ghcr.io/liturgical-app/liturgical-api:1.0.12 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/liturgical-app/liturgical-api
ghcr.io/liturgical-app/liturgical-api:1.0.12 resolved to 637bdcebdd8d, scanned 14 Sept 2026: 87 findings, 0 critical; deployed by 1 chart, among them liturgical-api.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
87 distinct on this digest
Findings for digest 637bdcebdd8d as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-76642 | util-linux | 2.41.6-r0 |
| Low | GHSA-mfx4-hv73-q22v | aiohttp | 3.14.2 |
| Low | ALPINE-CVE-2026-11822 | sqlite | 3.53.4-r0 |
| Low | ALPINE-CVE-2026-11824 | sqlite | 3.53.4-r0 |
| Low | GHSA-cq5v-8q36-5273 | aiohttp | 3.14.3 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-mq44-7p77-q5h7 | aiohttp | 3.14.2 |
| Low | GHSA-hg6j-4rv6-33pg | aiohttp | 3.14.0 |
| Low | GHSA-4xh5-x5gv-qwph | pip | 25.3 |
| Low | GHSA-pwv6-vv43-88gr | pillow | 12.2.0 |
| Low | ALPINE-CVE-2026-34181 | openssl | 3.5.7-r0 |
| Low | GHSA-h35f-9h28-mq5c | setuptools | 83.0.0 |
| Low | GHSA-fj7v-r99m-22gq | pillow | 12.3.0 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r23 |
| Low | PYSEC-2026-3721 | pip | 26.2 |
| Low | GHSA-hpj7-wq8m-9hgp | aiohttp | 3.14.1 |
| Low | PYSEC-2026-2104 | aiohttp | 3.14.0 |
| Low | ALPINE-CVE-2026-34743 | xz | 5.8.3-r0 |
| Low | GHSA-65pc-fj4g-8rjx | idna | 3.15 |
| Low | ALPINE-CVE-2026-42769 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-78408 | util-linux | 2.41.6-r1 |
| Low | GHSA-qccp-gfcp-xxvc | urllib3 | 2.7.0 |
| Low | GHSA-6w46-j5rx-g56g | pytest | 9.0.3 |
| Low | ALPINE-CVE-2025-14104 | util-linux | 2.41.4-r0 |
| Low | ALPINE-CVE-2026-45446 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-27171 | zlib | 1.3.2-r0 |
| Low | ALPINE-CVE-2026-42768 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.5-r22 |
| Low | ALPINE-CVE-2026-42770 | openssl | 3.5.7-r0 |
| Low | GHSA-5xmw-vc9v-4wf2 | pillow | 12.2.0 |
| Low | GHSA-r73j-pqj5-w3x7 | pillow | 12.2.0 |
| Low | GHSA-jp4c-xjxw-mgf9 | pip | 26.1 |
| Low | GHSA-wjx4-4jcj-g98j | pillow | 12.2.0 |
| Low | GHSA-4x4j-2g7c-83w6 | pillow | 12.3.0 |
| Low | GHSA-58qw-9mgm-455v | pip | 26.1 |
| Low | ALPINE-CVE-2026-27456 | util-linux | 2.41.4-r0 |
| Low | GHSA-6vgw-5pg2-w6jp | pip | 26.0 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| liturgical-apiliturgical | 0.2.11 | 1.0.12 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.