Vulnerability Reportamazoncorretto:21

amazoncorretto:21
DIGESTsha256:540708337af29fda537479f2205d2d219a3780c3f07be5f42be96501789f610b

Executive Summary

Last scanned:

Threat Score
0/100SAFE
Reputation
TRUSTED

This base/runtime image is a clean foundation for building production images. It has a small number of low-severity vulnerabilities that pose negligible practical risk in a typical containerized environment. The image is officially published and pinned by digest, ensuring supply chain integrity. No immediate remediation is required. Note: this is a general-purpose base/runtime image — many findings live in components that an application built on top may never load, so actual exploitability depends on the final image. For an accurate risk picture, re-scan the final application image with context.

Vulnerabilities

Vulnerability Log

20 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-54370MEDIUM5.35
libacl
2.3.1-2.amzn2023.0.2
fixed in 2.4.0-1.amzn2023.0.1
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-0864MEDIUM4.67
python3-libs
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-0864LOW2.8
python3
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-58016LOW2.78
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW2.7
python3
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-58014LOW2.63
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-58010LOW2.51
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-58012LOW2.51
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-58013LOW2.51
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-58011LOW2.29
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-58015LOW2.29
glib2
2.82.2-769.amzn2023
fixed in 2.82.2-770.amzn2023
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-54369LOW2.17
libacl
2.3.1-2.amzn2023.0.2
fixed in 2.4.0-1.amzn2023.0.1
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-11972LOW1.99
python3
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-11972LOW1.99
python3-libs
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9669LOW1.81
python3
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9669LOW1.81
python3-libs
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW1.62
python3-libs
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-11850LOW1.53
krb5-libs
1.21.3-7.amzn2023.0.1
fixed in 1.21.3-8.amzn2023.0.1
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-11940NONE0
python3
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.6%
Theoretical Threat
Not Applicable
CVE-2026-11940NONE0
python3-libs
3.9.25-1.amzn2023.0.7
fixed in 3.9.25-1.amzn2023.0.8
0.6%
Theoretical Threat
Not Applicable

Want to check another image? Run a full scan with the Docker Security Scanner.