packaged by Chainguard
Contact our team to test out this image for free. Please also indicate any other images you would like to evaluate.
Expand | CVE ID | Severity | Package | Version | Last detected |
|---|---|---|---|---|---|
CVE-2026-22732 | Critical | spring-security-web | 6.1.9 | ||
CVE-2024-38821 | Critical | spring-security-web | 6.1.9 | ||
CVE-2024-21634 | High | ion-java | 1.0.2 | ||
CVE-2025-41249 | High | spring-core | 6.0.23 | ||
CVE-2026-22733 | High | spring-boot-starter-actuator | 3.1.12 | ||
CVE-2026-42579 | High | netty-codec-dns | 4.1.122.Final | ||
CVE-2026-42587 | High | netty-codec-http | 4.1.132.Final | ||
CVE-2026-42587 | High | netty-codec-http2 | 4.1.132.Final | ||
CVE-2025-22228 | High | spring-security-crypto | 6.1.9 | ||
CVE-2024-38816 | High | spring-webflux | 6.0.23 | ||
CVE-2026-2332 | High | jetty-http | 9.4.57.v20241219 | ||
CVE-2024-38819 | High | spring-webmvc | 6.0.23 | ||
CVE-2026-42577 | High | netty-transport-native-epoll | 4.1.122.Final | ||
CVE-2024-38816 | High | spring-webmvc | 6.0.23 | ||
CVE-2025-22235 | High | spring-boot | 3.1.12 | ||
CVE-2026-42584 | High | netty-codec-http | 4.1.132.Final | ||
CVE-2024-38819 | High | spring-webflux | 6.0.23 | ||
CVE-2026-42198 | High | postgresql | 42.3.9 | ||
CVE-2024-29371 | High | jose4j | 0.9.4 | ||
CVE-2026-42583 | High | netty-codec | 4.1.132.Final | ||
CVE-2025-41234 | Medium | spring-web | 6.0.23 | ||
CVE-2025-11226 | Medium | logback-core | 1.4.14 | ||
GHSA-72hv-8253-57qq | Medium | jackson-core | 2.18.2 | ||
CVE-2026-42581 | Medium | netty-codec-http | 4.1.132.Final | ||
CVE-2024-38820 | Medium | spring-context | 6.0.23 | ||
CVE-2024-38827 | Medium | spring-security-core | 6.1.9 | ||
CVE-2024-12798 | Medium | logback-core | 1.4.14 | ||
CVE-2026-42585 | Medium | netty-codec-http | 4.1.132.Final | ||
CVE-2026-41417 | Medium | netty-codec-http | 4.1.132.Final | ||
CVE-2023-42503 | Medium | commons-compress | 1.22 | ||
CVE-2026-42580 | Medium | netty-codec-http | 4.1.132.Final | ||
CVE-2024-38820 | Medium | spring-web | 6.0.23 | ||
CVE-2024-6763 | Medium | jetty-http | 9.4.57.v20241219 | ||
CVE-2024-26308 | Medium | commons-compress | 1.22 | ||
CVE-2026-22737 | Medium | spring-webflux | 6.0.23 | ||
CVE-2026-22737 | Medium | spring-webmvc | 6.0.23 | ||
CVE-2025-41242 | Medium | spring-webmvc | 6.0.23 | ||
CVE-2025-48924 | Medium | commons-lang3 | 3.17.0 | ||
CVE-2024-25710 | Medium | commons-compress | 1.22 | ||
CVE-2026-1225 | Low | logback-core | 1.4.14 | ||
CVE-2025-11143 | Low | jetty-http | 9.4.57.v20241219 | ||
CVE-2025-22233 | Low | spring-context | 6.0.23 | ||
CVE-2026-22735 | Low | spring-webmvc | 6.0.23 | ||
CVE-2026-22735 | Low | spring-webflux | 6.0.23 | ||
CVE-2024-12801 | Low | logback-core | 1.4.14 | ||
CVE-2026-42578 | Low | netty-handler-proxy | 4.1.122.Final |