Last scanned:
This image is safe for production use. Although the scan reports 3 exposed and 14 post-exploit findings, the maximum severity for any exposed finding is 4.25 and for post-exploit is 3.53, both in the low range. No CVE IDs or specific findings were provided, so there is no evidence of exploitable vulnerabilities in this context. The image is from a reliable publisher and is pinned by digest, which further reduces supply-chain risk.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2026-5450 | MEDIUM4.25 | libc6 2.41-12 No fix yet | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5928 | MEDIUM4.25 | libc6 2.41-12 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2019-1010022 | LOW3.53 | libc6 2.41-12 No fix yet | 3.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-4438 | LOW3.4 | libc6 2.41-12 fixed in 2.41-12+deb13u3 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2019-1010023 | LOW3.17 | libc6 2.41-12 No fix yet | 3.1% Low-Moderate Risk | Post-Exploit |
| CVE-2018-20796 | LOW2.7 | libc6 2.41-12 No fix yet | 5.8% Low-Moderate Risk | Post-Exploit |
| CVE-2019-9192 | LOW2.7 | libc6 2.41-12 No fix yet | 2.4% Low-Moderate Risk | Post-Exploit |
| CVE-2026-0861 | LOW2.48 | libc6 2.41-12 fixed in 2.41-12+deb13u2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-4437 | LOW1.99 | libc6 2.41-12 fixed in 2.41-12+deb13u3 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-6238 | LOW1.99 | libc6 2.41-12 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2019-1010024 | LOW1.91 | libc6 2.41-12 No fix yet | 3.2% Low-Moderate Risk | Post-Exploit |
| CVE-2019-1010025 | LOW1.91 | libc6 2.41-12 No fix yet | 2.3% Low-Moderate Risk | Post-Exploit |
| CVE-2026-5435 | LOW1.81 | libc6 2.41-12 No fix yet | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-15281 | LOW1.81 | libc6 2.41-12 fixed in 2.41-12+deb13u2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-0915 | LOW1.62 | libc6 2.41-12 fixed in 2.41-12+deb13u2 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-4046 | LOW1.62 | libc6 2.41-12 fixed in 2.41-12+deb13u3 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2010-4756 | LOW1.44 | libc6 2.41-12 No fix yet | 2.6% Low-Moderate Risk | Post-Exploit |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.