StackRadar

ghcr.io/star-whale/server:0.6.15 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/star-whale/server

ghcr.io/star-whale/server:0.6.15 resolved to 8368359c8dd0, scanned 14 Sept 2026: 826 findings, 17 critical, 3 on KEV; deployed by 1 chart, among them starwhale.

Radar Score

13,4861739229540

826 findings on digest 8368359c8dd0 · scanned 14 Sept 2026

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
0.6.15resolves to8368359c8dd01 chart8 days ago173922954013,486

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

High findings

39 distinct on this digest

High: findings whose contribution to the Radar Score is 40–69. Show every band

Findings for digest 8368359c8dd0 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
HighGHSA-fp5r-v3w9-4333log4j@1.2.17no fix listed
HighUBUNTU-CVE-2022-0778openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.12
HighGHSA-4wrc-f8pq-fpqpspring-web@5.3.246.0.0
HighGHSA-wmwf-9ccg-fff5tomcat-embed-core@9.0.709.0.109
HighGHSA-h3gc-qfqq-6h8ftomcat-embed-core@9.0.709.0.106
HighGHSA-4w82-r329-3q67jackson-databind@2.4.02.6.7.4
HighUBUNTU-CVE-2023-0286openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.17
HighGHSA-g5vr-rgqm-vf78spring-webmvc@5.3.24no fix listed
HighGHSA-g5vr-rgqm-vf78spring-webflux@5.3.24no fix listed
HighUBUNTU-CVE-2021-23840openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.7.2
HighUBUNTU-CVE-2023-2650openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.19
HighGHSA-hfrx-6qgj-fp6ctomcat-embed-core@9.0.709.0.71
HighUBUNTU-CVE-2021-3712openssl@1.1.1f-1ubuntu2.16no fix listed
HighGHSA-cggj-fvv3-cqwvjackson-databind@2.4.02.6.7.5
HighGHSA-q93h-jc49-78ggjackson-databind@2.4.02.7.9.7
HighGHSA-p43x-xfjf-5jhrjackson-databind@2.4.02.7.9.7
HighUBUNTU-CVE-2022-37434zlib@1:1.2.11.dfsg-2ubuntu1.31:1.2.11.dfsg-2ubuntu1.5
HighGHSA-qppj-fm5r-hxr3KEVtomcat-embed-core@9.0.709.0.81
HighUBUNTU-CVE-2021-3449openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.fips.7
HighGHSA-645p-88qh-w398jackson-databind@2.4.02.6.7.3
HighGHSA-9gph-22xh-8x98jackson-databind@2.4.02.6.7.5
HighUBUNTU-CVE-2024-2511openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.23
HighUBUNTU-CVE-2024-3596krb5@1.17-6ubuntu4.11.17-6ubuntu4.8
HighGHSA-h822-r4r5-v8jgjackson-databind@2.4.02.6.7.3
HighGHSA-c8hm-7hpq-7jhgjackson-databind@2.4.02.6.7.3
HighGHSA-7w75-32cg-r6g2tomcat-embed-core@9.0.709.0.86
HighUBUNTU-CVE-2022-40303libxml2@2.9.10+dfsg-5ubuntu0.20.04.42.9.10+dfsg-5ubuntu0.20.04.5
HighGHSA-mph4-vhrx-mv67jackson-databind@2.4.02.6.7.3
HighGHSA-5ww9-j83m-q7qxjackson-databind@2.4.02.6.7.3
HighGHSA-4gq5-ch57-c2mgjackson-databind@2.4.02.7.9.5
HighUBUNTU-CVE-2022-35737sqlite3@3.31.1-4ubuntu0.43.31.1-4ubuntu0.5
HighGHSA-vfww-5hm6-hx2jtomcat-embed-core@9.0.709.0.109
HighUBUNTU-CVE-2022-4450openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.17
HighGHSA-gww7-p5w4-wrfvjackson-databind@2.4.02.6.7.4
HighGHSA-h592-38cm-4ggpjackson-databind@2.4.02.6.7.3
HighGHSA-6fpp-rgj9-8rwcjackson-databind@2.4.02.7.9.6
HighGHSA-27hp-xhwr-wr2mtomcat-embed-core@9.0.709.0.98
HighGHSA-cqqj-4p63-rrmmnetty@3.10.6.Finalno fix listed
HighGHSA-5r5r-6hpj-8gg9jackson-databind@2.4.02.9.10.8

Used by

1 chart
ChartVersionTagContainers
starwhalestarwhaleVerified publisher0.6.150.6.151

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.