Vulnerability Reportjenkins/jenkins:2.573-slim-jdk25

jenkins/jenkins:2.573-slim-jdk25
digestsha256:9f52992617e63b582032237de86f4586e33796454735c7c5694383d10b6c7761

Executive Summary

Last scanned:

Threat Score
50/100CAUTION
Reputation
RELIABLE

This image carries significant risk; production deployment is highly discouraged without strict compensating controls. The Jenkins image exposes a substantial number of vulnerabilities (170 total, 21 rated >=6.0); the most notable are CVE-2026-39821 (privilege escalation via Punycode handling) and CVE-2026-54512 (Jackson databind deserialization leading to potential remote code execution). An attacker could potentially leverage these flaws to gain unauthorized access or execute arbitrary code with the privileges of the Jenkins process. However, none of the exposed findings reach the 7.0 severity threshold, and post-exploit-only issues remain low (max 4.64), keeping the overall risk at CAUTION rather than DANGEROUS. Disabling Jackson's polymorphic deserialization fully mitigates CVE-2026-54512, and note that this flaw only applies if that non-default feature is enabled.

Vulnerabilities

Vulnerability Log

411 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-39821MEDIUM6.97
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-54512MEDIUM6.88
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 3.1.4, 2.21.4
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-54513MEDIUM6.88
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4, 3.1.4
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-39831MEDIUM6.88
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-25681MEDIUM6.88
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-27136MEDIUM6.88
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-25210MEDIUM6.63
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-48962MEDIUM6.63
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-45186MEDIUM6.38
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42497MEDIUM6.38
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-9538MEDIUM6.38
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-47913MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.43.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39829MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-39830MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39835MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-46597MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-33814MEDIUM6.38
golang.org/x/net
v0.38.0
fixed in 0.53.0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-42508MEDIUM6.29
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-54369MEDIUM6.03
libacl1
2.3.2-2+b1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-46595MEDIUM6.03
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2015-3276MEDIUM6
libldap2
2.6.10+dfsg-1
No fix yet
5.3%
Low-Moderate Risk
Directly ExposedContext importance: MEDIUM
CVE-2024-26461MEDIUM5.9
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libk5crypto3
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libkrb5-3
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libkrb5support0
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2026-56132MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56403MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56404MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56405MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56406MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56407MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56410MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56411MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22185MEDIUM5.78
libldap2
2.6.10+dfsg-1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2011-3389MEDIUM5.59
libgnutls30t64
3.8.9-3+deb13u4
No fix yet
73.3%
Actively Exploited
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-15649MEDIUM5.52
libperl5.40
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-59888MEDIUM5.52
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-39827MEDIUM5.52
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-39834MEDIUM5.52
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-25680MEDIUM5.52
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-54370MEDIUM5.35
libacl1
2.3.2-2+b1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-54371MEDIUM5.35
libattr1
1:2.5.2-3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-59375MEDIUM5.3
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-13757MEDIUM5.27
libp11-kit0
0.25.5-3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libblkid1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
liblastlog2-2
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libmount1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libsmartcols1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libuuid1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42502MEDIUM5.18
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc-bin
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc6
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-50219MEDIUM5.02
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-56412MEDIUM5.02
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libk5crypto3
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5-3
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5support0
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libblkid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-66382MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32776MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32777MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32778MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
liblastlog2-2
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libmount1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2021-4214MEDIUM4.67
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libsmartcols1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libuuid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib1g
1:1.3.dfsg+really1.3.1-1+b1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-39833MEDIUM4.67
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42496MEDIUM4.64
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-58055MEDIUM4.59
libnghttp2-14
1.64.0-1.1+deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42506MEDIUM4.59
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-24975MEDIUM4.5
git
1:2.47.3-0+deb13u1
No fix yet
2.6%
Low-Moderate Risk
Post-Exploit
CVE-2026-13595MEDIUM4.5
libblkid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libblkid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
liblastlog2-2
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
liblastlog2-2
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-34743MEDIUM4.5
liblzma5
5.8.1-1
fixed in 5.8.1-1+deb13u1
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libmount1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libmount1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-12087MEDIUM4.5
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3713MEDIUM4.5
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libsmartcols1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libsmartcols1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libuuid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libuuid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-54514MEDIUM4.5
