StackRadar

ghcr.io/nicholaswilde/leantime:2.1.7-ls6 container image

GitHub Container Registry

Scanned 20 Sept 2026

Deployed by 1 of 17,813 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/nicholaswilde/leantime

ghcr.io/nicholaswilde/leantime:2.1.7-ls6 resolved to 60e3485f98d7, scanned 20 Sept 2026: 162 findings, 9 critical, 3 on KEV; deployed by 1 chart, among them leantime.

Radar Score

4,4939208746

162 findings on digest 60e3485f98d7 · scanned 20 Sept 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.1.7-ls6resolves to60e3485f98d71 chartyesterday92087464,493

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

162 distinct on this digest

Findings for digest 60e3485f98d7 as scanned on 20 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 20 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2021-22925curl@7.69.1-r37.78.0-r0
MediumALPINE-CVE-2021-3537libxml2@2.9.10-r52.9.10-r6
MediumALPINE-CVE-2022-27451mariadb@10.4.18-r010.4.25-r0
MediumALPINE-CVE-2022-27457mariadb@10.4.18-r010.4.25-r0
MediumGHSA-q559-8m2m-g699guzzlehttp/guzzle@6.3.36.5.8
MediumGHSA-cwmx-hcrq-mhc3guzzlehttp/guzzle@6.3.36.5.6
MediumALPINE-CVE-2022-27446mariadb@10.4.18-r010.4.25-r0
MediumALPINE-CVE-2022-27455mariadb@10.4.18-r010.4.25-r0
MediumALPINE-CVE-2022-27382mariadb@10.4.18-r010.4.25-r0
MediumALPINE-CVE-2022-27444mariadb@10.4.18-r010.4.25-r0
MediumALPINE-CVE-2021-22947curl@7.69.1-r37.79.0-r0
MediumALPINE-CVE-2021-2166mariadb@10.4.18-r010.4.19-r0
MediumALPINE-CVE-2021-3541libxml2@2.9.10-r52.9.12-r0
MediumALPINE-CVE-2021-35604mariadb@10.4.18-r010.4.22-r0
MediumGHSA-pcw8-m77r-2528mtdowling/jmespath.php@2.4.02.9.1
MediumGHSA-q7rv-6hp3-vh96guzzlehttp/psr7@1.6.11.8.4
LowALPINE-CVE-2022-24048mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2022-24052mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2022-27774curl@7.69.1-r37.79.1-r1
LowALPINE-CVE-2021-22924curl@7.69.1-r37.78.0-r0
LowALPINE-CVE-2022-24051mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2022-24050mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2021-2154mariadb@10.4.18-r010.4.19-r0
LowALPINE-CVE-2021-22923curl@7.69.1-r37.78.0-r0
LowGHSA-hmqg-cxww-wqhqsquizlabs/php_codesniffer@3.5.03.13.6
LowALPINE-CVE-2021-2372mariadb@10.4.18-r010.4.21-r0
LowALPINE-CVE-2022-21427mariadb@10.4.18-r010.4.25-r0
LowGHSA-557v-xcg6-rm5maws/aws-sdk-php@3.112.203.288.1
LowALPINE-CVE-2020-8284curl@7.69.1-r37.74.0-r0
LowGHSA-wxmh-65f7-jcvwguzzlehttp/psr7@1.6.11.9.1
LowALPINE-CVE-2020-15358sqlite@3.32.1-r03.32.1-r1
LowALPINE-CVE-2021-22890curl@7.69.1-r37.76.0-r0
LowALPINE-CVE-2021-23839openssl@1.1.1i-r01.1.1j-r0
LowALPINE-CVE-2021-22898curl@7.69.1-r37.77.0-r0
LowALPINE-CVE-2021-3996util-linux@2.35.2-r02.37.3-r0
LowALPINE-CVE-2021-3995util-linux@2.35.2-r02.37.3-r0
LowALPINE-CVE-2021-42374busybox@1.31.1-r191.31.1-r21
LowGHSA-h35f-9h28-mq5csetuptools@47.0.083.0.0
LowALPINE-CVE-2021-46659mariadb@10.4.18-r010.4.24-r0
LowGHSA-v5mv-p594-2x33guzzlehttp/guzzle@6.3.37.15.2
LowALPINE-CVE-2022-0563util-linux@2.35.2-r02.37.4-r0
LowALPINE-CVE-2021-46661mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2021-46663mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2021-46664mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2021-46665mariadb@10.4.18-r010.4.24-r0
LowALPINE-CVE-2021-46668mariadb@10.4.18-r010.4.24-r0
LowGHSA-h95v-h523-3mw8guzzlehttp/guzzle@6.3.37.15.1
LowGHSA-wm3w-8rrp-j577guzzlehttp/guzzle@6.3.37.15.1
LowGHSA-27qh-8cxx-2cr5aws/aws-sdk-php@3.112.203.371.4
LowGHSA-cwxw-98qj-8qjxguzzlehttp/guzzle@6.3.37.12.1

Used by

1 chart
ChartVersionTagContainers
leantimenicholaswildeVerified publisher0.1.22.1.7-ls61

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 20 Sept 2026 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.