logstash:8.19.23

by Docker Official OFFICIAL ← project: Logstash
SCOUT
F
score 0
Pull →
docker pull logstash:8.19.23 click to select

Image metadata

PULL COUNT
—
repository-level (not per-tag)
SIZE (COMPRESSED)
531 MB
ARCHITECTURES
2
RUNS AS
non-root
image config.User
LAST PUSHED
3d ago
2026-10-06 23:53:16
MANIFEST DIGEST
sha256:2387f3fd0eb7…
from registry manifest

Latest scan

2026-10-09 22:46:26 UTC · today

OPEN CVES BY SEVERITY

1
CRITICAL
23
HIGH
85
MEDIUM
22
LOW/NEG
Grype DB 2026-10-09T06:32:32.000Z · rubric cerodeo-v1

RUBRIC BREAKDOWN (6 signals that moved the score)

-25 · Critical CVEs (fixable) -230 · High CVEs (fixable) -45 · Medium CVEs (fixable) +10 · Runs as non-root +10 · Rebuilt in last 90 days +2 · Multi-arch

Raw data

Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.

Latest scan JSON (CVE matches) Full scan history JSON (1 snapshots)

Reproduce this score yourself

We don't use judgement to score — every signal is deterministic from the image, the manifest, and a pinned CVE DB. Run the script below on any host with skopeo, syft, grype, cosign, and jq installed — it fetches the versioned rubric spec, computes the same breakdown, and prints the same grade. Pin the Grype DB with --grype-db to reproduce bit-for-bit identical results.

curl -fsSLO https://ce.rodeo/verify-score.sh && chmod +x verify-score.sh ./verify-score.sh logstash:8.19.23 \ --rubric cerodeo-v1 \ --grype-db 2026-10-09T06:32:32.000Z
verify-score.sh rubric spec (cerodeo-v1.json)

All open CVEs (131)

