Last scanned:
This image is safe for production use. Although one exposed finding is reported in the vulnerability stats, its maximum severity is 0.0 and no post-exploit findings are present, so it poses no practical risk. The image comes from a popular and reliable community publisher and is pinned by digest, providing high supply chain assurance. No specific CVE IDs were provided, so there are no known vulnerabilities to act on.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| GO-2026-5932 | NONE0 | golang.org/x/crypto v0.54.0 No fix yet | — | Not Applicable |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
Base-image lineage, package provenance and signatures — nothing slipped in unnoticed.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.