ghcr.io/jmberesford/retrom-service:retrom-v0.7.14 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/jmberesford/retrom-service
ghcr.io/jmberesford/retrom-service:retrom-v0.7.14 resolved to 4d763d58f11d, scanned 14 Sept 2026: 646 findings, 2 critical, 2 on KEV; deployed by 1 chart, among them retrom.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 4d763d58f11d as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-2219 | dpkg | 1.21.23 |
| Low | DEBIAN-CVE-2026-42497 | perl | no fix listed |
| Low | DEBIAN-CVE-2025-24928 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-41992 | gzip | no fix listed |
| Low | DEBIAN-CVE-2026-56211 | aom | 3.6.0-1+deb12u3 |
| Low | GHSA-c2c7-rcm5-vvqj | picomatch | 2.3.2 |
| Low | DEBIAN-CVE-2026-12912 | tiff | no fix listed |
| Low | GHSA-mwp4-54f8-5fhr | ip-address | 10.3.1 |
| Low | GHSA-64vr-g452-qvp3 | vite | 5.4.6 |
| Low | GHSA-px8v-pp82-rcvr | github.com/ | 0.48.2 |
| Low | GHSA-2g4f-4pwh-qvx6 | ajv | 6.14.0 |
| Low | DEBIAN-CVE-2026-75803 | openssl | no fix listed |
| Low | GHSA-r6q2-hw4h-h46w | tar | 7.5.4 |
| Low | GHSA-2883-xcg3-v3hh | js-yaml | 4.3.2 |
| Low | GHSA-p436-gjf2-799p | github.com/ | 29.2.0 |
| Low | DEBIAN-CVE-2026-14679 | postgresql-15 | 15.19-0+deb12u1 |
| Low | DEBIAN-CVE-2026-4046 | glibc | 2.36-9+deb12u14 |
| Low | DEBIAN-CVE-2026-41071 | libheif | no fix listed |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-r28c-9q8g-f849 | postcss | 8.5.18 |
| Low | GHSA-jvwf-75h9-cwgg | protobufjs | 7.5.6 |
| Low | GHSA-9cwx-2883-4wfx | vite | 5.4.6 |
| Low | DEBIAN-CVE-2026-48959 | perl | no fix listed |
| Low | DEBIAN-CVE-2025-32414 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-5928 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-6478 | postgresql-15 | 15.18-0+deb12u1 |
| Low | DEBIAN-CVE-2023-32570 | dav1d | no fix listed |
| Low | GHSA-c83g-rgw3-j3cx | browserslist | 4.28.7 |
| Low | DEBIAN-CVE-2026-6791 | glibc | no fix listed |
| Low | DEBIAN-CVE-2022-27943 | gcc-12 | no fix listed |
| Low | DEBIAN-CVE-2025-64720 | libpng1.6 | 1.6.39-2+deb12u1 |
| Low | DEBIAN-CVE-2025-4207 | postgresql-15 | 15.13-0+deb12u1 |
| Low | GHSA-w5hq-g745-h8pq | uuid | 11.1.1 |
| Low | DEBIAN-CVE-2026-33164 | libde265 | no fix listed |
| Low | DSA-5949-1 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | GHSA-w4pp-8pjf-rmxw | pacote | 21.5.1 |
| Low | DEBIAN-CVE-2025-5222 | icu | 72.1-3+deb12u1 |
| Low | GHSA-vqpr-j7v3-hqw9 | valibot | 1.2.0 |
| Low | DEBIAN-CVE-2026-45382 | libde265 | no fix listed |
| Low | DEBIAN-CVE-2026-45383 | libde265 | no fix listed |
| Low | GHSA-9ppj-qmqm-q256 | tar | 7.5.11 |
| Low | DEBIAN-CVE-2026-4437 | glibc | 2.36-9+deb12u14 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GHSA-968p-4wvh-cqc8 | @babel/ | 7.26.10 |
| Low | GHSA-968p-4wvh-cqc8 | @babel/ | 7.26.10 |
| Low | DEBIAN-CVE-2025-8177 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-6409 | protobuf | 3.21.12-3+deb12u1 |
| Low | DEBIAN-CVE-2025-8941 | pam | no fix listed |
| Low | DSA-6015-1 | openssl | 3.0.17-1~deb12u3 |
| Low | DEBIAN-CVE-2025-66293 | libpng1.6 | 1.6.39-2+deb12u1 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| retromretsamedocVerified publisher | 2026.2.5 | retrom-v0.7.14 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.