home / Jnlp Slave / jenkins/jnlp-slave docker pull jenkins/jnlp-slave click to select
Image metadata PULL COUNT
—
repository-level (not per-tag)
RUNS AS
non-root
image config.User
LAST PUSHED
4.1y ago
2022-09-06 18:13:02
MANIFEST DIGEST
sha256:29cb52a00616…
from registry manifest
Latest scan 2026-10-10 00:08:05 UTC · today OPEN CVES BY SEVERITY
Grype DB 2026-10-09T06:32:32.000Z
· rubric cerodeo-v1
RUBRIC BREAKDOWN (5 signals that moved the score) -1075 · Critical CVEs (fixable) -1560 · High CVEs (fixable) -510 · Medium CVEs (fixable) -165 · High CVEs (no fix) +10 · Runs as non-root
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
Reproduce this score yourself
We don't use judgement to score — every signal is deterministic from the image, the manifest, and a pinned CVE DB.
Run the script below on any host with skopeo, syft,
grype, cosign, and jq installed — it fetches the versioned rubric spec, computes the same breakdown, and prints the same grade. Pin the Grype DB with --grype-db to reproduce bit-for-bit identical results.
curl -fsSLO https://ce.rodeo/verify-score.sh && chmod +x verify-score.sh
./verify-score.sh jenkins/jnlp-slave \
--rubric cerodeo-v1 \
--grype-db 2026-10-09T06:32:32.000Z
All open CVEs (500) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2021-33574 CRITICAL 9.8 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2021-3711 CRITICAL 9.8 openssl 1.1.1d-0+deb10u6 fixed in 1.1.1d-0+deb10u7 CVE-2021-3711 CRITICAL 9.8 libssl1.1 1.1.1d-0+deb10u6 fixed in 1.1.1d-0+deb10u7 CVE-2022-22822 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22823 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22824 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-23218 CRITICAL 9.8 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2022-23219 CRITICAL 9.8 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2022-23521 CRITICAL 9.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-23521 CRITICAL 9.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-23852 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-25235 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-25236 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-25315 CRITICAL 9.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-27404 CRITICAL 9.8 libfreetype6 2.9.1-3+deb10u2 fixed in 2.9.1-3+deb10u3 CVE-2022-29155 CRITICAL 9.8 libldap-2.4-2 2.4.47+dfsg-3+deb10u6 fixed in 2.4.47+dfsg-3+deb10u7 CVE-2022-29155 CRITICAL 9.8 libldap-common 2.4.47+dfsg-3+deb10u6 fixed in 2.4.47+dfsg-3+deb10u7 CVE-2022-32221 CRITICAL 9.8 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u4 CVE-2022-32221 CRITICAL 9.8 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u4 CVE-2022-32221 CRITICAL 9.8 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u4 CVE-2022-37434 CRITICAL 9.8 zlib1g 1:1.2.11.dfsg-1 fixed in 1:1.2.11.dfsg-1+deb10u2 CVE-2022-41903 CRITICAL 9.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2022-41903 CRITICAL 9.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u7 CVE-2023-38408 CRITICAL 9.8 openssh-client 1:7.9p1-10+deb10u2 fixed in 1:7.9p1-10+deb10u3 CVE-2021-35942 CRITICAL 9.1 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2022-1586 CRITICAL 9.1 libpcre2-8-0 10.32-5 fixed in 10.32-5+deb10u1 CVE-2022-1587 CRITICAL 9.1 libpcre2-8-0 10.32-5 fixed in 10.32-5+deb10u1 CVE-2024-32002 CRITICAL 9.0 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32002 CRITICAL 9.0 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2019-1387 HIGH 8.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2019-1387 HIGH 8.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2021-39537 HIGH 8.8 libncursesw6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 ncurses-bin 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 ncurses-base 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-39537 HIGH 8.8 libtinfo6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2021-45960 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22825 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22826 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-22827 HIGH 8.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-24407 HIGH 8.8 libsasl2-modules-db 2.1.27+dfsg-1+deb10u1 fixed in 2.1.27+dfsg-1+deb10u2 CVE-2022-24407 HIGH 8.8 libsasl2-2 2.1.27+dfsg-1+deb10u1 fixed in 2.1.27+dfsg-1+deb10u2 CVE-2022-39260 HIGH 8.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-39260 HIGH 8.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-42898 HIGH 8.8 libkrb5support0 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libgssapi-krb5-2 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libk5crypto3 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2022-42898 HIGH 8.8 libkrb5-3 1.17-3+deb10u1 fixed in 1.17-3+deb10u5 CVE-2023-27533 HIGH 8.8 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u6 CVE-2023-27533 HIGH 8.8 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u6 CVE-2023-27533 HIGH 8.8 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u6 CVE-2023-27534 HIGH 8.8 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u9 CVE-2023-27534 HIGH 8.8 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u9 CVE-2023-27534 HIGH 8.8 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u9 CVE-2024-2398 HIGH 8.6 libcurl4 7.64.0-4+deb10u2 no fix available CVE-2024-2398 HIGH 8.6 libcurl3-gnutls 7.64.0-4+deb10u2 no fix available CVE-2019-13115 HIGH 8.1 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2019-17498 HIGH 8.1 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2020-6096 HIGH 8.1 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2022-22576 HIGH 8.1 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-22576 HIGH 8.1 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-22576 HIGH 8.1 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-40674 HIGH 8.1 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u5 CVE-2023-31484 HIGH 8.1 perl-modules-5.28 5.28.1-6+deb10u1 no fix available CVE-2019-3843 HIGH 7.8 libsystemd0 241-7~deb10u7 no fix available CVE-2019-3844 HIGH 7.8 libsystemd0 241-7~deb10u7 no fix available CVE-2020-16156 HIGH 7.8 perl-modules-5.28 5.28.1-6+deb10u1 no fix available CVE-2021-3999 HIGH 7.8 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2021-46143 HIGH 7.8 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-1304 HIGH 7.8 libext2fs2 1.44.5-1+deb10u3 no fix available CVE-2022-1304 HIGH 7.8 e2fsprogs 1.44.5-1+deb10u3 no fix available CVE-2022-1304 HIGH 7.8 libcom-err2 1.44.5-1+deb10u3 no fix available CVE-2022-24765 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-24765 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-29187 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2022-29187 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u5 CVE-2023-26604 HIGH 7.8 libsystemd0 241-7~deb10u7 fixed in 241-7~deb10u9 CVE-2023-29007 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-29007 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-29491 HIGH 7.8 ncurses-bin 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 libncursesw6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 ncurses-base 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-29491 HIGH 7.8 libtinfo6 6.1+20181013-2+deb10u2 fixed in 6.1+20181013-2+deb10u5 CVE-2023-43787 HIGH 7.8 libx11-data 2:1.6.7-1+deb10u2 fixed in 2:1.6.7-1+deb10u4 CVE-2023-43787 HIGH 7.8 libx11-6 2:1.6.7-1+deb10u2 fixed in 2:1.6.7-1+deb10u4 CVE-2024-32004 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32004 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32465 HIGH 7.8 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2024-32465 HIGH 7.8 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2018-25032 HIGH 7.5 zlib1g 1:1.2.11.dfsg-1 fixed in 