Vulnerability Reportmetabase/metabase:v0.58.x

metabase/metabase:v0.58.xmetabase/metabase:v0.58.34.xmetabase/metabase:v0.58-ltsmetabase/metabase:v0.58.34
digestsha256:abd7e4d9162e4dff67d5958d29e55b1e79de8029c51fddfdc12d9903ad126873

Executive Summary

Last scanned:

Threat Score
0/100SAFE
Reputation
RELIABLE

This image is safe for production use. No exposed-surface or post-exploit vulnerabilities were identified in this scan, and the threat score sits at the bottom of the SAFE band. The image comes from a popular, reliable community publisher (272M+ pulls) and is pinned by digest, which protects against tag drift and supply-chain substitution. The main residual consideration is operational rather than security-related: it is not an official or verified image on a known Linux distribution, so keep tracking upstream releases and re-scanning on each digest change before upgrading.

Vulnerabilities

Vulnerability Log

0 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
No vulnerabilities found matching filters.

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Supply chain analysis

Base-image lineage, package provenance and signatures — nothing slipped in unnoticed.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.