home / Jnlp Agent Maven / jenkins/jnlp-agent-maven docker pull jenkins/jnlp-agent-maven click to select
Image metadata PULL COUNT
—
repository-level (not per-tag)
RUNS AS
root
image config.User
LAST PUSHED
5.7y ago
2021-01-20 16:34:01
MANIFEST DIGEST
sha256:fc9680ceeb6e…
from registry manifest
Latest scan 2026-10-10 00:14:57 UTC · today OPEN CVES BY SEVERITY
Grype DB 2026-10-09T06:32:32.000Z
· rubric cerodeo-v1
RUBRIC BREAKDOWN (4 signals that moved the score) -1100 · Critical CVEs (fixable) -2030 · High CVEs (fixable) -552 · Medium CVEs (fixable) -144 · High CVEs (no fix)
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
Reproduce this score yourself
We don't use judgement to score — every signal is deterministic from the image, the manifest, and a pinned CVE DB.
Run the script below on any host with skopeo, syft,
grype, cosign, and jq installed — it fetches the versioned rubric spec, computes the same breakdown, and prints the same grade. Pin the Grype DB with --grype-db to reproduce bit-for-bit identical results.
curl -fsSLO https://ce.rodeo/verify-score.sh && chmod +x verify-score.sh
./verify-score.sh jenkins/jnlp-agent-maven \
--rubric cerodeo-v1 \
--grype-db 2026-10-09T06:32:32.000Z
All open CVEs (500) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2021-20231 CRITICAL 9.8 libgnutls30 3.6.7-4+deb10u5 fixed in 3.6.7-4+deb10u7 CVE-2021-20232 CRITICAL 9.8 libgnutls30 3.6.7-4+deb10u5 fixed in 3.6.7-4+deb10u7 CVE-2021-31535 CRITICAL 9.8 libx11-6 2:1.6.7-1+deb10u1 fixed in 2:1.6.7-1+deb10u2 CVE-2021-31535 CRITICAL 9.8 libx11-data 2:1.6.7-1+deb10u1 fixed in 2:1.6.7-1+deb10u2 CVE-2021-3520 CRITICAL 9.8 liblz4-1 1.8.3-1 fixed in 1.8.3-1+deb10u1 CVE-2021-3711 CRITICAL 9.8 libssl1.1 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u7 CVE-2021-3711 CRITICAL 9.8 openssl 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u7 CVE-2022-22822 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22823 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22824 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-23521 CRITICAL 9.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-23521 CRITICAL 9.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-23852 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-25235 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-25236 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-25315 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-27404 CRITICAL 9.8 libfreetype6 2.9.1-3+deb10u2 fixed in 2.9.1-3+deb10u3 CVE-2022-29155 CRITICAL 9.8 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u7 CVE-2022-29155 CRITICAL 9.8 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u7 CVE-2022-32221 CRITICAL 9.8 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u4 CVE-2022-32221 CRITICAL 9.8 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u4 CVE-2022-32221 CRITICAL 9.8 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u4 CVE-2022-37434 CRITICAL 9.8 zlib1g 1:1.2.11.dfsg-1 fixed in 1:1.2.11.dfsg-1+deb10u2 CVE-2022-41903 CRITICAL 9.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-41903 CRITICAL 9.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2023-38408 CRITICAL 9.8 openssh-client 1:7.9p1-10+deb10u2 fixed in 1:7.9p1-10+deb10u3 CVE-2022-1586 CRITICAL 9.1 libpcre2-8-0 10.32-5 fixed in 10.32-5+deb10u1 CVE-2022-1587 CRITICAL 9.1 libpcre2-8-0 10.32-5 fixed in 10.32-5+deb10u1 CVE-2024-32002 CRITICAL 9.0 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32002 CRITICAL 9.0 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2019-1387 HIGH 8.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2019-1387 HIGH 8.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2021-39537 HIGH 8.8 libncursesw6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 ncurses-bin 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 ncurses-base 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 libtinfo6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 libncurses6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-45960 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22825 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22826 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22827 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-24407 HIGH 8.8 libsasl2-modules-db 2.1.27+dfsg-1+deb10u1 fixed in 2.1.27+dfsg-1+deb10u2 CVE-2022-24407 HIGH 8.8 libsasl2-2 2.1.27+dfsg-1+deb10u1 fixed in 2.1.27+dfsg-1+deb10u2 CVE-2022-24407 HIGH 8.8 libsasl2-modules 2.1.27+dfsg-1+deb10u1 fixed in 2.1.27+dfsg-1+deb10u2 CVE-2022-39260 HIGH 8.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-39260 HIGH 8.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-42898 HIGH 8.8 libkrb5-3 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libgssapi-krb5-2 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 krb5-locales 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libk5crypto3 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libkrb5support0 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2023-27533 HIGH 8.8 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u6 CVE-2023-27533 HIGH 8.8 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u6 CVE-2023-27533 HIGH 8.8 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u6 CVE-2023-27534 HIGH 8.8 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u9 CVE-2023-27534 HIGH 8.8 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u9 CVE-2023-27534 HIGH 8.8 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u9 CVE-2024-2398 HIGH 8.6 libcurl4 7.64.0-4+deb10u1 no fix available CVE-2024-2398 HIGH 8.6 libcurl3-gnutls 7.64.0-4+deb10u1 no fix available CVE-2019-13115 HIGH 8.1 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2019-17498 HIGH 8.1 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2022-22576 HIGH 8.1 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2022-22576 HIGH 8.1 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2022-22576 HIGH 8.1 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2022-40674 HIGH 8.1 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u5 CVE-2023-31484 HIGH 8.1 perl-modules-5.28 5.28.1-6+deb10u1 no fix available CVE-2019-3843 HIGH 7.8 libsystemd0 241-7~deb10u5 no fix available CVE-2019-3844 HIGH 7.8 libsystemd0 241-7~deb10u5 no fix available CVE-2020-16156 HIGH 7.8 perl-modules-5.28 5.28.1-6+deb10u1 no fix available CVE-2020-8177 HIGH 7.8 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8177 HIGH 7.8 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8177 HIGH 7.8 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2021-46143 HIGH 7.