Vulnerability Reportkarsten13/magicmirror:wolfi-dev-server

karsten13/magicmirror:wolfi-dev-server
digestsha256:471831d317df4e769b6a46d0bd5ef4d37c66523559aff65509c3af87a31740e0

Executive Summary

Last scanned:

Threat Score
0/100NEEDS ATTENTION
Reputation
RELIABLE

AI verdict failed due to an error.

Vulnerabilities

Vulnerability Log

32 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-12151NONE0
node-gyp
13.0.0-r0
fixed in 13.0.0-r1
0.8%
Theoretical Threat
Not Applicable
CVE-2026-12151NONE0
npm
11.17.0-r0
fixed in 11.17.0-r1
0.8%
Theoretical Threat
Not Applicable
CVE-2026-59871NONE0
npm
11.17.0-r0
fixed in 12.0.0-r1
0.4%
Theoretical Threat
Not Applicable
CVE-2026-59873NONE0
npm
11.17.0-r0
fixed in 12.0.0-r1
0.4%
Theoretical Threat
Not Applicable
CVE-2026-59874NONE0
npm
11.17.0-r0
fixed in 12.0.0-r1
0.4%
Theoretical Threat
Not Applicable
CVE-2026-56132NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56403NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56404NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56405NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56406NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56407NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56410NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56411NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-50219NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.3%
Theoretical Threat
Not Applicable
CVE-2026-56412NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-9679NONE0
node-gyp
13.0.0-r0
fixed in 13.0.0-r1
0.3%
Theoretical Threat
Not Applicable
CVE-2026-9679NONE0
npm
11.17.0-r0
fixed in 11.17.0-r1
0.3%
Theoretical Threat
Not Applicable
CVE-2026-53655NONE0
npm
11.17.0-r0
fixed in 11.17.0-r2
0.1%
Theoretical Threat
Not Applicable
CVE-2026-58055NONE0
libnghttp2-14
1.69.0-r0
fixed in 1.70.0-r0
0.2%
Theoretical Threat
Not Applicable
CVE-2026-59875NONE0
npm
11.17.0-r0
fixed in 12.0.0-r1
0.3%
Theoretical Threat
Not Applicable
CVE-2026-56131NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-11525NONE0
node-gyp
13.0.0-r0
fixed in 13.0.0-r1
0.2%
Theoretical Threat
Not Applicable
CVE-2026-6733NONE0
node-gyp
13.0.0-r0
fixed in 13.0.0-r1
0.2%
Theoretical Threat
Not Applicable
CVE-2026-11525NONE0
npm
11.17.0-r0
fixed in 11.17.0-r1
0.2%
Theoretical Threat
Not Applicable
CVE-2026-6733NONE0
npm
11.17.0-r0
fixed in 11.17.0-r1
0.2%
Theoretical Threat
Not Applicable
CVE-2026-6791NONE0
glibc
2.43-r8
fixed in 2.43-r10
Not Applicable
CVE-2026-6791NONE0
glibc-locale-posix
2.43-r8
fixed in 2.43-r10
Not Applicable
CVE-2026-6791NONE0
ld-linux
2.43-r8
fixed in 2.43-r10
Not Applicable
CVE-2026-6791NONE0
libcrypt1
2.43-r8
fixed in 2.43-r10
Not Applicable
CVE-2026-56408NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-56409NONE0
libexpat1
2.8.1-r1
fixed in 2.8.2-r0
0.1%
Theoretical Threat
Not Applicable
CVE-2026-14257NONE0
npm
11.17.0-r0
fixed in 12.0.1-r2
0.3%
Theoretical Threat
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.