home / Logstash / elastic/logstash:9.5.5 docker pull elastic/logstash:9.5.5 click to select
Image metadata PULL COUNT
—
repository-level (not per-tag)
RUNS AS
non-root
image config.User
LAST PUSHED
10d ago
2026-09-29 21:05:58
MANIFEST DIGEST
sha256:d170c9216649…
from registry manifest
Latest scan 2026-10-09 22:09:19 UTC · today OPEN CVES BY SEVERITY
Grype DB 2026-10-09T06:32:32.000Z
· rubric cerodeo-v1
RUBRIC BREAKDOWN (8 signals that moved the score) -220 · High CVEs (fixable) -87 · Medium CVEs (fixable) -42 · High CVEs (no fix) +10 · Runs as non-root +10 · Rebuilt in last 90 days +5 · Cosign signature +3 · OCI standard labels (≥4) +2 · Multi-arch
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
All open CVEs (275) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2026-84782 HIGH 7.4 openssl 1:3.5.8-1.el9_8 fixed in 1:3.5.8-2.el9_8 CVE-2026-84782 HIGH 7.4 openssl-libs 1:3.5.8-1.el9_8 fixed in 1:3.5.8-2.el9_8 CVE-2026-8932 MEDIUM 7.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-8932 MEDIUM 7.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-86805 MEDIUM 7.0 glibc-common 2.34-275.el9_8 no fix available CVE-2026-86805 MEDIUM 7.0 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2026-95818 MEDIUM 7.0 glibc-common 2.34-275.el9_8 no fix available CVE-2026-95818 MEDIUM 7.0 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2025-13034 MEDIUM 6.8 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2025-13034 MEDIUM 6.8 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-4105 MEDIUM 6.7 systemd-libs 252-67.el9_8.6 no fix available CVE-2026-11856 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-11856 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-19931 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-19931 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-3784 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-3784 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-4426 MEDIUM 6.5 libarchive 3.5.3-11.el9_8 no fix available CVE-2026-5545 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5545 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5773 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5773 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6429 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6429 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-8924 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-8924 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-1757 MEDIUM 6.2 libxml2 2.9.13-14.el9_8.5 no fix available CVE-2026-56391 MEDIUM 6.1 coreutils-single 8.32-41.el9_8.1 no fix available CVE-2026-0990 MEDIUM 5.9 libxml2 2.9.13-14.el9_8.5 no fix available CVE-2026-54872 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-6791 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6791 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6791 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-72897 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-75805 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-77117 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77117 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77117 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77696 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-80489 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-80489 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-80489 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-84783 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-15059 MEDIUM 5.5 systemd-libs 252-67.el9_8.6 no fix available CVE-2026-50812 MEDIUM 5.5 sqlite-libs 3.34.1-11.el9_8 no fix available CVE-2026-5745 MEDIUM 5.5 libarchive 3.5.3-11.el9_8 no fix available CVE-2026-6368 MEDIUM 5.5 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6368 MEDIUM 5.5 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6368 MEDIUM 5.5 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-1489 MEDIUM 5.4 glib2 2.68.4-19.el9_8.10 no fix available CVE-2026-42772 MEDIUM 5.3 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-4873 MEDIUM 5.3 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-4873 MEDIUM 5.3 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-54873 MEDIUM 5.3 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-6253 MEDIUM 5.3 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6253 MEDIUM 5.3 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-7168 MEDIUM 5.3 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-7168 MEDIUM 5.3 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-75806 MEDIUM 5.3 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-8674 MEDIUM 5.3 glibc-common 2.34-275.el9_8 no fix available CVE-2026-8674 MEDIUM 5.3 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2026-18374 MEDIUM 4.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-18374 MEDIUM 4.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-18374 MEDIUM 4.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2025-14017 MEDIUM 4.8 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2025-14017 MEDIUM 4.8 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-54875 MEDIUM 4.7 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-1484 MEDIUM 4.2 glib2 2.68.4-19.el9_8.10 no fix available CVE-2026-19542 MEDIUM 4.2 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-19542 MEDIUM 4.2 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-19542 MEDIUM 4.2 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-89092 MEDIUM 4.2 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2026-89092 MEDIUM 4.2 glibc-common 2.34-275.el9_8 no fix available CVE-2025-15079 LOW 8.1 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2025-15079 LOW 8.1 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2023-50495 LOW 6.5 ncurses-base 6.2-12.20210508.el9 no fix available CVE-2023-50495 LOW 6.5 ncurses-libs 6.2-12.20210508.el9 no fix available CVE-2025-14524 LOW 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2025-14524 LOW 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2024-11053 LOW 5.9 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2024-11053 LOW 5.9 curl-minimal 7.76.1-40.el9_8.7 no fix available
Scan history 1 total · first today SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 0 36 150 2026-10-09T06:32:32.000Z
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .