Vulnerability Reportanchore/grype:v0.114.0

anchore/grype:latestanchore/grype:v0.114.0
DIGESTsha256:7a9fc7f89ccef78ae5a7691a115d3f0d41b1f319d589dd8cc1dcb9ab3f01dd28

Executive Summary

Threat Score
0/100SAFE
Reputation
RELIABLE

This image is safe for production use. It has a threat score of 0, with no high-severity vulnerabilities (exposed_total=5, post_total=3, all with severity below 3.0). The image is highly reputable (8M+ pulls) and pinned by digest, ensuring immutability. No exploitable risks are present in this context.

Vulnerabilities

Vulnerability Log

8 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-34040LOW2.81
github.com/docker/docker
v28.5.2+incompatible
fixed in 29.3.1
8.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-33997LOW2.48
github.com/docker/docker
v28.5.2+incompatible
fixed in 29.3.1
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-42306LOW2.2
github.com/docker/docker
v28.5.2+incompatible
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-41567NONE0
github.com/docker/docker
v28.5.2+incompatible
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-41568NONE0
github.com/docker/docker
v28.5.2+incompatible
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.4%
Theoretical Threat
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42507NONE0
stdlib
v1.26.3
fixed in 1.25.11, 1.26.4
0.3%
Theoretical Threat
Not Applicable