quay.io/argoprojlabs/argocd-image-updater:v1.3.0 container image
Quay.ioScanned 14 Sept 2026
Deployed by 2 of 17,781 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/argoprojlabs/argocd-image-updater
quay.io/argoprojlabs/argocd-image-updater:v1.3.0 resolved to cb009167015c, scanned 14 Sept 2026: 68 findings, 0 critical; deployed by 2 charts, among them argocd-image-updater and argocd-image-updater.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
Findings for digest cb009167015c as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | ALPINE-CVE-2026-14456 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-82209 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-80255 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-7210 | python3 | 3.14.7-r0 |
| Low | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Low | ALPINE-CVE-2026-15308 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-13608 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-63072 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-60002 | openssh | 10.3_p1-r1 |
| Low | ALPINE-CVE-2026-11972 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-80230 | curl | 8.22.0-r0 |
| Low | ALPINE-CVE-2026-76641 | expat | 2.8.4-r0 |
| Low | ALPINE-CVE-2026-54874 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-63075 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-7774 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-60000 | openssh | 10.3_p1-r1 |
| Low | ALPINE-CVE-2026-82208 | curl | 8.22.0-r0 |
| Low | GHSA-jwv3-5hgf-82ww | cryptography | 49.0.0 |
| Low | ALPINE-CVE-2026-75803 | openssl | 3.5.8-r0 |
| Low | ALPINE-CVE-2026-3276 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-76956 | expat | 2.8.4-r0 |
| Low | GHSA-m2h6-j472-rp4c | cryptography | 49.0.0 |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | GHSA-g6cj-pr64-35w5 | cryptography | 50.0.0 |
| Low | ALPINE-CVE-2026-8328 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-60001 | openssh | 10.3_p1-r1 |
| Low | ALPINE-CVE-2025-15366 | python3 | 3.14.7-r0 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | ALPINE-CVE-2026-59999 | openssh | 10.3_p1-r1 |
| Low | ALPINE-CVE-2026-76957 | expat | 2.8.4-r0 |
| Low | ALPINE-CVE-2026-59998 | openssh | 10.3_p1-r1 |
| Low | GO-2026-5026 | stdlib | 1.25.13 |
| Low | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Low | GHSA-537c-gmf6-5ccf | cryptography | 48.0.1 |
| Low | ALPINE-CVE-2026-4360 | python3 | 3.14.7-r0 |
| Low | ALPINE-CVE-2026-59995 | openssh | 10.3_p1-r1 |
| Low | ALPINE-CVE-2026-59996 | openssh | 10.3_p1-r1 |
| Low | GO-2026-5972 | stdlib | 1.25.13 |
| Low | GO-2026-6088 | stdlib | 1.25.13 |
| Low | GO-2026-6089 | stdlib | 1.25.13 |
| Low | GO-2026-6090 | stdlib | 1.25.13 |
| Low | GO-2025-3521 | k8s.io/ | no fix listed |
| Low | GO-2026-5942 | stdlib | 1.26.6 |
| Low | GO-2026-6218 | stdlib | 1.25.13 |
| Low | ALPINE-CVE-2026-59997 | openssh | 10.3_p1-r1 |
| Low | GO-2026-6355 | golang.org/ | 0.56.0 |
| Low | ALPINE-CVE-2026-0864 | python3 | 3.14.7-r0 |
| Low | GO-2026-6303 | golang.org/ | 0.55.0 |
| Low | GO-2026-6354 | golang.org/ | 0.56.0 |
| Low | GO-2025-3547 | k8s.io/ | no fix listed |
Used by
| Chart | Version | Tag | Containers |
|---|---|---|---|
| argocd-image-updaterargoOfficialVerified publisher | 1.3.1 | v1.3.0 | 1 |
| argocd-image-updaterwenerme | 1.3.1 | v1.3.0 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.