StackRadar

ghcr.io/runwhen-contrib/runwhen-local:0.12.4 container image

GitHub Container Registry

Scanned 10 Oct 2026

Deployed by 1 of 18,087 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/runwhen-contrib/runwhen-local

ghcr.io/runwhen-contrib/runwhen-local:0.12.4 resolved to 914e75d9f445, scanned 10 Oct 2026: 352 findings, 0 critical, 1 on KEV; deployed by 1 chart, among them runwhen-local.

Radar Score

3,7170146304

352 findings on digest 914e75d9f445 · scanned 10 Oct 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
0.12.4resolves to914e75d9f4451 charttoday01463043,717

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

352 distinct on this digest

Findings for digest 914e75d9f445 as scanned on 10 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 10 Oct 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
HighGHSA-86qp-5c8j-p5mrKEVstarlette@0.46.21.0.1
MediumDEBIAN-CVE-2019-1010022glibc@2.41-12+deb13u4no fix listed
MediumDEBIAN-CVE-2017-17740openldap@2.6.10+dfsg-1no fix listed
MediumDEBIAN-CVE-2018-20796glibc@2.41-12+deb13u4no fix listed
MediumDEBIAN-CVE-2015-3276openldap@2.6.10+dfsg-1no fix listed
MediumDEBIAN-CVE-2019-1010023glibc@2.41-12+deb13u4no fix listed
MediumGHSA-2f96-g7mh-g2hxgitpython@3.1.503.1.51
MediumDEBIAN-CVE-2022-24975git@1:2.47.3-0+deb13u1no fix listed
MediumDEBIAN-CVE-2019-9192glibc@2.41-12+deb13u4no fix listed
MediumGO-2026-4341stdlib@go1.25.51.24.12
MediumDEBIAN-CVE-2018-5709krb5@1.21.3-5+deb13u1no fix listed
MediumDEBIAN-CVE-2018-6829libgcrypt20@1.11.0-7+deb13u1no fix listed
MediumGHSA-956x-8gvw-wg5vgitpython@3.1.503.1.51
MediumGHSA-284h-m62q-gf8wgitpython@3.1.503.1.59
MediumDEBIAN-CVE-2026-19931curl@8.14.1-2+deb13u5no fix listed
MediumGO-2026-4337stdlib@go1.25.51.24.13
MediumDEBIAN-CVE-2026-28417vim@2:9.1.1230-2no fix listed
MediumDEBIAN-CVE-2026-11856curl@8.14.1-2+deb13u5no fix listed
MediumGHSA-r9mr-m37c-5fr3gitpython@3.1.503.1.54
MediumGHSA-wvpp-8hx9-p66jgitpython@3.1.503.1.58
MediumGO-2026-5026stdlib@go1.25.51.25.13
MediumGO-2026-5026golang.org/x/net@v0.47.00.55.0
MediumDEBIAN-CVE-2011-3389gnutls28@3.8.9-3+deb13u4no fix listed
MediumDEBIAN-CVE-2026-7210python3.13@3.13.5-2+deb13u5no fix listed
MediumPYSEC-2026-3952gitpython@3.1.503.1.54
MediumDEBIAN-CVE-2026-10536curl@8.14.1-2+deb13u5no fix listed
MediumDEBIAN-CVE-2026-9079curl@8.14.1-2+deb13u5no fix listed
MediumGHSA-jm78-9fvv-mhgrgitpython@3.1.503.1.58
MediumGHSA-pc3f-x583-g7j2github.com/moby/spdystream@v0.5.00.5.1
MediumPYSEC-2026-3947gitpython@3.1.503.1.51
MediumDEBIAN-CVE-2026-8924curl@8.14.1-2+deb13u5no fix listed
MediumDEBIAN-CVE-2026-66046expat@2.8.3-1~deb13u1no fix listed
MediumDEBIAN-CVE-2024-26461krb5@1.21.3-5+deb13u1no fix listed
MediumDEBIAN-CVE-2019-1010024glibc@2.41-12+deb13u4no fix listed
MediumDEBIAN-CVE-2026-18924curl@8.14.1-2+deb13u5no fix listed
MediumPYSEC-2026-3787gitpython@3.1.503.1.59
MediumDEBIAN-CVE-2026-8927curl@8.14.1-2+deb13u5no fix listed
MediumGHSA-mh2q-q3fh-2475go.opentelemetry.io/otel@v1.36.01.41.0
MediumDEBIAN-CVE-2026-33412vim@2:9.1.1230-2no fix listed
MediumDEBIAN-CVE-2026-39881vim@2:9.1.1230-2no fix listed
MediumGO-2026-4601stdlib@go1.25.51.25.8
MediumDEBIAN-CVE-2024-52005git@1:2.47.3-0+deb13u1no fix listed
MediumGHSA-9rj7-rf2p-w77rgitpython@3.1.503.1.58
MediumGO-2026-4981stdlib@go1.25.51.25.10
MediumPYSEC-2026-3951gitpython@3.1.503.1.55
MediumDEBIAN-CVE-2019-1010025glibc@2.41-12+deb13u4no fix listed
MediumGHSA-7f5h-v6xp-fcq8starlette@0.46.20.49.1
LowGO-2026-4977stdlib@go1.25.51.25.10
LowDEBIAN-CVE-2026-8926curl@8.14.1-2+deb13u5no fix listed
LowDEBIAN-CVE-2026-19445python3.13@3.13.5-2+deb13u5no fix listed

Used by

1 chart
ChartVersionTagContainers
runwhen-localrunwhen-contribVerified publisher0.7.20.12.41

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 10 Oct 2026 · advisories as of 10 Oct 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.