediumGHSA-pfq8-rq6v-vf5mhtml-minifier@4.0.0no fix listed
MediumGHSA-4hjh-wcwx-xvwjaxios@1.4.01.12.0
MediumALPINE-CVE-2023-6237openssl@3.1.1-r13.1.4-r4
MediumALPINE-CVE-2024-9143openssl@3.1.1-r13.1.7-r1
MediumALPINE-CVE-2023-46218curl@8.1.2-r08.5.0-r0
MediumALPINE-CVE-2023-3817openssl@3.1.1-r13.1.2-r0
MediumGHSA-w7jw-789q-3m8pshell-quote@1.7.31.8.4
MediumGHSA-f23m-r3pf-42rhlodash@4.17.214.18.0
MediumGHSA-xxjr-mmjv-4gpglodash@4.17.214.17.23
MediumALPINE-CVE-2025-0665curl@8.1.2-r08.12.0-r0
MediumGHSA-c7qv-q95q-8v27http-proxy-middleware@1.3.12.0.7
MediumALPINE-CVE-2024-2379curl@8.1.2-r08.7.1-r0

Used by

1 chart
ChartVersionTagContainers
data-fairdata354-helmVerified publisher1.1.201

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.