StackRadar

quay.io/argoproj/argocd:v2.14.11 container image

Quay.io

Scanned 14 Sept 2026

Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/argoproj/argocd

quay.io/argoproj/argocd:v2.14.11 resolved to 5fc69e31c755, scanned 14 Sept 2026: 463 findings, 2 critical, 1 on KEV; deployed by 2 charts, among them argocd and planectl.

Radar Score

4,5782154406

463 findings on digest 5fc69e31c755 · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v2.14.11resolves to5fc69e31c7552 charts6 days ago21544064,578

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

406 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 5fc69e31c755 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-7jxh-36q5-gcqvgithub.com/containerd/containerd@v1.7.231.7.35
LowUBUNTU-CVE-2025-45582tar@1.35+dfsg-3build11.35+dfsg-3ubuntu0.2
LowUBUNTU-CVE-2026-15534perl@5.38.2-3.2ubuntu0.1no fix listed
LowGO-2025-3373stdlib@go1.22.21.22.11
LowGO-2026-5970golang.org/x/text@v0.16.00.39.0
LowGO-2025-4155stdlib@go1.22.21.24.11
LowUBUNTU-CVE-2025-14017curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.7
LowGHSA-265r-hfxg-fhmggithub.com/containerd/containerd@v1.7.231.7.27
LowGO-2024-2888stdlib@go1.22.21.21.11
LowUBUNTU-CVE-2026-56288patch@2.7.6-7build3no fix listed
LowUBUNTU-CVE-2026-56289patch@2.7.6-7build3no fix listed
LowGO-2025-4008stdlib@go1.22.21.24.8
LowGO-2025-4010stdlib@go1.22.21.24.8
LowUBUNTU-CVE-2024-10041pam@1.5.3-5ubuntu5.1no fix listed
LowUBUNTU-CVE-2026-59850libssh@0.10.6-2build20.10.6-2ubuntu0.5
LowGHSA-w5pp-99ch-qj29github.com/go-git/go-git/v5@v5.13.25.19.1
LowUBUNTU-CVE-2025-0167curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.8
LowGHSA-3xc5-wrhm-f963github.com/go-git/go-git/v5@v5.13.25.18.0
LowUBUNTU-CVE-2026-50812sqlite3@3.45.1-1ubuntu2.13.45.1-1ubuntu2.7
LowGO-2025-4014stdlib@go1.22.21.24.8
LowGO-2025-3503stdlib@go1.22.21.23.7
LowUBUNTU-CVE-2026-18938p11-kit@0.25.3-4ubuntu2.10.25.3-4ubuntu2.2
LowGO-2026-4976stdlib@go1.22.21.25.10
LowUBUNTU-CVE-2025-27613git@1:2.43.0-1ubuntu7.21:2.43.0-1ubuntu7.3
LowGHSA-2x5j-vhc8-9cwmgithub.com/cloudflare/circl@v1.3.71.6.1
LowUBUNTU-CVE-2025-5278coreutils@9.4-3ubuntu69.4-3ubuntu6.3
LowGHSA-vp62-88p7-qqf5github.com/docker/docker@v25.0.6+incompatibleno fix listed
LowGO-2026-5856stdlib@go1.22.21.25.12
LowUBUNTU-CVE-2026-22795openssl@3.0.13-0ubuntu3.53.0.13-0ubuntu3.7
LowGO-2025-4007stdlib@go1.22.21.24.9
LowGO-2026-6355golang.org/x/crypto@v0.27.00.56.0
LowGO-2026-4980stdlib@go1.22.21.25.10
LowUBUNTU-CVE-2026-42770openssl@3.0.13-0ubuntu3.53.0.13-0ubuntu3.11
LowGO-2026-5039stdlib@go1.22.21.25.11
LowUBUNTU-CVE-2026-55653openssh@1:9.6p1-3ubuntu13.9no fix listed
LowUBUNTU-CVE-2025-8114libssh@0.10.6-2build20.10.6-2ubuntu0.2
LowGO-2025-4013stdlib@go1.22.21.24.8
LowGO-2025-3849stdlib@go1.22.21.23.12
LowGO-2026-4946stdlib@go1.22.21.25.9
LowUBUNTU-CVE-2026-60000openssh@1:9.6p1-3ubuntu13.91:9.6p1-3ubuntu13.18
LowGO-2026-5064github.com/containerd/containerd@v1.7.23no fix listed
LowGO-2022-0646github.com/aws/aws-sdk-go@v1.55.5no fix listed
LowGHSA-hr2v-4r36-88hrhelm.sh/helm/v3@v0.0.0-20241111191401-cfd07493f46e3.20.2
LowUBUNTU-CVE-2026-54370acl@2.3.2-1build1.1no fix listed
LowUBUNTU-CVE-2026-56412expat@2.6.1-2ubuntu0.3no fix listed
LowUBUNTU-CVE-2026-56131expat@2.6.1-2ubuntu0.3no fix listed
LowUBUNTU-CVE-2026-50219expat@2.6.1-2ubuntu0.3no fix listed
LowUBUNTU-CVE-2025-15649perl@5.38.2-3.2ubuntu0.15.38.2-3.2ubuntu0.4
LowGO-2026-4603stdlib@go1.22.21.25.8
LowGO-2026-6303golang.org/x/crypto@v0.27.00.55.0

Used by

2 charts
ChartVersionTagContainers
argocdargo-helm-charts1.0.0v2.14.118
planectlplanectlVerified publisher0.7.0v2.14.116

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.