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-1304 HIGH 7.8 libcom-err2 1.44.5-1+deb10u3 no fix available CVE-2022-1304 HIGH 7.8 e2fsprogs 1.44.5-1+deb10u3 no fix available CVE-2022-1304 HIGH 7.8 libext2fs2 1.44.5-1+deb10u3 no fix available CVE-2022-24765 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-24765 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2023-26604 HIGH 7.8 libsystemd0 241-7~deb10u5 fixed in 241-7~deb10u9 CVE-2023-29007 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-29007 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-29491 HIGH 7.8 ncurses-bin 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 libncurses6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 ncurses-base 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 libncursesw6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 libtinfo6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2024-32004 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32004 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32465 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32465 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2018-25032 HIGH 7.5 zlib1g 1:1.2.11.dfsg-1 fixed in 1:1.2.11.dfsg-1+deb10u1 CVE-2020-11080 HIGH 7.5 libnghttp2-14 1.36.0-2+deb10u1 fixed in 1.36.0-2+deb10u2 CVE-2020-22218 HIGH 7.5 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2020-24659 HIGH 7.5 libgnutls30 3.6.7-4+deb10u5 fixed in 3.6.7-4+deb10u7 CVE-2020-36221 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36221 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36222 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36222 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36223 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36223 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36224 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36224 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36225 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36225 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36226 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36226 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36227 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36227 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36228 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36228 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36229 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36229 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36230 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-36230 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u5 CVE-2020-8169 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8169 HIGH 7.5 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8169 HIGH 7.5 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8231 HIGH 7.5 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8231 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8231 HIGH 7.5 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8285 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8285 HIGH 7.5 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8285 HIGH 7.5 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8286 HIGH 7.5 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8286 HIGH 7.5 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2020-8286 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u2 CVE-2021-21300 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-21300 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-22946 HIGH 7.5 libcurl4 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2021-22946 HIGH 7.5 curl 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2021-22946 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u1 fixed in 7.64.0-4+deb10u3 CVE-2021-23840 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u5 CVE-2021-23840 HIGH 7.5 openssl 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u5 CVE-2021-27212 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u6 CVE-2021-27212 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u4 fixed in 2.4.47+dfsg-3+deb10u6 CVE-2021-3580 HIGH 7.5 libnettle6 3.4.1-1 fixed in 3.4.1-1+deb10u1 CVE-2021-3580 HIGH 7.5 libhogweed4 3.4.1-1 fixed in 3.4.1-1+deb10u1 CVE-2021-36222 HIGH 7.5 libk5crypto3 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libkrb5support0 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libkrb5-3 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libgssapi-krb5-2 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 krb5-locales 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-40330 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-40330 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-43618 HIGH 7.5 libgmp10 2:6.1.2+dfsg-4 fixed in 2:6.1.2+dfsg-4+deb10u1 CVE-2022-0778 HIGH 7.5 openssl 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u8 CVE-2022-0778 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u4 fixed in 1.1.1d-0+deb10u8
Scan history 1 total · first today SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 44 251 229 2026-10-09T06:32:32.000Z
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .