Last scanned:
This image is acceptable for production, but remediating the identified vulnerabilities is recommended to reduce the attack surface. The primary concern is CVE-2026-6732 in libxml2, a medium-severity denial-of-service vulnerability that could allow a remote attacker to crash the Zabbix server by submitting a specially crafted XML Schema document. Although 45 exposed vulnerabilities exist, none exceed CVSS 6.38, and the 92 post-exploit-only findings are all low severity (max 3.9), so the likelihood of significant post-breach impact is low. Pinning by digest and a trusted publisher help minimize supply chain risk.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2026-6732 | MEDIUM6.38 | libxml2-16 2.15.2+dfsg-0.1 fixed in 2.15.2+dfsg-0.1ubuntu0.1 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2024-2236 | MEDIUM5.9 | libgcrypt20 1.12.0-2ubuntu0.1 No fix yet | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2026-6238 | MEDIUM5.52 | libc-bin 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-6238 | MEDIUM5.52 | libc-gconv-modules-extra 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-6238 | MEDIUM5.52 | libc6 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-25680 | MEDIUM5.52 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-13757 | MEDIUM5.27 | libp11-kit0 0.26.2-2 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-42502 | MEDIUM5.18 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-5435 | MEDIUM5.02 | libc-bin 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-5435 | MEDIUM5.02 | libc-gconv-modules-extra 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-5435 | MEDIUM5.02 | libc6 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-27171 | MEDIUM4.67 | zlib1g 1:1.3.dfsg+really1.3.1-1ubuntu3 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-58055 | MEDIUM4.59 | libnghttp2-14 1.68.0-2ubuntu0.1 fixed in 1.68.0-2ubuntu0.2 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-42506 | MEDIUM4.59 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-3184 | MEDIUM4.5 | libblkid1 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | libc-bin 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | libc-gconv-modules-extra 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | libc6 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-3184 | MEDIUM4.5 | libmount1 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-3184 | MEDIUM4.5 | libsmartcols1 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-3184 | MEDIUM4.5 | libuuid1 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-47911 | MEDIUM4.5 | golang.org/x/net v0.40.0 fixed in 0.45.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-58190 | MEDIUM4.5 | golang.org/x/net v0.40.0 fixed in 0.45.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5450 | MEDIUM4.25 | libc-bin 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5928 | MEDIUM4.25 | libc-bin 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-5450 | MEDIUM4.25 | libc-gconv-modules-extra 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5928 | MEDIUM4.25 | libc-gconv-modules-extra 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-5450 | MEDIUM4.25 | libc6 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-5928 | MEDIUM4.25 | libc6 2.43-2ubuntu2 fixed in 2.43-2ubuntu2.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libgssapi-krb5-2 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libgssrpc4t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libk5crypto3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libkadm5clnt-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libkadm5srv-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libkdb5-10t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libkrb5-3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-11850 | MEDIUM4.25 | libkrb5support0 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libblkid1 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libmount1 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libsmartcols1 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libuuid1 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2025-15661 | LOW3.9 | libssh2-1t64 1.11.1-1ubuntu0.26.04.1 fixed in 1.11.1-1ubuntu0.26.04.2 | 1.0% Low-Moderate Risk | Post-Exploit |
| CVE-2026-41992 | LOW3.82 | gzip 1.14-1~exp2ubuntu1 fixed in 1.14-1~exp2ubuntu1.1 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW3.82 | krb5-user 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW3.82 | krb5-user 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-8927 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-9079 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-11352 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.3 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-11586 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.3 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-12064 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.3 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-9545 | LOW3.82 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-55199 | LOW3.82 | libssh2-1t64 1.11.1-1ubuntu0.26.04.1 fixed in 1.11.1-1ubuntu0.26.04.2 | 0.9% Theoretical Threat | Post-Exploit |
| CVE-2026-58050 | LOW3.82 | libssh2-1t64 1.11.1-1ubuntu0.26.04.1 fixed in 1.11.1-1ubuntu0.26.04.3 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-9547 | LOW3.77 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-9080 | LOW3.72 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2021-31879 | LOW3.66 | wget 1.25.0-2ubuntu4 No fix yet | 1.1% Low-Moderate Risk | Post-Exploit |
| CVE-2026-58471 | LOW3.62 | wget 1.25.0-2ubuntu4 fixed in 1.25.0-2ubuntu4.2 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-58472 | LOW3.62 | wget 1.25.0-2ubuntu4 fixed in 1.25.0-2ubuntu4.2 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-11564 | LOW3.31 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.3 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-8924 | LOW3.31 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-58051 | LOW3.31 | libssh2-1t64 1.11.1-1ubuntu0.26.04.1 fixed in 1.11.1-1ubuntu0.26.04.3 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-58469 | LOW3.31 | wget 1.25.0-2ubuntu4 fixed in 1.25.0-2ubuntu4.2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-15146 | LOW3.01 | wget 1.25.0-2ubuntu4 fixed in 1.25.0-2ubuntu4.3 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-8376 | LOW3 | libperl5.40 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-8376 | LOW3 | perl 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-8376 | LOW3 | perl-base 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-8376 | LOW3 | perl-modules-5.40 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-55200 | LOW2.99 | libssh2-1t64 1.11.1-1ubuntu0.26.04.1 fixed in 1.11.1-1ubuntu0.26.04.2 | 2.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-45582 | LOW2.86 | tar 1.35+dfsg-4 fixed in 1.35+dfsg-4ubuntu0.2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2019-20633 | LOW2.8 | patch 2.8-2build1 No fix yet | 1.0% Theoretical Threat | Post-Exploit |
