Vulnerability Reportjenkins/jenkins:2.575-jdk21

jenkins/jenkins:latestjenkins/jenkins:2.575jenkins/jenkins:latest-jdk21jenkins/jenkins:jdk21jenkins/jenkins:2.575-jdk21
digestsha256:16778c994cfc6e9a6dd364c1af946142e70c39cc4e5debe9119f78e4b67021dc

Executive Summary

Last scanned:

Threat Score
50/100CAUTION
Reputation
RELIABLE

This image carries significant risk; production deployment is highly discouraged without strict compensating controls. An attacker could achieve remote code execution through jackson-databind polymorphic deserialization (CVE-2026-54512) or bypass privilege checks via the golang.org/x/net IDNA issue (CVE-2026-39821), potentially gaining control of the Jenkins controller and its build environment. Disabling polymorphic typing in Jackson fully eliminates CVE-2026-54512 and CVE-2026-54513, and restricting network exposure limits the reachable attack surface. Patching the affected Go and Java libraries is strongly advised before non-controlled deployment.

Vulnerabilities

Vulnerability Log

410 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-39821MEDIUM6.97
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-54512MEDIUM6.88
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 3.1.4, 2.21.4
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-54513MEDIUM6.88
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4, 3.1.4
0.7%
Theoretical Threat
Directly Exposed
CVE-2026-39831MEDIUM6.88
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-25681MEDIUM6.88
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-27136MEDIUM6.88
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-25210MEDIUM6.63
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-69720MEDIUM6.63
libncursesw6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-48962MEDIUM6.63
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-69720MEDIUM6.63
libtinfo6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69720MEDIUM6.63
ncurses-base
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-69720MEDIUM6.63
ncurses-bin
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-45186MEDIUM6.38
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42497MEDIUM6.38
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-9538MEDIUM6.38
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-47913MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.43.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39829MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-39830MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-39835MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-46597MEDIUM6.38
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-33814MEDIUM6.38
golang.org/x/net
v0.38.0
fixed in 0.53.0
0.8%
Theoretical Threat
Directly Exposed
CVE-2026-42508MEDIUM6.29
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-54369MEDIUM6.03
libacl1
2.3.2-2+b1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-46595MEDIUM6.03
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-26461MEDIUM5.9
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libk5crypto3
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libkrb5-3
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2024-26461MEDIUM5.9
libkrb5support0
1.21.3-5+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Directly Exposed
CVE-2026-56132MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56403MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56404MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56405MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56406MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56407MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56410MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-56411MEDIUM5.87
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-22185MEDIUM5.78
libldap2
2.6.10+dfsg-1
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2011-3389MEDIUM5.59
libgnutls30t64
3.8.9-3+deb13u4
No fix yet
73.3%
Actively Exploited
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-15649MEDIUM5.52
libperl5.40
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-59888MEDIUM5.52
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-39827MEDIUM5.52
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-39834MEDIUM5.52
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-25680MEDIUM5.52
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-54370MEDIUM5.35
libacl1
2.3.2-2+b1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-54371MEDIUM5.35
libattr1
1:2.5.2-3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2025-59375MEDIUM5.3
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
1.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-13757MEDIUM5.27
libp11-kit0
0.25.5-3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libblkid1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
liblastlog2-2
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libmount1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libsmartcols1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
libuuid1
2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-14104MEDIUM5.18
login
1:4.16.0-2+really2.41-5
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42502MEDIUM5.18
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc-bin
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc6
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-50219MEDIUM5.02
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-56412MEDIUM5.02
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libk5crypto3
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5-3
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2024-26458MEDIUM5.02
libkrb5support0
1.21.3-5+deb13u1
No fix yet
0.8%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libblkid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-66382MEDIUM4.67
libexpat1
2.7.1-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32776MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32777MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-32778MEDIUM4.67
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
liblastlog2-2
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libmount1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2021-4214MEDIUM4.67
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libsmartcols1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libuuid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
