StackRadar

colosseum 1.0.18 Helm chart

book-k8sinfra-v2

Scored 15 Sept 2026

colosseum helm chart

Version 1.0.18 2 months agodeploys tag log 0Artifact Hub

colosseum 1.0.18 deploys 5 container images: sysnet4admin/colosseum-agg, sysnet4admin/colosseum-cms, sysnet4admin/colosseum-nti, sysnet4admin/colosseum-prm and 1 more. Across them, 2,469 findings4 critical, 16 high 4 on CISA KEV. The highest contribution is GHSA-83qj-6fr2-vhqg in tomcat-embed-core 10.1.34, fixed in 10.1.35.

Radar Score

26,2664163592,082

2,469 findings over 5 of 5 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
sysnet4admin/colosseum-agglog26551953,256
sysnet4admin/colosseum-cmslog1413684310,310
sysnet4admin/colosseum-ntilog00452460
sysnet4admin/colosseum-prmlog1413684310,310
sysnet4admin/colosseum-rwdlog02281491,930

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,206 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowALPINE-CVE-2026-63074openssl@3.5.7-r03.5.8-r0
LowUBUNTU-CVE-2026-63074openssl@3.0.2-0ubuntu1.253.0.2-0ubuntu1.29
LowDEBIAN-CVE-2026-34379openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-0865python3.11@3.11.2-6+deb12u63.11.2-6+deb12u7
LowDEBIAN-CVE-2025-66864binutils@2.40-2no fix listed
LowDEBIAN-CVE-2025-1147binutils@2.40-2no fix listed
LowDEBIAN-CVE-2023-31484perl@5.36.0-7+deb12u25.36.0-7+deb12u3
LowDEBIAN-CVE-2025-14524curl@7.88.1-10+deb12u127.88.1-10+deb12u15
LowUBUNTU-CVE-2025-14831gnutls28@3.7.3-4ubuntu1.9no fix listed
LowDEBIAN-CVE-2025-61144tiff@4.5.0-6+deb12u2no fix listed
LowUBUNTU-CVE-2026-6238glibc@2.35-0ubuntu3.132.35-0ubuntu3.14
LowGHSA-jqff-g426-hqxpfast-uri@3.0.63.1.6
LowGHSA-qj8w-gfj5-8c6vserialize-javascript@6.0.27.0.5
LowDEBIAN-CVE-2026-54240libde265@1.0.11-1+deb12u2no fix listed
LowDEBIAN-CVE-2026-54241libde265@1.0.11-1+deb12u2no fix listed
LowGHSA-4xh5-x5gv-qwphpip@23.0.125.3
LowGHSA-w8wr-v893-vjvptar@6.2.17.5.18
LowDEBIAN-CVE-2026-27622openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-34181openssl@3.5.1-1+deb13u13.5.6-1~deb13u2
LowGHSA-5gvw-p9qm-jgwhjackson-databind@2.18.22.18.9
LowDEBIAN-CVE-2026-34544openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-47178libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-53532openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-8328python3.11@3.11.2-6+deb12u6no fix listed
LowGHSA-pr98-23f8-jwxvlogback-core@1.5.121.5.13
LowDEBIAN-CVE-2026-35414openssh@1:9.2p1-2+deb12u61:9.2p1-2+deb12u10
LowDEBIAN-CVE-2026-25982imagemagick@8:6.9.11.60+dfsg-1.6+deb12u38:6.9.11.60+dfsg-1.6+deb12u7
LowGHSA-7p8r-x3mc-p8w7fast-uri@3.0.63.1.5
LowDEBIAN-CVE-2026-25210expat@2.5.0-1+deb12u1no fix listed
LowGHSA-f65p-4m7j-42xcfast-uri@3.0.63.1.6
LowDEBIAN-CVE-2025-65018libpng1.6@1.6.39-21.6.39-2+deb12u1
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.5.121.5.34
LowDEBIAN-CVE-2026-44173mariadb@1:10.11.11-0+deb12u11:10.11.18-0+deb12u1
LowUBUNTU-CVE-2026-5435glibc@2.35-0ubuntu3.132.35-0ubuntu3.14
LowGHSA-h35f-9h28-mq5csetuptools@79.0.183.0.0
LowDEBIAN-CVE-2026-0672python3.11@3.11.2-6+deb12u63.11.2-6+deb12u7
LowDEBIAN-CVE-2026-32775libexif@0.6.24-1+b10.6.24-1+deb12u1
LowDEBIAN-CVE-2026-3442binutils@2.40-2no fix listed
LowDEBIAN-CVE-2026-54369acl@2.3.2-2+b1no fix listed
LowDEBIAN-CVE-2026-59981openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2025-12495openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2025-12839openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2025-12840openexr@3.1.5-5no fix listed
LowDEBIAN-CVE-2026-59189openexr@3.1.5-5no fix listed
LowUBUNTU-CVE-2026-7017perl@5.34.0-3ubuntu1.7no fix listed
LowDEBIAN-CVE-2024-25062libxml2@2.9.14+dfsg-1.3~deb12u12.9.14+dfsg-1.3~deb12u2
LowDEBIAN-CVE-2026-15806python3.11@3.11.2-6+deb12u6no fix listed
LowDEBIAN-CVE-2026-32739libheif@1.15.1-1+deb12u1no fix listed
LowDEBIAN-CVE-2026-16118glib2.0@2.74.6-2+deb12u6no fix listed
LowDEBIAN-CVE-2021-4214libpng1.6@1.6.39-2no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.0.18latest2 months agolog4163592,08226,266

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/book-k8sinfra-v2/colosseum.svg)](https://charts.stackradar.io/charts/book-k8sinfra-v2/colosseum)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.