ghcr.io/onedr0p/qbittorrent:4.6.3 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/onedr0p/qbittorrent
ghcr.io/onedr0p/qbittorrent:4.6.3 resolved to a4ad890e8c4a, scanned 14 Sept 2026: 89 findings, 3 critical; deployed by 1 chart, among them servarr.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
89 distinct on this digest
Findings for digest a4ad890e8c4a as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | ALPINE-CVE-2025-9232 | openssl | 3.1.8-r1 |
| Medium | ALPINE-CVE-2025-4330 | python3 | 3.11.13-r0 |
| Medium | ALPINE-CVE-2025-0938 | python3 | 3.11.12-r0 |
| Medium | ALPINE-CVE-2023-27043 | python3 | 3.11.10-r0 |
| Medium | ALPINE-CVE-2024-2466 | curl | 8.7.1-r0 |
| Low | ALPINE-CVE-2024-56406 | perl | 5.38.3-r1 |
| Low | ALPINE-CVE-2024-9287 | python3 | 3.11.11-r0 |
| Low | ALPINE-CVE-2025-40780 | bind | 9.18.41-r0 |
| Low | ALPINE-CVE-2025-29087 | sqlite | 3.44.2-r1 |
| Low | ALPINE-CVE-2024-50602 | expat | 2.6.4-r0 |
| Low | ALPINE-CVE-2024-8096 | curl | 8.10.0-r0 |
| Low | ALPINE-CVE-2024-6923 | python3 | 3.11.10-r0 |
| Low | ALPINE-CVE-2024-4603 | openssl | 3.1.5-r0 |
| Low | ALPINE-CVE-2024-0853 | curl | 8.6.0-r0 |
| Low | ALPINE-CVE-2025-5222 | icu | 74.1-r1 |
| Low | ALPINE-CVE-2025-26519 | musl | 1.2.4_git20230717-r5 |
| Low | ALPINE-CVE-2024-12718 | python3 | 3.11.13-r0 |
| Low | ALPINE-CVE-2023-5680 | bind | 9.18.24-r0 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.4_git20230717-r6 |
| Low | ALPINE-CVE-2023-50246 | jq | 1.7.1-r0 |
| Low | ALPINE-CVE-2024-0684 | coreutils | 9.4-r2 |
| Low | ALPINE-CVE-2023-50268 | jq | 1.7.1-r0 |
| Low | ALPINE-CVE-2024-2004 | curl | 8.7.1-r0 |
| Low | ALPINE-CVE-2023-42364 | busybox | 1.36.1-r19 |
| Low | ALPINE-CVE-2023-42363 | busybox | 1.36.1-r17 |
| Low | ALPINE-CVE-2023-42366 | busybox | 1.36.1-r16 |
| Low | ALPINE-CVE-2023-42365 | busybox | 1.36.1-r19 |
| Low | ALPINE-CVE-2024-6874 | curl | 8.9.0-r0 |
| Low | ALPINE-CVE-2023-52426 | expat | 2.6.0-r0 |
| Low | ALPINE-CVE-2024-25629 | c-ares | 1.27.0-r0 |
| Low | ALPINE-CVE-2024-11053 | curl | 8.11.1-r0 |
| Low | ALPINE-CVE-2025-4516 | python3 | 3.11.12-r1 |
| Low | ALPINE-CVE-2024-13176 | openssl | 3.1.8-r0 |
| Low | ALPINE-CVE-2025-5025 | curl | 8.14.0-r0 |
| Low | ALPINE-CVE-2025-0167 | curl | 8.12.0-r0 |
| Low | ALPINE-CVE-2026-6042 | musl | 1.2.4_git20230717-r6 |
| Low | ALPINE-CVE-2015-2104 | python3 | 3.11.10-r0 |
| Low | ALPINE-CVE-2025-46394 | busybox | 1.36.1-r21 |
| Low | ALPINE-CVE-2024-58251 | busybox | 1.36.1-r21 |