login
1:4.16.0-2+really2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib1g
1:1.3.dfsg+really1.3.1-1+b1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-39833MEDIUM4.67
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-42496MEDIUM4.64
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496MEDIUM4.64
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-58055MEDIUM4.59
libnghttp2-14
1.64.0-1.1+deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-42506MEDIUM4.59
golang.org/x/net
v0.38.0
fixed in 0.55.0
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-24975MEDIUM4.5
git
1:2.47.3-0+deb13u1
No fix yet
2.6%
Low-Moderate Risk
Post-Exploit
CVE-2015-3276MEDIUM4.5
libldap2
2.6.10+dfsg-1
No fix yet
5.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-13595MEDIUM4.5
libblkid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libblkid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
liblastlog2-2
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
liblastlog2-2
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libmount1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libmount1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-12087MEDIUM4.5
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3713MEDIUM4.5
libpng16-16t64
1.6.48-1+deb13u5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libsmartcols1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libsmartcols1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
libuuid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libuuid1
2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-13595MEDIUM4.5
login
1:4.16.0-2+really2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
login
1:4.16.0-2+really2.41-5
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-54514MEDIUM4.5
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 2.18.8, 2.21.4, 3.1.4
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-54515MEDIUM4.5
com.fasterxml.jackson.core:jackson-databind
2.20.1
fixed in 3.1.4, 2.18.9, 2.21.5, 2.22.1
0.3%
Theoretical Threat
Directly Exposed
CVE-2025-47914MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58181MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.45.0
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-46598MEDIUM4.5
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-47911MEDIUM4.5
golang.org/x/net
v0.38.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-58190MEDIUM4.5
golang.org/x/net
v0.38.0
fixed in 0.45.0
0.5%
Theoretical Threat
Directly Exposed
CVE-2024-52005MEDIUM4.49
git
1:2.47.3-0+deb13u1
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2021-45346MEDIUM4.3
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
1.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-57432MEDIUM4.28
perl
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-57432MEDIUM4.28
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-57432MEDIUM4.28
perl-modules-5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-42250MEDIUM4.25
libbz2-1.0
1.0.8-6
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libk5crypto3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libkrb5-3
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-11850MEDIUM4.25
libkrb5support0
1.21.3-5+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-48959MEDIUM4.25
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-48961MEDIUM4.25
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2020-15719MEDIUM4.2
libldap2
2.6.10+dfsg-1
No fix yet
2.5%
Low-Moderate Risk
Directly Exposed
CVE-2007-5686MEDIUM4.17
login.defs
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Directly Exposed
CVE-2026-8286MEDIUM4.13
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
curl
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-8286MEDIUM4.13
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-8286MEDIUM4.13
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15079MEDIUM4.13
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-54411MEDIUM4.08
libpam-modules
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-54411MEDIUM4.08
libpam-modules-bin
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-54411MEDIUM4.08
libpam-runtime
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-54411MEDIUM4.08
libpam0g
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libblkid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
liblastlog2-2
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2017-14159MEDIUM4
libldap2
2.6.10+dfsg-1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libmount1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libsmartcols1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
libuuid1
2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-27456MEDIUM4
login
1:4.16.0-2+really2.41-5
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2010-4756MEDIUM4
libc-bin
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2010-4756MEDIUM4
libc6
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-48962LOW3.98
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48962LOW3.98
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2008-3234LOW3.9
openssh-client
1:10.0p1-7+deb13u4
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2026-12064LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-41992LOW3.82
gzip
1.13-1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-12064LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-12064LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8927LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8932LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9079LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-9545LOW3.82
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59999LOW3.82
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-60000LOW3.82
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9547LOW3.77
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-9080LOW3.72
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW3.7
libapt-pkg7.0
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2005-2541LOW3.6
tar
1.35+dfsg-3.1
No fix yet
4.0%
Low-Moderate Risk
Post-Exploit
CVE-2020-14145LOW3.54
openssh-client
1:10.0p1-7+deb13u4
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-11856LOW3.31
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
curl
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-11856LOW3.31
