Vulnerability Reportjenkins/jenkins:lts

jenkins/jenkins:2.555.3-ltsjenkins/jenkins:ltsjenkins/jenkins:2.555.3jenkins/jenkins:2.555.3-lts-jdk21jenkins/jenkins:lts-jdk21jenkins/jenkins:2.555.3-jdk21
DIGESTsha256:e82bbdcffb6361c081ac66bbdcd5802a299b3631c78c3be04a0a91c7f952fff3

Executive Summary

DANGEROUS

This image poses a critical security risk and must not be used in production, especially as an internet-facing service. An attacker could leverage vulnerabilities like CVE-2005-2541 and CVE-2026-42496 to gain local privilege escalation within the container, achieve unauthorized file modification or data exfiltration, or even execute arbitrary code remotely. The high number of severe and contextually important vulnerabilities, including issues in core components like tar, perl-archive-tar, and libssh2, indicates a significant attack surface inherent to the Jenkins operations of archive extraction and SSH integrations. While from a popular community publisher, the current state of these vulnerabilities overrides any positive reputation and presents an unacceptable risk profile for production deployment.

Threat Score
100/100
DANGEROUS
Reputation
RELIABLE
jenkins
BaseImage/
jenkins/jenkins:lts
Hardened
Grade
A+
Vulns
0
Verified & secured for production

