Vulnerability Reportpython:3.13-slim

python:3.13.15-slim-trixiepython:3.13.15-slimpython:3.13-slim-trixiepython:3.13-slim
digestsha256:7ce4b6dfe35e55397b7cda544f8a13f191b7ae28dc5aad71fe664dbc9bc2623f

Executive Summary

Last scanned:

Threat Score
50/100CAUTION
Reputation
TRUSTED

This base/runtime image carries significant vulnerabilities that any image built on it would inherit; remediate them in the final image before production. The bundled OpenSSL library has multiple remotely exploitable denial-of-service flaws (e.g., CVE-2026-63072) that could crash services, while the libacl vulnerability (CVE-2026-54369) could allow local privilege escalation in multi-tenant environments. These issues require specific protocol usage (CMS, DTLS, CMP, QUIC) or local file access, so their practical impact depends on the application built on this base; upgrading OpenSSL and libacl resolves them. Note: this is a general-purpose base/runtime image — many findings live in components that an application built on top may never load, so actual exploitability depends on the final image. For an accurate risk picture, re-scan the final application image with context.

Vulnerabilities

Vulnerability Log

162 total
CVE IDAdjusted SeverityPackageExploit ProbabilityRisk Context
CVE-2026-63072MEDIUM6.38
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-54874MEDIUM6.38
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-63074MEDIUM6.38
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-63075MEDIUM6.38
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-63072MEDIUM6.38
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.6%
Theoretical Threat
Directly Exposed
CVE-2026-54874MEDIUM6.38
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-63074MEDIUM6.38
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-63075MEDIUM6.38
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-54369MEDIUM6.03
libacl1
2.3.2-2+b1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-77117MEDIUM5.9
libc-bin
2.41-12+deb13u3
No fix yet
Directly Exposed
CVE-2026-77117MEDIUM5.9
libc6
2.41-12+deb13u3
No fix yet
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-6238MEDIUM5.52
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-54370MEDIUM5.35
libacl1
2.3.2-2+b1
No fix yet
<0.1%
Theoretical Threat
Directly Exposed
CVE-2026-54371MEDIUM5.35
libattr1
1:2.5.2-3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc-bin
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010024MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Directly Exposed
CVE-2019-1010025MEDIUM5.3
libc6
2.41-12+deb13u3
No fix yet
2.3%
Low-Moderate Risk
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc-bin
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6791MEDIUM5.02
libc-bin
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-5435MEDIUM5.02
libc6
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-6791MEDIUM5.02
libc6
2.41-12+deb13u3
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-63073MEDIUM5.02
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-63073MEDIUM5.02
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libblkid1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-6368MEDIUM4.67
libc-bin
2.41-12+deb13u3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-6368MEDIUM4.67
libc6
2.41-12+deb13u3
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
liblastlog2-2
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libmount1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libsmartcols1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-50812MEDIUM4.67
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-50813MEDIUM4.67
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2022-0563MEDIUM4.67
libuuid1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-27171MEDIUM4.67
zlib1g
1:1.3.dfsg+really1.3.1-1+b1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libblkid1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
liblastlog2-2
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libmount1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libsmartcols1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libsystemd0
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31437MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31438MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2023-31439MEDIUM4.5
libudev1
257.13-1~deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2026-3184MEDIUM4.5
libuuid1
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2021-45346MEDIUM4.3
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
1.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-42250MEDIUM4.25
libbz2-1.0
1.0.8-6
No fix yet
0.1%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc-bin