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-11856LOW3.31
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-8924LOW3.31
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-66032LOW3.31
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-66033LOW3.31
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-59998LOW3.31
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-60001LOW3.31
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl-base
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-15649LOW3.31
perl-modules-5.40
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2016-20012LOW3.18
openssh-client
1:10.0p1-7+deb13u4
No fix yet
5.3%
Low-Moderate Risk
Post-Exploit
CVE-2018-15919LOW3.18
openssh-client
1:10.0p1-7+deb13u4
No fix yet
3.6%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010023LOW3.17
libc-bin
2.41-12+deb13u3
No fix yet
3.1%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010023LOW3.17
libc6
2.41-12+deb13u3
No fix yet
3.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-41080LOW3.15
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-14104LOW3.11
bsdutils
1:2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-56391LOW3.11
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
mount
2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2025-14104LOW3.11
util-linux
2.41-5
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2020-15778LOW3.07
openssh-client
1:10.0p1-7+deb13u4
No fix yet
13.0%
High Exploitation Risk
Post-Exploit
CVE-2024-56433LOW3.06
login.defs
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2025-10966LOW3.01
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-10966LOW3.01
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-10966LOW3.01
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-66034LOW3.01
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2018-1000021LOW3
git
1:2.47.3-0+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Post-Exploit
CVE-2007-2243LOW3
openssh-client
1:10.0p1-7+deb13u4
No fix yet
2.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-60002LOW2.87
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2019-6110LOW2.81
openssh-client
1:10.0p1-7+deb13u4
No fix yet
20.9%
High Exploitation Risk
Post-Exploit
CVE-2022-0563LOW2.8
bsdutils
1:2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
mount
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-5704LOW2.8
tar
1.35+dfsg-3.1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
util-linux
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-6141LOW2.8
libncursesw6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2011-4116LOW2.8
libperl5.40
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2025-70873LOW2.8
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6141LOW2.8
libtinfo6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6141LOW2.8
ncurses-base
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2025-6141LOW2.8
ncurses-bin
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-13221LOW2.78
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13221LOW2.78
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-59995LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59996LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-59997LOW2.75
openssh-client
1:10.0p1-7+deb13u4
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2018-20796LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2018-20796LOW2.7
libc6
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc6
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libgssapi-krb5-2
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libk5crypto3
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5-3
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2018-5709LOW2.7
libkrb5support0
1.21.3-5+deb13u1
No fix yet
2.1%
Low-Moderate Risk
Post-Exploit
CVE-2017-17740LOW2.7
libldap2
2.6.10+dfsg-1
No fix yet
7.0%
Low-Moderate Risk
Post-Exploit
CVE-2026-13595LOW2.7
bsdutils
1:2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
bsdutils
1:2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-66035LOW2.7
libssh2-1t64
1.11.1-1+deb13u1
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-13595LOW2.7
mount
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
mount
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-13595LOW2.7
util-linux
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
util-linux
2.41-5
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-39828LOW2.69
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-39832LOW2.66
golang.org/x/crypto
v0.36.0
fixed in 0.52.0
0.6%
Theoretical Threat
Post-Exploit
CVE-2007-2768LOW2.58
openssh-client
1:10.0p1-7+deb13u4
No fix yet
8.7%
Low-Moderate Risk
Post-Exploit
CVE-2026-57432LOW2.57
libperl5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2007-5686LOW2.5
passwd
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
curl
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-8926LOW2.45
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-14017LOW2.45
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
bsdutils
1:2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2017-18018LOW2.4
coreutils
9.7-3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
curl
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
curl
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-41991LOW2.4
gzip
1.13-1
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-10536LOW2.4
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-15224LOW2.4
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
mount
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-27456LOW2.4
util-linux
2.41-5
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils
9.7-3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-56392LOW2.24
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW2.22
apt
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2026-24515LOW2.12
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.2%
Theoretical Threat
Directly Exposed
CVE-2024-56433LOW1.84
passwd
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-base
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-modules-5.40
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2021-4217LOW1.68
unzip
6.0-29
No fix yet
0.6%
Theoretical Threat
Post-Exploit
CVE-2025-68121NONE0
stdlib
v1.25.3
fixed in 1.24.13, 1.25.7, 1.26.0-rc.3
0.8%
Theoretical Threat
Not Applicable
CVE-2024-52005NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
