Vulnerability Reportcheckmarx/kics:v2.1.13

checkmarx/kics:v2.1.13
DIGESTsha256:d1b59b515cd6b057002d671c53f87ba6898556a06765a03b3974f4ec467f6a7e

Executive Summary

Threat Score
50/100CAUTION
Reputation
RELIABLE

This image carries significant risk; production deployment is highly discouraged without strict compensating controls. An attacker could exploit CVE-2025-68121 to bypass certificate validation during TLS session resumption if the application mutates TLS configuration between handshakes, potentially enabling man-in-the-middle attacks. Additionally, multiple denial-of-service vulnerabilities in OpenSSL (e.g., CVE-2025-69421) could crash the service via malformed PKCS#12 files or other crafted inputs. Mitigations include avoiding TLS Config mutation and restricting untrusted PKCS#12 file processing. Note that CVE-2025-68121 only applies if the application clones and mutates TLS Config between handshakes, and the OpenSSL DoS vulnerabilities require specific conditions (e.g., delta CRL processing enabled, QUIC usage) that may not be relevant in your deployment.

Vulnerabilities

Vulnerability Log

200 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2025-68121MEDIUM6.8
stdlib
v1.24.6
fixed in 1.24.13, 1.25.7, 1.26.0-rc.3
0.8%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2025-69421MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28386MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-28388MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-28389MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-34183MEDIUM6.38
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-69421MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28386MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-28388MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-28389MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-28390MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-34183MEDIUM6.38
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-8959MEDIUM6.38
github.com/hashicorp/go-getter
v1.7.8
fixed in 1.7.9
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-4660MEDIUM6.38
github.com/hashicorp/go-getter
v1.7.8
fixed in 1.8.6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-33748MEDIUM6.38
github.com/moby/buildkit
v0.22.0
fixed in 0.28.1
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-47913MEDIUM6.38
golang.org/x/crypto
v0.39.0
fixed in 0.43.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39829MEDIUM6.38
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-39830MEDIUM6.38
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-33814MEDIUM6.38
golang.org/x/net
v0.40.0
fixed in 0.53.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-61726MEDIUM6.38
stdlib
v1.24.6
fixed in 1.24.12, 1.25.6
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-61729MEDIUM6.38
stdlib
v1.24.6
fixed in 1.24.11, 1.25.5
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-25679MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.8, 1.26.1
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-32280MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-32281MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-32283MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-33811MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-33814MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39820MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-39836MEDIUM6.38
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-58183MEDIUM6.38
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-61728MEDIUM6.38
stdlib
v1.24.6
fixed in 1.24.12, 1.25.6
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-34182MEDIUM6.29
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69419MEDIUM6.29
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-34182MEDIUM6.29
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42508MEDIUM6.29
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-46595MEDIUM6.03
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-39883MEDIUM5.95
go.opentelemetry.io/otel/sdk
v1.35.0
fixed in 1.43.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-9231MEDIUM5.9
libcrypto3
3.5.1-r1
fixed in 3.5.4-r0
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-9231MEDIUM5.9
libssl3
3.5.1-r1
fixed in 3.5.4-r0
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-9230MEDIUM5.6
libcrypto3
3.5.1-r1
fixed in 3.5.4-r0
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2025-9230MEDIUM5.6
libssl3
3.5.1-r1
fixed in 3.5.4-r0
1.8%
Low-Moderate Risk
Directly Exposed
CVE-2026-39821MEDIUM5.58
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.3%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-4437MEDIUM5.52
glibc
2.41-r56
fixed in 2.43-r4
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
glibc-locale-posix
2.41-r56
fixed in 2.43-r4
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
ld-linux
2.41-r56
fixed in 2.43-r4
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-4437MEDIUM5.52
libcrypt1
2.41-r56
fixed in 2.43-r4
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM5.52
libcrypto3
3.5.1-r1
fixed in 3.6.1-r3
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM5.52
libssl3
3.5.1-r1
fixed in 3.6.1-r3
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-35469MEDIUM5.52
github.com/moby/spdystream
v0.5.0
fixed in 0.5.1
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-55198MEDIUM5.52
helm.sh/helm/v3
v3.18.4
fixed in 3.18.5
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-55199MEDIUM5.52
helm.sh/helm/v3
v3.18.4
fixed in 3.18.5
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-61727MEDIUM5.52
stdlib
v1.24.6
fixed in 1.24.11, 1.25.5
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-28387MEDIUM5.5
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.6%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-28387MEDIUM5.5
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.6%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-32282MEDIUM5.44