Vulnerabilities

Vulnerability Log

311 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2005-2541CRITICAL10
tar
1.35+dfsg-3.1
No fix yet
3.8%
Low-Moderate Risk
Directly ExposedContext importance: HIGH
CVE-2026-42496CRITICAL9.1
libperl5.40
5.40.1-6
No fix yet
Directly ExposedContext importance: HIGH
CVE-2026-42496CRITICAL9.1
perl
5.40.1-6
No fix yet
Directly ExposedContext importance: HIGH
CVE-2026-48962HIGH7.8
libperl5.40
5.40.1-6
No fix yet
Directly Exposed
CVE-2026-7598HIGH7.73
libssh2-1t64
1.11.1-1
No fix yet
<0.1%
Theoretical Threat
Directly ExposedContext importance: HIGH
CVE-2026-5773HIGH7.5
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6276HIGH7.5
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-5773HIGH7.5
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6276HIGH7.5
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-45186HIGH7.5
libexpat1
2.7.1-2
No fix yet
Directly ExposedContext importance: HIGH
CVE-2026-42497HIGH7.5
libperl5.40
5.40.1-6
No fix yet
Directly ExposedContext importance: HIGH
CVE-2026-9538HIGH7.5
libperl5.40
5.40.1-6
No fix yet
Directly Exposed
CVE-2019-1010023HIGH7.48
libc-bin
2.41-12+deb13u3
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2019-1010023HIGH7.48
libc6
2.41-12+deb13u3
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-15079MEDIUM6.88
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-15079MEDIUM6.88
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-25210MEDIUM6.63
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5545MEDIUM6.5
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6429MEDIUM6.5
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-5545MEDIUM6.5
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6429MEDIUM6.5
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2019-9192MEDIUM6.38
libc-bin
2.41-12+deb13u3
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2019-9192MEDIUM6.38
libc6
2.41-12+deb13u3
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2018-20796MEDIUM6
libc-bin
2.41-12+deb13u3
No fix yet
1.5%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2018-20796MEDIUM6
libc6
2.41-12+deb13u3
No fix yet
1.5%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2015-3276MEDIUM6
libldap2
2.6.10+dfsg-1
No fix yet
2.6%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2026-50219MEDIUM5.9
libexpat1
2.7.1-2
No fix yet
Directly Exposed
CVE-2026-1965MEDIUM5.78
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14819MEDIUM5.78
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-1965MEDIUM5.78
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14819MEDIUM5.78
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22185MEDIUM5.78
libldap2
2.6.10+dfsg-1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2020-15778MEDIUM5.77
openssh-client
1:10.0p1-7+deb13u4
No fix yet
64.3%
Actively Exploited
Post-Exploit
CVE-2026-6238MEDIUM5.52
libc-bin
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc6
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3784MEDIUM5.52
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14524MEDIUM5.52
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3784MEDIUM5.52
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14524MEDIUM5.52
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-42496MEDIUM5.46
perl-base
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-42496MEDIUM5.46
perl-modules-5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-3805MEDIUM5.35
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3805MEDIUM5.35
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2019-6110MEDIUM5.3
openssh-client
1:10.0p1-7+deb13u4
No fix yet
57.6%
Actively Exploited
Post-Exploit
CVE-2026-4873MEDIUM5.3
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6253MEDIUM5.3
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-7168MEDIUM5.3
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-4873MEDIUM5.3
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-6253MEDIUM5.3
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2026-7168MEDIUM5.3
libcurl4t64
8.14.1-2+deb13u3
No fix yet
Directly Exposed
CVE-2025-14104MEDIUM5.18
libblkid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libmount1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libsmartcols1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libuuid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc-bin
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc6
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-10966MEDIUM5.02
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-10966MEDIUM5.02
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-26461MEDIUM5.02
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libk5crypto3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-26461MEDIUM5.02
libk5crypto3
1.21.3-5+deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5-3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-26461MEDIUM5.02
libkrb5-3
1.21.3-5+deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5support0
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2024-26461MEDIUM5.02
libkrb5support0
1.21.3-5+deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-13151MEDIUM5.02
libtasn1-6
4.20.0-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-42250MEDIUM5
libbz2-1.0
1.0.8-6
No fix yet
Directly Exposed
CVE-2026-3783MEDIUM4.84
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3783MEDIUM4.84
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-48962MEDIUM4.68
perl
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-48962MEDIUM4.68
perl-base
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-48962MEDIUM4.68
perl-modules-5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2022-0563MEDIUM4.67
libblkid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-66382MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32776MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32777MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-32778MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libmount1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2021-4214MEDIUM4.67
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libsmartcols1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libuuid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib1g
1:1.3.dfsg+really1.3.1-1+b1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5773MEDIUM4.5
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2026-6276MEDIUM4.5
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2026-42497MEDIUM4.5
perl
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-9538MEDIUM4.5
perl
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-42497MEDIUM4.5
perl-base
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-9538MEDIUM4.5
perl-base
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-42497MEDIUM4.5
perl-modules-5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-9538MEDIUM4.5
perl-modules-5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-3184MEDIUM4.5
libblkid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2019-1010024MEDIUM4.5
libc-bin
2.41-12+deb13u3
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2019-1010025MEDIUM4.5
libc-bin
2.41-12+deb13u3
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2019-1010024MEDIUM4.5
libc6
2.41-12+deb13u3
No fix yet
0.6%
Theoretical Threat
Directly Exposed
CVE-2019-1010025MEDIUM4.5
libc6
2.41-12+deb13u3
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2025-59375MEDIUM4.5
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-34743MEDIUM4.5
liblzma5
5.8.1-1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libmount1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3713MEDIUM4.5
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libsmartcols1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libuuid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-47914MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-58181MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
<0.1%
Theoretical Threat
Directly Exposed
CVE-2024-52005MEDIUM4.49
git
1:2.47.3-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-3389MEDIUM4.3
libgnutls30t64
3.8.9-3+deb13u4
No fix yet
3.9%
Low-Moderate Risk
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-15079MEDIUM4.13
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14017MEDIUM4.08
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14017MEDIUM4.08
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22751MEDIUM4.08
org.springframework.security:spring-security-core
6.5.9
fixed in 6.5.10, 7.0.5
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libblkid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-15224MEDIUM4
libcurl3t64-gnutls
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-15224MEDIUM4
libcurl4t64
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2017-14159MEDIUM4
libldap2
2.6.10+dfsg-1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libmount1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libsmartcols1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libuuid1
2.41-5
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5545LOW3.9
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2026-6429LOW3.9
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2008-3234LOW3.9
openssh-client
1:10.0p1-7+deb13u4
No fix yet
4.6%
Low-Moderate Risk
Post-Exploit
CVE-2022-24975LOW3.82
git
1:2.47.3-0+deb13u1
No fix yet
1.0%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW3.7
libapt-pkg7.0
3.0.3
No fix yet
1.5%
Low-Moderate Risk
Directly Exposed
CVE-2016-20012LOW3.66
openssh-client
1:10.0p1-7+deb13u4
No fix yet
14.6%
High Exploitation Risk
Post-Exploit
CVE-2021-45346LOW3.65
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2020-15719LOW3.57
libldap2
2.6.10+dfsg-1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2020-14145LOW3.54
openssh-client
1:10.0p1-7+deb13u4
No fix yet
1.6%
Low-Moderate Risk
Post-Exploit
CVE-2026-8376LOW3.53
libperl5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-8376LOW3.53
perl
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-8376LOW3.53
perl-base
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-8376LOW3.53
perl-modules-5.40
5.40.1-6
No fix yet
Post-Exploit
CVE-2026-1965LOW3.47
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14819LOW3.47
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2010-4756LOW3.4
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2010-4756LOW3.4
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3784LOW3.31
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14524LOW3.31
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3805LOW3.21
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-4873LOW3.18
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2026-6253LOW3.18
