StackRadar

ghcr.io/formancehq/portal:v1.16.0 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/formancehq/portal

ghcr.io/formancehq/portal:v1.16.0 resolved to 6efef5d19d56, scanned 14 Sept 2026: 349 findings, 0 critical; deployed by 1 chart, among them cloudprem.

Radar Score

3,8910455290

349 findings on digest 6efef5d19d56 · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v1.16.0resolves to6efef5d19d561 chartyesterday04552903,891

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

349 distinct on this digest

Findings for digest 6efef5d19d56 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-hg3w-7f8c-63hppnpm@10.17.010.33.4
LowGHSA-v6wh-96g9-6wx3vite@6.3.66.4.3
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowGHSA-337j-9hxr-rhxgreact-router@6.30.07.18.0
LowGHSA-28wg-ghj8-5hjvnanoid@3.3.113.3.16
LowGHSA-w9j2-pvgh-6h63axios@1.12.01.15.1
LowALPINE-CVE-2026-34743xz@5.8.1-r05.8.3-r0
LowGHSA-2v37-7h3g-55p8nanoid@3.3.113.3.18
LowGHSA-2pr8-phx7-x9h3protobufjs@7.5.37.5.6
LowGHSA-58qx-3vcg-4xpxws@8.18.38.20.1
LowGHSA-3v7f-55p6-f55ppicomatch@2.3.12.3.2
LowGHSA-mh29-5h37-fv8mjs-yaml@4.1.04.1.1
LowGHSA-f38q-mgvj-vph7protobufjs@7.5.37.6.3
LowALPINE-CVE-2026-42769openssl@3.5.1-r03.5.7-r0
LowGHSA-7q8q-rj6j-mhjqaxios@1.12.01.18.0
LowGHSA-h67p-54hq-rp68js-yaml@4.1.04.2.0
LowGHSA-q6j5-fjx5-2mc3pnpm@10.17.010.34.1
LowGHSA-6v7q-wjvx-w8wgbasic-ftp@5.0.55.2.2
LowGHSA-j3f2-48v5-ccwwprotobufjs@7.5.37.6.5
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@2.0.22.1.2
LowGHSA-gh4j-gqv2-49f6fast-xml-parser@5.2.55.7.0
LowGHSA-q8mj-m7cp-5q26qs@6.13.06.15.2
LowGHSA-54hh-g5mx-jqcppnpm@10.17.010.34.0
LowGHSA-p88m-4jfj-68fvundici@6.21.36.27.0
LowGO-2026-4981stdlib@go1.23.81.25.10
LowGHSA-h5cw-625j-3rxhreact-router@7.6.27.12.0
LowGHSA-h5cw-625j-3rxh@remix-run/server-runtime@2.16.52.17.3
LowGHSA-vmf3-w455-68vhtar@7.4.37.5.16
LowGHSA-8988-4f7v-96qf@opentelemetry/core@1.30.12.8.0
LowGO-2026-4977stdlib@go1.23.81.25.10
LowALPINE-CVE-2026-76957expat@2.7.2-r02.8.4-r0
LowGO-2026-4986stdlib@go1.23.81.25.10
LowGO-2026-4918stdlib@go1.23.81.25.10
LowGO-2026-4337stdlib@go1.23.81.24.13
LowGHSA-4vj7-5mj6-jm8mmorgan@1.10.01.11.0
LowGHSA-5c9x-8gcm-mpgxaxios@1.12.01.15.1
LowGHSA-vf2m-468p-8v99axios@1.12.01.15.1
LowGO-2026-4601stdlib@go1.23.81.25.8
LowGHSA-qx2v-qp2m-jg93postcss@8.5.68.5.10
LowALPINE-CVE-2026-56403expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56404expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56405expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56408expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56406expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56407expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56410expat@2.7.2-r02.8.2-r0
LowALPINE-CVE-2026-56411expat@2.7.2-r02.8.2-r0
LowGHSA-4fh9-h7wg-q85mmdast-util-to-hast@13.2.013.2.1
LowGHSA-q6x5-8v7m-xcrfprotobufjs@7.5.37.5.6
LowGHSA-q6x5-8v7m-xcrf@protobufjs/utf8@1.1.01.1.1

Used by

1 chart

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.