Scanner: Docker Scout
Critical vulnerabilities: 0
High vulnerabilities: 3
Medium vulnerabilities: 7
Critical
No critical vulnerabilities found.
High
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-57585 | msgpack | 1.1.2 | 1.2.1 | CVE-2026-57585 |
| GHSA-6v7p-g79w-8964 | msgpack | 1.1.2 | 1.2.1 | GHSA-6v7p-g79w-8964: Use After Free |
| CVE-2025-47273 | setuptools | 70.3.0 | 78.1.1 | CVE-2025-47273: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
Medium
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-71852 | pypdf | 6.14.2 | 6.15.0 | CVE-2026-71852: Excessive Iteration |
| CVE-2026-71870 | pypdf | 6.14.2 | 6.15.0 | CVE-2026-71870: Uncontrolled Resource Consumption |
| GHSA-4xgf-cpjx-pc3j | pydantic-settings | 2.14.0 | 2.14.2 | GHSA-4xgf-cpjx-pc3j: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
| CVE-2023-49092 | rsa | 0.9.10 | not fixed | CVE-2023-49092 |
| CVE-2026-59890 | setuptools | 70.3.0 | 83.0.0 | CVE-2026-59890: Improper Handling of Unicode Encoding |
| CVE-2026-59890 | setuptools | 70.3.0 | 83.0.0 | CVE-2026-59890: Improper Handling of Unicode Encoding |
| CVE-2026-54249 | pydantic-ai-slim | 1.102.0 | 1.106.0 | CVE-2026-54249: Server-Side Request Forgery (SSRF) |