StackRadar

excalidash Helm chart

alekcVerified publisher

Scored 14 Sept 2026

Self-hosted Excalidraw dashboard with persistent storage, multi-user auth, and live collaboration.

Latest 1.4.0 11 days agoapp version 0.6.0 0Artifact Hub

excalidash 1.4.0 deploys 2 container images: zimengxiong/excalidash-backend and zimengxiong/excalidash-frontend. Across them, 72 findings0 critical, 0 high. The highest contribution is GHSA-5j98-mcp5-4vw2 in glob 10.4.2, fixed in 10.5.0.

Radar Score

904001656

72 findings over 2 of 2 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
zimengxiong/excalidash-backend0.6.000738534
zimengxiong/excalidash-frontend0.6.000918370

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

50 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowALPINE-CVE-2026-14456openssl@3.5.7-r03.5.8-r0
LowGHSA-34x7-hfp2-rc4vtar@6.2.17.5.7
LowALPINE-CVE-2026-82209curl@8.21.0-r08.22.0-r0
LowALPINE-CVE-2026-80255curl@8.21.0-r08.22.0-r0
LowGHSA-rgw5-rvv9-x895brace-expansion@2.0.12.1.4
LowALPINE-CVE-2026-13608curl@8.21.0-r08.22.0-r0
LowALPINE-CVE-2026-63072openssl@3.5.7-r03.5.8-r0
LowGHSA-qffp-2rhf-9h96tar@6.2.17.5.10
LowALPINE-CVE-2026-80230curl@8.21.0-r08.22.0-r0
LowGHSA-23hp-3jrh-7fpwtar@6.2.17.5.19
LowALPINE-CVE-2026-76641expat@2.8.2-r02.8.4-r0
LowALPINE-CVE-2026-54874openssl@3.5.7-r03.5.8-r0
LowGHSA-7r86-cg39-jmmjminimatch@9.0.59.0.7
LowGHSA-8qq5-rm4j-mr97tar@6.2.17.5.3
LowALPINE-CVE-2026-63075openssl@3.5.7-r03.5.8-r0
LowGHSA-23c5-xmqv-rm74minimatch@9.0.59.0.7
LowGHSA-mh99-v99m-4gvgbrace-expansion@2.0.12.1.3
LowGHSA-73rr-hh4g-fpgxdiff@5.2.05.2.2
LowGHSA-8x88-c5mf-7j5wtar@6.2.17.5.18
LowALPINE-CVE-2026-82208curl@8.21.0-r08.22.0-r0
LowGHSA-mwp4-54f8-5fhrip-address@9.0.510.3.1
LowALPINE-CVE-2026-75803openssl@3.5.7-r03.5.8-r0
LowGHSA-r6q2-hw4h-h46wtar@6.2.17.5.4
LowGHSA-r292-9mhp-454mtar@6.2.17.5.21
LowGHSA-qfvm-cv95-jqjfmulter@2.2.02.3.0
LowGHSA-w4pp-8pjf-rmxwpacote@18.0.621.5.1
LowGHSA-9ppj-qmqm-q256tar@6.2.17.5.11
LowGHSA-wc9g-mqfw-jrwmmulter@2.2.02.3.0
LowALPINE-CVE-2026-76956expat@2.8.2-r02.8.4-r0
LowGHSA-f886-m6hf-6m8vbrace-expansion@2.0.12.0.3
LowGHSA-535w-7cp7-47q4multer@2.2.02.3.0
LowALPINE-CVE-2026-76642util-linux@2.42.1-r02.42.3-r0
LowGHSA-83g3-92jg-28cxtar@6.2.17.5.8
LowALPINE-CVE-2026-63074openssl@3.5.7-r03.5.8-r0
LowGHSA-w8wr-v893-vjvptar@6.2.17.5.18
LowGHSA-52v5-jr5w-gjxrsigstore@2.3.14.1.1
LowGHSA-gvwx-54wh-qm9jtar@6.2.17.5.17
LowGHSA-v2v4-37r5-5v8gip-address@9.0.510.1.1
LowALPINE-CVE-2026-78408util-linux@2.42.1-r02.42.3-r1
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@2.0.12.1.2
LowGHSA-vmf3-w455-68vhtar@6.2.17.5.16
LowALPINE-CVE-2026-76957expat@2.8.2-r02.8.4-r0
LowALPINE-CVE-2026-78410util-linux@2.42.1-r02.42.3-r0
LowALPINE-CVE-2026-78409util-linux@2.42.1-r02.42.3-r0
LowGHSA-jfc7-64v2-mr8c@sigstore/core@1.1.03.2.1
LowGHSA-4mjr-xmp4-gh2gqs@6.15.26.16.0
LowGHSA-w9m9-85wc-3x92postcss-selector-parser@6.1.06.1.3
LowGHSA-v6h2-p8h4-qcjwbrace-expansion@2.0.12.0.2
LowGHSA-x5fp-wj9c-mxmxqs@6.15.26.16.0
LowGHSA-qvfw-j98x-7q72multer@2.2.02.3.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.4.0latest11 days ago0.6.0001656904

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/alekc/excalidash.svg)](https://charts.stackradar.io/charts/alekc/excalidash)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.