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4, 3.1.4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-54515MEDIUM4.5
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 3.1.4, 2.18.9, 2.21.5, 2.22.1
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-47914MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58181MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-46598MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-47911MEDIUM4.5
golang.org/x/net
v0.38.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58190MEDIUM4.5
golang.org/x/net
v0.38.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-52005MEDIUM4.49
git
1:2.47.3-0+deb13u1
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2021-45346MEDIUM4.3
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
1.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-57432MEDIUM4.28
perl
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-57432MEDIUM4.28
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-57432MEDIUM4.28
perl-modules-5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42250MEDIUM4.25
libbz2-1.0
1.0.8-6
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libk5crypto3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libkrb5-3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libkrb5support0
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-48959MEDIUM4.25
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-48961MEDIUM4.25
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2020-15719MEDIUM4.2
libldap2
2.6.10+dfsg-1
No fix yet
2.5%
Low-Moderate Risk
Directly Exposed
CVE-2026-8286MEDIUM4.13
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
curl
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-8286MEDIUM4.13
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-8286MEDIUM4.13
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-27456MEDIUM4
libblkid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
liblastlog2-2
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2017-14159MEDIUM4
libldap2
2.6.10+dfsg-1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libmount1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libsmartcols1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libuuid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2010-4756MEDIUM4
libc-bin
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2010-4756MEDIUM4
libc6
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-48962LOW3.98
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2008-3234LOW3.9
openssh-client
1:10.0p1-7+deb13u4
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2026-12064LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-41992LOW3.82
gzip
1.13-1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-12064LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-12064LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59999LOW3.82
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-60000LOW3.82
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW3.7
libapt-pkg7.0
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2005-2541LOW3.6
tar
1.35+dfsg-3.1
No fix yet
4.0%
Low-Moderate Risk
Post-Exploit
CVE-2020-14145LOW3.54
openssh-client
1:10.0p1-7+deb13u4
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-11856LOW3.31
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-11856LOW3.31
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-11856LOW3.31
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-66032LOW3.31
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-66033LOW3.31
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-59998LOW3.31
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-60001LOW3.31
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl-base
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl-modules-5.40
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2016-20012LOW3.18
openssh-client
1:10.0p1-7+deb13u4
No fix yet
5.3%
Low-Moderate Risk
Post-Exploit
CVE-2018-15919LOW3.18
openssh-client
1:10.0p1-7+deb13u4
No fix yet
3.6%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010023LOW3.17
libc-bin
2.41-12+deb13u3
No fix yet
3.1%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010023LOW3.17
libc6
2.41-12+deb13u3
No fix yet
3.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-41080LOW3.15
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-14104LOW3.11
bsdutils
1:2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-56391LOW3.11
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
mount
2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
util-linux
2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2020-15778LOW3.07
openssh-client
1:10.0p1-7+deb13u4
No fix yet
13.0%
High Exploitation Risk
Post-Exploit
CVE-2025-10966LOW3.01
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-10966LOW3.01
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-10966LOW3.01
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-66034LOW3.01
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2018-1000021LOW3
git
1:2.47.3-0+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2007-2243LOW3
openssh-client
1:10.0p1-7+deb13u4
No fix yet
2.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-60002LOW2.87
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2019-6110LOW2.81
openssh-client
1:10.0p1-7+deb13u4
No fix yet
20.9%
High Exploitation Risk
Post-Exploit
CVE-2022-0563LOW2.8
bsdutils
1:2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
mount
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-5704LOW2.8
tar
1.35+dfsg-3.1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
util-linux
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW2.8
libperl5.40
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-70873LOW2.8
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-13221LOW2.78
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-59995LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59996LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59997LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2018-20796LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2018-20796LOW2.7
libc6
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc6
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libk5crypto3
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5-3
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5support0
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2017-17740LOW2.7
libldap2
2.6.10+dfsg-1
No fix yet
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2026-13595LOW2.7
bsdutils
1:2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
bsdutils
1:2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-66035LOW2.7
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-13595LOW2.7
mount
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
mount
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13595LOW2.7
util-linux
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
util-linux
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-39828LOW2.69
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-39832LOW2.66
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Post-Exploit
CVE-2007-2768LOW2.58
openssh-client
1:10.0p1-7+deb13u4
No fix yet
8.7%
Low-Moderate Risk
Post-Exploit
CVE-2026-57432LOW2.57
libperl5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2007-5686LOW2.5
passwd
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
curl
