Last scanned:
This base/runtime image is a clean foundation for building production images. The scan reports zero exposed-surface and zero post-exploit-only vulnerabilities, and there are no known CVEs affecting this build. As an official, digest-pinned Temurin image, it provides a strong supply chain baseline; any vulnerabilities would need to come from the application layer added on top. Note: this is a general-purpose base/runtime image — many findings live in components that an application built on top may never load, so actual exploitability depends on the final image. For an accurate risk picture, re-scan the final application image with context.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| No vulnerabilities found matching filters. | ||||
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
Base-image lineage, package provenance and signatures — nothing slipped in unnoticed.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.