StackRadar

ghcr.io/k8s-at-home/nzbhydra2:v3.14.2 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/k8s-at-home/nzbhydra2

ghcr.io/k8s-at-home/nzbhydra2:v3.14.2 resolved to ef3670f7e0a8, scanned 14 Sept 2026: 1,059 findings, 18 critical, 7 on KEV; deployed by 1 chart, among them nzbhydra2.

Radar Score

17,7021846336658

1,059 findings on digest ef3670f7e0a8 · scanned 14 Sept 2026

KEV ×7 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v3.14.2resolves toef3670f7e0a81 chart8 days ago184633665817,702

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

336 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest ef3670f7e0a8 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumUBUNTU-CVE-2021-3580nettle@3.5.1+really3.5.1-2ubuntu0.13.5.1+really3.5.1-2ubuntu0.2
MediumGHSA-gwrp-pvrq-jmwvcommons-io@2.62.7
MediumUBUNTU-CVE-2022-45061python3.8@3.8.5-1~20.04.23.8.10-0ubuntu1~20.04.6
MediumGHSA-fccv-jmmp-qg76tomcat-embed-core@9.0.369.0.83
MediumUBUNTU-CVE-2021-35565openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumUBUNTU-CVE-2026-19931curl@7.68.0-1ubuntu2.5no fix listed
MediumGHSA-7jqf-v358-p8g7tomcat-embed-core@9.0.369.0.90
MediumGHSA-g5h3-w546-pj7fspring-boot-actuator-autoconfigure@2.3.1.RELEASE2.5.15
MediumGHSA-mvr2-9pj6-7w5jguava@20.024.1.1-android
MediumUBUNTU-CVE-2022-27776curl@7.68.0-1ubuntu2.57.68.0-1ubuntu2.10
MediumUBUNTU-CVE-2021-35561openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumUBUNTU-CVE-2022-43680expat@2.2.9-1build12.2.9-1ubuntu0.6
MediumUBUNTU-CVE-2021-35586openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumUBUNTU-CVE-2021-35578openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumUBUNTU-CVE-2021-33560libgcrypt20@1.8.5-5ubuntu11.8.5-5ubuntu1.1
MediumUBUNTU-CVE-2023-3446openssl@1.1.1f-1ubuntu2.31.1.1f-1ubuntu2.20
MediumUBUNTU-CVE-2024-7592python3.8@3.8.5-1~20.04.23.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2016-20013glibc@2.31-0ubuntu9.2no fix listed
MediumUBUNTU-CVE-2024-6232python3.8@3.8.5-1~20.04.23.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2023-31486perl@5.30.0-9ubuntu0.2no fix listed
MediumUBUNTU-CVE-2021-35567openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumUBUNTU-CVE-2022-25313expat@2.2.9-1build12.2.9-1ubuntu0.4
MediumGHSA-wc4r-xq3c-5cf3tomcat-embed-core@9.0.369.0.106
MediumUBUNTU-CVE-2018-5709krb5@1.17-6ubuntu4.1no fix listed
MediumGHSA-rqph-vqwm-22vcspring-messaging@5.2.7.RELEASE5.2.22.RELEASE
MediumGHSA-r6j3-px5g-cq3xtomcat-embed-core@9.0.369.0.81
MediumGHSA-wr62-c79q-cv37tomcat-embed-core@9.0.369.0.107
MediumGHSA-5m62-pw8w-7w9ftomcat-embed-core@9.0.369.0.118
MediumUBUNTU-CVE-2024-28757expat@2.2.9-1build1no fix listed
MediumGHSA-wxc4-f4m6-wwqvgopkg.in/yaml.v2@v2.2.72.2.8
MediumGHSA-25xr-qj8w-c4vftomcat-embed-core@9.0.369.0.107
MediumUBUNTU-CVE-2024-8088python3.8@3.8.5-1~20.04.23.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2021-35564openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.13+8-0ubuntu1~20.04
MediumGHSA-hh26-6xwr-ggv7spring-beans@5.2.7.RELEASE5.2.22.RELEASE
MediumUBUNTU-CVE-2016-10228glibc@2.31-0ubuntu9.22.31-0ubuntu9.7
MediumUBUNTU-CVE-2023-31484perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.4
MediumUBUNTU-CVE-2023-2953openldap@2.4.49+dfsg-2ubuntu1.72.4.49+dfsg-2ubuntu1.10
MediumGHSA-4j3c-42xv-3f84tomcat-embed-core@9.0.369.0.107
MediumGHSA-xjw8-8c5c-9r79thymeleaf@3.0.11.RELEASE3.1.4.RELEASE
MediumGHSA-xjw8-8c5c-9r79thymeleaf-spring5@3.0.11.RELEASE3.1.4.RELEASE
MediumUBUNTU-CVE-2022-2509gnutls28@3.6.13-2ubuntu1.33.6.13-2ubuntu1.7
MediumGHSA-5rcv-m4m3-hfh7golang.org/x/text@v0.3.20.3.3
MediumUBUNTU-CVE-2023-36054krb5@1.17-6ubuntu4.11.17-6ubuntu4.4
MediumUBUNTU-CVE-2023-52425expat@2.2.9-1build1no fix listed
MediumUBUNTU-CVE-2023-25193openjdk-lts@11.0.11+9-0ubuntu2~20.0411.0.20+8-1ubuntu1~20.04
MediumUBUNTU-CVE-2023-25193harfbuzz@2.6.4-1ubuntu42.6.4-1ubuntu4.3
MediumUBUNTU-CVE-2022-34903gnupg2@2.2.19-3ubuntu2.12.2.19-3ubuntu2.2
MediumUBUNTU-CVE-2021-22925curl@7.68.0-1ubuntu2.57.68.0-1ubuntu2.6
MediumGHSA-h2fw-rfh5-95r3tomcat-embed-core@9.0.369.0.105
MediumUBUNTU-CVE-2011-10043perl@5.30.0-9ubuntu0.2no fix listed

Used by

1 chart
ChartVersionTagContainers
nzbhydra2geek-cookbookVerified publisher10.4.2v3.14.21

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.