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-5450MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-5928MEDIUM4.25
libc6
2.41-12+deb13u3
No fix yet
0.4%
Theoretical Threat
Directly Exposed
CVE-2026-19542MEDIUM4.2
libc-bin
2.41-12+deb13u3
No fix yet
Directly Exposed
CVE-2026-19542MEDIUM4.2
libc6
2.41-12+deb13u3
No fix yet
Directly Exposed
CVE-2010-4756MEDIUM4
libc-bin
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2010-4756MEDIUM4
libc6
2.41-12+deb13u3
No fix yet
2.6%
Low-Moderate Risk
Directly Exposed
CVE-2026-48962LOW3.98
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-41992LOW3.82
gzip
1.13-1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-63072LOW3.82
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.6%
Theoretical Threat
Post-Exploit
CVE-2026-54874LOW3.82
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-63074LOW3.82
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-63075LOW3.82
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.5%
Theoretical Threat
Post-Exploit
CVE-2026-42497LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-57433LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-9538LOW3.82
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW3.7
libapt-pkg7.0
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Directly Exposed
CVE-2005-2541LOW3.6
tar
1.35+dfsg-3.1
No fix yet
4.0%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc-bin
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010022LOW3.53
libc6
2.41-12+deb13u3
No fix yet
3.2%
Low-Moderate Risk
Post-Exploit
CVE-2025-15649LOW3.31
perl-base
5.40.1-6
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2019-1010023LOW3.17
libc-bin
2.41-12+deb13u3
No fix yet
3.0%
Low-Moderate Risk
Post-Exploit
CVE-2019-1010023LOW3.17
libc6
2.41-12+deb13u3
No fix yet
3.0%
Low-Moderate Risk
Post-Exploit
CVE-2025-47273LOW3.17
setuptools
70.3.0
fixed in 78.1.1
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-56391LOW3.11
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-56392LOW3.11
coreutils
9.7-3
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-59890LOW3.11
setuptools
70.3.0
fixed in 83.0.0
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-63073LOW3.01
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-8376LOW3
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
bsdutils
1:2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
mount
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-5704LOW2.8
tar
1.35+dfsg-3.1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2022-0563LOW2.8
util-linux
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2025-70873LOW2.8
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.3%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libsystemd0
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2013-4392LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.5%
Theoretical Threat
Directly Exposed
CVE-2026-40228LOW2.8
libudev1
257.13-1~deb13u1
No fix yet
0.2%
Theoretical Threat
Directly Exposed
CVE-2026-13221LOW2.78
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-42496LOW2.78
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2018-20796LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc-bin
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2018-20796LOW2.7
libc6
2.41-12+deb13u3
No fix yet
5.8%
Low-Moderate Risk
Post-Exploit
CVE-2019-9192LOW2.7
libc6
2.41-12+deb13u3
No fix yet
2.4%
Low-Moderate Risk
Post-Exploit
CVE-2026-18798LOW2.7
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-63076LOW2.7
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2026-18798LOW2.7
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-63076LOW2.7
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2026-18798LOW2.7
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.5%
Low-Moderate Risk
Post-Exploit
CVE-2026-63076LOW2.7
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.3%
Low-Moderate Risk
Post-Exploit
CVE-2026-3184LOW2.7
bsdutils
1:2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-53910LOW2.7
diffutils
1:3.10-4
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
mount
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-12087LOW2.7
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-3184LOW2.7
util-linux
2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-57432LOW2.57
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-48959LOW2.55
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2026-48961LOW2.55
perl-base
5.40.1-6
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2007-5686LOW2.5
passwd
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Post-Exploit
CVE-2026-19499LOW2.45
libc-bin
2.41-12+deb13u3
No fix yet
Post-Exploit
CVE-2026-19499LOW2.45
libc6
2.41-12+deb13u3
No fix yet
Post-Exploit
CVE-2017-18018LOW2.4
coreutils
9.7-3
No fix yet
0.3%
Theoretical Threat
Post-Exploit
CVE-2026-41991LOW2.4
gzip
1.13-1
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2026-11822LOW2.39
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-11824LOW2.39
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-14456LOW2.29
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-14457LOW2.29
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.0%
Theoretical Threat
Post-Exploit
CVE-2026-14456LOW2.29
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-14457LOW2.29
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.0%
Theoretical Threat
Post-Exploit
CVE-2026-14456LOW2.29
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.7%
Theoretical Threat
Post-Exploit
CVE-2026-14457LOW2.29
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
1.0%
Theoretical Threat
Post-Exploit
CVE-2025-5278LOW2.24
coreutils
9.7-3
No fix yet
0.2%
Theoretical Threat
Post-Exploit
CVE-2026-18477LOW2.24
tar
1.35+dfsg-3.1
No fix yet
<0.1%
Theoretical Threat
Post-Exploit
CVE-2026-18508LOW2.24
tar
1.35+dfsg-3.1
No fix yet
0.1%
Theoretical Threat
Post-Exploit
CVE-2011-3374LOW2.22
apt
3.0.3
No fix yet
1.2%
Low-Moderate Risk
Post-Exploit
CVE-2024-56433LOW1.84
passwd
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Post-Exploit
CVE-2011-4116LOW1.68
perl-base
5.40.1-6
No fix yet
0.5%
Theoretical Threat
Post-Exploit
CVE-2025-69720NONE0
libncursesw6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
libtinfo6
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-base
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-69720NONE0
ncurses-bin
6.5+20250216-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2022-0563NONE0
login
1:4.16.0-2+really2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-3184NONE0
login
1:4.16.0-2+really2.41.5-0+deb13u1
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2007-5686NONE0
login.defs
1:4.17.4-2
No fix yet
0.9%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-modules
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-modules-bin
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam-runtime
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-54411NONE0
libpam0g
1.7.0-5
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2024-56433NONE0
login.defs
1:4.17.4-2
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
libncursesw6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
libtinfo6
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-base
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2025-6141NONE0
ncurses-bin
6.5+20250216-2
No fix yet
0.2%
Theoretical Threat
Not Applicable
TEMP-0841856-B18BAFNONE0
bash
5.2.37-2+b9
No fix yet
Not Applicable
CVE-2026-18374NONE0
libc-bin
2.41-12+deb13u3
No fix yet
Not Applicable
CVE-2026-18374NONE0
libc6
2.41-12+deb13u3
No fix yet
Not Applicable
CVE-2026-39113NONE0
libsqlite3-0
3.46.1-7+deb13u1
No fix yet
0.3%
Theoretical Threat
Not Applicable
CVE-2026-75803NONE0
libssl3t64
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.1%
Theoretical Threat
Not Applicable
CVE-2026-15059NONE0
libsystemd0
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-16742NONE0
libsystemd0
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Not Applicable
CVE-2026-15059NONE0
libudev1
257.13-1~deb13u1
No fix yet
0.1%
Theoretical Threat
Not Applicable
CVE-2026-16742NONE0
libudev1
257.13-1~deb13u1
No fix yet
<0.1%
Theoretical Threat
Not Applicable
TEMP-0628843-DBAD28NONE0
login.defs
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-75803NONE0
openssl
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.1%
Theoretical Threat
Not Applicable
CVE-2026-75803NONE0
openssl-provider-legacy
3.5.6-1~deb13u2
fixed in 3.5.7-1~deb13u2
0.1%
Theoretical Threat
Not Applicable
TEMP-0628843-DBAD28NONE0
passwd
1:4.17.4-2
No fix yet
Not Applicable
CVE-2026-7010NONE0
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-7017NONE0
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
CVE-2026-15534NONE0
perl-base
5.40.1-6
No fix yet
0.2%
Theoretical Threat
Not Applicable
CVE-2026-19487NONE0
perl-base
5.40.1-6
No fix yet
0.4%
Theoretical Threat
Not Applicable
TEMP-0517018-A83CE6NONE0
sysvinit-utils
3.14-4
No fix yet
Not Applicable
TEMP-0290435-0B57B5NONE0
tar
1.35+dfsg-3.1
No fix yet
Not Applicable
GHSA-6v7p-g79w-8964NONE0
msgpack
1.1.2
fixed in 1.2.1
Not Applicable

Reachability analysis

Which CVEs are actually reachable — is the vulnerable code even linked and callable.

Locked

Runtime verification

Live-container probes: default user, writable paths, capabilities, exposed ports.

Locked

Supply chain analysis

Base-image lineage, package provenance and signatures — nothing slipped in unnoticed.

Locked

Hardening recommendations

A step-by-step hardened build plan, with parity tests proving nothing breaks.

Locked

Want to check another image? Run a full scan with the Docker Security Scanner.