| CVE-2021-45261 | LOW2.8 | patch 2.8-2build1 No fix yet | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2026-35373 | LOW2.8 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-5704 | LOW2.8 | tar 1.35+dfsg-4 fixed in 1.35+dfsg-4ubuntu0.4 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-40228 | LOW2.8 | libsystemd0 259.5-0ubuntu3 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-40228 | LOW2.8 | libudev1 259.5-0ubuntu3 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-42496 | LOW2.78 | libperl5.40 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-base 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-42496 | LOW2.78 | perl-modules-5.40 5.40.1-7build1 fixed in 5.40.1-7ubuntu0.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2018-6952 | LOW2.7 | patch 2.8-2build1 No fix yet | 8.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-3184 | LOW2.7 | bsdutils 1:2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-3184 | LOW2.7 | mount 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-3184 | LOW2.7 | util-linux 2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-58470 | LOW2.7 | wget 1.25.0-2ubuntu4 fixed in 1.25.0-2ubuntu4.2 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-11850 | LOW2.55 | krb5-user 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-39821 | LOW2.51 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2026-8925 | LOW2.48 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-8286 | LOW2.48 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-25681 | LOW2.48 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-27136 | LOW2.48 | golang.org/x/net v0.40.0 fixed in 0.55.0 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-8926 | LOW2.45 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | bsdutils 1:2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-41991 | LOW2.4 | gzip 1.14-1~exp2ubuntu1 fixed in 1.14-1~exp2ubuntu1.1 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-10536 | LOW2.4 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.3 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | mount 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | util-linux 2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libgssapi-krb5-2 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libgssapi-krb5-2 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libgssrpc4t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libgssrpc4t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libk5crypto3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libk5crypto3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libkadm5clnt-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libkadm5clnt-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libkadm5srv-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libkadm5srv-mit12 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libkdb5-10t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libkdb5-10t64 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libkrb5-3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libkrb5-3 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40355 | LOW2.29 | libkrb5support0 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-40356 | LOW2.29 | libkrb5support0 1.22.1-2ubuntu4 fixed in 1.22.1-2ubuntu4.1 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-3731 | LOW2.29 | libssh-4 0.11.3-1ubuntu1 No fix yet | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-33814 | LOW2.29 | golang.org/x/net v0.40.0 fixed in 0.53.0 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2024-56433 | LOW1.84 | passwd 1:4.17.4-2ubuntu3 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-39822 | NONE0 | stdlib v1.26.3 fixed in 1.25.12, 1.26.5, 1.27.0-rc.2 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2026-27145 | NONE0 | stdlib v1.26.3 fixed in 1.25.11, 1.26.4 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2026-42504 | NONE0 | stdlib v1.26.3 fixed in 1.25.11, 1.26.4 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2026-3184 | NONE0 | login 1:4.16.0-2+really2.41.3-3ubuntu2 No fix yet | 0.4% Theoretical Threat | Not Applicable |
| CVE-2026-42505 | NONE0 | stdlib v1.26.3 fixed in 1.25.12, 1.26.5, 1.27.0-rc.2 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-42507 | NONE0 | stdlib v1.26.3 fixed in 1.25.11, 1.26.4 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2026-54411 | NONE0 | libpam-modules 1.7.0-5ubuntu3 fixed in 1.7.0-5ubuntu3.1 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-54411 | NONE0 | libpam-modules-bin 1.7.0-5ubuntu3 fixed in 1.7.0-5ubuntu3.1 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-54411 | NONE0 | libpam-runtime 1.7.0-5ubuntu3 fixed in 1.7.0-5ubuntu3.1 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-54411 | NONE0 | libpam0g 1.7.0-5ubuntu3 fixed in 1.7.0-5ubuntu3.1 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-27456 | NONE0 | login 1:4.16.0-2+really2.41.3-3ubuntu2 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2024-56433 | NONE0 | login.defs 1:4.17.4-2ubuntu3 No fix yet | 0.4% Theoretical Threat | Not Applicable |
| CVE-2026-8458 | NONE0 | libcurl4t64 8.18.0-1ubuntu2.1 fixed in 8.18.0-1ubuntu2.2 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-35341 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.2% Theoretical Threat | Not Applicable |
| CVE-2026-35344 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35345 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | <0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35348 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35350 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35351 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35352 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35354 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | <0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35357 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | <0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35359 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35360 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35363 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.2% Theoretical Threat | Not Applicable |
| CVE-2026-35364 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | <0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35367 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35368 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35370 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35371 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35374 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | <0.1% Theoretical Threat | Not Applicable |
| CVE-2026-35377 | NONE0 | rust-coreutils 0.8.0-0ubuntu3 No fix yet | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-46600 | NONE0 | golang.org/x/net v0.40.0 fixed in 0.56.0 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-39824 | NONE0 | golang.org/x/sys v0.33.0 fixed in 0.44.0 | 0.1% Theoretical Threat | Not Applicable |
Which CVEs are actually reachable — is the vulnerable code even linked and callable.
Live-container probes: default user, writable paths, capabilities, exposed ports.
Base-image lineage, package provenance and signatures — nothing slipped in unnoticed.
A step-by-step hardened build plan, with parity tests proving nothing breaks.
Want to check another image? Run a full scan with the Docker Security Scanner.