Ocimendby CloudTrace

Image reports › registry.access.redhat.com/ubi9/ubi-minimal

registry.access.redhat.com/ubi9/ubi-minimal — vulnerabilities, FIPS 140-3 and fixes

registry.access.redhat.com/ubi9/ubi-minimal · Red Hat Enterprise Linux 9.8 (Plow)

Latest: registry.access.redhat.com/ubi9/ubi-minimal:latest · checked 2026-09-26

FIPS-ready on a FIPS-enabled host

Yes, with one condition: ubi-minimal:latest has certified crypto, but its FIPS mode turns on only when the host it runs on is in FIPS mode.

Security: Grade A: 1 known vulnerability

1 known vulnerability in 1 package (1 high); 1 can be fixed by upgrading 1 package. Start with libxml2: upgrade 2.9.13-14.el9_8.4 → 0:2.9.13-14.el9_8.5 (fixes 1).

Open the full interactive report → Scan your own image

Fix plan for latest

PackageInstalledUpgrade toFixes
libxml22.9.13-14.el9_8.40:2.9.13-14.el9_8.51

Critical, high and exploited vulnerabilities in latest

SeverityIDPackageFixed inSummary
highRHSA-2026:71585libxml2 2.9.13-14.el9_8.40:2.9.13-14.el9_8.5Red Hat Security Advisory: libxml2 security update

All checked tags

TagFIPSKnown vulnerabilitiesChecked
latestFIPS-ready with conditionsA 12026-09-26Full report