ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1 container image
GitHub Container RegistryScanned 15 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1 resolved to ed07e7ca098d, scanned 15 Sept 2026: 1,133 findings, 3 critical, 2 on KEV; deployed by 1 chart, among them unitycatalog.
Radar Score
1,133 findings on digest ed07e7ca098d · scanned 15 Sept 2026
KEV ×2 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
Findings for digest ed07e7ca098d as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-mp7j-qc5w-4988 | websocket-driver | 0.7.5 |
| Low | DEBIAN-CVE-2026-45664 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u10 |
| Low | GHSA-2v37-7h3g-55p8 | nanoid | 3.3.18 |
| Low | DEBIAN-CVE-2026-3441 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-35387 | openssh | 1:9.2p1-2+deb12u10 |
| Low | DEBIAN-CVE-2026-3184 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2023-34152 | imagemagick | no fix listed |
| Low | DEBIAN-CVE-2026-33899 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u9 |
| Low | GHSA-58qx-3vcg-4xpx | ws | 8.20.1 |
| Low | GHSA-4vpr-x523-8j87 | svgo | 2.8.4 |
| Low | DEBIAN-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | DEBIAN-CVE-2026-7010 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-19487 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-22801 | libpng1.6 | 1.6.39-2+deb12u2 |
| Low | DEBIAN-CVE-2026-52492 | tiff | no fix listed |
| Low | DEBIAN-CVE-2023-50495 | ncurses | no fix listed |
| Low | DEBIAN-CVE-2025-55160 | imagemagick | no fix listed |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 2.3.2 |
| Low | GHSA-qw6h-vgh9-j6wx | express | 4.20.0 |
| Low | GHSA-mh29-5h37-fv8m | js-yaml | 3.14.2 |
| Low | DEBIAN-CVE-2026-89158 | pcre2 | 10.42-1+deb12u1 |
| Low | DEBIAN-CVE-2026-56361 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u12 |
| Low | DEBIAN-CVE-2011-3374 | apt | no fix listed |
| Low | DEBIAN-CVE-2025-27587 | openssl | no fix listed |
| Low | DEBIAN-CVE-2026-24484 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u7 |
| Low | DEBIAN-CVE-2026-55594 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u12 |
| Low | GHSA-7q8q-rj6j-mhjq | axios | 1.18.0 |
| Low | DEBIAN-CVE-2026-82049 | python3.11 | no fix listed |
| Low | DEBIAN-CVE-2025-4373 | glib2.0 | 2.74.6-2+deb12u7 |
| Low | DEBIAN-CVE-2013-4392 | systemd | no fix listed |
| Low | DEBIAN-CVE-2026-30883 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u8 |
| Low | GHSA-h67p-54hq-rp68 | js-yaml | 3.15.0 |
| Low | DEBIAN-CVE-2026-56370 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u12 |
| Low | DEBIAN-CVE-2026-78408 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-61860 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u13 |
| Low | DEBIAN-CVE-2026-61868 | imagemagick | 8:6.9.11.60+dfsg-1.6+deb12u13 |
| Low | DEBIAN-CVE-2026-41989 | libgcrypt20 | 1.10.1-3+deb12u1 |
| Low | DEBIAN-CVE-2026-49271 | libheif | no fix listed |
| Low | DEBIAN-CVE-2025-1377 | elfutils | no fix listed |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 1.1.16 |
| Low | GHSA-f5vj-f2hx-8m93 | webpack-dev-server | 5.2.6 |
| Low | GHSA-mwcw-c2x4-8c55 | nanoid | 3.3.8 |
| Low | GHSA-5c6j-r48x-rmvq | serialize-javascript | 7.0.3 |
| Low | DEBIAN-CVE-2026-49839 | jq | 1.6-2.1+deb12u2 |
| Low | DEBIAN-CVE-2023-45322 | libxml2 | 2.9.14+dfsg-1.3~deb12u2 |
| Low | DEBIAN-CVE-2026-34589 | openexr | no fix listed |
| Low | DEBIAN-CVE-2026-34380 | openexr | no fix listed |
| Low | DEBIAN-CVE-2026-1489 | glib2.0 | 2.74.6-2+deb12u9 |
| Low | DEBIAN-CVE-2026-6019 | python3.11 | no fix listed |
| Low | DEBIAN-CVE-2026-60331 | mariadb | no fix listed |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| unitycatalogunitycatalogVerified publisher | 0.0.2 | 0.2.1-5d668c1 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.