ghcr.io/linuxserver/calibre-web:latest container image
GitHub Container RegistryScanned 19 Sept 2026
Deployed by 1 of 17,805 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/linuxserver/calibre-web
ghcr.io/linuxserver/calibre-web:latest resolved to 0767226fcf20, scanned 19 Sept 2026: 469 findings, 0 critical; deployed by 1 chart, among them opds-shelf.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
469 distinct on this digest
Findings for digest 0767226fcf20 as scanned on 19 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 19 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-74860 | libxml2 | no fix listed |
| Low | UBUNTU-CVE-2025-66628 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-33908 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-25985 | imagemagick | no fix listed |
| Low | GO-2022-0969 | stdlib | 1.18.6 |
| Low | UBUNTU-CVE-2026-57585 | python-pip | no fix listed |
| Low | UBUNTU-CVE-2026-86145 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-42011 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | GHSA-r6ph-v2qm-q3c2 | cryptography | 46.0.5 |
| Low | UBUNTU-CVE-2026-24485 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9 |
| Low | GO-2022-0493 | stdlib | 1.17.10 |
| Low | UBUNTU-CVE-2026-46520 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-56208 | aom | 3.8.2-2ubuntu0.2 |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | UBUNTU-CVE-2026-28693 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm10 |
| Low | GO-2023-2185 | stdlib | 1.20.11 |
| Low | UBUNTU-CVE-2026-56211 | aom | 3.8.2-2ubuntu0.2 |
| Low | UBUNTU-CVE-2025-7425 | libxslt | no fix listed |
| Low | GHSA-5qjq-93h5-hrgp | pypdf | 6.14.0 |
| Low | UBUNTU-CVE-2026-12912 | tiff | no fix listed |
| Low | UBUNTU-CVE-2025-62171 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm4 |
| Low | GHSA-jwv3-5hgf-82ww | cryptography | 49.0.0 |
| Low | UBUNTU-CVE-2026-8643 | python-pip | no fix listed |
| Low | UBUNTU-CVE-2026-24481 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9 |
| Low | UBUNTU-CVE-2020-25664 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-58014 | glib2.0 | no fix listed |
| Low | GO-2022-0537 | stdlib | 1.17.13 |
| Low | UBUNTU-CVE-2026-3833 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2023-39329 | openjpeg2 | no fix listed |
| Low | UBUNTU-CVE-2026-28691 | imagemagick | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm10 |
| Low | UBUNTU-CVE-2026-53461 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-76641 | expat | no fix listed |
| Low | GO-2023-1703 | stdlib | 1.19.8 |
| Low | UBUNTU-CVE-2026-49218 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2026-53460 | imagemagick | no fix listed |
| Low | UBUNTU-CVE-2025-5222 | icu | no fix listed |
| Low | GO-2022-0521 | stdlib | 1.17.12 |
| Low | GO-2022-0477 | stdlib | 1.17.11 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | UBUNTU-CVE-2026-58013 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-58015 | glib2.0 | no fix listed |
| Low | GO-2022-0533 | stdlib | 1.17.11 |
| Low | UBUNTU-CVE-2026-58010 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-58012 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-58011 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-17084 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-42012 | gnutls28 | 3.8.3-1.1ubuntu3.6+Fips1.2 |
| Low | UBUNTU-CVE-2026-56209 | aom | 3.8.2-2ubuntu0.2 |
| Low | GO-2022-0523 | stdlib | 1.17.12 |
| Low | GO-2024-2887 | stdlib | 1.21.11 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| opds-shelfopds-shelfVerified publisher | 0.4.0 | latest | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.