ghcr.io/smarter-project/image-detector:v2.5.3 container image
GitHub Container RegistryScanned 15 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/smarter-project/image-detector
ghcr.io/smarter-project/image-detector:v2.5.3 resolved to 1dcca70c6446, scanned 15 Sept 2026: 1,475 findings, 11 critical, 5 on KEV; deployed by 1 chart, among them smarter-demo.
Radar Score
1,475 findings on digest 1dcca70c6446 · scanned 15 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 1dcca70c6446 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-3632 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2026-27456 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2026-18508 | tar | no fix listed |
| Low | UBUNTU-CVE-2025-8277 | libssh | 0.9.3-2ubuntu2.5+esm3 |
| Low | UBUNTU-CVE-2026-14935 | gst-plugins-bad1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-81893 | gdk-pixbuf | no fix listed |
| Low | UBUNTU-CVE-2026-39316 | cups | no fix listed |
| Low | UBUNTU-CVE-2026-0992 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm4 |
| Low | UBUNTU-CVE-2026-45186 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-89160 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-3634 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2025-2915 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-2924 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2022-3219 | gnupg2 | no fix listed |
| Low | UBUNTU-CVE-2026-87876 | cups | no fix listed |
| Low | UBUNTU-CVE-2026-32776 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-88914 | gst-plugins-good1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-3198 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2026-12892 | gst-plugins-bad1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-39314 | cups | no fix listed |
| Low | UBUNTU-CVE-2025-2912 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-2914 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-2923 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-41080 | expat | no fix listed |
| Low | UBUNTU-CVE-2026-71212 | ffmpeg | no fix listed |
| Low | UBUNTU-CVE-2025-11839 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2025-11840 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2025-6818 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-2926 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-12547 | libsoup2.4 | no fix listed |
| Low | GHSA-px8h-6qxv-m22q | werkzeug | 2.2.3 |
| Low | UBUNTU-CVE-2025-2913 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-4878 | libssh | 0.9.3-2ubuntu2.5+esm1 |
| Low | UBUNTU-CVE-2025-6857 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-11495 | binutils | 2.34-6ubuntu1.11+esm2 |
| Low | UBUNTU-CVE-2023-51792 | libde265 | 1.0.4-1ubuntu0.4+esm1 |
| Low | UBUNTU-CVE-2025-8225 | binutils | 2.34-6ubuntu1.11+esm1 |
| Low | UBUNTU-CVE-2025-7067 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-7069 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-6816 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-11413 | binutils | 2.34-6ubuntu1.11+esm2 |
| Low | UBUNTU-CVE-2024-31047 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-6750 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-11494 | binutils | 2.34-6ubuntu1.11+esm2 |
| Low | UBUNTU-CVE-2025-69418 | openssl | 1.1.1f-1ubuntu2.24+esm2 |
| Low | UBUNTU-CVE-2025-6856 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2025-1795 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm1 |
| Low | UBUNTU-CVE-2025-8732 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm4 |
| Low | UBUNTU-CVE-2023-47466 | taglib | no fix listed |
| Low | UBUNTU-CVE-2025-6858 | hdf5 | no fix listed |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| smarter-demosmarterOfficialVerified publisher | 0.1.5 | v2.5.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.