Last scanned:
This image is safe for production use. While there are 5 exposed and 10 post-exploit-only vulnerabilities, they are all low severity (max 4.67 exposed, max 3.0 post-exploit) and pose no practical risk in this context. The image is from a verified publisher and is pulled by digest, ensuring immutability. No actionable vulnerabilities require remediation.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2026-47262 | MEDIUM4.67 | github.com/containerd/containerd v1.7.32 fixed in 1.7.33 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-41568 | LOW3.31 | github.com/docker/docker v28.5.1+incompatible No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-33747 | LOW3 | github.com/moby/buildkit v0.25.1 fixed in 0.28.1 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-34040 | LOW2.81 | github.com/docker/docker v28.5.1+incompatible fixed in 29.3.1 | 8.1% Low-Moderate Risk | Post-Exploit |
| CVE-2026-53488 | LOW2.69 | github.com/containerd/containerd v1.7.32 fixed in 1.7.33 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-33997 | LOW2.48 | github.com/docker/docker v28.5.1+incompatible fixed in 29.3.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-15558 | LOW2.45 | github.com/docker/cli v28.5.1+incompatible fixed in 29.2.0 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-39822 | LOW2.39 | stdlib v1.25.11 fixed in 1.25.12, 1.26.5, 1.27.0-rc.2 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-41567 | LOW2.29 | github.com/docker/docker v28.5.1+incompatible No fix yet | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-33748 | LOW2.29 | github.com/moby/buildkit v0.25.1 fixed in 0.28.1 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-42306 | LOW2.2 | github.com/docker/docker v28.5.1+incompatible No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-42505 | LOW1.62 | stdlib v1.25.11 fixed in 1.25.12, 1.26.5, 1.27.0-rc.2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2025-47909 | NONE0 | github.com/gorilla/csrf v1.7.3 No fix yet | 0.2% Theoretical Threat | Not Applicable |
| GO-2026-5932 | NONE0 | golang.org/x/crypto v0.54.0 No fix yet | — | Not Applicable |
| CVE-2026-50163 | NONE0 | oras.land/oras-go/v2 v2.6.1 No fix yet | — | Not Applicable |
Want to check another image? Run a full scan with the Docker Security Scanner.