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2026-7168LOW3.18
curl
8.14.1-2+deb13u3
No fix yet
Post-Exploit
CVE-2018-15919LOW3.18
openssh-client
1:10.0p1-7+deb13u4
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-41080LOW3.15
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22746LOW3.15
org.springframework.security:spring-security-core
6.5.9
fixed in 6.5.10, 7.0.5
<0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104LOW3.11
bsdutils
1:2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
login
1:4.16.0-2+really2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
mount
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
util-linux
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-10966LOW3.01
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2019-1010022LOW3
libc-bin
2.41-12+deb13u3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2019-1010022LOW3
libc6
2.41-12+deb13u3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3783LOW2.91
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
bsdutils
1:2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
login
1:4.16.0-2+really2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
mount
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-5704LOW2.8
tar
1.35+dfsg-3.1
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
util-linux
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW2.8
libperl5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-70873LOW2.8
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2018-5709LOW2.7
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libk5crypto3
1.21.3-5+deb13u1
No fix yet
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5-3
1.21.3-5+deb13u1
No fix yet
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5support0
1.21.3-5+deb13u1
No fix yet
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2017-17740LOW2.7
libldap2
2.6.10+dfsg-1
No fix yet
6.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-3184LOW2.7
bsdutils
1:2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
login
1:4.16.0-2+really2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
mount
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
util-linux
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2018-1000021LOW2.55
git
1:2.47.3-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2007-2243LOW2.55
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2007-5686LOW2.5
passwd
1:4.17.4-2
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
bsdutils
1:2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2017-18018LOW2.4
coreutils
9.7-3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
curl
8.14.1-2+deb13u3
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
login
1:4.16.0-2+really2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
mount
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
util-linux
2.41-5
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW2.22
apt
3.0.3
No fix yet
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2007-2768LOW2.19
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2024-56433LOW2.16
passwd
1:4.17.4-2
No fix yet
4.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-24515LOW2.12
libexpat1
2.7.1-2
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2011-4116LOW1.68
perl
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-modules-5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2021-4217LOW1.68
unzip
6.0-29
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-68121NONE0
stdlib
v1.25.3
fixed in 1.24.13, 1.25.7, 1.26.0-rc.3
<0.1%
Theoretical Threat
Not Applicable
CVE-2024-52005NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
libncursesw6
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
libtinfo6
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-base
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-bin
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2022-24975NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
1.0%
Theoretical Threat
Not Applicable
CVE-2025-61726NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-61729NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-25679NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32280NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32281NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32283NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-33811NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-33814NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-39820NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-39836NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2025-61728NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-61727NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32282NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-14104NONE0
liblastlog2-2
2.41-5
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32289NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2022-0563NONE0
liblastlog2-2
2.41-5
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-32288NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-27142NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-39826NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-3184NONE0
liblastlog2-2
2.41-5
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-61730NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
<0.1%
Theoretical Threat
Not Applicable
CVE-2018-1000021NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2007-5686NONE0
login.defs
1:4.17.4-2
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-27456NONE0
liblastlog2-2
2.41-5
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-48924NONE0
commons-lang:commons-lang
2.6
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2024-56433NONE0
login.defs
1:4.17.4-2
No fix yet
4.5%
Low-Moderate Risk
Not Applicable
CVE-2025-6141NONE0
libncursesw6
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
libtinfo6
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-base
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-bin
6.5+20250216-2
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-27139NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
<0.1%
Theoretical Threat
Not Applicable
TEMP-0841856-B18BAFNONE0
bash
5.2.37-2+b9
No fix yet
Not Applicable
CVE-2026-48959NONE0
libperl5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2025-15649NONE0
libperl5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2026-7010NONE0
libperl5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48961NONE0
libperl5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2026-34180NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34181NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34182NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34183NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42764NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42766NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42767NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42768NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42769NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42770NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45445NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45446NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45447NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-7383NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-9076NONE0
libssl3t64
3.5.6-1~deb13u2
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
login.defs
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-34180NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34181NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34182NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34183NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42764NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42766NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42767NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42768NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42769NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42770NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45445NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45446NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45447NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-7383NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-9076NONE0
openssl
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34180NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34181NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34182NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-34183NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42764NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42766NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42767NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42768NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42769NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-42770NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45445NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45446NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-45447NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-7383NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
CVE-2026-9076NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
passwd
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-48959NONE0
perl
5.40.1-6
No fix yet
Not Applicable
CVE-2025-15649NONE0
perl
5.40.1-6
No fix yet
Not Applicable
CVE-2026-7010NONE0
perl
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48961NONE0
perl
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48959NONE0
perl-base
5.40.1-6
No fix yet
Not Applicable
CVE-2025-15649NONE0
perl-base
5.40.1-6
No fix yet
Not Applicable
CVE-2026-7010NONE0
perl-base
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48961NONE0
perl-base
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48959NONE0
perl-modules-5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2025-15649NONE0
perl-modules-5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2026-7010NONE0
perl-modules-5.40
5.40.1-6
No fix yet
Not Applicable
CVE-2026-48961NONE0
perl-modules-5.40
5.40.1-6
No fix yet
Not Applicable
TEMP-0517018-A83CE6NONE0
sysvinit-utils
3.14-4
No fix yet
Not Applicable
TEMP-0290435-0B57B5NONE0
tar
1.35+dfsg-3.1
No fix yet
Not Applicable
GHSA-72hv-8253-57qqNONE0
com.fasterxml.jackson.core:jackson-core
2.20.1
fixed in 2.21.1, 2.18.6
Not Applicable
CVE-2026-39823NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-39825NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-42499NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
Not Applicable
CVE-2026-42507NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
Not Applicable