StackRadar

ghcr.io/umami-software/umami:3.1.0 container image

GitHub Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.GitHub Container Registry all tags of ghcr.io/umami-software/umami

ghcr.io/umami-software/umami:3.1.0 resolved to e3f80c0625aa, scanned 14 Sept 2026: 179 findings, 0 critical; deployed by 1 chart, among them umami.

Radar Score

2,1030231146

179 findings on digest e3f80c0625aa · scanned 14 Sept 2026

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
3.1.0resolves toe3f80c0625aa1 chart7 days ago02311462,103

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

179 distinct on this digest

Findings for digest e3f80c0625aa as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-5qjj-4xww-7phcvalibot@1.2.01.4.2
LowALPINE-CVE-2025-14524curl@8.17.0-r18.18.0-r0
LowGHSA-w8wr-v893-vjvptar@7.5.127.5.18
LowALPINE-CVE-2026-34181openssl@3.5.6-r03.5.7-r0
LowGHSA-gqvv-2mrq-wpjvhono@4.11.44.13.5
LowGHSA-wwfh-h76j-fc44hono@4.11.44.12.25
LowGHSA-4633-3j49-mh5qnext@16.2.416.2.11
LowGHSA-2xp9-vwfh-vxw4next@16.2.416.3.3
LowGHSA-p4xf-rf54-rj3xpnpm@10.33.010.34.0
LowGHSA-gj8w-mvpf-x27xpnpm@10.33.010.34.2
LowGHSA-52v5-jr5w-gjxrsigstore@3.1.04.1.1
LowALPINE-CVE-2026-6429curl@8.17.0-r18.20.0-r0
LowGHSA-5wx6-mg75-v57rpnpm@10.33.010.34.2
LowGHSA-gvwx-54wh-qm9jtar@7.5.127.5.17
LowGHSA-w62v-xxxg-mg59hono@4.11.44.12.27
LowGHSA-8j4g-w8fx-2239hono@4.11.44.12.34
LowGHSA-68g3-v927-f742next@16.2.416.2.11
LowGHSA-hg3w-7f8c-63hppnpm@10.33.010.33.4
LowALPINE-CVE-2026-1965curl@8.17.0-r18.19.0-r0
LowGHSA-crvj-82cr-hjcxhono@4.11.44.13.5
LowGHSA-rgj7-g3m4-5g8csharp@0.34.50.35.4
LowALPINE-CVE-2026-7168curl@8.17.0-r18.20.0-r0
LowGHSA-v2v4-37r5-5v8gip-address@10.1.010.1.1
LowGHSA-6wqw-2p9w-4vw4hono@4.11.44.11.7
LowGHSA-wmmm-f939-6g9chono@4.11.44.12.12
LowALPINE-CVE-2026-3783curl@8.17.0-r18.19.0-r0
LowALPINE-CVE-2026-4873curl@8.17.0-r18.20.0-r0
LowGHSA-p6xx-57qc-3wxrhono@4.11.44.12.4
LowGHSA-w332-q679-j88phono@4.11.44.11.7
LowGHSA-26pp-8wgv-hjvmhono@4.11.44.12.12
LowGHSA-3v7f-55p6-f55ppicomatch@4.0.34.0.4
LowGHSA-9vqf-7f2p-gf9vhono@4.11.44.12.16
LowALPINE-CVE-2026-42769openssl@3.5.6-r03.5.7-r0
LowGHSA-g6gw-c38x-mqfchono@4.11.44.13.5
LowGHSA-q6j5-fjx5-2mc3pnpm@10.33.010.34.1
LowGHSA-92pp-h63x-v22m@hono/node-server@1.19.91.19.13
LowGHSA-3f6p-5ww8-9rcrmysql2@3.15.33.22.0
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@2.0.22.1.2
LowGHSA-54hh-g5mx-jqcppnpm@10.33.010.34.0
LowGHSA-vmf3-w455-68vhtar@7.5.127.5.16
LowGHSA-xpcf-pg52-r92ghono@4.11.44.12.12
LowGHSA-gx5p-jg67-6x7hnext@16.2.416.2.5
LowGHSA-wfc6-r584-vfw7next@16.2.416.2.5
LowGHSA-j6c9-x7qj-28xfhono@4.11.44.12.25
LowGHSA-8h8q-6873-q5fjnext@16.2.416.2.5
LowGHSA-jfc7-64v2-mr8c@sigstore/core@2.0.03.2.1
LowALPINE-CVE-2026-45446openssl@3.5.6-r03.5.7-r0
LowALPINE-CVE-2026-7009curl@8.17.0-r18.20.0-r0
LowGHSA-vx52-2968-3vc6pnpm@10.33.010.34.5
LowGHSA-rv63-4mwf-qqc2hono@4.11.44.12.25

Used by

1 chart
ChartVersionTagContainers
umamikubernetes-homelab-helm-chartsVerified publisher0.1.03.1.01

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.