Image reports › ocimend.io/registry
ocimend.io/registry — vulnerabilities, FIPS 140-3 and fixes
ocimend.io/registry · Alpine Linux v3.24
Latest: ocimend.io/registry:latest-fips · checked 2026-09-27
Not FIPS-ready
No. registry:latest-fips relies on cryptography that isn't FIPS-certified, so it can't be used where FIPS 140-3 is required as it stands.
Security: Grade A: 7 known vulnerabilities
7 known vulnerabilities in 6 packages; 4 can be fixed by upgrading 4 packages. Start with go.opentelemetry.io/otel/exporters/otlp/otlptrace: upgrade 1.43.0 → 1.45.0 (fixes 1). Rebuilding on the latest base image picks up most OS fixes at once.
Open the full report → Get a fixed image Get a FIPS image Scan your own image
Fix plan for latest-fips
| Package | Installed | Upgrade to | Fixes |
|---|---|---|---|
| go.opentelemetry.io/otel/exporters/otlp/otlptrace | 1.43.0 | 1.45.0 | 1 |
| go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc | 1.42.0 | 1.45.0 | 1 |
| go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp | 1.43.0 | 1.45.0 | 1 |
| github.com/klauspost/compress | 1.18.4 | 1.18.7 | 1 |
All checked tags
| Tag | FIPS | Known vulnerabilities | Checked | |
|---|---|---|---|---|
| latest-fips | Not FIPS-ready | A 7 | 2026-09-27 | ReportFix |