Vulnerability Reportamazoncorretto:17.0.20-al2-native-jdk

amazoncorretto:17.0.20-al2-native-jdkamazoncorretto:17-al2-native-jdk
digestsha256:f746f1d9c05a5e859bcbe875d4b1efca6f08da82169b4b4ee93f8b3e6f88f1c2

Executive Summary

Last scanned:

Threat Score
0/100SAFE
Reputation
TRUSTED

This base/runtime image is a clean foundation for building production images. It is an official Docker image, pinned by digest, and contains no known vulnerabilities based on the provided scans. With a trust score of 100 and zero CVEs, it poses minimal inherited risk to images built on top of it. Note: this is a general-purpose base/runtime image — many findings live in components that an application built on top may never load, so actual exploitability depends on the final image. For an accurate risk picture, re-scan the final application image with context.

Vulnerabilities

Vulnerability Log

0 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
No vulnerabilities found matching filters.

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.