Scanner: Docker Scout
Critical vulnerabilities: 2
High vulnerabilities: 11
Critical
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-6100 | python3.11 | 3.11.2-6%2Bdeb12u6 | not fixed | CVE-2026-6100 |
| CVE-2026-35030 | litellm | 1.82.6 | 1.83.0 | CVE-2026-35030: Improper Authentication |
High
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-4519 | python | 3.12.13 | 3.13.13 | CVE-2026-4519 |
| CVE-2025-55131 | nodejs | 22.21.0-1nodesource1 | not fixed | CVE-2025-55131 |
| CVE-2024-23342 | ecdsa | 0.19.1 | not fixed | CVE-2024-23342: Observable Discrepancy |
| CVE-2025-59465 | nodejs | 22.21.0-1nodesource1 | not fixed | CVE-2025-59465 |
| CVE-2025-59466 | nodejs | 22.21.0-1nodesource1 | not fixed | CVE-2025-59466 |
| CVE-2026-21637 | nodejs | 22.21.0-1nodesource1 | not fixed | CVE-2026-21637 |
| CVE-2026-21710 | nodejs | 22.21.0-1nodesource1 | not fixed | CVE-2026-21710 |
| CVE-2026-27135 | nghttp2 | 1.52.0-1%2Bdeb12u2 | not fixed | CVE-2026-27135 |
| GHSA-69x8-hrgq-fjj8 | litellm | 1.82.6 | 1.83.0 | GHSA-69x8-hrgq-fjj8: Exposure of Sensitive Information to an Unauthorized Actor |
| CVE-2026-35029 | litellm | 1.82.6 | 1.83.0 | CVE-2026-35029: Incorrect Authorization |
| CVE-2026-40192 | pillow | 12.1.1 | 12.2.0 | CVE-2026-40192: Allocation of Resources Without Limits or Throttling |