ghcr.io/thm-mni-ii/fbs-qcm-frontend:v2.0.7 container image
GitHub Container RegistryScanned 7 Oct 2026
Deployed by 1 of 18,035 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/thm-mni-ii/fbs-qcm-frontend
ghcr.io/thm-mni-ii/fbs-qcm-frontend:v2.0.7 resolved to d5aa22a0ffe3, scanned 7 Oct 2026: 213 findings, 1 critical, 1 on KEV; deployed by 1 chart, among them feedbacksystem.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
213 distinct on this digest
Findings for digest d5aa22a0ffe3 as scanned on 7 Oct 2026 with syft 1.42.1 for linux/amd64, advisories as of 7 Oct 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | ALPINE-CVE-2026-85091 | zlib | 1.3.2-r1 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
| Low | GO-2026-4986 | stdlib | 1.25.10 |
| Low | GO-2026-4918 | stdlib | 1.25.10 |
| Low | ALPINE-CVE-2026-42764 | openssl | 3.5.7-r0 |
| Low | ALPINE-CVE-2026-63075 | openssl | 3.5.8-r0 |
| Low | GHSA-j5f8-grm9-p9fc | axios | 1.16.0 |
| Low | GO-2024-2599 | stdlib | 1.21.8 |
| Low | GHSA-vfj7-8cjw-p6xm | braces | no fix listed |
| Low | ALPINE-CVE-2026-14456 | openssl | 3.5.8-r0 |
| Low | GHSA-mwp4-54f8-5fhr | ip-address | 10.3.1 |
| Low | ALPINE-CVE-2026-45445 | openssl | 3.5.7-r0 |
| Low | GHSA-hmw2-7cc7-3qxx | form-data | 4.0.6 |
| Low | GO-2025-4009 | stdlib | 1.24.8 |
| Low | GHSA-73wf-gq98-2v4g | browserslist | 4.28.7 |
| Low | GHSA-c83g-rgw3-j3cx | browserslist | 4.28.7 |
| Low | GHSA-rgw5-rvv9-x895 | brace-expansion | 1.1.18 |
| Low | GO-2025-4006 | stdlib | 1.24.8 |
| Low | GHSA-23hp-3jrh-7fpw | tar | 7.5.19 |
| Low | GHSA-8x88-c5mf-7j5w | tar | 7.5.18 |
| Low | GHSA-mh99-v99m-4gvg | brace-expansion | 1.1.17 |
| Low | GHSA-r4q5-vmmm-2653 | follow-redirects | 1.16.0 |
| Low | GHSA-68fv-2mgg-jv7q | source-map-js | 1.2.2 |
| Low | ALPINE-CVE-2026-54874 | openssl | 3.5.8-r0 |
| Low | GO-2026-4870 | stdlib | 1.25.9 |
| Low | GO-2026-4971 | stdlib | 1.25.10 |
| Low | GO-2026-4947 | stdlib | 1.25.9 |
| Low | GHSA-6g55-p6wh-862q | postcss | 8.5.12 |
| Low | GHSA-859w-5945-r5v3 | vite | 5.4.19 |
| Low | GHSA-395f-4hp3-45gv | shell-quote | 1.9.0 |
| Low | GHSA-7r86-cg39-jmmj | minimatch | 3.1.3 |
| Low | GO-2026-5037 | stdlib | 1.25.11 |
| Low | GHSA-52cp-r559-cp3m | js-yaml | 4.3.0 |
| Low | GHSA-4w7w-66w2-5vf9 | vite | 6.4.2 |
| Low | GHSA-fx2h-pf6j-xcff | vite | 6.4.3 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | GHSA-3w6x-2g7m-8v23 | axios | 1.15.2 |
| Low | GO-2026-5038 | stdlib | 1.25.11 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | GHSA-2883-xcg3-v3hh | js-yaml | 4.3.2 |
| Low | ALPINE-CVE-2026-42766 | openssl | 3.5.7-r0 |
| Low | GHSA-93m4-6634-74q7 | vite | 5.4.21 |
| Low | GHSA-ch52-4w7c-c8xp | http-cache-semantics | no fix listed |
| Low | GHSA-r292-9mhp-454m | tar | 7.5.21 |
| Low | GHSA-r28c-9q8g-f849 | postcss | 8.5.18 |
| Low | GHSA-qffp-2rhf-9h96 | tar | 7.5.10 |
| Low | GO-2024-2610 | stdlib | 1.21.8 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| feedbacksystemthm-mni-iiVerified publisher | 0.48.2 | v2.0.7 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.