Vulnerability Reportportainer/portainer-ce:latest

portainer/portainer-ce:latestportainer/portainer-ce:ltsportainer/portainer-ce:2.39.5
DIGESTsha256:f6bc23d1695530a609563fd65c180aaafec0fc02e019d5fc63d16b6fbe83addd

Executive Summary

Last scanned:

Threat Score
0/100SAFE
Reputation
TRUSTED

This image is safe for production use. While there are 5 exposed and 10 post-exploit-only vulnerabilities, they are all low severity (max 4.67 exposed, max 3.0 post-exploit) and pose no practical risk in this context. The image is from a verified publisher and is pulled by digest, ensuring immutability. No actionable vulnerabilities require remediation.

Vulnerabilities

Vulnerability Log

15 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-47262MEDIUM4.67
github.com/containerd/containerd
v1.7.32
fixed in 1.7.33
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-41568LOW3.31
github.com/docker/docker
v28.5.1+incompatible
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-33747LOW3
github.com/moby/buildkit
v0.25.1
fixed in 0.28.1
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-34040LOW2.81
github.com/docker/docker
v28.5.1+incompatible
fixed in 29.3.1
8.1%
Low-Moderate Risk
Post-Exploit
CVE-2026-53488LOW2.69
github.com/containerd/containerd
v1.7.32
fixed in 1.7.33
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-33997LOW2.48
github.com/docker/docker
v28.5.1+incompatible
fixed in 29.3.1
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-15558LOW2.45
github.com/docker/cli
v28.5.1+incompatible
fixed in 29.2.0
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-39822LOW2.39
stdlib
v1.25.11
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-41567LOW2.29
github.com/docker/docker
v28.5.1+incompatible
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-33748LOW2.29
github.com/moby/buildkit
v0.25.1
fixed in 0.28.1
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-42306LOW2.2
github.com/docker/docker
v28.5.1+incompatible
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-42505LOW1.62
stdlib
v1.25.11
fixed in 1.25.12, 1.26.5, 1.27.0-rc.2
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-47909NONE0
github.com/gorilla/csrf
v1.7.3
No fix yet
0.2%
Theoretical Threat
Not Applicable
GO-2026-5932NONE0
golang.org/x/crypto
v0.54.0
No fix yet
Not Applicable
CVE-2026-50163NONE0
oras.land/oras-go/v2
v2.6.1
No fix yet
Not Applicable

Want to check another image? Run a full scan with the Docker Security Scanner.