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
bsdutils
1:2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2017-18018LOW2.4
coreutils
9.7-3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
curl
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-41991LOW2.4
gzip
1.13-1
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
mount
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
util-linux
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils
9.7-3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-56392LOW2.24
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW2.22
apt
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-24515LOW2.12
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-56433LOW1.84
passwd
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-base
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-modules-5.40
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2021-4217LOW1.68
unzip
6.0-29
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-68121NONE0
stdlib
v1.25.3
fixed in 1.24.13, 1.25.7, 1.26.0-rc.3
0.8%
Theoretical Threat
Not Applicable
CVE-2024-52005NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
0.5%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
libncursesw6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
libtinfo6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-base
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-bin
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-39822NONE0
stdlib
v1.25.3
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.2%
Theoretical Threat
Not Applicable
CVE-2022-24975NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
2.6%
Low-Moderate Risk
Not Applicable
CVE-2025-61726NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
1.9%
Low-Moderate Risk
Not Applicable
CVE-2025-61729NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
0.5%
Theoretical Threat
Not Applicable
CVE-2026-25679NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.7%
Theoretical Threat
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable
CVE-2026-32280NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.6%
Theoretical Threat
Not Applicable
CVE-2026-32281NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.4%
Theoretical Threat
Not Applicable
CVE-2026-32283NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.6%
Theoretical Threat
Not Applicable
CVE-2026-33811NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-33814NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-39820NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-39836NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Not Applicable
CVE-2026-42499NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable
CVE-2025-61728NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
0.6%
Theoretical Threat
Not Applicable
CVE-2025-61727NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39825NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Not Applicable
CVE-2026-32282NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2025-14104NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-32289NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2022-0563NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-32288NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-27142NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39823NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39826NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Not Applicable
CVE-2026-13595NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-3184NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-61730NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42505NONE0
stdlib
v1.25.3
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42507NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.4%
Theoretical Threat
Not Applicable
CVE-2018-1000021NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Not Applicable
CVE-2007-5686NONE0
login.defs
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-modules
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-modules-bin
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-runtime
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam0g
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-27456NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2025-48924NONE0
commons-lang:commons-lang
2.6
No fix yet
2.2%
Low-Moderate Risk
Not Applicable
CVE-2024-56433NONE0
login.defs
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
libncursesw6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
libtinfo6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-base
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-bin
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-27139NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.2%
Theoretical Threat
Not Applicable
TEMP-0841856-B18BAFNONE0
bash
5.2.37-2+b9
No fix yet
Not Applicable
CVE-2026-53615NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-8458NONE0
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53910NONE0
diffutils
1:3.10-4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-8458NONE0
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-8458NONE0
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-56131NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56408NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56409NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53615NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-57433NONE0
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
libperl5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-11822NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-11824NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-50812NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-50813NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53615NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
login.defs
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-53615NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
mount
2.41-5
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
passwd
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-57433NONE0
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-57433NONE0
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-57433NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
TEMP-0517018-A83CE6NONE0
sysvinit-utils
3.14-4
No fix yet
Not Applicable
TEMP-0290435-0B57B5NONE0
tar
1.35+dfsg-3.1
No fix yet
Not Applicable
TEMP-1142904-117334NONE0
unzip
6.0-29
No fix yet
Not Applicable
TEMP-1142905-081994NONE0
unzip
6.0-29
No fix yet
Not Applicable
TEMP-1142906-2C6C79NONE0
unzip
6.0-29
No fix yet
Not Applicable
CVE-2026-53615NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
util-linux
2.41-5
No fix yet
Not Applicable
GHSA-r7wm-3cxj-wff9NONE0
com.fasterxml.jackson.core:jackson-core
2.20.1
fixed in 2.18.8, 2.21.4, 2.22.1
Not Applicable
GHSA-72hv-8253-57qqNONE0
com.fasterxml.jackson.core:jackson-core
2.20.1
fixed in 2.21.1, 2.18.6
Not Applicable
GO-2026-5932NONE0
golang.org/x/crypto
v0.36.0
No fix yet
Not Applicable
CVE-2026-46600NONE0
golang.org/x/net
v0.38.0
fixed in 0.56.0
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39824NONE0
golang.org/x/sys
v0.31.0
fixed in 0.44.0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56852NONE0
golang.org/x/text
v0.23.0
fixed in 0.39.0
0.4%
Theoretical Threat
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.