ghcr.io/smarter-project/image-detector:v2.5.3 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/smarter-project/image-detector
ghcr.io/smarter-project/image-detector:v2.5.3 resolved to 1dcca70c6446, scanned 14 Sept 2026: 1,464 findings, 12 critical, 5 on KEV; deployed by 1 chart, among them smarter-demo.
Radar Score
1,464 findings on digest 1dcca70c6446 · scanned 14 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
Findings for digest 1dcca70c6446 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2023-38546 | curl | 7.68.0-1ubuntu2.20 |
| Low | UBUNTU-CVE-2018-13304 | gst-libav1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-44905 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2023-3316 | tiff | 4.1.0+git191117-2ubuntu0.20.04.9 |
| Low | UBUNTU-CVE-2022-26061 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-6100 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2024-9287 | python3.8 | 3.8.10-0ubuntu1~20.04.16 |
| Low | UBUNTU-CVE-2025-32914 | libsoup2.4 | 2.70.0-1ubuntu0.3 |
| Low | UBUNTU-CVE-2017-7475 | cairo | no fix listed |
| Low | UBUNTU-CVE-2020-21595 | libde265 | 1.0.4-1ubuntu0.1 |
| Low | UBUNTU-CVE-2020-21601 | libde265 | 1.0.4-1ubuntu0.1 |
| Low | UBUNTU-CVE-2020-21606 | libde265 | 1.0.4-1ubuntu0.1 |
| Low | UBUNTU-CVE-2025-14523 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2019-9720 | gst-libav1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-44904 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-41142 | openexr | no fix listed |
| Low | UBUNTU-CVE-2026-9076 | openssl | 1.1.1f-1ubuntu2.24+esm4 |
| Low | UBUNTU-CVE-2023-28484 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.6 |
| Low | UBUNTU-CVE-2026-82209 | curl | no fix listed |
| Low | UBUNTU-CVE-2021-20234 | zeromq3 | 4.3.2-2ubuntu1.20.04.1~esm2 |
| Low | UBUNTU-CVE-2024-10524 | wget | no fix listed |
| Low | UBUNTU-CVE-2021-45942 | openexr | no fix listed |
| Low | UBUNTU-CVE-2022-25972 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2022-3437 | heimdal | 7.7.0+dfsg-1ubuntu1.3 |
| Low | UBUNTU-CVE-2025-58364 | cups | 2.3.1-9ubuntu1.9+esm1 |
| Low | UBUNTU-CVE-2021-40528 | libgcrypt20 | 1.8.5-5ubuntu1.fips.1.1 |
| Low | UBUNTU-CVE-2018-15671 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2023-2283 | libssh | 0.9.3-2ubuntu2.3 |
| Low | UBUNTU-CVE-2026-4224 | python3.8 | 3.8.10-0ubuntu1~20.04.18+esm7 |
| Low | UBUNTU-CVE-2020-21603 | libde265 | 1.0.4-1ubuntu0.1 |
| Low | UBUNTU-CVE-2020-21604 | libde265 | 1.0.4-1ubuntu0.1 |
| Low | PYSEC-2026-2098 | aiohttp | 3.13.4 |
| Low | UBUNTU-CVE-2025-2784 | libsoup2.4 | 2.70.0-1ubuntu0.2 |
| Low | UBUNTU-CVE-2024-44331 | gst-rtsp-server1.0 | no fix listed |
| Low | UBUNTU-CVE-2025-66471 | python-pip | no fix listed |
| Low | UBUNTU-CVE-2022-25942 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-44432 | python-pip | no fix listed |
| Low | UBUNTU-CVE-2020-22051 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm2 |
| Low | UBUNTU-CVE-2020-22039 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm2 |
| Low | UBUNTU-CVE-2020-22043 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm2 |
| Low | GHSA-p998-jp59-783m | aiohttp | 3.13.4 |
| Low | UBUNTU-CVE-2026-7210 | python3.8 | no fix listed |
| Low | UBUNTU-CVE-2020-22024 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm2 |
| Low | UBUNTU-CVE-2020-22040 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm2 |
| Low | GHSA-8qpw-xqxj-h4r2 | aiohttp | 3.9.2 |
| Low | UBUNTU-CVE-2026-12087 | perl | 5.30.0-9ubuntu0.5+esm3 |
| Low | UBUNTU-CVE-2023-4785 | grpc | no fix listed |
| Low | UBUNTU-CVE-2023-38858 | faad2 | 2.9.1-1ubuntu0.1 |
| Low | UBUNTU-CVE-2023-47038 | perl | 5.30.0-9ubuntu0.5 |
| Low | UBUNTU-CVE-2022-3599 | tiff | 4.1.0+git191117-2ubuntu0.20.04.6 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| smarter-demosmarterOfficialVerified publisher | 0.1.5 | v2.5.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.