StackRadar

quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1 container image

Quay.io

Scanned 16 Sept 2026

Deployed by 1 of 17,790 indexed charts (latest versions) at this tag.Quay.io all tags of quay.io/opsmxpublic/spin-sample-pipeline

quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1 resolved to c6a934439421, scanned 16 Sept 2026: 1,318 findings, 16 critical, 6 on KEV; deployed by 1 chart, among them oes.

Radar Score

20,6241637434830

1,318 findings on digest c6a934439421 · scanned 16 Sept 2026

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
v1.0.1resolves toc6a9344394211 chart10 days ago163743483020,624

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

1,318 distinct on this digest

Findings for digest c6a934439421 as scanned on 16 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 16 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-34757libpng@1.2.54-1ubuntu1.11.2.54-1ubuntu1.1+esm3
LowUBUNTU-CVE-2026-87875cups@2.1.3-4ubuntu0.10no fix listed
LowGO-2025-3503stdlib@go1.13.11.23.7
LowUBUNTU-CVE-2026-0989libxml2@2.9.3+dfsg1-1ubuntu0.62.9.3+dfsg1-1ubuntu0.7+esm12
LowGO-2026-4976stdlib@go1.13.11.25.10
LowUBUNTU-CVE-2026-21925openjdk-8@8u222-b10-1ubuntu1~16.04.18u482-ga~us1-0ubuntu1~16.04
LowUBUNTU-CVE-2025-27613git@1:2.7.4-0ubuntu1.101:2.7.4-0ubuntu1.10+esm11
LowUBUNTU-CVE-2025-5278coreutils@8.25-2ubuntu3~16.04no fix listed
LowUBUNTU-CVE-2026-47770jq@1.5+dfsg-1ubuntu0.1no fix listed
LowGO-2026-5856stdlib@go1.13.11.25.12
LowGO-2025-4007stdlib@go1.13.11.24.9
LowGO-2026-6355golang.org/x/crypto@v0.0.0-20191011191535-87dc89f015500.56.0
LowGO-2026-4980stdlib@go1.13.11.25.10
LowGO-2026-5039stdlib@go1.13.11.25.11
LowUBUNTU-CVE-2026-41257jq@1.5+dfsg-1ubuntu0.1no fix listed
LowGO-2025-3849stdlib@go1.13.11.23.12
LowUBUNTU-CVE-2026-55653openssh@1:7.2p2-4ubuntu2.10no fix listed
LowUBUNTU-CVE-2026-1484glib2.0@2.48.2-0ubuntu4.4no fix listed
LowUBUNTU-CVE-2026-41254lcms2@2.6-3ubuntu2.12.6-3ubuntu2.1+esm1
LowGO-2025-4013stdlib@go1.13.11.24.8
LowGO-2026-4946stdlib@go1.13.11.25.9
LowUBUNTU-CVE-2026-60000openssh@1:7.2p2-4ubuntu2.10no fix listed
LowUBUNTU-CVE-2026-54370acl@2.2.52-3no fix listed
LowUBUNTU-CVE-2012-2663iptables@1.6.0-2ubuntu3no fix listed
LowUBUNTU-CVE-2026-56412expat@2.1.0-7ubuntu0.16.04.4no fix listed
LowUBUNTU-CVE-2026-56131expat@2.1.0-7ubuntu0.16.04.4no fix listed
LowUBUNTU-CVE-2026-50219expat@2.1.0-7ubuntu0.16.04.4no fix listed
LowUBUNTU-CVE-2025-15649perl@5.22.1-9ubuntu0.9no fix listed
LowGO-2026-4603stdlib@go1.13.11.25.8
LowUBUNTU-CVE-2026-23865openjdk-8@8u222-b10-1ubuntu1~16.04.18u492-ga~us2-0ubuntu1~16.04.1
LowUBUNTU-CVE-2026-0988glib2.0@2.48.2-0ubuntu4.4no fix listed
LowGO-2026-6303golang.org/x/crypto@v0.0.0-20191011191535-87dc89f015500.55.0
LowGO-2026-6354golang.org/x/crypto@v0.0.0-20191011191535-87dc89f015500.56.0
LowUBUNTU-CVE-2025-7039glib2.0@2.48.2-0ubuntu4.42.48.2-0ubuntu4.8+esm5
LowGO-2026-4982stdlib@go1.13.11.25.10
LowUBUNTU-CVE-2026-59998openssh@1:7.2p2-4ubuntu2.10no fix listed
LowGO-2026-6091stdlib@go1.13.11.25.13
LowUBUNTU-CVE-2024-56433shadow@1:4.2-3.1ubuntu5.3no fix listed
LowUBUNTU-CVE-2026-41991gzip@1.6-4ubuntu11.6-4ubuntu1+esm2
LowUBUNTU-CVE-2026-23868giflib@5.1.4-0.3~16.04.1no fix listed
LowUBUNTU-CVE-2024-11586pulseaudio@1:8.0-0ubuntu3.10no fix listed
LowUBUNTU-CVE-2026-40226systemd@229-4ubuntu21.4no fix listed
LowUBUNTU-CVE-2025-61143tiff@4.0.6-1ubuntu0.64.0.6-1ubuntu0.8+esm20
LowGO-2025-3750stdlib@go1.13.11.23.10
LowGO-2026-4864stdlib@go1.13.11.25.9
LowGO-2025-3447stdlib@go1.13.11.22.12
LowGO-2026-4865stdlib@go1.13.11.25.9
LowGO-2026-4869stdlib@go1.13.11.25.9
LowUBUNTU-CVE-2026-59995openssh@1:7.2p2-4ubuntu2.10no fix listed
LowUBUNTU-CVE-2026-59996openssh@1:7.2p2-4ubuntu2.10no fix listed

Used by

1 chart
ChartVersionTagContainers
oesopsmxVerified publisher4.0.32v1.0.11

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 16 Sept 2026 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.