gotenberg Helm chart
adnoctemVerified publisherScored 14 Sept 2026
Gotenberg is a Docker-powered stateless API for PDF files.
Latest 0.5.0 todayapp version 8.37.0 0Artifact Hub
gotenberg 0.5.0 deploys 1 container image: gotenberg/gotenberg. Across them, 540 findings — 1 critical, 1 high — 1 on CISA KEV. The highest contribution is DEBIAN-CVE-2026-87491 in chromium 152.0.7977.82-1~deb13u1, with no fix listed. Chart.yaml declares kubeVersion >=1.26.0-0; rendered for Kubernetes 1.26.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| gotenberg/ | 8.37.0 | 1183454 | 5,582 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2025-8941 | pam | no fix listed |
| Low | DEBIAN-CVE-2026-87499 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87606 | chromium | no fix listed |
| Low | DEBIAN-CVE-2025-70873 | sqlite3 | no fix listed |
| Low | DEBIAN-CVE-2026-57432 | perl | 5.40.1-6+deb13u1 |
| Low | DEBIAN-CVE-2024-26458 | krb5 | no fix listed |
| Low | DEBIAN-CVE-2026-76956 | expat | no fix listed |
| Low | DEBIAN-CVE-2021-45261 | patch | no fix listed |
| Low | GHSA-8rrh-rw8j-w5fx | wheel | 0.46.2 |
| Low | DEBIAN-CVE-2025-8176 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-9080 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-48962 | perl | 5.40.1-6+deb13u1 |
| Low | DEBIAN-CVE-2026-9545 | curl | no fix listed |
| Low | DEBIAN-CVE-2025-68471 | avahi | no fix listed |
| Low | DEBIAN-CVE-2026-34978 | cups | no fix listed |
| Low | DEBIAN-CVE-2026-87505 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-76642 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-11822 | sqlite3 | 3.46.1-7+deb13u2 |
| Low | DEBIAN-CVE-2026-11824 | sqlite3 | 3.46.1-7+deb13u2 |
| Low | DEBIAN-CVE-2025-68468 | avahi | no fix listed |
| Low | DEBIAN-CVE-2026-19953 | liburi-perl | no fix listed |
| Low | DEBIAN-CVE-2026-19672 | python3.13 | no fix listed |
| Low | DEBIAN-CVE-2026-48961 | perl | 5.40.1-6+deb13u1 |
| Low | DEBIAN-CVE-2026-87633 | chromium | no fix listed |
| Low | DEBIAN-CVE-2024-52616 | avahi | no fix listed |
| Low | DEBIAN-CVE-2025-61144 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-6238 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-87478 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87628 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87443 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-5435 | glibc | no fix listed |
| Low | GHSA-h35f-9h28-mq5c | setuptools | 83.0.0 |
| Low | DEBIAN-CVE-2026-87436 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87446 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-54369 | acl | no fix listed |
| Low | DEBIAN-CVE-2026-87549 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-7017 | perl | 5.40.1-6+deb13u1 |
| Low | DEBIAN-CVE-2026-15806 | python3.13 | no fix listed |
| Low | DEBIAN-CVE-2026-16118 | glib2.0 | 2.84.4-3~deb13u5 |
| Low | DEBIAN-CVE-2021-4214 | libpng1.6 | no fix listed |
| Low | DEBIAN-CVE-2026-54371 | attr | no fix listed |
| Low | DEBIAN-CVE-2026-87429 | chromium | no fix listed |
| Low | DEBIAN-CVE-2024-52615 | avahi | no fix listed |
| Low | DEBIAN-CVE-2026-52491 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-87522 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87565 | chromium | no fix listed |
| Low | DEBIAN-CVE-2025-15079 | curl | no fix listed |
| Low | DEBIAN-CVE-2026-87437 | chromium | no fix listed |
| Low | DEBIAN-CVE-2026-87477 | chromium | no fix listed |
| Low | DEBIAN-CVE-2025-12781 | python3.13 | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.5.0latest | today | 8.37.0 | 1183454 | 5,582 |
| 0.4.0 | 9 days ago | 8.36.0 | 21121832 | 9,683 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.