Vulnerability Reportkong:3.1.0

kong:3.1.0-alpinekong:3.1.0
digestsha256:bb341351f2aa1a0ba207718b1990c63519c63c5cd2a1e5ab06b686dbcd2507e6

Executive Summary

Last scanned:

Threat Score
0/100NEEDS ATTENTION
Reputation
TRUSTED

AI verdict failed due to an error.

Vulnerabilities

Vulnerability Log

30 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2023-42366LOW2.8
busybox
1.35.0-r17
fixed in 1.35.0-r18
0.4%
Theoretical Threat
Post-Exploit
CVE-2023-2603NONE0
libcap
2.64-r0
fixed in 2.64-r1
0.6%
Theoretical Threat
Not Applicable
CVE-2023-29491NONE0
ncurses-libs
6.3_p20220521-r0
fixed in 6.3_p20220521-r1
0.9%
Theoretical Threat
Not Applicable
CVE-2023-29491NONE0
ncurses-terminfo-base
6.3_p20220521-r0
fixed in 6.3_p20220521-r1
0.9%
Theoretical Threat
Not Applicable
CVE-2023-47038NONE0
perl
5.34.1-r0
fixed in 5.34.2-r0
0.8%
Theoretical Threat
Not Applicable
CVE-2022-4450NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r0
20.4%
High Exploitation Risk
Not Applicable
CVE-2023-0215NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r0
4.5%
Low-Moderate Risk
Not Applicable
CVE-2023-0464NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r1
3.7%
Low-Moderate Risk
Not Applicable
CVE-2022-4450NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r0
20.4%
High Exploitation Risk
Not Applicable
CVE-2023-0215NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r0
4.5%
Low-Moderate Risk
Not Applicable
CVE-2023-0464NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r1
3.7%
Low-Moderate Risk
Not Applicable
CVE-2023-0286NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r0
59.5%
Actively Exploited
Not Applicable
CVE-2023-0286NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r0
59.5%
Actively Exploited
Not Applicable
CVE-2025-26519NONE0
musl
1.2.3-r1
fixed in 1.2.3-r4
0.3%
Theoretical Threat
Not Applicable
CVE-2025-26519NONE0
musl-utils
1.2.3-r1
fixed in 1.2.3-r4
0.3%
Theoretical Threat
Not Applicable
CVE-2023-2650NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1u-r0
75.1%
Actively Exploited
Not Applicable
CVE-2023-2650NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1u-r0
75.1%
Actively Exploited
Not Applicable
CVE-2022-4304NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r0
16.2%
High Exploitation Risk
Not Applicable
CVE-2022-4304NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r0
16.2%
High Exploitation Risk
Not Applicable
CVE-2023-24056NONE0
pkgconf
1.8.0-r1
fixed in 1.8.1-r0
0.5%
Theoretical Threat
Not Applicable
CVE-2023-42366NONE0
ssl_client
1.35.0-r17
fixed in 1.35.0-r18
0.4%
Theoretical Threat
Not Applicable
CVE-2023-0465NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1t-r2
1.6%
Low-Moderate Risk
Not Applicable
CVE-2023-3446NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1u-r2
6.5%
Low-Moderate Risk
Not Applicable
CVE-2023-3817NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1v-r0
2.6%
Low-Moderate Risk
Not Applicable
CVE-2023-5678NONE0
libcrypto1.1
1.1.1s-r0
fixed in 1.1.1w-r1
4.5%
Low-Moderate Risk
Not Applicable
CVE-2023-0465NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1t-r2
1.6%
Low-Moderate Risk
Not Applicable
CVE-2023-3446NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1u-r2
6.5%
Low-Moderate Risk
Not Applicable
CVE-2023-3817NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1v-r0
2.6%
Low-Moderate Risk
Not Applicable
CVE-2023-5678NONE0
libssl1.1
1.1.1s-r0
fixed in 1.1.1w-r1
4.5%
Low-Moderate Risk
Not Applicable
CVE-2023-2602NONE0
libcap
2.64-r0
fixed in 2.64-r1
0.4%
Theoretical Threat
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.