Vulnerability Reportalpine:3.19

alpine:3.19.9alpine:3.19
DIGESTsha256:6baf43584bcb78f2e5847d1de515f23499913ac9f12bdf834811a3145eb11ca1

Executive Summary

SAFE

This image is safe for production use. It is an Official Docker Hub image, highly trusted and immutable, with no high or critical severity vulnerabilities exposed. While a small number of low-severity vulnerabilities exist, such as CVE-2026-40200, they primarily affect post-exploitation scenarios. These require very specific, extreme conditions like processing millions of array elements and local access to trigger, making their real-world exploitability very low.

Threat Score
0/100
SAFE
Reputation
TRUSTED
Docker Official
BaseImage/
alpine:3.19
Hardened
Grade
A+
Vulns
0
Verified & secured for production

Vulnerabilities

Vulnerability Log

10 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-6042MEDIUM4.67
musl
1.2.4_git20230717-r5
fixed in 1.2.4_git20230717-r6
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-6042MEDIUM4.67
musl-utils
1.2.4_git20230717-r5
fixed in 1.2.4_git20230717-r6
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-40200LOW2.39
musl
1.2.4_git20230717-r5
fixed in 1.2.4_git20230717-r6
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-40200LOW2.39
musl-utils
1.2.4_git20230717-r5
fixed in 1.2.4_git20230717-r6
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-46394LOW1.68
busybox
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-46394LOW1.68
busybox-binsh
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-46394LOW1.68
ssl_client
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Post-Exploit
CVE-2024-58251NONE0
busybox
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Not Applicable
CVE-2024-58251NONE0
busybox-binsh
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Not Applicable
CVE-2024-58251NONE0
ssl_client
1.36.1-r20
fixed in 1.36.1-r21
<0.1%
Theoretical Threat
Not Applicable