quay.io/newrelic/synthetics-minion:2.2.21 container image
Quay.ioScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/newrelic/synthetics-minion
quay.io/newrelic/synthetics-minion:2.2.21 resolved to 98c26e1b8f70, scanned 14 Sept 2026: 120 findings, 10 critical, 3 on KEV; deployed by 1 chart, among them newrelic-private-minion.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
120 distinct on this digest
Findings for digest 98c26e1b8f70 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-86wm-rrjm-8wh8 | jetty-server | 9.4.35.v20201120 |
| Medium | GHSA-xc67-hjx6-cgg6 | jetty-server | 9.4.17.v20190418 |
| Medium | GHSA-vp98-w2p3-mv35 | log4j | 2.0 |
| Medium | GHSA-c28r-hw5m-5gv3 | aws-java-sdk-s3 | 1.12.261 |
| Medium | GHSA-r38f-c4h4-hqq2 | postgresql | 42.2.26 |
| Medium | GHSA-9w3m-gqgf-c4p9 | snakeyaml | 1.32 |
| Medium | GHSA-pvp8-3xj6-8c6x | commons-configuration | no fix listed |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang3 | 3.18.0 |
| Medium | GHSA-j288-q9x7-2f5v | commons-lang | no fix listed |
| Medium | GHSA-r28m-g6j9-r2h5 | jetty-server | 9.4.17.v20190418 |
| Medium | GHSA-c4r9-r8fh-9vj2 | snakeyaml | 1.31 |
| Medium | GHSA-cgp8-4m63-fhh5 | commons-net | 3.9.0 |
| Medium | GHSA-78wr-2p64-hpwj | commons-io | 2.14.0 |
| Medium | GHSA-355h-qmc2-wpwf | jetty-http | 9.4.60 |
| Medium | GHSA-98wm-3w3q-mw94 | snakeyaml | 1.31 |
| Medium | GHSA-qw69-rqj8-6qw8 | jetty-server | 9.4.51.v20230217 |
| Medium | GHSA-3x8x-79m2-3w2w | jackson-databind | 2.12.6 |
| Medium | GHSA-rmj7-2vxq-3g9f | jackson-databind | 2.18.8 |
| Medium | GHSA-j3rv-43j4-c7qm | jackson-databind | 2.18.8 |
| Medium | GHSA-h46c-h94j-95f3 | jackson-core | 2.15.0 |
| Medium | GHSA-w37g-rhq8-7m4j | snakeyaml | 1.32 |
| Medium | GHSA-vwqq-5vrc-xw9h | log4j-core | 2.12.3 |
| Medium | GHSA-3cqm-mf7h-prrj | okhttp | 4.9.2 |
| Medium | GHSA-264p-99wq-f4j6 | ion-java | no fix listed |
| Medium | GHSA-rmrm-75hp-phr2 | hibernate-validator | 6.0.20.Final |
| Low | GHSA-vmq6-5m68-f53m | logback-classic | 1.2.13 |
| Low | GHSA-vmq6-5m68-f53m | logback-core | 1.2.13 |
| Low | GHSA-3pxv-7cmr-fjr4 | log4j-core | 2.25.4 |
| Low | GHSA-2fvj-hgj9-j2gr | jetty-security | 9.4.63 |
| Low | GHSA-v6w3-2prq-h95f | javax.el | no fix listed |
| Low | ALPINE-CVE-2019-5188 | e2fsprogs | 1.44.5-r2 |
| Low | GHSA-7v6m-28jr-rg84 | hibernate-validator | 6.2.0.CR1 |
| Low | GHSA-rqfh-9r24-8c9r | assertj-core | 3.27.7 |
| Low | GHSA-cfxw-4h78-h7fw | dnsjava | 3.6.0 |
| Low | ALPINE-CVE-2020-14363 | libx11 | 1.6.12-r0 |
| Low | GHSA-3wrr-7qpf-2prh | jackson-databind | 2.14.0 |
| Low | GHSA-w33c-445m-f8w7 | okio | 1.17.6 |
| Low | GHSA-g8m5-722r-8whq | jetty-server | 9.4.56 |
| Low | GHSA-hhhw-99gj-p3c3 | snakeyaml | 1.31 |
| Low | GHSA-q4rv-gq96-w7c5 | jetty-server | 9.4.57.v20241219 |
| Low | GHSA-vc5p-v9hr-52mj | log4j-core | 2.25.3 |
| Low | GHSA-hmr7-m48g-48f6 | jetty-http | 9.4.52 |
| Low | ALPINE-CVE-2021-23839 | openssl | 1.1.1j-r0 |
| Low | GHSA-j26w-f9rq-mr2q | jetty-servlets | 9.4.54 |
| Low | ALPINE-CVE-2020-14344 | libx11 | 1.6.10-r0 |
| Low | GHSA-8mx3-gp3p-vgg7 | http-request | no fix listed |
| Low | ALPINE-CVE-2020-28928 | musl | 1.1.20-r6 |
| Low | GHSA-x83m-pf6f-pf9g | hibernate-validator | 6.2.0.Final |
| Low | GHSA-6hg6-v5c8-fphq | log4j-core | 2.25.4 |
| Low | GHSA-pr98-23f8-jwxv | logback-core | 1.3.15 |
Used by
1 chart
| Chart | Version | Tag | Containers |
|---|---|---|---|
| newrelic-private-minionsstarcher | 0.1.2 | 2.2.21 | 1 |
Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.