ghcr.io/gethomepage/homepage:v1.13.1 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/gethomepage/homepage
ghcr.io/gethomepage/homepage:v1.13.1 resolved to d8d784e50901, scanned 14 Sept 2026: 110 findings, 0 critical; deployed by 1 chart, among them homepage.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
84 distinct on this digest
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest d8d784e50901 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-mg66-mrh9-m8jx | next | 16.2.5 |
| Low | ALPINE-CVE-2026-14456 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-9076 | openssl | 3.5.7-r0 |
| Low | GHSA-ph9p-34f9-6g65 | tmp | 0.2.6 |
| Low | GHSA-685m-2w69-288q | protobufjs | 7.5.6 |
| Low | GHSA-75px-5xx7-5xc7 | protobufjs | 7.5.6 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 2.1.4 |
| Low | GHSA-36qx-fr4f-26g5 | next | 16.2.5 |
| Low | GHSA-5375-pq7m-f5r2 | @grpc/ | 1.14.4 |
| Low | ALPINE-CVE-2026-63072 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-45445 | openssl | 3.5.7-r0 |
| Low | GHSA-6g55-p6wh-862q | postcss | 8.5.12 |
| Low | GHSA-w5vr-8v7q-w6rv | baseline-browser-mapping | 2.11.0 |
| Low | GHSA-8gc5-j5rx-235r | fast-xml-parser | 5.5.6 |
| Low | GHSA-26hh-7cqf-hhc6 | next | 16.2.6 |
| Low | GHSA-37qj-frw5-hhjh | fast-xml-parser | 5.3.4 |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | GHSA-52cp-r559-cp3m | js-yaml | 4.3.0 |
| Low | ALPINE-CVE-2026-54874 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-42766 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-63075 | openssl | 3.5.8-r0 |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 2.1.3 |
| Low | GHSA-wcpc-wj8m-hjx6 | protobufjs | 7.6.1 |
| Low | GHSA-66ff-xgx4-vchm | protobufjs | 7.5.6 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | GHSA-c2c7-rcm5-vvqj | picomatch | 4.0.4 |
| Low | GHSA-q8wf-6r8g-63ch | next | 16.2.11 |
| Low | GHSA-mwp4-54f8-5fhr | ip-address | 10.3.1 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | GHSA-2883-xcg3-v3hh | js-yaml | 4.3.2 |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-r28c-9q8g-f849 | postcss | 8.5.18 |
| Low | GHSA-jvwf-75h9-cwgg | protobufjs | 7.5.6 |
| Low | GHSA-fj3w-jwp8-x2g3 | fast-xml-parser | 5.3.8 |
| Low | GHSA-h64f-5h5j-jqjh | next | 16.2.5 |
| Low | GHSA-w5hq-g745-h8pq | uuid | 11.1.1 |
| Low | GHSA-w4pp-8pjf-rmxw | pacote | 21.5.1 |
| Low | GHSA-4c39-4ccg-62r3 | next | 16.2.11 |
| Low | GHSA-955p-x3mx-jcvp | next | 16.2.11 |
| Low | GHSA-f886-m6hf-6m8v | brace-expansion | 2.0.3 |
| Low | ALPINE-CVE-2026-42767 | openssl | 3.5.7-r0 |
| Low | GHSA-fxqj-rqcc-2cmp | postcss | 8.5.23 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | ALPINE-CVE-2026-34181 | openssl | 3.5.7-r0 |
| Low | GHSA-jp2q-39xq-3w4g | fast-xml-parser | 5.5.7 |
| Low | GHSA-4633-3j49-mh5q | next | 16.2.11 |
| Low | GHSA-2xp9-vwfh-vxw4 | next | 16.3.3 |
| Low | GHSA-52v5-jr5w-gjxr | sigstore | 4.1.1 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |