home / Kibana / kibana:9.5.5 docker pull kibana:9.5.5 click to select
Image metadata PULL COUNT
224.6M
repository-level (not per-tag)
RUNS AS
non-root
image config.User
LAST PUSHED
3d ago
2026-10-07 01:11:39
MANIFEST DIGEST
sha256:2302bf43b02d…
from registry manifest
Latest scan 2026-10-09 23:37:26 UTC · today OPEN CVES BY SEVERITY
Grype DB 2026-10-09T06:32:32.000Z
· rubric cerodeo-v1
RUBRIC BREAKDOWN (9 signals that moved the score) -75 · Critical CVEs (fixable) -180 · High CVEs (fixable) -129 · Medium CVEs (fixable) -78 · High CVEs (no fix) +10 · Runs as non-root +10 · Rebuilt in last 90 days +3 · OCI standard labels (≥4) +2 · Multi-arch +2 · readme_has_example
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
Reproduce this score yourself
We don't use judgement to score — every signal is deterministic from the image, the manifest, and a pinned CVE DB.
Run the script below on any host with skopeo, syft,
grype, cosign, and jq installed — it fetches the versioned rubric spec, computes the same breakdown, and prints the same grade. Pin the Grype DB with --grype-db to reproduce bit-for-bit identical results.
curl -fsSLO https://ce.rodeo/verify-score.sh && chmod +x verify-score.sh
./verify-score.sh kibana:9.5.5 \
--rubric cerodeo-v1 \
--grype-db 2026-10-09T06:32:32.000Z
All open CVEs (391) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2026-19445 HIGH 8.1 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-19445 HIGH 8.1 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-57585 HIGH 7.5 python3-pip-wheel 21.3.1-2.el9_8 no fix available CVE-2026-19553 HIGH 7.4 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-19553 HIGH 7.4 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-84782 HIGH 7.4 openssl-libs 1:3.5.8-1.el9_8 fixed in 1:3.5.8-2.el9_8 CVE-2026-8932 MEDIUM 7.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-8932 MEDIUM 7.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-86805 MEDIUM 7.0 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2026-86805 MEDIUM 7.0 glibc-common 2.34-275.el9_8 no fix available CVE-2026-95818 MEDIUM 7.0 glibc-common 2.34-275.el9_8 no fix available CVE-2026-95818 MEDIUM 7.0 glibc-minimal-langpack 2.34-275.el9_8 no fix available CVE-2025-13034 MEDIUM 6.8 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2025-13034 MEDIUM 6.8 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6019 MEDIUM 6.8 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-6019 MEDIUM 6.8 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-6019 MEDIUM 6.8 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-4105 MEDIUM 6.7 systemd-libs 252-67.el9_8.6 no fix available CVE-2026-11856 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-11856 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-11972 MEDIUM 6.5 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-11972 MEDIUM 6.5 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-19931 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-19931 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-3784 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-3784 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-4426 MEDIUM 6.5 libarchive 3.5.3-11.el9_8 no fix available CVE-2026-5545 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5545 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5773 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-5773 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6429 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-6429 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-7774 MEDIUM 6.5 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-7774 MEDIUM 6.5 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-7774 MEDIUM 6.5 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-8924 MEDIUM 6.5 curl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-8924 MEDIUM 6.5 libcurl-minimal 7.76.1-40.el9_8.7 no fix available CVE-2026-12345 MEDIUM 6.3 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-12345 MEDIUM 6.3 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-1757 MEDIUM 6.2 libxml2 2.9.13-14.el9_8.5 no fix available CVE-2026-42308 MEDIUM 6.2 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-42308 MEDIUM 6.2 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-56391 MEDIUM 6.1 coreutils-single 8.32-41.el9_8.1 no fix available CVE-2026-5713 MEDIUM 6.0 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-5713 MEDIUM 6.0 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-5713 MEDIUM 6.0 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2025-13837 MEDIUM 5.9 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2025-13837 MEDIUM 5.9 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-0990 MEDIUM 5.9 libxml2 2.9.13-14.el9_8.5 no fix available CVE-2026-13346 MEDIUM 5.9 python3-pip-wheel 21.3.1-2.el9_8 no fix available CVE-2026-32284 MEDIUM 5.9 python3-pip-wheel 21.3.1-2.el9_8 no fix available CVE-2026-4224 MEDIUM 5.9 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-4224 MEDIUM 5.9 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-4224 MEDIUM 5.9 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-54872 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-6791 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6791 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6791 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-72897 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-75805 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-77117 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77117 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77117 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-77696 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available CVE-2026-80489 MEDIUM 5.9 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-80489 MEDIUM 5.9 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-80489 MEDIUM 5.9 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-84783 MEDIUM 5.9 openssl-libs 1:3.5.8-1.el9_8 no fix available GHSA-qqmp-wf37-98f9 MEDIUM 5.8 @opentelemetry/instrumentation-cassandra-driver 0.65.0 fixed in 0.66.0 CVE-2026-0864 MEDIUM 5.5 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-0864 MEDIUM 5.5 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-0864 MEDIUM 5.5 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-15059 MEDIUM 5.5 systemd-libs 252-67.el9_8.6 no fix available CVE-2026-50812 MEDIUM 5.5 sqlite-libs 3.34.1-11.el9_8 no fix available CVE-2026-5745 MEDIUM 5.5 libarchive 3.5.3-11.el9_8 no fix available CVE-2026-6368 MEDIUM 5.5 glibc 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6368 MEDIUM 5.5 glibc-minimal-langpack 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-6368 MEDIUM 5.5 glibc-common 2.34-275.el9_8 fixed in 0:2.34-283.el9_8 CVE-2026-1489 MEDIUM 5.4 glib2 2.68.4-19.el9_8.10 no fix available CVE-2026-3644 MEDIUM 5.4 python3 3.9.25-7.el9_8.3 no fix available CVE-2026-3644 MEDIUM 5.4 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2026-3644 MEDIUM 5.4 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2025-12781 MEDIUM 5.3 python3-libs 3.9.25-7.el9_8.3 no fix available CVE-2025-12781 MEDIUM 5.3 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2025-50181 MEDIUM 5.3 python3-pip-wheel 21.3.1-2.el9_8 no fix available CVE-2025-50182 MEDIUM 5.3 python3-pip-wheel 21.3.1-2.el9_8 no fix available CVE-2026-19672 MEDIUM 5.3 python-unversioned-command 3.9.25-7.el9_8.3 no fix available CVE-2026-19672 MEDIUM 5.3 python3-libs 3.9.25-7.el9_8.3 no fix available
Scan history 2 total · first today SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 3 44 233 2026-10-09T06:32:32.000Z · (same SBOM)
today F 0 3 44 233 2026-10-09T06:32:32.000Z
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .