ghcr.io/ethpandaops/syncoor:master container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/ethpandaops/syncoor
ghcr.io/ethpandaops/syncoor:master resolved to 233aa9808fc7, scanned 14 Sept 2026: 107 findings, 0 critical; deployed by 1 chart, among them syncoor-server.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 233aa9808fc7 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-14456 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-82209 | curl | 8.22.0-r0 |
| Low | GHSA-cvxm-645q-p574 | github.com/ | 2.2.5 |
| Low | ALPINE-CVE-2026-80255 | curl | 8.22.0-r0 |
| Low | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Low | ALPINE-CVE-2026-32316 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-13608 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-63072 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-80230 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-54874 | openssl | 3.5.8-r0 |
| Low | GHSA-33vj-92qq-66hc | github.com/ | 2.2.5 |
| Low | ALPINE-CVE-2026-63075 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-82208 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-40164 | jq | 1.8.2-r0 |
| Low | ALPINE-CVE-2026-39979 | jq | 1.8.2-r0 |
| Low | GHSA-hc8v-wwc9-vgxm | github.com/ | 5.19.2 |
| Low | GHSA-pxq6-2prw-chj9 | github.com/ | no fix listed |
| Low | GHSA-8xvp-7hj6-mcj9 | github.com/ | 2.93.0 |
| Low | GHSA-xhf5-7wjv-pqxp | github.com/ | 2.2.5 |
| Low | GHSA-qgq7-7hm3-q39j | github.com/ | 5.19.2 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-jpcc-p29g-p8mq | github.com/ | 2.2.5 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-r88r-gmrh-7j83 | github.com/ | no fix listed |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GHSA-rgh6-rfwx-v388 | github.com/ | 2.2.5 |
| Low | GHSA-x86f-5xw2-fm2r | github.com/ | no fix listed |
| Low | GHSA-7236-3392-c5c6 | github.com/ | 0.31.1 |
| Low | ALPINE-CVE-2026-49839 | jq | 1.8.2-r0 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | GO-2026-4601 | stdlib | 1.25.8 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | GO-2026-5061 | golang.org/ | 0.43.0 |
| Low | GO-2026-5062 | golang.org/ | 0.43.0 |
| Low | ALPINE-CVE-2026-33947 | jq | 1.8.2-r0 |
| Low | GHSA-rg2x-37c3-w2rh | github.com/ | no fix listed |
| Low | GO-2026-4599 | stdlib | 1.26.1 |
| Low | ALPINE-CVE-2026-33948 | jq | 1.8.2-r0 |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| syncoor-serverethereum-helm-chartsVerified publisher | 0.0.1 | master | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.