ghcr.io/smarter-project/image-detector:v2.5.3 container image
GitHub Container RegistryScanned 15 Sept 2026
Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/smarter-project/image-detector
ghcr.io/smarter-project/image-detector:v2.5.3 resolved to 1dcca70c6446, scanned 15 Sept 2026: 1,475 findings, 11 critical, 5 on KEV; deployed by 1 chart, among them smarter-demo.
Radar Score
1,475 findings on digest 1dcca70c6446 · scanned 15 Sept 2026
KEV ×5 confirmed exploitedRadar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
Findings for digest 1dcca70c6446 as scanned on 15 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 15 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-30999 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm17 |
| Low | UBUNTU-CVE-2026-33630 | c-ares | no fix listed |
| Low | UBUNTU-CVE-2026-9538 | perl | no fix listed |
| Low | UBUNTU-CVE-2024-52531 | libsoup2.4 | 2.70.0-1ubuntu0.1 |
| Low | UBUNTU-CVE-2021-20303 | openexr | no fix listed |
| Low | UBUNTU-CVE-2025-6395 | gnutls28 | 3.6.13-2ubuntu1.12+esm1 |
| Low | PYSEC-2026-2095 | aiohttp | 3.13.4 |
| Low | UBUNTU-CVE-2019-1010204 | binutils | no fix listed |
| Low | UBUNTU-CVE-2026-56208 | aom | no fix listed |
| Low | UBUNTU-CVE-2026-0990 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm4 |
| Low | UBUNTU-CVE-2023-27102 | libde265 | 1.0.4-1ubuntu0.4 |
| Low | UBUNTU-CVE-2025-24528 | krb5 | 1.17-6ubuntu4.9 |
| Low | GHSA-4fvr-rgm6-gqmc | aiohttp | 3.14.1 |
| Low | UBUNTU-CVE-2022-1122 | openjpeg2 | 2.3.1-1ubuntu4.20.04.3 |
| Low | UBUNTU-CVE-2024-6923 | python3.8 | 3.8.10-0ubuntu1~20.04.12 |
| Low | UBUNTU-CVE-2025-24928 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.9 |
| Low | UBUNTU-CVE-2021-26260 | openexr | 2.3.0-6ubuntu0.5+esm1 |
| Low | UBUNTU-CVE-2026-58049 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm17 |
| Low | UBUNTU-CVE-2026-15711 | libsoup2.4 | no fix listed |
| Low | UBUNTU-CVE-2026-85091 | zlib | no fix listed |
| Low | UBUNTU-CVE-2025-32052 | libsoup2.4 | 2.70.0-1ubuntu0.2 |
| Low | UBUNTU-CVE-2025-32053 | libsoup2.4 | 2.70.0-1ubuntu0.2 |
| Low | UBUNTU-CVE-2026-42497 | perl | no fix listed |
| Low | UBUNTU-CVE-2026-41992 | gzip | no fix listed |
| Low | UBUNTU-CVE-2023-7008 | systemd | no fix listed |
| Low | UBUNTU-CVE-2023-1428 | grpc | no fix listed |
| Low | UBUNTU-CVE-2023-32643 | glib2.0 | 2.64.6-1~ubuntu20.04.6 |
| Low | UBUNTU-CVE-2025-46421 | libsoup2.4 | 2.70.0-1ubuntu0.3 |
| Low | UBUNTU-CVE-2022-33065 | libsndfile | 1.0.28-7ubuntu0.2 |
| Low | UBUNTU-CVE-2026-56211 | aom | no fix listed |
| Low | UBUNTU-CVE-2021-41495 | numpy | 1:1.17.4-5ubuntu3.1 |
| Low | UBUNTU-CVE-2019-20633 | patch | no fix listed |
| Low | UBUNTU-CVE-2025-7425 | libxml2 | 2.9.10+dfsg-5ubuntu0.20.04.10+esm3 |
| Low | UBUNTU-CVE-2026-26200 | hdf5 | no fix listed |
| Low | UBUNTU-CVE-2026-30998 | ffmpeg | no fix listed |
| Low | UBUNTU-CVE-2024-32230 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm6 |
| Low | UBUNTU-CVE-2026-12912 | tiff | no fix listed |
| Low | GHSA-43fp-rhv2-5gv8 | certifi | 2022.12.07 |
| Low | UBUNTU-CVE-2021-3605 | openexr | 2.3.0-6ubuntu0.5+esm1 |
| Low | UBUNTU-CVE-2026-8932 | curl | 7.68.0-1ubuntu2.25+esm7 |
| Low | UBUNTU-CVE-2024-12133 | libtasn1-6 | 4.16.0-2ubuntu0.1 |
| Low | UBUNTU-CVE-2026-53705 | gst-plugins-good1.0 | no fix listed |
| Low | UBUNTU-CVE-2026-8286 | curl | 7.68.0-1ubuntu2.25+esm4 |
| Low | GHSA-wf93-45jw-7689 | pip | 26.1.2 |
| Low | UBUNTU-CVE-2026-8643 | python-pip | no fix listed |
| Low | UBUNTU-CVE-2024-33602 | glibc | 2.31-0ubuntu9.16 |
| Low | UBUNTU-CVE-2025-63757 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm12 |
| Low | UBUNTU-CVE-2025-9951 | ffmpeg | 7:4.2.7-0ubuntu0.1+esm11 |
| Low | UBUNTU-CVE-2026-4046 | glibc | no fix listed |
| Low | UBUNTU-CVE-2026-58014 | glib2.0 | no fix listed |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| smarter-demosmarterOfficialVerified publisher | 0.1.5 | v2.5.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.