sorted by severity, then CVSS score
CVE ID SEV CVSS PACKAGE FIX
GHSA-9pwp-9qqc-pr26 CRITICAL 9.1 bcprov-jdk18on 1.84 fixed in 1.85
GHSA-vcgp-9326-pqcp HIGH 7.6 net-imap 0.2.5 fixed in 0.3.10
GHSA-7hhh-6rmp-j9qf HIGH 7.5 jackson-core 2.18.9 fixed in 2.18.11
GHSA-7hhh-6rmp-j9qf HIGH 7.5 jackson-core 2.21.6 fixed in 2.21.7
GHSA-7hhh-6rmp-j9qf HIGH 7.5 jackson-core 2.21.6 fixed in 2.21.7
GHSA-7hhh-6rmp-j9qf HIGH 7.5 jackson-core 2.18.9 fixed in 2.18.11
GHSA-7hhh-6rmp-j9qf HIGH 7.5 jackson-core 3.1.6 fixed in 3.1.7
GHSA-c4rq-3m3g-8wgx HIGH 7.5 nokogiri 1.18.10 fixed in 1.19.3
GHSA-cxp5-3px4-pw24 HIGH 7.5 jackson-databind 2.18.9 fixed in 2.18.11
GHSA-cxp5-3px4-pw24 HIGH 7.5 jackson-databind 2.21.6 fixed in 2.21.7
GHSA-cxp5-3px4-pw24 HIGH 7.5 jackson-databind 2.21.6 fixed in 2.21.7
GHSA-cxp5-3px4-pw24 HIGH 7.5 jackson-databind 3.1.6 fixed in 3.1.7
GHSA-p6pp-m3f8-5c89 HIGH 7.5 jackson-core 2.21.6 fixed in 2.21.7
GHSA-p6pp-m3f8-5c89 HIGH 7.5 jackson-core 2.18.9 fixed in 2.18.11
GHSA-p6pp-m3f8-5c89 HIGH 7.5 jackson-core 2.18.9 fixed in 2.18.11
GHSA-p6pp-m3f8-5c89 HIGH 7.5 jackson-core 2.21.6 fixed in 2.21.7
GHSA-p6pp-m3f8-5c89 HIGH 7.5 jackson-core 3.1.6 fixed in 3.1.7
GHSA-q4xh-88c3-wmh7 HIGH 7.5 jackson-databind 2.18.9 fixed in 2.18.10
GHSA-qp49-qgx5-5m26 HIGH 7.5 bcprov-jdk18on 1.84 fixed in 1.85
GHSA-wv8q-qhhj-9h54 HIGH 7.5 jackson-databind 2.18.9 fixed in 2.18.11
GHSA-wv8q-qhhj-9h54 HIGH 7.5 jackson-databind 2.21.6 fixed in 2.21.7
GHSA-wv8q-qhhj-9h54 HIGH 7.5 jackson-databind 2.21.6 fixed in 2.21.7
GHSA-wv8q-qhhj-9h54 HIGH 7.5 jackson-databind 3.1.6 fixed in 3.1.7
GHSA-mcr4-qmvw-px4g HIGH 7.3 lz4-java 1.10.1 fixed in 1.11.4
GHSA-xx22-p4ch-683r MEDIUM 6.5 lz4-java 1.10.1 fixed in 1.11.1
GHSA-5prr-v3j2-97mh MEDIUM 6.3 nokogiri 1.18.10 fixed in 1.19.4
GHSA-46q3-7gv7-qmgg MEDIUM 5.8 net-imap 0.2.5 fixed in 0.5.15
GHSA-8p34-64r3-mwg8 MEDIUM 5.8 net-imap 0.2.5 fixed in 0.5.15
GHSA-hm49-wcqc-g2xg MEDIUM 5.8 net-imap 0.2.5 fixed in 0.4.24
GHSA-gx83-3vf8-gh7j MEDIUM 5.6 jackson-databind 2.18.9 fixed in 2.18.10
GHSA-4v53-57pg-c464 MEDIUM 5.3 lz4-java 1.10.1 fixed in 1.11.2
GHSA-6cx8-rjf8-pr8g MEDIUM 5.3 lz4-java 1.10.1 fixed in 1.11.2
GHSA-75xq-5h9v-w6px MEDIUM 5.3 net-imap 0.2.5 fixed in 0.4.24
GHSA-gm45-99xc-r7wv MEDIUM 5.3 lz4-java 1.10.1 fixed in 1.11.4
GHSA-v2fc-qm4h-8hqv MEDIUM 5.3 nokogiri 1.18.10 fixed in 1.19.3
GHSA-wjgm-6hv5-3cvf MEDIUM 5.3 jackson-databind 2.18.9 fixed in 2.18.10
GHSA-wx95-c6cv-8532 MEDIUM 5.3 nokogiri 1.18.10 fixed in 1.19.1
CVE-2011-4838 MEDIUM 5.0 JRuby 1.0 fixed in 1.6.5.1
CVE-2011-4838 MEDIUM 5.0 JRuby 1.0 fixed in 1.6.5.1
CVE-2012-5370 MEDIUM 5.0 JRuby 1.0 no fix available
CVE-2012-5370 MEDIUM 5.0 JRuby 1.0 no fix available
CVE-2010-1330 MEDIUM 4.3 JRuby 1.0 no fix available
CVE-2010-1330 MEDIUM 4.3 JRuby 1.0 no fix available
CVE-2024-10041 MEDIUM — libpam-modules-bin 1.5.3-5ubuntu5.7 no fix available
CVE-2024-10041 MEDIUM — libpam-runtime 1.5.3-5ubuntu5.7 no fix available
CVE-2024-10041 MEDIUM — libpam0g 1.5.3-5ubuntu5.7 no fix available
CVE-2024-10041 MEDIUM — libpam-modules 1.5.3-5ubuntu5.7 no fix available
CVE-2026-102473 MEDIUM — dash 0.5.12-6ubuntu5 no fix available
CVE-2026-102474 MEDIUM — dash 0.5.12-6ubuntu5 no fix available
CVE-2026-103111 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-18374 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
CVE-2026-18374 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-18374 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-18477 MEDIUM — tar 1.35+dfsg-3ubuntu0.4 no fix available
CVE-2026-18508 MEDIUM — tar 1.35+dfsg-3ubuntu0.4 no fix available
CVE-2026-54369 MEDIUM — libacl1 2.3.2-1build1.1 no fix available
CVE-2026-54370 MEDIUM — libacl1 2.3.2-1build1.1 no fix available
