Vulnerability Reportnats:2.14.3

nats:2.14.3
digestsha256:67ac7866d010e8d83302dd30332eeae1a2b7a8ee051155e2eb5a5485b720cd4b

Executive Summary

Last scanned:

Threat Score
0/100SAFE
Reputation
TRUSTED

This image is safe for production use. Although there are 3 low-severity vulnerabilities (2 exposed, 1 post-exploit), their maximum CVSS score is 3.6, indicating negligible practical risk. The image is officially published by Docker and pinned by digest, ensuring immutability and integrity. No exploitable high-severity issues exist, so immediate remediation is not necessary.

  1. Vulnerability scan
    Full CVE sweep across OS packages and app dependencies
  2. Exploitability check
    CVEs ranked by exploit probability (EPSS) and matched against CISA KEV
  3. Result analysis
    Plain-English summary of what actually matters — and why
  1. Hardening recommendations
    A hardened build plan — patch, remove unused packages, lock down the runtime — with parity tests proving nothing broke

This report ran the first 3 stages — get the full report to unlock the rest.

Vulnerabilities

Vulnerability Log

3 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-42505LOW3.6
stdlib
v1.26.4
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.4%
Theoretical Threat
Directly ExposedContext importance: MEDIUM
CVE-2026-39822LOW2.39
stdlib
v1.26.4
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.2%
Theoretical Threat
Post-Exploit
GO-2026-5932NONE0
golang.org/x/crypto
v0.53.0
No fix yet
Not Applicable

Want to check another image? Run a full scan with the Docker Security Scanner.