StackRadar

registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5 container image

GitLab Container Registry

Scanned 14 Sept 2026

Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.all tags of registry.gitlab.com/xrow-public/helm-iframely/iframely

registry.gitlab.com/xrow-public/helm-iframely/iframely:2.3.5 resolved to fcf07d5ff7e2, scanned 14 Sept 2026: 199 findings, 5 critical, 2 on KEV; deployed by 1 chart, among them iframely.

Radar Score

3,1545652136

199 findings on digest fcf07d5ff7e2 · scanned 14 Sept 2026

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Digests

1 digest
TagDigestUsed byLast seenVulnerabilitiesRadar Score
2.3.5resolves tofcf07d5ff7e21 chartyesterday56521363,154

Digests this tag resolved to in indexed charts’ default renders. A tag can move; the digest is what was scanned.

Vulnerabilities

199 distinct on this digest

Findings for digest fcf07d5ff7e2 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.

SeverityAdvisoryPackageFixed in
CriticalRHSA-2026:19568kernel@5.14.0-611.47.1.el9_70:5.14.0-687.10.1.el9_8
CriticalRHSA-2026:13565KEVkernel@5.14.0-611.47.1.el9_70:5.14.0-611.54.1.el9_7
CriticalRHSA-2026:19225KEVkernel@5.14.0-611.47.1.el9_70:5.14.0-687.5.3.el9_8
CriticalRHSA-2026:16206kernel@5.14.0-611.47.1.el9_70:5.14.0-611.55.1.el9_7
CriticalRHSA-2025:11802nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.16.0-2.module+el9.6.0+23339+d3c8acfa
HighRHSA-2026:7302nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.1-1.module+el9.7.0+24157+8ddb2461
HighRHSA-2026:7302nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.22.2-1.module+el9.7.0+24157+8ddb2461
HighRHSA-2026:7350nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:24.14.1-2.module+el9.7.0+24166+51c9666b
HighRHSA-2026:7350nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.3-3.module+el9.7.0+24166+51c9666b
HighRHSA-2026:7896nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.1-1.module+el9.7.0+24193+41b7b572
HighRHSA-2026:7896nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:20.20.2-1.module+el9.7.0+24193+41b7b572
MediumGHSA-vg7j-7cwx-8wgwmongoose@8.8.08.9.5
MediumGHSA-m7xq-9374-9rvxmongoose@8.8.08.8.3
MediumRHSA-2026:25239openssl@1:3.5.1-7.el9_71:3.5.5-4.el9_8
MediumGHSA-p6mc-m468-83gwlodash.pick@4.4.0no fix listed
MediumRHSA-2026:35891nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:24.18.0-1.module+el9.8.0+24456+b244c3b4
MediumRHSA-2026:35891nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.3-3.module+el9.8.0+24355+35d95b59
MediumRHSA-2026:35892nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.1-1.module+el9.8.0+24156+bb41d456
MediumRHSA-2026:35892nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.23.1-1.module+el9.8.0+24457+996af7aa
MediumRHSA-2026:2781nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.3-3.module+el9.7.0+23894+c8377628
MediumRHSA-2026:2781nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:24.13.0-1.module+el9.7.0+23894+c8377628
MediumRHSA-2026:2782nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.22.0-1.module+el9.7.0+23896+b5802de9
MediumRHSA-2026:2782nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.0.1-1.module+el9.7.0+23896+b5802de9
MediumGHSA-fjxv-7rqg-78g4form-data@4.0.04.0.4
MediumRHSA-2026:36645kernel@5.14.0-611.47.1.el9_70:5.14.0-687.23.1.el9_8
MediumGHSA-cx63-2mw6-8hw5setuptools@53.0.070.0.0
MediumGHSA-5j98-mcp5-4vw2glob@10.4.210.5.0
MediumGHSA-38jv-5279-wg99urllib3@1.26.52.6.3
MediumGHSA-r9hx-vwmv-q579setuptools@53.0.065.5.1
MediumPYSEC-2025-49setuptools@53.0.078.1.1
MediumGHSA-rp65-9cf3-cjxrnth-check@1.0.22.0.1
MediumRHSA-2026:19368rsync@3.2.5-3.el9_7.20:3.2.5-7.el9_8
MediumRHSA-2026:20612gnutls@3.8.3-10.el9_70:3.8.10-4.el9_8
MediumGHSA-35q2-47q7-3pc3redis@2.8.03.1.1
MediumGHSA-j8r2-6x86-q33qrequests@2.25.12.31.0
MediumPYSEC-2023-192urllib3@1.26.52.0.6
MediumRHSA-2026:21556kernel@5.14.0-611.47.1.el9_70:5.14.0-687.12.1.el9_8
MediumRHSA-2025:1613nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.13.1-1.module+el9.5.0+22763+17233acb
MediumGHSA-grv7-fg5c-xmjgbraces@3.0.23.0.3
MediumPYSEC-2024-60idna@2.103.7
MediumRHSA-2026:63129kernel@5.14.0-611.47.1.el9_70:5.14.0-687.44.1.el9_8
MediumRHSA-2026:8510libarchive@3.5.3-7.el9_70:3.5.3-9.el9_7
MediumGHSA-2xpw-w6gg-jr37urllib3@1.26.52.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.26.52.6.0
MediumRHSA-2026:36957kernel@5.14.0-611.47.1.el9_70:5.14.0-687.24.1.el9_8
MediumRHSA-2026:8259vim@2:8.2.2637-23.el9_7.12:8.2.2637-23.el9_7.2
MediumRHSA-2026:25217kernel@5.14.0-611.47.1.el9_70:5.14.0-687.15.1.el9_8
MediumRHSA-2026:26410rsync@3.2.5-3.el9_7.20:3.2.5-7.el9_8.2
MediumRHSA-2026:55601nodejs-nodemon@3.0.1-1.module+el9.7.0+23895+0637d4230:3.1.14-2.module+el9.8.0+24637+e0b636e5
MediumRHSA-2026:55601nodejs@1:20.20.0-1.module+el9.7.0+23895+0637d4231:22.23.1-3.module+el9.8.0+24637+e0b636e5

Used by

1 chart
ChartVersionTagContainers
iframelyiframelyVerified publisher2.3.52.3.51

Counts are over the indexed charts’ latest versions, rendered with default values, and say nothing about images outside the indexed set.

syft 1.42.1 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.