Scanner: Docker Scout
Critical vulnerabilities: 5
High vulnerabilities: 7
Critical
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-34872 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34872 |
| CVE-2026-34873 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34873 |
| CVE-2026-6100 | python3.13 | 3.13.5-2 | not fixed | CVE-2026-6100 |
| CVE-2026-34875 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34875 |
| CVE-2026-34877 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34877 |
High
| CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|
| CVE-2026-24049 | wheel | 0.45.1 | 0.46.2 | CVE-2026-24049: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
| CVE-2026-25833 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-25833 |
| CVE-2026-27135 | nghttp2 | 1.64.0-1.1 | not fixed | CVE-2026-27135 |
| CVE-2026-34874 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34874 |
| CVE-2026-34876 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-34876 |
| CVE-2026-25835 | mbedtls | 3.6.5-0.1~deb13u1 | not fixed | CVE-2026-25835 |
| CVE-2026-40393 | mesa | 25.0.7-2 | not fixed | CVE-2026-40393 |