StackRadar

quay.io/cloudnativetoolkit/cloud-pak-deployer:latest container image

Quay.io

Scanned 14 Sept 2026

Deployed by 1 of 17,787 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/cloudnativetoolkit/cloud-pak-deployer

quay.io/cloudnativetoolkit/cloud-pak-deployer:latest resolved to 13aaae779248, scanned 14 Sept 2026: 1,347 findings, 25 critical, 11 on KEV; deployed by 1 chart, among them cp4d-deployer.

Radar Score

25,1512581510731

1,347 findings on digest 13aaae779248 · scanned 14 Sept 2026

KEV ×11 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
latestresolves to13aaae7792481 chart8 days ago258151073125,151

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

1,347 distinct on this digest

Findings for digest 13aaae779248 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowGHSA-259w-8hf6-59c2github.com/containerd/containerd@v1.5.11.5.18
LowGHSA-x86f-5xw2-fm2rgithub.com/docker/docker@v20.10.3+incompatibleno fix listed
LowGO-2023-1772github.com/distribution/distribution@v2.8.1+incompatible2.8.2-beta.1+incompatible
LowGO-2023-2041stdlib@go1.19.101.20.8
LowGHSA-9wx4-h78v-vm56requests@2.20.02.32.0
LowRHSA-2025:0012python-requests@2.20.0-2.1.el8_10:2.20.0-5.el8_10
LowRHSA-2026:64809expat@2.2.5-11.el80:2.5.0-2.el8_10.2
LowRHSA-2025:3828glibc@2.28-225.el80:2.28-251.el8_10.16
LowGHSA-v6r4-35f9-9rpwgithub.com/hashicorp/vault@v1.14.11.20.1
LowGO-2023-2043stdlib@go1.19.101.20.8
LowGHSA-qgj7-fmq2-6cc4github.com/hashicorp/vault@v1.14.11.20.1
LowGO-2022-0515stdlib@go1.16.31.17.12
LowGO-2023-2186stdlib@go1.19.101.20.11
LowRHSA-2026:50050systemd@239-74.el8_8.20:239-74.el8_8.7
LowRHSA-2026:20587glibc@2.28-225.el80:2.28-251.el8_10.37
LowGO-2024-3333golang.org/x/net@v0.14.00.33.0
LowGHSA-rwvp-r38j-9rgggithub.com/nwaples/rardecode@v1.1.2no fix listed
LowRHSA-2026:43420acl@2.2.53-1.el80:2.4.0-1.el8_10
LowRHSA-2024:6030python3@3.6.8-51.el8_8.10:3.6.8-51.el8_8.7
LowGHSA-389r-gv7p-r3rpgithub.com/go-git/go-git/v5@v5.3.05.19.0
LowRHSA-2025:1517libxml2@2.9.7-16.el80:2.9.7-18.el8_10.2
LowRHSA-2025:21977libssh@0.9.6-10.el8_80:0.9.6-16.el8_10
LowGO-2024-3105stdlib@go1.19.101.22.7
LowGO-2022-1095stdlib@go1.16.31.18.8
LowGHSA-7236-3392-c5c6github.com/moby/buildkit@v0.0.0-20181107081847-c3a857e3fca00.31.1
LowGHSA-m6hq-p25p-ffr2github.com/containerd/containerd@v1.5.11.7.29
LowRHSA-2025:17715vim@2:8.0.1763-19.el8_6.42:8.0.1763-21.el8_10
LowGO-2023-1621stdlib@go1.19.61.19.7
LowGO-2026-4981stdlib@go1.19.101.25.10
LowGO-2025-3563stdlib@go1.19.101.23.8
LowGHSA-8r5m-3f66-qpr3github.com/hashicorp/vault@v1.14.1no fix listed
LowGO-2026-4977stdlib@go1.19.101.25.10
LowGO-2024-2610stdlib@go1.19.101.21.8
LowGO-2026-4986stdlib@go1.19.101.25.10
LowGO-2026-4918golang.org/x/net@v0.14.00.53.0
LowGO-2026-4918stdlib@go1.19.101.25.10
LowGO-2026-4337stdlib@go1.19.101.24.13
LowGHSA-qccp-gfcp-xxvcurllib3@1.24.22.7.0
LowGHSA-crhj-59gh-8x96github.com/go-git/go-git/v5@v5.3.05.19.1
LowGO-2026-4601stdlib@go1.19.101.25.8
LowGO-2026-5026stdlib@go1.19.101.25.13
LowGO-2026-5026golang.org/x/net@v0.14.00.55.0
LowRHSA-2026:1852util-linux@2.32.1-42.el8_80:2.32.1-48.el8_10
LowGO-2025-3420stdlib@go1.19.101.22.11
LowGO-2026-4342stdlib@go1.19.101.24.12
LowGO-2024-2598stdlib@go1.19.101.21.8
LowGO-2025-3751stdlib@go1.19.101.23.10
LowRHSA-2025:23481openssh@8.0p1-19.el8_80:8.0p1-27.el8_10
LowGHSA-2v4p-qf9q-27wjgoogle.golang.org/grpc@v1.27.11.82.2
LowGHSA-537c-gmf6-5ccfcryptography@41.0.348.0.1

Used by

1 chart
ChartVersionTagContainers
cp4d-deployercloud-native-toolkit1.0.0latest1

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.