StackRadar

ghcr.io/karakeep-app/karakeep:0.26.0 container image

GitHub Container Registry

Scanned 15 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/karakeep-app/karakeep

ghcr.io/karakeep-app/karakeep:0.26.0 resolved to f575a34ed3f8, scanned 15 Sept 2026: 463 findings, 0 critical; deployed by 1 chart, among them karakeep.

Radar Score

4,9680472387

463 findings on digest f575a34ed3f8 · scanned 15 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
0.26.0resolves tof575a34ed3f81 chart9 days ago04723874,968

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

463 distinct on this digest

Findings for digest f575a34ed3f8 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGO-2025-4012stdlib@go1.23.101.24.8
LowGO-2025-3956stdlib@go1.23.101.23.12
LowGHSA-ff84-5f28-78qjre2@1.22.11.25.2
LowGO-2025-4011stdlib@go1.23.101.24.8
LowGO-2025-4015stdlib@go1.23.101.24.8
LowGO-2026-6218stdlib@go1.23.101.25.13
LowGHSA-rr8g-9fpq-6wmgtokio@1.44.11.44.2
LowALPINE-CVE-2025-64506libpng@1.6.47-r01.6.51-r0
LowALPINE-CVE-2025-52497mbedtls@3.6.3.1-r03.6.4-r0
LowGO-2025-3373stdlib@go1.20.71.22.11
LowALPINE-CVE-2025-15469openssl@3.5.1-r03.5.5-r0
LowGHSA-268h-hp4c-crq3nodemailer@7.0.48.0.9
LowGHSA-wqvq-jvpq-h66fnodemailer@7.0.48.0.9
LowALPINE-CVE-2026-42768openssl@3.5.1-r03.5.7-r0
LowGHSA-j4r3-hg7j-8chgre2@1.22.11.26.1
LowGO-2025-4155stdlib@go1.23.101.24.11
LowGO-2024-2888stdlib@go1.20.71.21.11
LowALPINE-CVE-2026-32778expat@2.7.1-r02.7.5-r0
LowGHSA-cmwh-pvxp-8882dompurify@3.2.63.4.11
LowGO-2025-4008stdlib@go1.23.101.24.8
LowGO-2025-4010stdlib@go1.23.101.24.8
LowGHSA-gvmj-g25r-r7wrdompurify@3.2.63.4.8
LowGHSA-cc9r-2j5m-2m83nodemailer@7.0.49.1.0
LowGHSA-wmmp-3585-3rmpnodemailer@7.0.49.1.0
LowALPINE-CVE-2026-32776expat@2.7.1-r02.7.5-r0
LowGHSA-4992-7rv2-5pvqundici@6.21.36.24.0
LowGO-2025-4014stdlib@go1.23.101.24.8
LowALPINE-CVE-2026-6042musl@1.2.5-r101.2.5-r11
LowGHSA-cjmm-f4jc-qw8rdompurify@3.2.63.3.2
LowGHSA-w9m9-85wc-3x92postcss-selector-parser@6.1.26.1.3
LowGO-2025-3503stdlib@go1.20.71.23.7
LowGHSA-w7fw-mjwx-w883qs@6.14.06.14.2
LowGHSA-4fcv-w3qc-ppggopenssl@0.10.710.10.72
LowGO-2026-4976stdlib@go1.23.101.25.10
LowGO-2026-5856stdlib@go1.23.101.25.12
LowALPINE-CVE-2026-22795openssl@3.5.1-r03.5.5-r0
LowGO-2025-4007stdlib@go1.23.101.24.9
LowGO-2026-4980stdlib@go1.23.101.25.10
LowALPINE-CVE-2026-42770openssl@3.5.1-r03.5.7-r0
LowGO-2026-5039stdlib@go1.23.101.25.11
LowGHSA-6rw7-vpxm-498pqs@6.14.06.14.1
LowGHSA-ffhc-5mcf-pf4qnext@14.2.2515.5.16
LowGHSA-m959-cc7f-wv43cryptography@44.0.346.0.6
LowGHSA-xv59-967r-8726openssl@0.10.710.10.79
LowGO-2025-4013stdlib@go1.23.101.24.8
LowALPINE-CVE-2025-8961tiff@4.7.0-r04.7.1-r0
LowGO-2025-3849stdlib@go1.23.101.23.12
LowGO-2026-4946stdlib@go1.23.101.25.9
LowALPINE-CVE-2026-56131expat@2.7.1-r02.8.2-r0
LowGHSA-v3r7-h72x-cjcmundici@6.21.36.28.0

Used by

1 chart
ChartVersionTagContainers
karakeeprtomik-helm-chartsVerified publisher0.0.10.26.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.