Vulnerability Reportconfluentinc/cp-kafka:latest

confluentinc/cp-kafka:latestconfluentinc/cp-kafka:latest-ubi9confluentinc/cp-kafka:8.3.0confluentinc/cp-kafka:8.3.0-1-ubi9
DIGESTsha256:c2cedb691aec9963114fb0b4e45fa49a47bb374a89c241c4ecb68a5fc904e5e3

Executive Summary

Threat Score
0/100SAFE
Reputation
RELIABLE

This image is safe for production use. While 67 exposed and 51 post-exploit vulnerabilities exist, their maximum severity is low (5.7 and 3.21 respectively) and no high-severity issues are present. The image is from a popular, trusted publisher and is pinned by digest, ensuring immutability. No immediate action is required.

Vulnerabilities

Vulnerability Log

130 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-4105MEDIUM5.7
systemd-libs
252-67.el9_8.2
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-34459MEDIUM5.5
libxml2
2.9.13-14.el9_7
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-34181MEDIUM5.35
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42768MEDIUM5.35
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-1757MEDIUM5.27
libxml2
2.9.13-14.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-50219MEDIUM5.02
expat
2.5.0-6.el9_8.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc
2.34-270.el9_8
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc-common
2.34-270.el9_8
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
glibc-minimal-langpack
2.34-270.el9_8
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-0990MEDIUM5.02
libxml2
2.9.13-14.el9_7
No fix yet
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
openssl-fips-provider
3.0.7-8.el9
No fix yet
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-31790MEDIUM5.02
openssl-fips-provider-so
3.0.7-8.el9
No fix yet
1.0%
Theoretical Threat
Directly Exposed
CVE-2026-42764MEDIUM5.02
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-42769MEDIUM5.02
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42770MEDIUM5.02
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-9076MEDIUM5.02
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-31789MEDIUM5
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-45447MEDIUM4.86
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
1.4%
Low-Moderate Risk
Directly Exposed
CVE-2024-41996MEDIUM4.72
openssl-libs
1:3.5.5-3.el9_8
No fix yet
1.1%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-32776MEDIUM4.67
expat
2.5.0-6.el9_8.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32777MEDIUM4.67
expat
2.5.0-6.el9_8.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32778MEDIUM4.67
expat
2.5.0-6.el9_8.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-66382MEDIUM4.67
expat
2.5.0-6.el9_8.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2021-46195MEDIUM4.67
libgcc
11.5.0-14.el9
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-27943MEDIUM4.67
libgcc
11.5.0-14.el9
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2021-46195MEDIUM4.67
libstdc++
11.5.0-14.el9
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-27943MEDIUM4.67
libstdc++
11.5.0-14.el9
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-7383MEDIUM4.67
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-0232MEDIUM4.67
sqlite-libs
3.34.1-10.el9_8
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib
1.2.11-40.el9
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-45445MEDIUM4.64
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-1489MEDIUM4.59
glib2
2.68.4-19.el9_8.1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-42766MEDIUM4.5
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-42767MEDIUM4.5
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34743MEDIUM4.5
xz-libs
5.2.5-8.el9_0
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-2673MEDIUM4.42
openssl-fips-provider
3.0.7-8.el9
No fix yet
0.4%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-2673MEDIUM4.42
openssl-fips-provider-so
3.0.7-8.el9
No fix yet
0.4%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-2673MEDIUM4.42
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.4%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-42250MEDIUM4.25
bzip2-libs
1.0.8-11.el9
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc
2.34-270.el9_8
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc
2.34-270.el9_8
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-common
2.34-270.el9_8
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc-common
2.34-270.el9_8
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
glibc-minimal-langpack
2.34-270.el9_8
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
glibc-minimal-langpack
2.34-270.el9_8
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-34180MEDIUM4.25
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-28387MEDIUM4.13
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libuuid
2.37.4-25.el9
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-13176MEDIUM4
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-34183LOW3.83
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-28388LOW3.83
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-28389LOW3.83
openssl-libs
1:3.5.5-3.el9_8
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-34182LOW3.77
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-1484LOW3.57
glib2
2.68.4-19.el9_8.1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-5958LOW3.21
sed
4.8-10.el9
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-41080LOW3.15
expat
2.5.0-6.el9_8.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-3360LOW3.15
glib2
2.68.4-19.el9_8.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-7039LOW3.15
glib2
2.68.4-19.el9_8.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0988LOW3.15
glib2
2.68.4-19.el9_8.1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-0989LOW3.15
libxml2
2.9.13-14.el9_7
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-45446LOW3.15
openssl-libs
1:3.5.5-3.el9_8
fixed in 1:3.5.5-4.el9_8
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6019LOW3.11
python3-libs
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-9232LOW3.1
openssl-libs
1:3.5.5-3.el9_8
No fix yet
2.0%
Low-Moderate Risk
Directly Exposed
CVE-2026-5713LOW3.06
python3
3.9.25-7.el9_8
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-5713LOW3.06
python3-libs
3.9.25-7.el9_8
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-32284LOW3.01
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-13837LOW2.8
python3
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42308LOW2.8
python3
3.9.25-7.el9_8
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-13837LOW2.8
python3-libs
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42308LOW2.8
python3-libs
3.9.25-7.el9_8
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-25645LOW2.8
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-41990LOW2.8
libgcrypt
1.10.0-11.el9
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-70873LOW2.8
sqlite-libs
3.34.1-10.el9_8
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-27113LOW2.7
libxml2
2.9.13-14.el9_7
No fix yet
1.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-12781LOW2.7
python3
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW2.7
python3
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-12781LOW2.7
python3-libs
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-3276LOW2.7
python3-libs
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-4516LOW2.6
python3
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-4516LOW2.6
python3-libs
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-0992LOW2.46
libxml2
2.9.13-14.el9_7
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15282LOW2.45
python3
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0672LOW2.45
python3
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15282LOW2.45
python3-libs
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-0672LOW2.45
python3-libs
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-1485LOW2.38
glib2
2.68.4-19.el9_8.1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2023-32636LOW2.29
glib2
2.68.4-19.el9_8.1
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-41989LOW2.29
libgcrypt
1.10.0-11.el9
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-6732LOW2.29
libxml2
2.9.13-14.el9_7
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2022-41409LOW2.29
pcre2
10.40-6.el9
No fix yet
1.0%
Theoretical Threat
Post-Exploit
CVE-2022-41409LOW2.29
pcre2-syntax
10.40-6.el9
No fix yet
1.0%
Theoretical Threat
Post-Exploit
CVE-2026-3644LOW2.29
python3
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-4224LOW2.29
python3
3.9.25-7.el9_8
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-7210LOW2.29
python3
3.9.25-7.el9_8
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-3644LOW2.29
python3-libs
3.9.25-7.el9_8
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-4224LOW2.29
python3-libs
3.9.25-7.el9_8
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-7210LOW2.29
python3-libs
3.9.25-7.el9_8
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2025-11468LOW2.29
python3
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-1502LOW2.29
python3
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-11468LOW2.29
python3-libs
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-1502LOW2.29
python3-libs
3.9.25-7.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils
8.32-40.el9
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils-common
8.32-40.el9
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2023-45803LOW2.14
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-13151LOW2.12
libtasn1
4.16.0-9.el9
No fix yet
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-24515LOW2.12
expat
2.5.0-6.el9_8.1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6170LOW2.12
libxml2
2.9.13-14.el9_7
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2021-3572LOW2.05
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
1.7%
Low-Moderate Risk
Post-Exploit
CVE-2023-45322LOW1.99
libxml2
2.9.13-14.el9_7
No fix yet
0.8%
Theoretical Threat
Post-Exploit
CVE-2026-6019LOW1.87
python3
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-50181LOW1.87
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-50182LOW1.87
python3-pip-wheel
21.3.1-2.el9_8
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-2297LOW1.68
python3
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-3479LOW1.68
python3
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-2297LOW1.68
python3-libs
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-3479LOW1.68
python3-libs
3.9.25-7.el9_8
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-1795LOW1.58
python3
3.9.25-7.el9_8
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-1795LOW1.58
python3-libs
3.9.25-7.el9_8
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2023-50495NONE0
ncurses-base
6.2-12.20210508.el9
No fix yet
1.0%
Theoretical Threat
Not Applicable
CVE-2023-50495NONE0
ncurses-libs
6.2-12.20210508.el9
No fix yet
1.0%
Theoretical Threat
Not Applicable
CVE-2025-64506NONE0
libpng
2:1.6.37-15.el9_8
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-23865NONE0
freetype
2.10.4-10.el9_5
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-22693NONE0
harfbuzz
2.7.4-10.el9
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-28164NONE0
libpng
2:1.6.37-15.el9_8
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-27456NONE0
libblkid
2.37.4-25.el9
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-27456NONE0
libmount
2.37.4-25.el9
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2025-64505NONE0
libpng
2:1.6.37-15.el9_8
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-34757NONE0
libpng
2:1.6.37-15.el9_8
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-25068NONE0
alsa-lib
1.2.15.3-1.el9
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-22020NONE0
libpng
2:1.6.37-15.el9_8
No fix yet
Not Applicable