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34181MEDIUM5.35
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42768MEDIUM5.35
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-34181MEDIUM5.35
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42768MEDIUM5.35
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-11187MEDIUM5.18
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-11187MEDIUM5.18
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-32289MEDIUM5.18
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc
2.41-r56
fixed in 2.42-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
glibc-locale-posix
2.41-r56
fixed in 2.42-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
ld-linux
2.41-r56
fixed in 2.42-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15281MEDIUM5.02
libcrypt1
2.41-r56
fixed in 2.42-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-42764MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-15468MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-66199MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69420MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-22796MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-42769MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42770MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-9076MEDIUM5.02
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.2-r0
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-42764MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-15468MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.7%
Theoretical Threat
Directly Exposed
CVE-2025-66199MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69420MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-22796MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-42769MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42770MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-9076MEDIUM5.02
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15469MEDIUM4.67
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-22795MEDIUM4.67
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-7383MEDIUM4.67
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-15469MEDIUM4.67
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-22795MEDIUM4.67
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-7383MEDIUM4.67
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib
1.3.1-r51
fixed in 1.3.2-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-64329MEDIUM4.67
github.com/containerd/containerd
v1.7.27
fixed in 1.7.29
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32288MEDIUM4.67
stdlib
v1.24.6
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27142MEDIUM4.59
stdlib
v1.24.6
fixed in 1.25.8, 1.26.1
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-39826MEDIUM4.59
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc
2.41-r56
fixed in 2.42-r6
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc
2.41-r56
fixed in 2.43-r6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
glibc-locale-posix
2.41-r56
fixed in 2.42-r6
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
glibc-locale-posix
2.41-r56
fixed in 2.43-r6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
ld-linux
2.41-r56
fixed in 2.42-r6
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
ld-linux
2.41-r56
fixed in 2.43-r6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0915MEDIUM4.5
libcrypt1
2.41-r56
fixed in 2.42-r6
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-4046MEDIUM4.5
libcrypt1
2.41-r56
fixed in 2.43-r6
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42766MEDIUM4.5
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-42767MEDIUM4.5
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42766MEDIUM4.5
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-42767MEDIUM4.5
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-11065MEDIUM4.5
github.com/go-viper/mapstructure/v2
v2.3.0
fixed in 2.4.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-58058MEDIUM4.5
github.com/ulikunitz/xz
v0.5.11
fixed in 0.5.15
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-47914MEDIUM4.5
golang.org/x/crypto
v0.39.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58181MEDIUM4.5
golang.org/x/crypto
v0.39.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-46598MEDIUM4.5
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-47911MEDIUM4.5
golang.org/x/net
v0.40.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58190MEDIUM4.5
golang.org/x/net
v0.40.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-47912MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-58185MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58187MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.9, 1.25.3
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-58188MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-58189MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-61723MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-61724MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-61725MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.6%
Theoretical Threat
Directly Exposed
CVE-2025-61730MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.12, 1.25.6
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42507MEDIUM4.5
stdlib
v1.24.6
fixed in 1.25.11, 1.26.4
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-58186MEDIUM4.5
stdlib
v1.24.6
fixed in 1.24.8, 1.25.2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc
2.41-r56
fixed in 2.43-r7
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc
2.41-r56
fixed in 2.43-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-locale-posix
2.41-r56
fixed in 2.43-r7
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc-locale-posix
2.41-r56
fixed in 2.43-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
ld-linux
2.41-r56
fixed in 2.43-r7
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
ld-linux
2.41-r56
