StackRadar

quay.io/cloudnativetoolkit/cloud-pak-deployer:latest container image

Quay.io

Scanned 14 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/cloudnativetoolkit/cloud-pak-deployer

quay.io/cloudnativetoolkit/cloud-pak-deployer:latest resolved to 13aaae779248, scanned 14 Sept 2026: 1,347 findings, 25 critical, 11 on KEV; deployed by 1 chart, among them cp4d-deployer.

Radar Score

25,1512581510731

1,347 findings on digest 13aaae779248 · scanned 14 Sept 2026

KEV ×11 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves to13aaae7792481 chart8 days ago258151073125,151

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

1,347 distinct on this digest

Findings for digest 13aaae779248 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-j2rp-gmqv-frhvgithub.com/hashicorp/vault@v1.14.11.16.0
LowGO-2023-1569stdlib@go1.16.31.19.6
LowGHSA-mq26-g339-26xfpip@23.2.123.3
LowGHSA-cpwx-vrp4-4pq7jinja2@3.1.23.1.6
LowGHSA-g2j6-57v7-gm8cgithub.com/opencontainers/runc@v1.0.11.1.5
LowGHSA-qc2q-p7wx-3px3google.golang.org/grpc@v1.27.11.83.1
LowGHSA-v6v8-xj6m-xwqhgithub.com/hashicorp/go-retryablehttp@v0.7.20.7.7
LowGO-2023-2382stdlib@go1.19.101.20.12
LowRHSA-2026:47117libgcrypt@1.8.5-7.el8_60:1.8.5-8.el8_10
LowGO-2022-1143stdlib@go1.16.31.18.9
LowGHSA-qpw4-5x99-6vjpgolang.org/x/crypto@v0.11.00.52.0
LowRHSA-2024:3163pam@1.3.1-25.el80:1.3.1-33.el8
LowGHSA-f6x5-jh6r-wrfvgolang.org/x/crypto@v0.11.00.45.0
LowGHSA-78mq-xcr3-xm33golang.org/x/crypto@v0.11.00.52.0
LowRHSA-2024:3059libtiff@4.0.9-28.el8_80:4.0.9-31.el8
LowGO-2024-2599stdlib@go1.19.101.21.8
LowGHSA-6pjf-3r9x-m592github.com/distribution/distribution@v2.8.1+incompatibleno fix listed
LowGO-2022-1038stdlib@go1.16.31.18.7
LowRHSA-2026:5581nginx@1:1.14.1-9.module+el8.0.0+4108+af250afe1:1.24.0-2.module+el8.10.0+24013+f603d2af
LowGO-2024-3106stdlib@go1.19.101.22.7
LowGHSA-87hc-h4r5-73f7werkzeug@2.3.73.1.5
LowGO-2023-1570stdlib@go1.16.31.19.6
LowRHSA-2025:15004krb5@1.18.2-25.el8_80:1.18.2-26.el8_8.5
LowRHSA-2026:0728gnupg2@2.2.20-3.el8_60:2.2.20-4.el8_10
LowRHSA-2026:11521sudo@1.8.29-10.el80:1.9.5p2-1.el8_10.5
LowGHSA-6c5r-4wfc-3mcxgithub.com/hashicorp/vault@v1.14.11.20.1
LowGO-2022-0531stdlib@go1.16.31.17.11
LowGO-2024-2600stdlib@go1.19.101.21.8
LowRHSA-2026:48703vim@2:8.0.1763-19.el8_6.42:8.0.1763-31.el8_10
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.27.11.82.1
LowRHSA-2026:36732python-urllib3@1.24.2-5.el80:1.24.2-10.el8_10
LowGO-2024-2609stdlib@go1.19.101.21.8
LowRHSA-2026:64794httpd@2.4.37-56.module+el8.8.0+18758+b3a9c8da.60:2.4.37-65.module+el8.10.0+24755+06195b95.10
LowGO-2024-3107stdlib@go1.19.101.22.7
LowGO-2023-1751stdlib@go1.19.61.19.9
LowGO-2023-1753stdlib@go1.19.61.19.9
LowGHSA-pq67-6m6q-mj2vurllib3@1.24.22.5.0
LowRHSA-2025:8958libxml2@2.9.7-16.el80:2.9.7-20.el8_10
LowGHSA-cp6g-7hqx-qxhpgo.mongodb.org/mongo-driver@v1.11.61.17.7
LowGHSA-xmrv-pmrh-hhx2github.com/aws/aws-sdk-go-v2/service/s3@v1.31.01.97.3
LowGHSA-xmrv-pmrh-hhx2github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream@v1.4.101.7.8
LowGHSA-5ffw-gxpp-mxpfgithub.com/containerd/containerd@v1.5.11.5.13
LowRHSA-2026:33126glibc@2.28-225.el80:2.28-251.el8_10.38
LowRHSA-2026:13285libcap@2.48-4.el80:2.48-6.el8_10.1
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.11.00.52.0
LowGHSA-jc7w-c686-c4v9github.com/ulikunitz/xz@v0.5.100.5.15
LowRHSA-2024:2974libXpm@3.5.12-9.el8_70:3.5.12-11.el8
LowGHSA-pwhc-rpq9-4c8wgithub.com/containerd/containerd@v1.5.11.7.29
LowGHSA-65pc-fj4g-8rjxidna@3.43.15
LowRHSA-2026:54290python-idna@2.5-5.el80:2.5-8.el8_10

Used by

1 chart
ChartVersionTagContainers
cp4d-deployercloud-native-toolkit1.0.0latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.