StackRadar

ghcr.io/umami-software/umami:3.1.0 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/umami-software/umami

ghcr.io/umami-software/umami:3.1.0 resolved to e3f80c0625aa, scanned 14 Sept 2026: 179 findings, 0 critical; deployed by 1 chart, among them umami.

Radar Score

2,1030231146

179 findings on digest e3f80c0625aa · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
3.1.0resolves toe3f80c0625aa1 chart7 days ago02311462,103

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

146 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest e3f80c0625aa as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-4c39-4ccg-62r3next@16.2.416.2.11
LowALPINE-CVE-2026-9547curl@8.17.0-r18.22.0-r0
LowGHSA-955p-x3mx-jcvpnext@16.2.416.2.11
LowALPINE-CVE-2026-6276curl@8.17.0-r18.20.0-r0
LowGHSA-4gxm-v5v7-fqc4pnpm@10.33.010.34.2
LowGHSA-f886-m6hf-6m8vbrace-expansion@2.0.22.0.3
LowGHSA-88fw-hqm2-52qchono@4.11.44.12.25
LowALPINE-CVE-2026-9080curl@8.17.0-r18.22.0-r0
LowALPINE-CVE-2026-42767openssl@3.5.6-r03.5.7-r0
LowALPINE-CVE-2026-5545curl@8.17.0-r18.20.0-r0
LowALPINE-CVE-2026-3784curl@8.17.0-r18.19.0-r0
LowALPINE-CVE-2026-9545curl@8.17.0-r18.22.0-r0
LowALPINE-CVE-2025-14819curl@8.17.0-r18.18.0-r0
LowGHSA-38f7-945m-qr2geffect@3.18.43.20.0
LowGHSA-xf4j-xp2r-rqqxhono@4.11.44.12.12
LowGHSA-3qhv-2rgh-x77rpnpm@10.33.010.34.2
LowALPINE-CVE-2026-63074openssl@3.5.6-r03.5.8-r0
LowGHSA-5qjj-4xww-7phcvalibot@1.2.01.4.2
LowALPINE-CVE-2025-14524curl@8.17.0-r18.18.0-r0
LowGHSA-w8wr-v893-vjvptar@7.5.127.5.18
LowALPINE-CVE-2026-34181openssl@3.5.6-r03.5.7-r0
LowGHSA-gqvv-2mrq-wpjvhono@4.11.44.13.5
LowGHSA-wwfh-h76j-fc44hono@4.11.44.12.25
LowGHSA-4633-3j49-mh5qnext@16.2.416.2.11
LowGHSA-2xp9-vwfh-vxw4next@16.2.416.3.3
LowGHSA-p4xf-rf54-rj3xpnpm@10.33.010.34.0
LowGHSA-gj8w-mvpf-x27xpnpm@10.33.010.34.2
LowGHSA-52v5-jr5w-gjxrsigstore@3.1.04.1.1
LowALPINE-CVE-2026-6429curl@8.17.0-r18.20.0-r0
LowGHSA-5wx6-mg75-v57rpnpm@10.33.010.34.2
LowGHSA-gvwx-54wh-qm9jtar@7.5.127.5.17
LowGHSA-w62v-xxxg-mg59hono@4.11.44.12.27
LowGHSA-8j4g-w8fx-2239hono@4.11.44.12.34
LowGHSA-68g3-v927-f742next@16.2.416.2.11
LowGHSA-hg3w-7f8c-63hppnpm@10.33.010.33.4
LowALPINE-CVE-2026-1965curl@8.17.0-r18.19.0-r0
LowGHSA-crvj-82cr-hjcxhono@4.11.44.13.5
LowGHSA-rgj7-g3m4-5g8csharp@0.34.50.35.4
LowALPINE-CVE-2026-7168curl@8.17.0-r18.20.0-r0
LowGHSA-v2v4-37r5-5v8gip-address@10.1.010.1.1
LowGHSA-6wqw-2p9w-4vw4hono@4.11.44.11.7
LowGHSA-wmmm-f939-6g9chono@4.11.44.12.12
LowALPINE-CVE-2026-3783curl@8.17.0-r18.19.0-r0
LowALPINE-CVE-2026-4873curl@8.17.0-r18.20.0-r0
LowGHSA-p6xx-57qc-3wxrhono@4.11.44.12.4
LowGHSA-w332-q679-j88phono@4.11.44.11.7
LowGHSA-26pp-8wgv-hjvmhono@4.11.44.12.12
LowGHSA-3v7f-55p6-f55ppicomatch@4.0.34.0.4
LowGHSA-9vqf-7f2p-gf9vhono@4.11.44.12.16
LowALPINE-CVE-2026-42769openssl@3.5.6-r03.5.7-r0

Used by

1 chart
ChartVersionTagContainers
umamikubernetes-homelab-helm-chartsVerified publisher0.1.03.1.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.