StackRadar

ghcr.io/jenkins-x/nexus:0.1.37 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/jenkins-x/nexus

ghcr.io/jenkins-x/nexus:0.1.37 resolved to 8caf5289fe73, scanned 14 Sept 2026: 564 findings, 17 critical, 7 on KEV; deployed by 1 chart, among them nexus.

Radar Score

12,8561750264233

564 findings on digest 8caf5289fe73 · scanned 14 Sept 2026

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
0.1.37resolves to8caf5289fe731 chart6 days ago175026423312,856

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

564 distinct on this digest

Findings for digest 8caf5289fe73 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowRHSA-2025:14557pam@1.3.1-8.el80:1.3.1-38.el8_10
LowGHSA-hhhw-99gj-p3c3snakeyaml@1.261.31
LowRHSA-2025:23383curl@7.61.1-12.el80:7.61.1-34.el8_10.9
LowRHSA-2024:0119libxml2@2.9.7-7.el80:2.9.7-18.el8_9
LowGHSA-jqm6-m3j3-8gg9elasticsearch@2.4.36.8.2
LowRHSA-2024:4265cups@1:2.2.6-33.el81:2.2.6-60.el8_10
LowRHSA-2023:0205java-1.8.0-openjdk@1:1.8.0.262.b10-0.el8_21:1.8.0.362.b08-1.el8_2
LowRHSA-2023:0208java-1.8.0-openjdk@1:1.8.0.262.b10-0.el8_21:1.8.0.362.b09-2.el8_7
LowRHSA-2022:7715libxml2@2.9.7-7.el80:2.9.7-15.el8
LowRHSA-2025:14135libarchive@3.3.2-8.el8_10:3.3.3-6.el8_10
LowGHSA-mjpc-qx7h-r8c9elasticsearch@2.4.35.6.9
LowGHSA-6xx3-rg99-gc3pbcprov-jdk15to18@1.651.66
LowRHSA-2022:2031libssh@0.9.0-4.el80:0.9.6-3.el8
LowRHSA-2020:4599curl@7.61.1-12.el80:7.61.1-14.el8
LowGHSA-q4rv-gq96-w7c5jetty-server@9.4.30.v202006119.4.57.v20241219
LowRHSA-2026:42877java-1.8.0-openjdk@1:1.8.0.262.b10-0.el8_21:1.8.0.502.b07-1.1.el8
LowRHSA-2026:28553vim@2:8.0.1763-13.el82:8.0.1763-24.el8_10
LowRHSA-2026:2128python3@3.6.8-23.el80:3.6.8-73.el8_10
LowRHSA-2026:5216python3@3.6.8-23.el80:3.6.8-24.el8_2.6
LowRHSA-2026:22721expat@2.2.5-3.el80:2.5.0-2.el8_10
LowRHSA-2025:4051gnutls@3.6.8-11.el8_20:3.6.16-8.el8_10.3
LowRHSA-2025:8686glibc@2.28-101.el80:2.28-251.el8_10.22
LowRHSA-2023:5252dmidecode@1:3.2-5.el81:3.3-4.el8_8.1
LowGHSA-v435-xc8x-wvr9bcprov-jdk15to18@1.651.78
LowRHSA-2022:7514fribidi@1.0.4-8.el80:1.0.4-9.el8
LowRHSA-2022:1961cairo@1.15.12-3.el80:1.15.12-6.el8
LowRHSA-2020:4443libarchive@3.3.2-8.el8_10:3.3.2-9.el8
LowGHSA-rcjj-h6gh-jf3rgroovy-all@2.4.172.4.21
LowGHSA-hr32-mgpm-qf2fresteasy-client@3.12.1.Final3.14.0.Final
LowRHSA-2022:5055cups@1:2.2.6-33.el81:2.2.6-33.el8_2.1
LowRHSA-2024:3203systemd@239-31.el8_2.20:239-82.el8
LowGHSA-62ww-4p3p-7fhjelasticsearch@2.4.36.8.15
LowRHSA-2021:4393cups@1:2.2.6-33.el81:2.2.6-40.el8
LowRHSA-2021:1581sqlite@3.26.0-6.el80:3.26.0-13.el8
LowGHSA-mm3m-5497-xgggelasticsearch@2.4.37.17.25
LowGHSA-jgx4-7v3v-vwfmelasticsearch@2.4.37.17.21
LowRHSA-2025:12450libxml2@2.9.7-7.el80:2.9.7-21.el8_10.2
LowRHSA-2026:47184libtiff@4.0.9-17.el80:4.0.9-38.el8_10
LowRHSA-2021:4455python-pip@9.0.3-16.el80:9.0.3-20.el8
LowGHSA-hr65-qq6p-87r4elasticsearch@2.4.36.8.15
LowRHSA-2025:4049libtasn1@4.13-3.el80:4.13-5.el8_10
LowRHSA-2026:57462curl@7.61.1-12.el80:7.61.1-34.el8_10.13
LowRHSA-2024:10779python3@3.6.8-23.el80:3.6.8-69.el8_10
LowGHSA-8xfc-gm6g-vgpvbcprov-jdk15to18@1.651.78
LowGHSA-mjmq-gwgm-5qhmsshd-core@1.7.02.1.0
LowRHSA-2024:3341gdk-pixbuf2@2.36.12-5.el80:2.36.12-6.el8_10
LowRHSA-2024:6963gtk3@3.22.30-5.el80:3.22.30-12.el8_10
LowGHSA-wg6q-6289-32hpbcpkix-jdk15to18@1.651.84
LowRHSA-2024:3347python3@3.6.8-23.el80:3.6.8-62.el8_10
LowGHSA-hmr7-m48g-48f6jetty-http@9.4.30.v202006119.4.52

Used by

1 chart
ChartVersionTagContainers
nexusjenkins-x0.1.370.1.371

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.