StackRadar

opendistro-es 1.15.1 Helm chart

beeinventor

Scored 14 Sept 2026

Open Distro for Elasticsearch

Version 1.15.1 3 months agoapp version 1.13.3 0Artifact Hub

opendistro-es 1.15.1 deploys 3 container images: library/busybox, amazon/opendistro-for-elasticsearch and amazon/opendistro-for-elasticsearch-kibana. Across them, 346 findings5 critical, 13 high 3 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.13.0, fixed in 2.15.0. Chart.yaml declares kubeVersion ^1.10.0-0; rendered for Kubernetes 1.10.0.

Radar Score

5,806513123205

346 findings over 3 of 3 images measured

KEV ×3 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

3 images
ImageTagVulnerabilitiesRadar Score
library/busybox×51.27.200000
amazon/opendistro-for-elasticsearch×31.13.35661933,042
amazon/opendistro-for-elasticsearch-kibana1.13.207621122,764

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

123 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGHSA-prj3-ccx8-p6x4netty-codec-http2@4.1.45.Final4.1.124.Final
MediumGHSA-h46c-h94j-95f3jackson-core@2.10.52.15.0
MediumGHSA-w37g-rhq8-7m4jsnakeyaml@1.261.32
MediumGHSA-5mcr-gq6c-3hq2netty-codec-http@4.1.45.Final4.1.59.Final
MediumGHSA-8v38-pw62-9cw2url-parse@1.4.71.5.7
MediumGHSA-6fc8-4gx4-v693ws@6.2.16.2.2
MediumGHSA-67hx-6x53-jw92@babel/traverse@7.11.57.23.2
MediumGHSA-f6hv-jmp6-3vwvnetty-codec-http@4.1.45.Final4.1.133.Final
MediumGHSA-f6hv-jmp6-3vwvnetty-codec-http2@4.1.45.Final4.1.133.Final
MediumGHSA-hh27-ffr2-f2jcurl-parse@1.4.71.5.2
MediumGHSA-vwqq-5vrc-xw9hlog4j-core@2.13.02.13.2
MediumGHSA-3393-hvrj-w7v3elasticsearch@1.13.2.06.8.17
MediumGHSA-jppx-w49h-x2qqnetty-codec-http@4.1.45.Final4.1.136.Final
MediumGHSA-9wv6-86v2-598jpath-to-regexp@1.8.01.9.0
MediumGHSA-qjx8-664m-686jjs-cookie@2.2.13.0.7
MediumGHSA-3mfm-83xf-c92rhandlebars@4.7.64.7.9
MediumGHSA-xhpv-hc6g-r9c6handlebars@4.7.64.7.9
MediumGHSA-3xgq-45jj-v275cross-spawn@7.0.17.0.5
MediumGHSA-x4gw-5cx5-pgmhnetty-handler@4.1.45.Final4.1.135.Final
MediumGHSA-g5ww-5jh7-63cxprotobuf-java@3.11.03.16.3
MediumGHSA-96hv-2xvq-fx4pws@6.2.16.2.4
MediumGHSA-3ppc-4f35-3m26minimatch@3.0.43.1.3
MediumGHSA-2x2g-32r7-p4x8kafka-clients@2.5.03.7.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.15.1latest3 months ago1.13.35131232055,806

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/beeinventor/opendistro-es.svg)](https://charts.stackradar.io/charts/beeinventor/opendistro-es)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.