Not sure why this is relevant, but here goes: I was working on a greenfield project where containers were at the core of it. The amount of due dilligence that was happening was great. Containers were scanned. Configuration was sanity checked. Generally security standards were pretty high. Surprisingly there were very few security folks who didn't know what they were talking about. Contrary to other banks I've been at who don't run on containers.
Comparing that with a neobank that runs K8s, successfully might I add, who has outdated software, and only recently started investigating upgraded.
The same configuration issues you mention has nothing to do with containers, as doing an apt-get install often has the same issues. It has everything to do with people using tools they have little understanding of. I'm talking about mysql, and mongodb, not docker.