StackRadar

ghcr.io/linuxserver/pyload:version-5de90278 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/linuxserver/pyload

ghcr.io/linuxserver/pyload:version-5de90278 resolved to d3c87933a5fd, scanned 14 Sept 2026: 66 findings, 2 critical, 2 on KEV; deployed by 1 chart, among them pyload.

Radar Score

1,236223032

66 findings on digest d3c87933a5fd · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
version-5de90278resolves tod3c87933a5fd1 chart6 days ago2230321,236

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Medium findings

30 distinct on this digest

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

Findings for digest d3c87933a5fd as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumGHSA-8vj2-vxx3-667wpillow@6.2.29.0.1
MediumGHSA-7534-mm45-c74vpillow@6.2.28.3.0
MediumGHSA-77gc-v2xv-rvvhpillow@6.2.28.2.0
MediumGHSA-57h3-9rgr-c24mpillow@6.2.28.1.1
MediumGHSA-9j59-75qj-795wpillow@6.2.29.0.1
MediumGHSA-3wvg-mj6g-m9cvpillow@6.2.28.1.2
MediumGHSA-rwv7-3v45-hg29pillow@6.2.28.2.0
MediumGHSA-98vv-pw6r-q6q4pillow@6.2.28.3.2
MediumGHSA-f4w8-cv6p-x6r5pillow@6.2.28.1.2
MediumGHSA-43fq-w8qq-v88hpillow@6.2.27.1.0
MediumGHSA-95q3-8gr9-gm8wpillow@6.2.28.1.2
MediumGHSA-vqcj-wrf2-7v73pillow@6.2.28.1.0
MediumGHSA-7r7m-5h27-29hppillow@6.2.28.2.0
MediumGHSA-8xjq-8fcg-g5hwpillow@6.2.28.1.1
MediumGHSA-q5hq-fp76-qmrcpillow@6.2.28.2.0
MediumGHSA-3f63-hfp8-52jqpillow@6.2.210.2.0
MediumGHSA-6528-wvf6-f6qgpycrypto@2.6.1no fix listed
MediumGHSA-pw3c-h7wp-cvhxpillow@6.2.29.0.0
MediumGHSA-p43w-g3c5-g5mqpillow@6.2.28.1.1
MediumGHSA-mvg9-xffr-p774pillow@6.2.28.2.0
MediumGHSA-f5g8-5qq7-938wpillow@6.2.28.1.0
MediumGHSA-8843-m7mw-mxqmpillow@6.2.27.1.0
MediumGHSA-9v9h-cgj8-h64pcryptography@3.3.242.0.2
MediumGHSA-m2vv-5vj5-2hm7pillow@6.2.29.2.0
MediumGHSA-xrcv-f9gm-v42cpillow@6.2.29.0.0
MediumGHSA-8ghj-p4vj-mr35pillow@6.2.210.0.0
MediumGHSA-3ww4-gg4f-jr7fcryptography@3.3.242.0.0
MediumGHSA-9hx2-hgq2-2g4fpillow@6.2.28.1.1
MediumPYSEC-2023-254cryptography@3.3.241.0.6
MediumGHSA-w7pp-m8wf-vj6rcryptography@3.3.239.0.1

Used by

1 chart
ChartVersionTagContainers
pyloadgeek-cookbookVerified publisher6.4.2version-5de902781

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.