🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-document-service
Branch: ldev
Build: #152
Date: 2026-02-27 15:39:26

2

Critical

4

High

12

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (17)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2023-36464 PyPDF2 3.0.1 No fix pypdf: Possible Infinite Loop when a comment isn't followed by a character
CRITICAL CVE-2025-14009 nltk 3.9.2 3.9.3 nltk: Zip Slip Vulnerability in nltk Leading to Code Execution
CRITICAL CVE-2025-32434 torch 2.2.2 2.6.0 PyTorch is a Python package that provides tensor computation with stro ...
MEDIUM CVE-2025-3730 torch 2.2.2 2.8.0 A vulnerability, which was classified as problematic, was found in PyT ...
HIGH CVE-2024-11392 transformers 4.40.2 4.48.0 transformers: Hugging Face Transformers MobileViTV2 Deserialization of Untrusted Data Remote Code Ex
HIGH CVE-2024-11393 transformers 4.40.2 4.48.0 transformers: Hugging Face Transformers MaskFormer Model Deserialization of Untrusted Data Remote Co
HIGH CVE-2024-11394 transformers 4.40.2 4.48.0 transformers: Hugging Face Transformers Trax Model Deserialization of Untrusted Data Remote Code Exe
MEDIUM CVE-2024-12720 transformers 4.40.2 4.48.0 Transformers Regular Expression Denial of Service (ReDoS) vulnerability
MEDIUM CVE-2025-1194 transformers 4.40.2 4.50.0 Transformers Regular Expression Denial of Service (ReDoS) vulnerability
MEDIUM CVE-2025-2099 transformers 4.40.2 4.50.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-3263 transformers 4.40.2 4.51.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-3264 transformers 4.40.2 4.51.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-3933 transformers 4.40.2 4.52.1 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-5197 transformers 4.40.2 4.53.0 transformers: Transformers ReDoS Vulnerability
MEDIUM CVE-2025-6051 transformers 4.40.2 4.53.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-6638 transformers 4.40.2 4.53.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
MEDIUM CVE-2025-6921 transformers 4.40.2 4.53.0 transformers: Regular Expression Denial of Service (ReDoS) in huggingface/transformers
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0029 'apt-get' missing '--no-install-recommends' Dockerfile '--no-install-recommends' flag is missed: 'apt-get update && apt-get install -y libgl1 libgl
📄 Raw JSON Report (click to expand)