Last scanned:
This base/runtime image is a clean foundation for building production images. It is an official Eclipse Temurin Java runtime from Docker, pinned by digest for immutability. No vulnerabilities were found in the base image, meaning images built on top inherit a secure starting point. Given its high trust and zero CVEs, this image is ideal for production use. Note: this is a general-purpose base/runtime image — many findings live in components that an application built on top may never load, so actual exploitability depends on the final image. For an accurate risk picture, re-scan the final application image with context.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| No vulnerabilities found matching filters. | ||||
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.