Vulnerability Reportamazoncorretto:21

amazoncorretto:21.0.11-al2-genericamazoncorretto:21.0.11-al2amazoncorretto:21.0.11amazoncorretto:21-al2-jdkamazoncorretto:21-al2-generic-jdkamazoncorretto:21-al2-genericamazoncorretto:21-al2-fullamazoncorretto:21
DIGESTsha256:0bee3cd54b789bb54b9f6bfbf2d89615e225e587e6eada2c7ca0a191d4689332

Executive Summary

NEEDS_ATTENTION

This image is acceptable for production, but remediating the identified vulnerabilities is recommended to reduce the attack surface. A single medium-severity vulnerability, CVE-2026-7598, affecting the `libssh2` package, was detected. This vulnerability, if exploited, could lead to service disruption or potentially arbitrary code execution. However, its practical risk within this container's context is reduced, as exploitation depends on `libssh2` being actively used for SSH client or server operations with untrusted input. The image benefits from high trust, being an Official Docker Hub image and pinned by digest. Updating the `libssh2` package is recommended to mitigate CVE-2026-7598.

Threat Score
25/100
NEEDS_ATTENTION
Reputation
TRUSTED
Docker Official
BaseImage/
amazoncorretto:21
Hardened
Grade
A+
Vulns
0
Verified & secured for production

Vulnerabilities

Vulnerability Log

1 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-7598MEDIUM6.18
libssh2
1.4.3-12.amzn2.2.6
fixed in 1.4.3-12.amzn2.2.7
<0.1%
Theoretical Threat
Directly ExposedContext importance: MEDIUM