CVE-2026-76642 MEDIUM — mount 2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — bsdutils 1:2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — libblkid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — libmount1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — libsmartcols1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — libuuid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-76642 MEDIUM — util-linux 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — util-linux 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — libsmartcols1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — libmount1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — libblkid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — bsdutils 1:2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — libuuid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78408 MEDIUM — mount 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — libuuid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — libsmartcols1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — libmount1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — libblkid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — bsdutils 1:2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — util-linux 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78409 MEDIUM — mount 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — libmount1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — mount 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — libblkid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — bsdutils 1:2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — libsmartcols1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — libuuid1 2.39.3-9ubuntu6.6 no fix available
CVE-2026-78410 MEDIUM — util-linux 2.39.3-9ubuntu6.6 no fix available
CVE-2026-82560 MEDIUM — perl-base 5.38.2-3.2ubuntu0.6 no fix available
CVE-2026-85091 MEDIUM — zlib1g 1:1.3.dfsg-3.1ubuntu2.2 no fix available
CVE-2026-86145 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-8674 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-8674 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-8674 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
CVE-2026-86805 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-86805 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-86805 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
CVE-2026-89092 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-89092 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-89092 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
CVE-2026-89156 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-89157 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-89158 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-89160 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-89161 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-89162 MEDIUM — libpcre2-8-0 10.42-4ubuntu2.1 no fix available
CVE-2026-95818 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-95818 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
CVE-2026-95818 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-97399 MEDIUM — libc6 2.39-0ubuntu8.9 no fix available
CVE-2026-97399 MEDIUM — libc-bin 2.39-0ubuntu8.9 no fix available
CVE-2026-97399 MEDIUM — locales 2.39-0ubuntu8.9 no fix available
GHSA-j4pr-3wm6-xx2r LOW 7.5 uri 0.12.4 fixed in 0.12.5
GHSA-343h-94h5-c4wr LOW 3.7 lz4-java 1.10.1 fixed in 1.11.4
GHSA-x2f5-4prf-w687 LOW 3.7 json 2.12.2 fixed in 2.19.9
GHSA-8678-w3jw-xfc2 LOW 2.6 nokogiri 1.18.10 fixed in 1.19.4
GHSA-q2mw-fvj9-vvcw LOW 2.3 net-imap 0.2.5 fixed in 0.4.24
GHSA-c4fp-cxrr-mj66 LOW 2.1 net-imap 0.2.5 fixed in 0.5.15
GHSA-5v8h-3h3q-446p LOW 1.7 nokogiri 1.18.10 fixed in 1.19.4
GHSA-9cv2-cfxc-v4v2 LOW 1.7 nokogiri 1.18.10 fixed in 1.19.4
GHSA-p67v-3w7g-wjg7 LOW 1.7 nokogiri 1.18.10 fixed in 1.19.4
GHSA-phwj-rprq-35pp LOW 1.7 nokogiri 1.18.10 fixed in 1.19.4
GHSA-wjv4-x9w8-wm3h LOW 1.7 nokogiri 1.18.10 fixed in 1.19.4
CVE-2016-2781 LOW — coreutils 9.4-3ubuntu6.3 no fix available
CVE-2022-3219 LOW — gpgv 2.4.4-2ubuntu17.6 no fix available
CVE-2024-56433 LOW — login 1:4.13+dfsg1-4ubuntu3.2 no fix available
CVE-2024-56433 LOW — passwd 1:4.13+dfsg1-4ubuntu3.2 no fix available
CVE-2026-105712 LOW — gpgv 2.4.4-2ubuntu17.6 no fix available
CVE-2026-40228 LOW — libudev1 255.4-1ubuntu8.17 no fix available
CVE-2026-40228 LOW — libsystemd0 255.4-1ubuntu8.17 no fix available
GHSA-wfpw-mmfh-qq69 LOW — nokogiri 1.18.10 fixed in 1.19.4
CVE-2016-20013 NEGLIGIBLE — libc6 2.39-0ubuntu8.9 no fix available
CVE-2016-20013 NEGLIGIBLE — locales 2.39-0ubuntu8.9 no fix available
CVE-2016-20013 NEGLIGIBLE — libc-bin 2.39-0ubuntu8.9 no fix available

Scan history

1 total · first today
SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 1 23 85 2026-10-09T06:32:32.000Z