StackRadar

quay.io/argoproj/argocd:v3.0.3 container image

Quay.io

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/argoproj/argocd

quay.io/argoproj/argocd:v3.0.3 resolved to 95b5cf7ba6fe, scanned 14 Sept 2026: 459 findings, 2 critical, 1 on KEV; deployed by 1 chart, among them cluster-setup.

Radar Score

4,5172153403

459 findings on digest 95b5cf7ba6fe · scanned 14 Sept 2026

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v3.0.3resolves to95b5cf7ba6fe1 chart8 days ago21534034,517

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Low findings

403 distinct on this digest

Low: findings whose contribution to the Radar Score is 1–14. Show every band

Findings for digest 95b5cf7ba6fe as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-6395gnutls28@3.8.3-1.1ubuntu3.33.8.3-1.1ubuntu3.4
LowUBUNTU-CVE-2026-85091zlib@1:1.3.dfsg-3.1ubuntu2.1no fix listed
LowGHSA-cfpf-hrx2-8rv6github.com/expr-lang/expr@v1.16.91.17.7
LowUBUNTU-CVE-2026-2219dpkg@1.22.6ubuntu6.11.22.6ubuntu6.6
LowUBUNTU-CVE-2026-42497perl@5.38.2-3.2ubuntu0.15.38.2-3.2ubuntu0.3
LowUBUNTU-CVE-2026-41992gzip@1.12-1ubuntu31.12-1ubuntu3.2
LowUBUNTU-CVE-2019-20633patch@2.7.6-7build3no fix listed
LowUBUNTU-CVE-2026-8932curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.13
LowGHSA-8xwf-rjm4-xvhvoras.land/oras-go/v2@v2.5.02.6.1
LowGHSA-qw64-3x98-g7q2github.com/go-git/go-billy/v5@v5.6.25.9.0
LowUBUNTU-CVE-2026-8286curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.10
LowUBUNTU-CVE-2026-75803openssl@3.0.13-0ubuntu3.53.0.13-0ubuntu3.15
LowGHSA-4x4m-3c2p-qppck8s.io/kubernetes@v1.32.21.32.8
LowGHSA-p436-gjf2-799pgithub.com/docker/cli@v25.0.1+incompatible29.2.0
LowGHSA-jxpm-75mh-9fp7oras.land/oras-go/v2@v2.5.02.6.1
LowUBUNTU-CVE-2026-4046glibc@2.39-0ubuntu8.42.39-0ubuntu8.8
LowUBUNTU-CVE-2026-0966libssh@0.10.6-2build20.10.6-2ubuntu0.3
LowUBUNTU-CVE-2026-48959perl@5.38.2-3.2ubuntu0.15.38.2-3.2ubuntu0.4
LowUBUNTU-CVE-2026-59843libssh@0.10.6-2build20.10.6-2ubuntu0.5
LowUBUNTU-CVE-2026-5928glibc@2.39-0ubuntu8.42.39-0ubuntu8.8
LowUBUNTU-CVE-2026-3833gnutls28@3.8.3-1.1ubuntu3.33.8.3-1.1ubuntu3.6
LowGHSA-3wgm-2gw2-vh5mk8s.io/kubernetes@v1.32.2no fix listed
LowUBUNTU-CVE-2026-6791glibc@2.39-0ubuntu8.42.39-0ubuntu8.9
LowGHSA-v53g-5gjp-272rhelm.sh/helm/v3@v0.0.0-20250212201646-980d8ac1939e3.14.1
LowUBUNTU-CVE-2026-8458curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.10
LowUBUNTU-CVE-2026-76641expat@2.6.1-2ubuntu0.3no fix listed
LowUBUNTU-CVE-2026-6253curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.9
LowUBUNTU-CVE-2025-5351libssh@0.10.6-2build20.10.6-2ubuntu0.1
LowUBUNTU-CVE-2026-4437glibc@2.39-0ubuntu8.42.39-0ubuntu8.8
LowUBUNTU-CVE-2026-60002openssh@1:9.6p1-3ubuntu13.111:9.6p1-3ubuntu13.18
LowGO-2026-4341stdlib@go1.22.71.24.12
LowUBUNTU-CVE-2018-1000021git@1:2.43.0-1ubuntu7.2no fix listed
LowGHSA-5xqw-8hwv-wg92helm.sh/helm/v3@v0.0.0-20250212201646-980d8ac1939e3.17.3
LowUBUNTU-CVE-2026-9547curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.10
LowGHSA-g88p-r42r-ppp9github.com/argoproj/argo-cd/v3@v3.0.33.0.19
LowGHSA-hc8v-wwc9-vgxmgithub.com/go-git/go-git/v5@v5.14.05.19.2
LowUBUNTU-CVE-2026-42012gnutls28@3.8.3-1.1ubuntu3.33.8.3-1.1ubuntu3.6
LowUBUNTU-CVE-2026-40355krb5@1.20.1-6ubuntu2.51.20.1-6ubuntu2.7
LowUBUNTU-CVE-2026-57432perl@5.38.2-3.2ubuntu0.15.38.2-3.2ubuntu0.4
LowGO-2024-2887stdlib@go1.22.21.21.11
LowUBUNTU-CVE-2026-6276curl@8.5.0-2ubuntu10.68.5.0-2ubuntu10.9
LowUBUNTU-CVE-2026-40356krb5@1.20.1-6ubuntu2.51.20.1-6ubuntu2.7
LowGHSA-fxhp-mv3v-67qporas.land/oras-go/v2@v2.5.02.6.2
LowGHSA-4hfp-h4cw-hj8phelm.sh/helm/v3@v0.0.0-20250212201646-980d8ac1939e3.17.3
LowGHSA-53c4-hhmh-vw5qhelm.sh/helm/v3@v0.0.0-20250212201646-980d8ac1939e3.10.3
LowGHSA-67fx-wx78-jx33helm.sh/helm/v3@v0.0.0-20250212201646-980d8ac1939e3.10.3
LowGHSA-pxq6-2prw-chj9github.com/docker/docker@v25.0.6+incompatibleno fix listed
LowUBUNTU-CVE-2016-2781coreutils@9.4-3ubuntu6no fix listed
LowUBUNTU-CVE-2021-45261patch@2.7.6-7build3no fix listed
LowGHSA-xhf5-7wjv-pqxpgithub.com/containerd/containerd@v1.7.241.7.33

Used by

1 chart
ChartVersionTagContainers
cluster-setupcluster-setup1.5.0v3.0.38

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.