StackRadar

colosseum 1.0.18 Helm chart

book-k8sinfra-v2

Scored 15 Sept 2026

colosseum helm chart

Version 1.0.18 2 months agodeploys tag log 0Artifact Hub

colosseum 1.0.18 deploys 5 container images: sysnet4admin/colosseum-agg, sysnet4admin/colosseum-cms, sysnet4admin/colosseum-nti, sysnet4admin/colosseum-prm and 1 more. Across them, 2,469 findings4 critical, 16 high 4 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 10.1.34, fixed in 10.1.35.

Radar Score

26,2664163592,082

2,469 findings over 5 of 5 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
sysnet4admin/colosseum-agglog26551953,256
sysnet4admin/colosseum-cmslog1413684310,310
sysnet4admin/colosseum-ntilog00452460
sysnet4admin/colosseum-prmlog1413684310,310
sysnet4admin/colosseum-rwdlog02281491,930

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,007 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-0992libxml2@2.9.14+dfsg-1.3~deb12u12.9.14+dfsg-1.3~deb12u6
LowUBUNTU-CVE-2026-89160pcre2@10.39-3ubuntu0.1no fix listed
LowDEBIAN-CVE-2026-4519python3.11@3.11.2-6+deb12u63.11.2-6+deb12u8
LowDEBIAN-CVE-2026-90803binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-90804binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-16241postgresql-15@15.13-0+deb12u115.19-0+deb12u1
LowGHSA-h3qp-gqrc-q736spring-webmvc@6.2.16.2.19
LowGHSA-38r7-794h-5758webpack@5.99.65.104.0
LowGHSA-8fgc-7cc6-rx7xwebpack@5.99.65.104.1
LowUBUNTU-CVE-2022-3219gnupg2@2.2.27-3ubuntu2.5no fix listed
LowDEBIAN-CVE-2026-27799imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u7
LowDEBIAN-CVE-2026-6469postgresql-15@15.13-0+deb12u115.19-0+deb12u1
LowUBUNTU-CVE-2026-41080expat@2.4.7-1ubuntu0.7no fix listed
LowDEBIAN-CVE-2026-48733imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u11
LowDEBIAN-CVE-2026-14673postgresql-15@15.13-0+deb12u115.19-0+deb12u1
LowDEBIAN-CVE-2026-62343imagemagick@8:6.9.11.60+dfsg-1.6+deb12u3no fix listed
LowDEBIAN-CVE-2026-62946imagemagick@8:6.9.11.60+dfsg-1.6+deb12u3no fix listed
LowGHSA-7m2p-62gw-p8qqspring-web@6.2.16.2.19
LowDEBIAN-CVE-2024-26461krb5@1.20.1-2+deb12u3no fix listed
LowGHSA-9f52-rjqv-25qvspring-expression@6.2.16.2.19
LowDEBIAN-CVE-2023-40403libxslt@1.1.35-1+deb12u11.1.35-1+deb12u2
LowDEBIAN-CVE-2025-1181binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-90802binutils@2.40-2no fix listed
LowDEBIAN-CVE-2025-1180binutils@2.40-2no fix listed
LowDEBIAN-CVE-2025-11731libxslt@1.1.35-1+deb12u1no fix listed
LowGHSA-qvfw-j98x-7q72multer@1.4.5-lts.22.3.0
LowUBUNTU-CVE-2025-69418openssl@3.0.2-0ubuntu1.25no fix listed
LowDEBIAN-CVE-2007-5686shadow@1:4.17.4-2no fix listed
LowDEBIAN-CVE-2026-47165imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u10
LowDEBIAN-CVE-2025-68469imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u5
LowDEBIAN-CVE-2026-46559imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u10
LowDEBIAN-CVE-2025-1151binutils@2.40-2no fix listed
LowGO-2026-5024golang.org/x/sys@v0.32.00.44.0
LowDEBIAN-CVE-2025-1182binutils@2.40-2no fix listed
LowDEBIAN-CVE-2023-1972binutils@2.40-2no fix listed
LowGHSA-wg35-8jpf-2xv3spring-webmvc@6.2.16.2.18
LowUBUNTU-CVE-2026-18477tar@1.34+dfsg-1ubuntu0.1.22.04.4no fix listed
LowDEBIAN-CVE-2026-73281openssh@1:9.2p1-2+deb12u6no fix listed
LowDEBIAN-CVE-2025-12817postgresql-15@15.13-0+deb12u115.15-0+deb12u1
LowDEBIAN-CVE-2025-8713postgresql-15@15.13-0+deb12u115.14-0+deb12u1
LowDEBIAN-CVE-2025-6199gdk-pixbuf@2.42.10+dfsg-1+deb12u12.42.10+dfsg-1+deb12u2
LowDEBIAN-CVE-2024-26458krb5@1.20.1-2+deb12u3no fix listed
LowDEBIAN-CVE-2026-36849tiff@4.5.0-6+deb12u2no fix listed
LowDEBIAN-CVE-2026-53612util-linux@2.41-52.41.5-0+deb13u1
LowDEBIAN-CVE-2026-53614util-linux@2.41-52.41.5-0+deb13u1
LowDEBIAN-CVE-2026-84450libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-84451libheif@1.15.1-1+deb12u1no fix listed
LowDSA-5979-2libxslt@1.1.35-1+deb12u11.1.35-1+deb12u3
LowUSN-8625-1openssl@3.0.2-0ubuntu1.253.0.2-0ubuntu1.26
LowUSN-8688-1pam@1.4.0-11ubuntu2.61.4.0-11ubuntu2.8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.18latest2 months agolog4163592,08226,266

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/book-k8sinfra-v2/colosseum.svg)](https://charts.stackradar.io/charts/book-k8sinfra-v2/colosseum)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.