WhisperX tag archive

#container

This page collects WhisperX intelligence signals tagged #container. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (13)

The Lab 路 2026-03-30 04:26:57 路 GitHub Issues

1. Wizarr Container Image Exposes High-Severity pyOpenSSL Vulnerability (CVE-2026-27459)

A high-severity security vulnerability has been identified in the latest container image for Wizarr, a popular self-hosted application. The automated scan, dated March 17, 2026, flags a single high-risk flaw within the `pyOpenSSL` library, version 25.3.0. This specific vulnerability, cataloged as CVE-2026-27459, is a b...

The Lab 路 2026-03-30 04:26:58 路 GitHub Issues

2. Wizarr Container Image Exposed to High-Severity DoS Vulnerability (CVE-2026-30922)

A high-severity denial-of-service vulnerability has been flagged in the latest container image for Wizarr, a popular self-hosted application. The automated security scan, conducted on March 18, 2026, identified a single high-risk flaw within the `pyasn1` library (version 0.6.2), which could allow an attacker to trigger...

The Lab 路 2026-03-30 04:27:00 路 GitHub Issues

3. Critical Security Flaw in Configarr Container: CVE-2026-32767 Exposes SQL Execution Risk

A critical security vulnerability has been identified in the latest container image for Configarr, a tool from Raydak Labs. The automated scan, conducted by the RedFlag security tool, flags a single critical flaw (CVE-2026-32767) within the `libexpat` library. This specific vulnerability is described as an authorizatio...

The Lab 路 2026-04-02 06:26:57 路 GitHub Issues

4. CBDQ-IO SBus-Router 2.1.0 Image Exposes Multiple High-Severity DNS Vulnerabilities

A critical security scan of the official CBDQ-IO SBus-Router container image has uncovered multiple unpatched vulnerabilities, including two rated HIGH severity, within a core DNS utility package. The automated Trivy scan of the `ghcr.io/cbdq-io/sbus-router:2.1.0` image reveals that the embedded `bind9-dnsutils` packag...

The Lab 路 2026-04-02 20:27:16 路 GitHub Issues

5. Security Alert: 5 HIGH-Severity Vulnerabilities Found in news-feed Container Image

A Trivy security scan has flagged five HIGH-severity vulnerabilities within a critical container image, exposing a potential attack surface for denial-of-service, arbitrary code execution, and information disclosure. The scan, conducted on April 2, 2026, targeted the `7002370412/news-feed:latest` image built on Alpine ...

The Lab 路 2026-04-08 07:27:06 路 GitHub Issues

6. Trivy Scan Flags High-Severity Vulnerability in Discord-MCP Container Image

A recent automated security scan has exposed a high-severity vulnerability within a widely used container image for Discord integration. The scan of the `ghcr.io/anthony-spruyt/discord-mcp:latest` image, conducted on April 8, 2026, identified a total of 11 vulnerabilities, with one classified as HIGH severity. This fin...

The Lab 路 2026-04-09 13:27:25 路 GitHub Issues

7. GitHub Security: Container Mount Validation Flaw Allows Symlink Bypass, Risking Host Path Access

A critical vulnerability in the container mount validation logic of a codebase allows for a symlink-based path traversal, potentially enabling unauthorized access to host system directories. The flaw resides in the `validateMount` function within `pkg/container/container.go`, which fails to resolve symbolic links befor...

The Lab 路 2026-04-13 04:22:33 路 GitHub Issues

8. Vaultwarden Container Exposed: High-Severity OpenSSL Vulnerability (CVE-2026-28390) Found in Latest Image

A high-severity vulnerability has been flagged in the latest `vaultwarden/server:latest` container image, posing a direct denial-of-service risk to deployments. The automated security scan, dated April 10, 2026, identified one new high-risk flaw鈥擟VE-2026-28390鈥攚ithin the `libssl3t64` package. This OpenSSL vulnerability...

The Lab 路 2026-04-13 08:22:28 路 GitHub Issues

9. 馃毃 Critical Vulnerabilities in Python Base Images: Distroless Shows 1 Critical, 24 High Severity Flaws

A recent security scan has exposed critical vulnerabilities in widely used Python base images, with the official `python:3.13-slim` image containing six high-severity flaws and Google's `gcr.io/distroless/python3-debian12:nonroot` image harboring one critical and 24 high-severity vulnerabilities. The alert, issued with...

The Lab 路 2026-04-14 11:22:55 路 GitHub Issues

10. LitmusChaos Frontend Container Exposes High & Critical Vulnerabilities, No Fix Available

A security scan of the official LitmusChaos frontend container image has uncovered multiple High and Critical severity vulnerabilities, with no available fix. The scan, conducted by GCP Artifact Registry on October 25, 2025, flags the `litmuschaos/litmusportal-frontend` image as containing exploitable security flaws. T...

The Lab 路 2026-04-16 07:22:36 路 GitHub Issues

11. 馃毃 Critical Vulnerabilities Found in Python Base Images: Distroless Image Shows 1 Critical, 24 High Severity Flaws

A recent security scan has uncovered critical vulnerabilities in widely used Python base images, with one container image showing a particularly severe exposure profile. The scan, dated April 6, 2026, flagged the `gcr.io/distroless/python3-debian12:nonroot` image as containing one critical and 24 high-severity vulnerab...

The Lab 路 2026-04-22 05:22:45 路 GitHub Issues

12. Microsoft Azure Linux Core 3.0 Image Exposes 22 Vulnerabilities, Including OpenSSL and curl Flaws

A security scan of Microsoft's official Azure Linux container image has revealed 22 unpatched vulnerabilities, raising immediate concerns for cloud deployments relying on this foundational component. The scan, performed using the Grype vulnerability scanner on the `mcr.microsoft.com/azurelinux/base/core:3.0` image, ide...

The Lab 路 2026-05-01 13:54:11 路 GitHub Issues

13. Docker Seccomp Patch Breaks SteamCMD: Kernel Vulnerability Triggers Compatibility Failure

A recent Docker update has introduced a critical compatibility issue affecting SteamCMD deployments. The disruption traces back to CVE-2026-31431, a Linux kernel copy vulnerability that prompted Docker maintainers to apply a band-aid patch to their default seccomp profile. This security hardening, while addressing the ...