StackRadar

nacos 0.1.6 Helm chart

bytectl

Scored 14 Sept 2026

A Helm chart for Kubernetes

Version 0.1.6 4 years agodeploys tag latest 1Artifact Hub

nacos 0.1.6 deploys 1 container image: nacos/nacos-server. Across them, 200 findings0 critical, 0 high. The highest contribution is GHSA-r29c-68gh-xp6x in tomcat-embed-core 10.1.54, fixed in 10.1.55.

Radar Score

1,7670019181

200 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
nacos/nacos-serverlatest00191811,767

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

181 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-57433perl@5.40.1-7ubuntu0.15.40.1-7ubuntu0.3
LowGHSA-g3pr-3p32-fp23micrometer-core@1.15.111.15.12
LowUBUNTU-CVE-2026-13221perl@5.40.1-7ubuntu0.15.40.1-7ubuntu0.3
LowUBUNTU-CVE-2026-66032libssh2@1.11.1-1ubuntu0.26.04.31.11.1-1ubuntu0.26.04.4
LowUBUNTU-CVE-2026-82209curl@8.18.0-1ubuntu2.4no fix listed
LowUBUNTU-CVE-2026-80255curl@8.18.0-1ubuntu2.4no fix listed
LowUBUNTU-CVE-2026-7210python3.14@3.14.4-1ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-12087perl@5.40.1-7ubuntu0.15.40.1-7ubuntu0.3
LowUBUNTU-CVE-2026-15308python3.14@3.14.4-1ubuntu0.13.14.4-1ubuntu0.2
LowGHSA-w737-wx49-qj23micrometer-core@1.15.111.15.12
LowUBUNTU-CVE-2026-13608curl@8.18.0-1ubuntu2.4no fix listed
LowGHSA-574f-3g2m-x479bcprov-jdk18on@1.791.80.2
LowUBUNTU-CVE-2026-66046expat@2.7.4-1no fix listed
LowUBUNTU-CVE-2026-66033libssh2@1.11.1-1ubuntu0.26.04.31.11.1-1ubuntu0.26.04.4
LowUBUNTU-CVE-2026-11972python3.14@3.14.4-1ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-80230curl@8.18.0-1ubuntu2.4no fix listed
LowGHSA-fv25-8xcx-gqjctomcat-embed-core@10.1.5410.1.55
LowUBUNTU-CVE-2024-2236libgcrypt20@1.12.0-2ubuntu11.12.0-2ubuntu1.1
LowUBUNTU-CVE-2026-86145pcre2@10.46-1build1no fix listed
LowGHSA-qv9r-c865-cp47log4j-api@2.25.42.25.5
LowUBUNTU-CVE-2026-66035libssh2@1.11.1-1ubuntu0.26.04.31.11.1-1ubuntu0.26.04.4
LowGHSA-5mp6-jrq3-r938tomcat-embed-core@10.1.5410.1.55
LowUBUNTU-CVE-2026-47057openjdk-17@17.0.20+8-1~26.04no fix listed
LowUBUNTU-CVE-2026-9538perl@5.40.1-7ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-85091zlib@1:1.3.dfsg+really1.3.1-1ubuntu3no fix listed
LowUBUNTU-CVE-2026-42497perl@5.40.1-7ubuntu0.1no fix listed
LowGHSA-c3fc-8qff-9hwxbcprov-jdk18on@1.791.84
LowGHSA-x23c-287f-qqv5spring-webmvc@6.2.186.2.19
LowUBUNTU-CVE-2026-8932curl@8.18.0-1ubuntu2.48.18.0-1ubuntu2.5
LowUBUNTU-CVE-2026-75803openssl@3.5.5-1ubuntu3.43.5.5-1ubuntu3.5
LowGHSA-wg6q-6289-32hpbcpkix-jdk18on@1.791.84
LowUBUNTU-CVE-2026-48959perl@5.40.1-7ubuntu0.1no fix listed
LowGHSA-r5w3-xv2f-j59qspring-expression@6.2.186.2.19
LowUBUNTU-CVE-2026-6791glibc@2.43-2ubuntu2.32.43-2ubuntu2.4
LowUBUNTU-CVE-2026-47058openjdk-17@17.0.20+8-1~26.04no fix listed
LowUBUNTU-CVE-2026-76641expat@2.7.4-1no fix listed
LowGHSA-j92g-9f8w-j867postgresql@42.7.1142.7.12
LowUBUNTU-CVE-2026-17084python3.14@3.14.4-1ubuntu0.1no fix listed
LowRUSTSEC-2023-0071rsa@0.9.10no fix listed
LowUBUNTU-CVE-2026-57432perl@5.40.1-7ubuntu0.15.40.1-7ubuntu0.3
LowUBUNTU-CVE-2026-48962perl@5.40.1-7ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-19672python3.14@3.14.4-1ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-48961perl@5.40.1-7ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-61308openjdk-17@17.0.20+8-1~26.04no fix listed
LowGHSA-rcqc-6cw3-h962jackson-databind@2.21.22.21.4
LowGHSA-5gvw-p9qm-jgwhjackson-databind@2.21.22.21.5
LowGHSA-jhq6-gfmj-v8fxlogback-core@1.5.321.5.34
LowGHSA-h35f-9h28-mq5csetuptools@82.0.183.0.0
LowUBUNTU-CVE-2026-7017perl@5.40.1-7ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-15806python3.14@3.14.4-1ubuntu0.1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.1.6latest4 years agolatest00191811,767

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/bytectl/nacos.svg)](https://charts.stackradar.io/charts/bytectl/nacos)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 5 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.