1:1.2.11.dfsg-1+deb10u1 CVE-2020-11080 HIGH 7.5 libnghttp2-14 1.36.0-2+deb10u1 fixed in 1.36.0-2+deb10u2 CVE-2020-22218 HIGH 7.5 libssh2-1 1.8.0-2.1 fixed in 1.8.0-2.1+deb10u1 CVE-2021-21300 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-21300 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-22946 HIGH 7.5 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2021-22946 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2021-22946 HIGH 7.5 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2021-3326 HIGH 7.5 libc-l10n 2.28-10 fixed in 2.28-10+deb10u2 CVE-2021-36222 HIGH 7.5 libkrb5-3 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libk5crypto3 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libgssapi-krb5-2 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-36222 HIGH 7.5 libkrb5support0 1.17-3+deb10u1 fixed in 1.17-3+deb10u2 CVE-2021-40330 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-40330 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u4 CVE-2021-43618 HIGH 7.5 libgmp10 2:6.1.2+dfsg-4 fixed in 2:6.1.2+dfsg-4+deb10u1 CVE-2022-0778 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u6 fixed in 1.1.1d-0+deb10u8 CVE-2022-0778 HIGH 7.5 openssl 1.1.1d-0+deb10u6 fixed in 1.1.1d-0+deb10u8 CVE-2022-23990 HIGH 7.5 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u2 CVE-2022-2509 HIGH 7.5 libgnutls30 3.6.7-4+deb10u7 fixed in 3.6.7-4+deb10u9 CVE-2022-25314 HIGH 7.5 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u3 CVE-2022-27405 HIGH 7.5 libfreetype6 2.9.1-3+deb10u2 fixed in 2.9.1-3+deb10u3 CVE-2022-27406 HIGH 7.5 libfreetype6 2.9.1-3+deb10u2 fixed in 2.9.1-3+deb10u3 CVE-2022-27781 HIGH 7.5 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-27781 HIGH 7.5 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-27781 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-27782 HIGH 7.5 libcurl4 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-27782 HIGH 7.5 curl 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-27782 HIGH 7.5 libcurl3-gnutls 7.64.0-4+deb10u2 fixed in 7.64.0-4+deb10u3 CVE-2022-43680 HIGH 7.5 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u6 CVE-2022-4450 HIGH 7.5 openssl 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u4 CVE-2022-4450 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u4 CVE-2023-0215 HIGH 7.5 openssl 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u4 CVE-2023-0215 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u4 CVE-2023-0464 HIGH 7.5 openssl 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u5 CVE-2023-0464 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u6 fixed in 1.1.1n-0+deb10u5 CVE-2023-23946 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u8 CVE-2023-23946 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u8 CVE-2023-25652 HIGH 7.5 git 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-25652 HIGH 7.5 git-man 1:2.20.1-2+deb10u3 fixed in 1:2.20.1-2+deb10u9 CVE-2023-2953 HIGH 7.5 libldap-2.4-2 2.4.47+dfsg-3+deb10u6 no fix available CVE-2023-2953 HIGH 7.5 libldap-common 2.4.47+dfsg-3+deb10u6 no fix available CVE-2023-3138 HIGH 7.5 libx11-data 2:1.6.7-1+deb10u2 fixed in 2:1.6.7-1+deb10u3 CVE-2023-3138 HIGH 7.5 libx11-6 2:1.6.7-1+deb10u2 fixed in 2:1.6.7-1+deb10u3 CVE-2023-44487 HIGH 7.5 libnghttp2-14 1.36.0-2+deb10u1 fixed in 1.36.0-2+deb10u2 CVE-2023-52425 HIGH 7.5 libexpat1 2.2.6-2+deb10u1 fixed in 2.2.6-2+deb10u7 CVE-2024-0553 HIGH 7.5 libgnutls30 3.6.7-4+deb10u7 fixed in 3.6.7-4+deb10u12 CVE-2024-26461 HIGH 7.5 libkrb5support0 1.17-3+deb10u1 no fix available CVE-2024-26461 HIGH 7.5 libgssapi-krb5-2 1.17-3+deb10u1 no fix available CVE-2024-4741 HIGH 7.5 libssl1.1 1.1.1d-0+deb10u6 no fix available
Scan history 1 total · first today SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 43 211 219 2026-10-09T06:32:32.000Z
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .