minio Helm chart
bysamioVerified publisherScored 14 Sept 2026
A Helm chart for deploying MinIO object storage using hardened container images
Latest 1.0.3 6 months agodeploys tag RELEASE.2025-09-07T16-13-09Z 0Artifact Hub
minio 1.0.3 deploys 1 container image: quay.io/minio/minio. Across them, 118 findings — 0 critical, 0 high. The highest contribution is GHSA-5cgq-3rg8-m6cv in golang.org/x/crypto v0.40.0, fixed in 0.52.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | RELEASE.2025-09-07T16-13-09Z | 009109 | 1,069 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | GHSA-p77j-4mvh-x3m3 | google.golang.org/ | 1.79.3 |
| Medium | GO-2026-5757 | github.com/ | no fix listed |
| Medium | GHSA-x527-x647-q7gg | golang.org/ | 0.52.0 |
| Medium | GHSA-wf45-q9ch-q8gh | github.com/ | 0.23.0 |
| Medium | GHSA-vgwf-h737-ff37 | golang.org/ | 0.52.0 |
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | GHSA-8rm2-7qqf-34qm | github.com/ | 0.305.2 |
| Low | RHSA-2026:2786 | glibc | 0:2.34-231.el9_7.10 |
| Low | GHSA-jv87-32hw-hh99 | github.com/ | no fix listed |
| Low | GHSA-5cx5-wh4m-82fh | github.com/ | no fix listed |
| Low | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
| Low | GHSA-6g7g-w4f8-9c9x | github.com/ | 1.1.2 |
| Low | GHSA-jppx-rxg9-jmrx | golang.org/ | 0.52.0 |
| Low | GHSA-78h2-9frx-2jm8 | github.com/ | 4.1.4 |
| Low | GHSA-jjjj-jwhf-8rgr | github.com/ | 0.0.0-20251015170045-c1a49490c78e |
| Low | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Low | GHSA-8wv5-x4w7-5gww | github.com/ | 0.24.0 |
| Low | GHSA-9c4q-hq6p-c237 | github.com/ | no fix listed |
| Low | GHSA-6c5v-hqjr-5xxp | github.com/ | 1.13.0 |
| Low | GHSA-q4h4-gmj2-qvw2 | golang.org/ | 0.52.0 |
| Low | GHSA-w879-237q-wc7r | golang.org/ | 0.52.0 |
| Low | GHSA-hv4r-mvr4-25vw | github.com/ | no fix listed |
| Low | GHSA-h749-fxx7-pwpg | github.com/ | no fix listed |
| Low | GHSA-pjcq-xvwq-hhpj | github.com/ | 0.1.1 |
| Low | GHSA-wg65-39gg-5wfj | github.com/ | 0.311.3 |
| Low | GO-2026-4341 | stdlib | 1.24.12 |
| Low | RHSA-2026:20597 | glibc | 0:2.34-270.el9_8 |
| Low | RHSA-2026:42952 | glibc | 0:2.34-274.el9_8 |
| Low | GHSA-hfvc-g4fc-pqhx | go.opentelemetry.io/ | 1.43.0 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | GHSA-fw7p-63qq-7hpr | filippo.io/ | 1.1.1 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
| Low | GHSA-j5w8-q4qc-rx2x | golang.org/ | 0.45.0 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | GHSA-cp6g-7hqx-qxhp | go.mongodb.org/ | 1.17.7 |
| Low | RHSA-2026:33226 | glibc | 0:2.34-272.el9_8 |
| Low | RHSA-2026:12441 | libcap | 0:2.48-10.el9_7.1 |
| Low | GHSA-9m57-25v3-79x9 | golang.org/ | 0.52.0 |
| Low | GHSA-vffh-x6r8-xx99 | github.com/ | 0.311.2-0.20260410083055-07c6232d159b |
| Low | GHSA-32fw-gq77-f2f2 | github.com/ | 1.5.1 |
| Low | GHSA-9h8m-3fm2-qjrq | go.opentelemetry.io/ | 1.40.0 |
| Low | RHSA-2026:42736 | acl | 0:2.4.0-1.el9_8 |
| Low | GO-2026-4981 | stdlib | 1.25.10 |
| Low | GO-2026-4977 | stdlib | 1.25.10 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 1.0.3latest | 6 months ago | RELEASE.2025-09-07T16-13-09Z | 009109 | 1,069 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.