ghcr.io/smarter-project/image-detector:v2.5.3 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/smarter-project/image-detector
ghcr.io/smarter-project/image-detector:v2.5.3 resolved to 1dcca70c6446, scanned 14 Sept 2026: 1,464 findings, 12 critical, 5 on KEV; deployed by 1 chart, among them smarter-demo.
Radar Score
1,464 findings on digest 1dcca70c6446 · scanned 14 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 1dcca70c6446 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2024-52616 | avahi | no fix listed |
| Low | UBUNTU-CVE-2025-14524 | curl | no fix listed |
| Low | GHSA-hg6j-4rv6-33pg | aiohttp | 3.14.0 |
| Low | UBUNTU-CVE-2025-14831 | gnutls28 | 3.6.13-2ubuntu1.12+esm2 |
| Low | UBUNTU-CVE-2025-61144 | tiff | 4.1.0+git191117-2ubuntu0.20.04.14+esm3 |
| Low | UBUNTU-CVE-2026-6238 | glibc | no fix listed |
| Low | UBUNTU-CVE-2026-18299 | gstreamer1.0 | no fix listed |
| Low | UBUNTU-CVE-2023-38857 | faad2 | 2.9.1-1ubuntu0.1 |
| Low | GHSA-34jh-p97f-mpxf | urllib3 | 1.26.19 |
| Low | UBUNTU-CVE-2024-37891 | python-pip | 20.0.2-5ubuntu1.11 |
| Low | UBUNTU-CVE-2024-32618 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-32619 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-6324 | libsoup2.4 | no fix listed |
| Low | GHSA-4xh5-x5gv-qwph | pip | 25.3 |
| Low | UBUNTU-CVE-2025-8869 | python-pip | no fix listed |
| Low | GHSA-mwh4-6h8g-pg8w | aiohttp | 3.13.4 |
| Low | UBUNTU-CVE-2024-29165 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-85197 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2026-53532 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-3731 | libssh | 0.9.3-2ubuntu2.5+esm4 |
| Low | UBUNTU-CVE-2025-9901 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2026-8328 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2025-0840 | binutils | 2.34-6ubuntu1.10 |
| Low | UBUNTU-CVE-2025-65018 | libpng1.6 | 1.6.37-2ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2026-5435 | glibc | no fix listed |
| Low | UBUNTU-CVE-2026-65703 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm16 |
| Low | GHSA-h35f-9h28-mq5c | setuptools | 83.0.0 |
| Low | UBUNTU-CVE-2026-59890 | setuptools | no fix listed |
| Low | UBUNTU-CVE-2026-0672 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm5 |
| Low | UBUNTU-CVE-2026-34734 | hdf5 | no fix listed |
| Low | GHSA-mqqc-3gqh-h2x8 | aiohttp | 3.13.3 |
| Low | UBUNTU-CVE-2024-29158 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29160 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29162 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-29163 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-59981 | openexr | no fix listed |
| Low | UBUNTU-CVE-2019-2128 | vo-amrwbenc | no fix listed |
| Low | UBUNTU-CVE-2025-1181 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2025-2173 | zvbi | 0.2.35-17ubuntu0.1~esm1 |
| Low | UBUNTU-CVE-2026-59189 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-7017 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-15806 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2026-16118 | glib2.0 | no fix listed |
| Low | UBUNTU-CVE-2026-53703 | gst-plugins-ugly1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-53704 | gst-plugins-ugly1.0 | no fix listed |
| Low | UBUNTU-CVE-2023-30774 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
| Low | UBUNTU-CVE-2025-0395 | glibc | 2.31-0ubuntu9.17 |
| Low | UBUNTU-CVE-2025-1176 | binutils | 2.34-6ubuntu1.11 |
| Low | UBUNTU-CVE-2023-4039 | gcc-9 | no fix listed |
| Low | UBUNTU-CVE-2023-4039 | gcc-10 | 10.5.0-1ubuntu1~20.04.1+esm1 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| smarter-demosmarterOfficialVerified publisher | 0.1.5 | v2.5.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.