ghcr.io/smarter-project/image-detector:v2.5.3 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/smarter-project/image-detector
ghcr.io/smarter-project/image-detector:v2.5.3 resolved to 1dcca70c6446, scanned 14 Sept 2026: 1,464 findings, 12 critical, 5 on KEV; deployed by 1 chart, among them smarter-demo.
Radar Score
1,464 findings on digest 1dcca70c6446 · scanned 14 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 1dcca70c6446 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2024-40897 | orc | 1:0.4.31-1ubuntu0.1 |
| Low | UBUNTU-CVE-2026-5545 | curl | 7.68.0-1ubuntu2.25+esm5 |
| Low | UBUNTU-CVE-2026-48962 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-3784 | curl | 7.68.0-1ubuntu2.25+esm3 |
| Low | UBUNTU-CVE-2026-18297 | gstreamer1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-18298 | gstreamer1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-68471 | avahi | 0.7-4ubuntu7.3+esm1 |
| Low | UBUNTU-CVE-2026-59982 | openexr | no fix listed |
| Low | PYSEC-2026-237 | aiohttp | 3.14.1 |
| Low | UBUNTU-CVE-2021-26945 | openexr | no fix listed |
| Low | UBUNTU-CVE-2023-28322 | curl | 7.68.0-1ubuntu2.19 |
| Low | UBUNTU-CVE-2021-45829 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-34978 | cups | no fix listed |
| Low | UBUNTU-CVE-2021-45832 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-4519 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2026-56210 | aom | no fix listed |
| Low | UBUNTU-CVE-2025-15282 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm5 |
| Low | UBUNTU-CVE-2026-18296 | gstreamer1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-42015 | gnutls28 | 3.6.13-2ubuntu1.12+esm3 |
| Low | UBUNTU-CVE-2025-11468 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm5 |
| Low | UBUNTU-CVE-2024-28834 | gnutls28 | 3.6.13-2ubuntu1.11 |
| Low | GHSA-mfx4-hv73-q22v | aiohttp | 3.14.2 |
| Low | GHSA-cq5v-8q36-5273 | aiohttp | 3.14.3 |
| Low | UBUNTU-CVE-2020-25697 | libx11 | no fix listed |
| Low | UBUNTU-CVE-2024-34397 | glib2.0 | 2.64.6-1~ubuntu20.04.7 |
| Low | UBUNTU-CVE-2025-68468 | avahi | 0.7-4ubuntu7.3+esm1 |
| Low | UBUNTU-CVE-2026-52718 | gst-plugins-bad1.0 | no fix listed |
| Low | UBUNTU-CVE-2023-51794 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm5 |
| Low | UBUNTU-CVE-2026-42046 | libcaca | no fix listed |
| Low | UBUNTU-CVE-2022-48065 | binutils | 2.34-6ubuntu1.9 |
| Low | UBUNTU-CVE-2023-43785 | libx11 | 2:1.6.9-2ubuntu1.6 |
| Low | UBUNTU-CVE-2024-10573 | mpg123 | 1.25.13-1ubuntu0.2 |
| Low | UBUNTU-CVE-2024-32612 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-32616 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-1502 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2026-4786 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2025-40909 | perl | no fix listed |
| Low | GHSA-2vrm-gr82-f7m5 | aiohttp | 3.13.4 |
| Low | UBUNTU-CVE-2026-19672 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2022-48064 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-48961 | perl | no fix listed |
| Low | UBUNTU-CVE-2025-32907 | libsoup2.4 | 2.70.0-1ubuntu0.5+esm1 |
| Low | UBUNTU-CVE-2023-31130 | c-ares | 1.15.0-1ubuntu0.3 |
| Low | UBUNTU-CVE-2025-5283 | libvpx | 1.8.2-1ubuntu0.4 |
| Low | UBUNTU-CVE-2026-0865 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm5 |
| Low | UBUNTU-CVE-2026-18295 | gstreamer1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-61915 | cups | 2.3.1-9ubuntu1.9+esm3 |
| Low | UBUNTU-CVE-2024-32613 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2024-32620 | hdf5 | no fix listed |
| Low | GHSA-mq44-7p77-q5h7 | aiohttp | 3.14.2 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| smarter-demosmarterOfficialVerified publisher | 0.1.5 | v2.5.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.