ghcr.io/stirling-tools/stirling-pdf:2.14.3 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/stirling-tools/stirling-pdf
ghcr.io/stirling-tools/stirling-pdf:2.14.3 resolved to 3b3670fce70b, scanned 14 Sept 2026: 615 findings, 0 critical; deployed by 1 chart, among them stirling-pdf.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest 3b3670fce70b as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-56000 | xorg-server | no fix listed |
| Low | GHSA-6cqp-g7gg-8hr5 | netty-codec-http | 4.2.16.Final |
| Low | UBUNTU-CVE-2026-1502 | python3.12 | 3.12.3-1ubuntu0.15 |
| Low | UBUNTU-CVE-2026-4786 | python3.12 | 3.12.3-1ubuntu0.15 |
| Low | UBUNTU-CVE-2026-12318 | nss | 2:3.98-1ubuntu0.2 |
| Low | UBUNTU-CVE-2026-19672 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2025-22921 | ffmpeg | 7:6.1.1-3ubuntu5+esm3 |
| Low | UBUNTU-CVE-2024-36619 | ffmpeg | 7:6.1.1-3ubuntu5+esm5 |
| Low | UBUNTU-CVE-2026-63074 | openssl | 3.0.13-0ubuntu3.15 |
| Low | UBUNTU-CVE-2026-18295 | gstreamer1.0 | no fix listed |
| Low | GHSA-m4cv-j2px-7723 | netty-codec-http | 4.2.13.Final |
| Low | GHSA-7c26-995w-6f47 | parser | 1.30.2 |
| Low | GHSA-f4v5-65jj-pcr2 | jetty-server | 12.1.10 |
| Low | GHSA-jrmc-qg6p-94fp | parser | 1.30.2 |
| Low | UBUNTU-CVE-2024-52616 | avahi | no fix listed |
| Low | UBUNTU-CVE-2025-14831 | gnutls28 | 3.8.3-1.1ubuntu3.5+Fips1.1 |
| Low | UBUNTU-CVE-2026-6238 | glibc | 2.39-0ubuntu8.8 |
| Low | UBUNTU-CVE-2026-18299 | gstreamer1.0 | no fix listed |
| Low | GHSA-rcqc-6cw3-h962 | jackson-databind | 3.1.4 |
| Low | GHSA-g6cj-pr64-35w5 | cryptography | 50.0.0 |
| Low | UBUNTU-CVE-2026-70632 | ffmpeg | 7:6.1.1-3ubuntu5+esm12 |
| Low | GHSA-5gvw-p9qm-jgwh | jackson-databind | 3.1.5 |
| Low | UBUNTU-CVE-2026-8328 | python3.12 | 3.12.3-1ubuntu0.15 |
| Low | GHSA-jhq6-gfmj-v8fx | logback-core | 1.5.34 |
| Low | UBUNTU-CVE-2026-5435 | glibc | 2.39-0ubuntu8.8 |
| Low | UBUNTU-CVE-2026-65703 | ffmpeg | 7:6.1.1-3ubuntu5+esm13 |
| Low | GHSA-c2gf-v879-257j | netty-codec-http2 | 4.2.15.Final |
| Low | UBUNTU-CVE-2025-52496 | mbedtls | 2.28.8-1ubuntu0.1~esm1 |
| Low | GHSA-3pjj-qpw6-5fcm | spring-security-saml2-service-provider | 7.0.6 |
| Low | GHSA-fj7v-r99m-22gq | pillow | 12.3.0 |
| Low | UBUNTU-CVE-2025-2173 | zvbi | 0.2.42-2ubuntu0.24.04.1~esm1 |
| Low | UBUNTU-CVE-2026-7017 | perl | 5.38.2-3.2ubuntu0.4 |
| Low | UBUNTU-CVE-2026-15806 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-67216 | cjson | no fix listed |
| Low | UBUNTU-CVE-2026-16118 | glib2.0 | no fix listed |
| Low | GHSA-3pjw-73gf-8qr5 | jackson-databind | 3.1.4 |
| Low | UBUNTU-CVE-2026-4426 | libarchive | 3.7.2-2ubuntu0.7 |
| Low | UBUNTU-CVE-2026-76642 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2024-52615 | avahi | no fix listed |
| Low | UBUNTU-CVE-2025-1352 | elfutils | no fix listed |
| Low | UBUNTU-CVE-2026-11822 | sqlite3 | 3.45.1-1ubuntu2.6 |
| Low | UBUNTU-CVE-2026-11824 | sqlite3 | 3.45.1-1ubuntu2.6 |
| Low | GHSA-xmv7-r254-6q78 | netty-resolver-dns | 4.2.15.Final |
| Low | UBUNTU-CVE-2026-13858 | ffmpeg | no fix listed |
| Low | UBUNTU-CVE-2025-12781 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2025-15366 | python3.12 | no fix listed |
| Low | UBUNTU-CVE-2026-50259 | xorg-server | no fix listed |
| Low | UBUNTU-CVE-2026-25835 | mbedtls | no fix listed |
| Low | UBUNTU-CVE-2026-6429 | curl | 8.5.0-2ubuntu10.9 |
| Low | GHSA-2q7c-5gjm-7q23 | spring-security-saml2-service-provider | 7.0.6 |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| stirling-pdfrubxkubeVerified publisher | 0.1.2 | 2.14.3 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.