0.5%
Theoretical Threat
Not Applicable
CVE-2026-39822NONE0
stdlib
v1.25.3
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.2%
Theoretical Threat
Not Applicable
CVE-2022-24975NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
2.6%
Low-Moderate Risk
Not Applicable
CVE-2025-61726NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
1.9%
Low-Moderate Risk
Not Applicable
CVE-2025-61729NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
0.5%
Theoretical Threat
Not Applicable
CVE-2026-25679NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.7%
Theoretical Threat
Not Applicable
CVE-2026-27145NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable
CVE-2026-32280NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.6%
Theoretical Threat
Not Applicable
CVE-2026-32281NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.4%
Theoretical Threat
Not Applicable
CVE-2026-32283NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.6%
Theoretical Threat
Not Applicable
CVE-2026-33811NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-33814NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-39820NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-39836NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.6%
Theoretical Threat
Not Applicable
CVE-2026-42499NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.8%
Theoretical Threat
Not Applicable
CVE-2026-42504NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.6%
Theoretical Threat
Not Applicable
CVE-2025-61728NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
0.6%
Theoretical Threat
Not Applicable
CVE-2025-61727NONE0
stdlib
v1.25.3
fixed in 1.24.11, 1.25.5
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39825NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Not Applicable
CVE-2026-32282NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-32289NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-32288NONE0
stdlib
v1.25.3
fixed in 1.25.9, 1.26.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-27142NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39823NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39826NONE0
stdlib
v1.25.3
fixed in 1.25.10, 1.26.3
0.4%
Theoretical Threat
Not Applicable
CVE-2025-61730NONE0
stdlib
v1.25.3
fixed in 1.24.12, 1.25.6
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42505NONE0
stdlib
v1.25.3
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.3%
Theoretical Threat
Not Applicable
CVE-2026-42507NONE0
stdlib
v1.25.3
fixed in 1.25.11, 1.26.4
0.4%
Theoretical Threat
Not Applicable
CVE-2018-1000021NONE0
git-man
1:2.47.3-0+deb13u1
No fix yet
1.1%
Low-Moderate Risk
Not Applicable
CVE-2025-48924NONE0
commons-lang:commons-lang
2.6
No fix yet
2.2%
Low-Moderate Risk
Not Applicable
CVE-2026-27139NONE0
stdlib
v1.25.3
fixed in 1.25.8, 1.26.1
0.2%
Theoretical Threat
Not Applicable
TEMP-0841856-B18BAFNONE0
bash
5.2.37-2+b9
No fix yet
Not Applicable
CVE-2026-53615NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
bsdutils
1:2.41-5
No fix yet
Not Applicable
CVE-2026-8458NONE0
curl
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53910NONE0
diffutils
1:3.10-4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libblkid1
2.41-5
No fix yet
Not Applicable
CVE-2026-8458NONE0
libcurl3t64-gnutls
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-8458NONE0
libcurl4t64
8.14.1-2+deb13u4
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-56131NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56408NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56409NONE0
libexpat1
2.7.1-2
fixed in 2.8.2-1~deb13u1
0.1%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
liblastlog2-2
2.41-5
No fix yet
Not Applicable
CVE-2026-53615NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libmount1
2.41-5
No fix yet
Not Applicable
CVE-2026-57433NONE0
libperl5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
libperl5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
libperl5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libsmartcols1
2.41-5
No fix yet
Not Applicable
CVE-2026-11822NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-11824NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-50812NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-50813NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-53615NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
libuuid1
2.41-5
No fix yet
Not Applicable
CVE-2026-53615NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
login
1:4.16.0-2+really2.41-5
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
login.defs
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-53615NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
mount
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
mount
2.41-5
No fix yet
Not Applicable
TEMP-0628843-DBAD28NONE0
passwd
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-57433NONE0
perl
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-57433NONE0
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-57433NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-7010NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl-modules-5.40
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Not Applicable
TEMP-0517018-A83CE6NONE0
sysvinit-utils
3.14-4
No fix yet
Not Applicable
TEMP-0290435-0B57B5NONE0
tar
1.35+dfsg-3.1
No fix yet
Not Applicable
TEMP-1142904-117334NONE0
unzip
6.0-29
No fix yet
Not Applicable
TEMP-1142905-081994NONE0
unzip
6.0-29
No fix yet
Not Applicable
TEMP-1142906-2C6C79NONE0
unzip
6.0-29
No fix yet
Not Applicable
CVE-2026-53615NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53612NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53613NONE0
util-linux
2.41-5
No fix yet
Not Applicable
CVE-2026-53614NONE0
util-linux
2.41-5
No fix yet
Not Applicable
GHSA-r7wm-3cxj-wff9NONE0
com.fasterxml.jackson.core:jackson-core
2.20.1
fixed in 2.18.8, 2.21.4, 2.22.1
Not Applicable
GHSA-72hv-8253-57qqNONE0
com.fasterxml.jackson.core:jackson-core
2.20.1
fixed in 2.21.1, 2.18.6
Not Applicable
GO-2026-5932NONE0
golang.org/x/crypto
v0.36.0
No fix yet
Not Applicable
CVE-2026-46600NONE0
golang.org/x/net
v0.38.0
fixed in 0.56.0
0.3%
Theoretical Threat
Not Applicable
CVE-2026-39824NONE0
golang.org/x/sys
v0.31.0
fixed in 0.44.0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56852NONE0
golang.org/x/text
v0.23.0
fixed in 0.39.0
0.4%
Theoretical Threat
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.