Last scanned:
This image is safe for production use. The single exposed surface item has a maximum severity of 0.0, indicating no practical exploitable risk. As an official Docker image pinned by digest, it benefits from publisher trust and immutability. No post-exploit findings or high-severity issues were identified in the provided inputs, so the overall threat risk is minimal.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| GO-2026-5932 | NONE0 | golang.org/x/crypto v0.54.0 No fix yet | — | Not Applicable |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.