linuxserver/syncthing:v2.1.6-ls231

by linuxserver ← project: Syncthing
SCOUT
A
score 87
Pull →
docker pull linuxserver/syncthing:v2.1.6-ls231 click to select

Image metadata

PULL COUNT
—
repository-level (not per-tag)
SIZE (COMPRESSED)
26 MB
ARCHITECTURES
2
RUNS AS
root
image config.User
LAST PUSHED
4d ago
2026-10-06 09:50:33
MANIFEST DIGEST
sha256:8a381a5a1122…
from registry manifest

Latest scan

2026-10-09 22:40:39 UTC · today

OPEN CVES BY SEVERITY

0
CRITICAL
3
HIGH
15
MEDIUM
0
LOW/NEG
Grype DB 2026-10-09T06:32:32.000Z · rubric cerodeo-v1

RUBRIC BREAKDOWN (5 signals that moved the score)

-30 · High CVEs (fixable) +10 · Rebuilt in last 90 days +3 · OCI standard labels (≥4) +2 · Multi-arch +2 · readme_has_example

Raw data

Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.

Latest scan JSON (CVE matches) Full scan history JSON (1 snapshots)

All open CVEs (37)

sorted by severity, then CVSS score
CVE ID SEV CVSS PACKAGE FIX
CVE-2026-85091 HIGH 8.3 zlib 1.3.2-r0 fixed in 1.3.2-r1
GO-2026-6354 HIGH 7.5 golang.org/x/crypto v0.55.0 fixed in 0.56.0
GO-2026-6355 HIGH 7.5 golang.org/x/crypto v0.55.0 fixed in 0.56.0
CVE-2016-2781 MEDIUM 6.5 coreutils-sha512sum 9.11-r0 no fix available
CVE-2016-2781 MEDIUM 6.5 coreutils 9.11-r0 no fix available
CVE-2016-2781 MEDIUM 6.5 coreutils-env 9.11-r0 no fix available
CVE-2016-2781 MEDIUM 6.5 coreutils-fmt 9.11-r0 no fix available
CVE-2025-60876 MEDIUM 6.5 ssl_client 1.37.0-r31 no fix available
CVE-2025-60876 MEDIUM 6.5 busybox 1.37.0-r31 no fix available
CVE-2025-60876 MEDIUM 6.5 busybox-binsh 1.37.0-r31 no fix available
CVE-2026-56391 MEDIUM 6.1 coreutils 9.11-r0 no fix available
CVE-2026-56391 MEDIUM 6.1 coreutils-env 9.11-r0 no fix available
CVE-2026-56391 MEDIUM 6.1 coreutils-fmt 9.11-r0 no fix available
CVE-2026-56391 MEDIUM 6.1 coreutils-sha512sum 9.11-r0 no fix available
CVE-2026-56392 MEDIUM 6.1 coreutils 9.11-r0 no fix available
CVE-2026-56392 MEDIUM 6.1 coreutils-env 9.11-r0 no fix available
CVE-2026-56392 MEDIUM 6.1 coreutils-fmt 9.11-r0 no fix available
CVE-2026-56392 MEDIUM 6.1 coreutils-sha512sum 9.11-r0 no fix available
GO-2026-5932 UNKNOWN — golang.org/x/crypto v0.55.0 no fix available
GO-2026-6599 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6600 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6603 UNKNOWN — golang.org/x/net v0.58.0 fixed in 0.60.0
GO-2026-6603 UNKNOWN — stdlib go1.27.1 fixed in 1.27.2
GO-2026-6604 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6605 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6607 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6608 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6609 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6610 UNKNOWN — golang.org/x/net v0.58.0 fixed in 0.60.0
GO-2026-6610 UNKNOWN — stdlib go1.27.1 fixed in 1.27.2
GO-2026-6611 UNKNOWN — golang.org/x/net v0.58.0 fixed in 0.60.0
GO-2026-6611 UNKNOWN — stdlib go1.27.1 fixed in 1.27.2
GO-2026-6612 UNKNOWN — stdlib go1.27.1 fixed in 1.27.2
GO-2026-6612 UNKNOWN — golang.org/x/net v0.58.0 fixed in 0.60.0
GO-2026-6613 UNKNOWN — stdlib go1.27.1 fixed in 1.26.9
GO-2026-6617 UNKNOWN — stdlib go1.27.1 fixed in 1.27.2
GO-2026-6617 UNKNOWN — golang.org/x/net v0.58.0 fixed in 0.60.0

Scan history

1 total · first today
SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today A 87 0 3 15 2026-10-09T06:32:32.000Z