Last scanned:
AI verdict failed due to an error.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2025-46836 | LOW3.37 | net-tools 1.60+git20180626.aebd88e-1ubuntu1 fixed in 1.60+git20180626.aebd88e-1ubuntu1.3 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2024-13176 | LOW2.4 | openssl 1.1.1f-1ubuntu2.23 fixed in 1.1.1f-1ubuntu2.24 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2024-9143 | LOW2.22 | openssl 1.1.1f-1ubuntu2.23 fixed in 1.1.1f-1ubuntu2.24 | 5.8% Low-Moderate Risk | Post-Exploit |
| CVE-2023-37920 | NONE0 | certifi 2022.9.24 fixed in 2023.7.22 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2026-27459 | NONE0 | pyOpenSSL 22.0.0 fixed in 26.0.0 | 0.7% Theoretical Threat | Not Applicable |
| CVE-2024-6345 | NONE0 | setuptools 58.0.4 fixed in 70.0.0 | 1.9% Low-Moderate Risk | Not Applicable |
| CVE-2025-47273 | NONE0 | setuptools 58.0.4 fixed in 78.1.1 | 1.5% Low-Moderate Risk | Not Applicable |
| CVE-2023-43804 | NONE0 | urllib3 1.26.8 fixed in 2.0.6, 1.26.17 | 1.2% Low-Moderate Risk | Not Applicable |
| CVE-2022-23491 | NONE0 | certifi 2022.9.24 fixed in 2022.12.07 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-39689 | NONE0 | certifi 2022.9.24 fixed in 2024.7.4 | 1.0% Low-Moderate Risk | Not Applicable |
| CVE-2023-50782 | NONE0 | cryptography 36.0.0 fixed in 42.0.0 | 1.1% Low-Moderate Risk | Not Applicable |
| CVE-2023-49083 | NONE0 | cryptography 36.0.0 fixed in 41.0.6 | 1.0% Theoretical Threat | Not Applicable |
| CVE-2024-3651 | NONE0 | idna 3.3 fixed in 3.7 | 1.4% Low-Moderate Risk | Not Applicable |
| CVE-2025-66418 | NONE0 | urllib3 1.26.8 fixed in 2.6.0 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2025-66471 | NONE0 | urllib3 1.26.8 fixed in 2.6.0 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2026-21441 | NONE0 | urllib3 1.26.8 fixed in 2.6.3 | 2.7% Low-Moderate Risk | Not Applicable |
| CVE-2022-40898 | NONE0 | wheel 0.37.1 fixed in 0.38.1 | 2.7% Low-Moderate Risk | Not Applicable |
| CVE-2023-0286 | NONE0 | cryptography 36.0.0 fixed in 39.0.1 | 59.5% Actively Exploited | Not Applicable |
| CVE-2024-34062 | NONE0 | tqdm 4.63.0 fixed in 4.66.3 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-4802 | NONE0 | libc-bin 2.31-0ubuntu9.16 fixed in 2.31-0ubuntu9.18 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2025-4802 | NONE0 | libc6 2.31-0ubuntu9.16 fixed in 2.31-0ubuntu9.18 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2026-26007 | NONE0 | cryptography 36.0.0 fixed in 46.0.5 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2023-23931 | NONE0 | cryptography 36.0.0 fixed in 39.0.1 | 1.3% Low-Moderate Risk | Not Applicable |
| CVE-2024-37891 | NONE0 | urllib3 1.26.8 fixed in 1.26.19, 2.2.2 | 1.1% Low-Moderate Risk | Not Applicable |
| CVE-2023-32681 | NONE0 | requests 2.27.1 fixed in 2.31.0 | 3.0% Low-Moderate Risk | Not Applicable |
| CVE-2026-59890 | NONE0 | setuptools 58.0.4 fixed in 83.0.0 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-50181 | NONE0 | urllib3 1.26.8 fixed in 2.5.0 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2022-40897 | NONE0 | setuptools 58.0.4 fixed in 65.5.1 | 2.6% Low-Moderate Risk | Not Applicable |
| CVE-2024-35195 | NONE0 | requests 2.27.1 fixed in 2.32.0 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2025-0395 | NONE0 | libc-bin 2.31-0ubuntu9.16 fixed in 2.31-0ubuntu9.17 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2025-0395 | NONE0 | libc6 2.31-0ubuntu9.16 fixed in 2.31-0ubuntu9.17 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2024-0727 | NONE0 | cryptography 36.0.0 fixed in 42.0.2 | 3.2% Low-Moderate Risk | Not Applicable |
| CVE-2026-25645 | NONE0 | requests 2.27.1 fixed in 2.33.0 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2024-12243 | NONE0 | libgnutls30 3.6.13-2ubuntu1.11 fixed in 3.6.13-2ubuntu1.12 | 1.2% Low-Moderate Risk | Not Applicable |
| CVE-2024-12133 | NONE0 | libtasn1-6 4.16.0-2 fixed in 4.16.0-2ubuntu0.1 | 1.1% Low-Moderate Risk | Not Applicable |
| CVE-2026-34073 | NONE0 | cryptography 36.0.0 fixed in 46.0.6 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2026-45409 | NONE0 | idna 3.3 fixed in 3.15 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2026-27448 | NONE0 | pyOpenSSL 22.0.0 fixed in 26.0.0 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2024-47081 | NONE0 | requests 2.27.1 fixed in 2.32.4 | 0.8% Theoretical Threat | Not Applicable |
| CVE-2026-44431 | NONE0 | urllib3 1.26.8 fixed in 2.7.0 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2025-30258 | NONE0 | gpgv 2.2.19-3ubuntu2.2 fixed in 2.2.19-3ubuntu2.4 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2024-13176 | NONE0 | libssl1.1 1.1.1f-1ubuntu2.23 fixed in 1.1.1f-1ubuntu2.24 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2023-45803 | NONE0 | urllib3 1.26.8 fixed in 2.0.7, 1.26.18 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-9143 | NONE0 | libssl1.1 1.1.1f-1ubuntu2.23 fixed in 1.1.1f-1ubuntu2.24 | 5.8% Low-Moderate Risk | Not Applicable |
| GHSA-537c-gmf6-5ccf | NONE0 | cryptography 36.0.0 fixed in 48.0.1 | — | Not Applicable |
| GHSA-5cpq-8wj7-hf2v | NONE0 | cryptography 36.0.0 fixed in 41.0.0 | — | Not Applicable |
| GHSA-jm77-qphf-c4w8 | NONE0 | cryptography 36.0.0 fixed in 41.0.3 | — | Not Applicable |
| GHSA-v8gr-m533-ghj9 | NONE0 | cryptography 36.0.0 fixed in 41.0.4 | — | Not Applicable |
| GHSA-6v7p-g79w-8964 | NONE0 | msgpack 1.0.2 fixed in 1.2.1 | — | Not Applicable |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.