fixed in 2.43-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libcrypt1
2.41-r56
fixed in 2.43-r7
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libcrypt1
2.41-r56
fixed in 2.43-r7
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34180MEDIUM4.25
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-34180MEDIUM4.25
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-15467MEDIUM4.06
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
48.7%
High Exploitation Risk
Post-Exploit
CVE-2025-15467MEDIUM4.06
libssl3
3.5.1-r1
fixed in 3.6.1-r0
48.7%
High Exploitation Risk
Post-Exploit
CVE-2025-68160MEDIUM4
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-68160MEDIUM4
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2023-39810LOW3.98
busybox
1.37.0-r47
fixed in 1.37.0-r58
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-35206LOW3.74
helm.sh/helm/v3
v3.18.4
fixed in 3.20.2
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-26157LOW3.57
busybox
1.37.0-r47
fixed in 1.37.0-r58
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-26158LOW3.57
busybox
1.37.0-r47
fixed in 1.37.0-r58
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-4438LOW3.4
glibc
2.41-r56
fixed in 2.43-r4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4438LOW3.4
glibc-locale-posix
2.41-r56
fixed in 2.43-r4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4438LOW3.4
ld-linux
2.41-r56
fixed in 2.43-r4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-4438LOW3.4
libcrypt1
2.41-r56
fixed in 2.43-r4
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69418LOW3.4
libcrypto3
3.5.1-r1
fixed in 3.6.1-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-69418LOW3.4
libssl3
3.5.1-r1
fixed in 3.6.1-r0
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-45446LOW3.15
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-45446LOW3.15
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-9232LOW3.1
libcrypto3
3.5.1-r1
fixed in 3.5.4-r0
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2025-9232LOW3.1
libssl3
3.5.1-r1
fixed in 3.5.4-r0
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-31789LOW3
libcrypto3
3.5.1-r1
fixed in 3.6.2-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-31789LOW3
libssl3
3.5.1-r1
fixed in 3.6.2-r0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-33747LOW3
github.com/moby/buildkit
v0.22.0
fixed in 0.28.1
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-45447LOW2.92
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
2.3%
Low-Moderate Risk
Post-Exploit
CVE-2026-45447LOW2.92
libssl3
3.5.1-r1
fixed in 3.6.3-r0
2.3%
Low-Moderate Risk
Post-Exploit
CVE-2026-45445LOW2.78
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-45445LOW2.78
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-33186LOW2.78
google.golang.org/grpc
v1.71.1
fixed in 1.79.3
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-60876LOW2.75
busybox
1.37.0-r47
fixed in 1.37.0-r52
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-39828LOW2.69
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-0861LOW2.48
glibc
2.41-r56
fixed in 2.42-r6
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-0861LOW2.48
glibc-locale-posix
2.41-r56
fixed in 2.42-r6
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-0861LOW2.48
ld-linux
2.41-r56
fixed in 2.42-r6
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-0861LOW2.48
libcrypt1
2.41-r56
fixed in 2.42-r6
0.4%
Theoretical Threat
Post-Exploit
CVE-2024-25621LOW2.39
github.com/containerd/containerd
v1.7.27
fixed in 1.7.29
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27139LOW2.12
stdlib
v1.24.6
fixed in 1.25.8, 1.26.1
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-46394LOW1.68
busybox
1.37.0-r47
fixed in 1.37.0-r50
0.1%
Theoretical Threat
Post-Exploit
CVE-2024-58251NONE0
busybox
1.37.0-r47
fixed in 1.37.0-r49
0.2%
Theoretical Threat
Not Applicable
CVE-2026-32631NONE0
git
2.50.1-r1
fixed in 2.54.0-r0
0.3%
Theoretical Threat
Not Applicable
CVE-2026-35188NONE0
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-42765NONE0
libcrypto3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-35188NONE0
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-42765NONE0
libssl3
3.5.1-r1
fixed in 3.6.3-r0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-46680NONE0
github.com/containerd/containerd
v1.7.27
fixed in 1.7.32
Not Applicable
CVE-2026-53488NONE0
github.com/containerd/containerd
v1.7.27
fixed in 1.7.33
Not Applicable
CVE-2026-47262NONE0
github.com/containerd/containerd
v1.7.27
fixed in 1.7.33
Not Applicable
CVE-2026-24051NONE0
go.opentelemetry.io/otel/sdk
v1.35.0
fixed in 1.40.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-39827NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-39835NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-46597NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-39831NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-39832NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-39833NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.4%
Theoretical Threat
Not Applicable
CVE-2026-39834NONE0
golang.org/x/crypto
v0.39.0
fixed in 0.52.0
0.5%
Theoretical Threat
Not Applicable
CVE-2026-25680NONE0
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-25681NONE0
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-27136NONE0
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-42502NONE0
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-42506NONE0
golang.org/x/net
v0.40.0
fixed in 0.55.0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-39824NONE0
golang.org/x/sys
v0.33.0
fixed in 0.44.0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.24.6
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable
CVE-2026-39823NONE0
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39825NONE0
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Not Applicable
CVE-2026-42499NONE0
stdlib
v1.24.6
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.24.6
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable