ghcr.io/tjm/vault-gcp-secrets:v1.19.5 container image
GitHub Container RegistryScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/tjm/vault-gcp-secrets
ghcr.io/tjm/vault-gcp-secrets:v1.19.5 resolved to 9f157fe035f1, scanned 14 Sept 2026: 217 findings, 0 critical; deployed by 1 chart, among them vault-gcp-secrets.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
217 distinct on this digest
Findings for digest 9f157fe035f1 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-31789 | openssl | 3.3.7-r0 |
| Low | ALPINE-CVE-2025-69419 | openssl | 3.3.6-r0 |
| Low | ALPINE-CVE-2026-22184 | zlib | 1.3.2-r0 |
| Low | GHSA-m2w4-8ggf-rj47 | github.com/ | no fix listed |
| Low | GHSA-q4h4-gmj2-qvw2 | golang.org/ | 0.52.0 |
| Low | GHSA-w879-237q-wc7r | golang.org/ | 0.52.0 |
| Low | GHSA-rr8j-7w34-xp5j | github.com/ | 1.18.0 |
| Low | GHSA-86c6-3g63-5w64 | github.com/ | 1.13.0 |
| Low | GHSA-6h4p-m86h-hhgh | github.com/ | 1.20.0 |
| Low | GHSA-35c7-w35f-xwgh | k8s.io/ | 1.21.0 |
| Low | GHSA-7j59-v9qr-6fq9 | github.com/ | 1.5.5 |
| Low | GHSA-72gw-fmmr-c4r4 | github.com/ | no fix listed |
| Low | GHSA-4x4m-3c2p-qppc | k8s.io/ | 1.31.12 |
| Low | ALPINE-CVE-2025-15468 | openssl | 3.3.6-r0 |
| Low | GHSA-pjcq-xvwq-hhpj | github.com/ | 0.1.1 |
| Low | GHSA-3wgm-2gw2-vh5m | k8s.io/ | no fix listed |
| Low | GHSA-74j8-88mm-7496 | k8s.io/ | no fix listed |
| Low | GHSA-7rx2-769v-hrwf | github.com/ | 1.20.2 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | GHSA-6239-28c2-9mrm | github.com/ | 1.6.6 |
| Low | GHSA-pxq6-2prw-chj9 | github.com/ | no fix listed |
| Low | GHSA-9mj6-hxhv-w67j | github.com/ | 1.7.0 |
| Low | GHSA-hfvc-g4fc-pqhx | go.opentelemetry.io/ | 1.43.0 |
| Low | GHSA-qv3p-fmv3-9hww | github.com/ | 1.20.1 |
| Low | GHSA-q9hv-hpm4-hj6x | github.com/ | 1.6.3 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | GHSA-fw7p-63qq-7hpr | filippo.io/ | 1.1.1 |
| Low | GHSA-9v3w-w2jh-4hff | github.com/ | 1.13.5 |
| Low | GHSA-hwc3-3qh6-r4gg | github.com/ | 1.11.9 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GHSA-jgfp-53c3-624w | k8s.io/ | 1.29.14 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r11 |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.3.6-r0 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-vvgc-356p-c3xw | golang.org/ | 0.38.0 |
| Low | GHSA-j2rp-gmqv-frhv | github.com/ | 1.16.0 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.3.6-r0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | GHSA-r6j8-c6r2-37rr | k8s.io/ | 1.32.10 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | GHSA-82m2-cv7p-4m75 | k8s.io/ | 1.27.16 |
| Low | ALPINE-CVE-2026-4878 | libcap | 2.78-r0 |
| Low | GHSA-6c5r-4wfc-3mcx | github.com/ | 1.20.1 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | GHSA-cp6g-7hqx-qxhp | go.mongodb.org/ | 1.17.7 |
| Low | GHSA-xmrv-pmrh-hhx2 | github.com/ | 1.97.3 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| vault-gcp-secretsvault-gcp-secrets | 1.19.5 | v1.19.5 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.