StackRadar

dv-pod Helm chart

charonOfficialVerified publisher

Scored 14 Sept 2026

A Helm chart for deploying a single distributed validator pod consisting of a Charon middleware client and validator client.

Latest 0.19.1 3 months agoapp version 1.10.0 0Artifact Hub

dv-pod 0.19.1 deploys 5 container images: obolnetwork/charon-dkg-sidecar, library/busybox, obolnetwork/charon, sigp/lighthouse and 1 more. Across them, 706 findings0 critical, 4 high. The highest contribution is UBUNTU-CVE-2025-15467 in openssl 3.0.2-0ubuntu1.21, with no fix listed.

Radar Score

7,40504110591

706 findings over 5 of 5 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
obolnetwork/charon-dkg-sidecarmain01371962,549
library/busybox×21.37.000000
obolnetwork/charon×2v1.10.000382843,056
sigp/lighthousev8.1.303351091,787
bitnamisecure/kubectl×2latest000213

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

452 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowDEBIAN-CVE-2026-11979libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2no fix listed
LowGHSA-v2v4-37r5-5v8gip-address@10.0.110.1.1
LowDEBIAN-CVE-2026-86140libxml2@2.12.7+dfsg+really2.9.14-2.1+deb13u2no fix listed
LowGHSA-378v-28hj-76wfbn.js@4.12.24.12.3
LowDEBIAN-CVE-2025-15367python3.13@3.13.5-2no fix listed
LowGHSA-hrxh-6v49-42gfgoogle.golang.org/grpc@v1.75.01.82.1
LowUBUNTU-CVE-2026-34743xz-utils@5.2.5-2ubuntu15.2.5-2ubuntu1.1
LowDEBIAN-CVE-2026-5704tar@1.35+dfsg-3.1no fix listed
LowDEBIAN-CVE-2025-30156ceph@18.2.7+ds-1no fix listed
LowDEBIAN-CVE-2026-3184util-linux@2.41-5no fix listed
LowGHSA-2pr8-phx7-x9h3protobufjs@6.11.47.5.6
LowGHSA-g6x7-jq8p-6q9qgithub.com/quic-go/webtransport-go@v0.8.1-0.20241018022711-4ac2c9250e660.10.0
LowGHSA-px4r-g4p3-hhqvgithub.com/quic-go/webtransport-go@v0.8.1-0.20241018022711-4ac2c9250e660.10.0
LowGHSA-58qx-3vcg-4xpxws@8.17.18.20.1
LowDEBIAN-CVE-2026-7010perl@5.40.1-65.40.1-6+deb13u1
LowUBUNTU-CVE-2026-19487perl@5.34.0-3ubuntu1.55.34.0-3ubuntu1.9
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.42.00.52.0
LowGHSA-3v7f-55p6-f55ppicomatch@4.0.24.0.4
LowGHSA-mh29-5h37-fv8mjs-yaml@4.1.04.1.1
LowDEBIAN-CVE-2026-89158pcre2@10.46-1~deb13u110.46-1~deb13u2
LowGHSA-f38q-mgvj-vph7protobufjs@6.11.47.6.3
LowALPINE-CVE-2026-42769openssl@3.5.5-r03.5.7-r0
LowDEBIAN-CVE-2026-42769openssl@3.5.5-1~deb13u23.5.6-1~deb13u2
LowGHSA-vvgj-x9jq-8cj9github.com/quic-go/quic-go@v0.50.10.59.1
LowDEBIAN-CVE-2013-4392systemd@257.9-1~deb13u1no fix listed
LowGHSA-h67p-54hq-rp68js-yaml@4.1.04.2.0
LowGHSA-2f2x-8mwp-p2gcgithub.com/quic-go/webtransport-go@v0.8.1-0.20241018022711-4ac2c9250e660.10.0
LowGHSA-6v5v-wf23-fmfqmarkdown-it@12.3.214.2.0
LowGHSA-9h8m-3fm2-qjrqgo.opentelemetry.io/otel/sdk@v1.38.01.40.0
LowUBUNTU-CVE-2026-78408util-linux@2.37.2-4ubuntu3.4no fix listed
LowGHSA-34rh-wp3j-6cxcgithub.com/pion/stun@v0.6.1no fix listed
LowGHSA-34rh-wp3j-6cxcgithub.com/pion/stun/v3@v3.0.03.1.5
LowUBUNTU-CVE-2026-41989libgcrypt20@1.9.4-3ubuntu31.9.4-3ubuntu3.2
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@1.1.111.1.16
LowGHSA-g754-hx8w-x2g6github.com/quic-go/quic-go@v0.50.10.57.0
LowUBUNTU-CVE-2026-13595util-linux@2.37.2-4ubuntu3.42.37.2-4ubuntu3.6
LowGO-2026-4981stdlib@go1.25.31.25.10
LowDEBIAN-CVE-2026-6019python3.13@3.13.5-23.13.5-2+deb13u2
LowDEBIAN-CVE-2023-31439systemd@257.9-1~deb13u1no fix listed
LowGHSA-vmf3-w455-68vhtar@7.4.37.5.16
LowGO-2026-4977stdlib@go1.25.31.25.10
LowDEBIAN-CVE-2026-76957expat@2.7.1-2no fix listed
LowDEBIAN-CVE-2023-31437systemd@257.9-1~deb13u1no fix listed
LowDEBIAN-CVE-2026-16599wget@1.25.0-2no fix listed
LowGO-2026-4986stdlib@go1.25.31.25.10
LowGO-2026-4918stdlib@go1.25.31.25.10
LowGO-2026-4918golang.org/x/net@v0.44.00.53.0
LowGO-2026-4337stdlib@go1.25.31.24.13
LowDEBIAN-CVE-2026-4438glibc@2.41-12+deb13u22.41-12+deb13u3
LowDEBIAN-CVE-2023-31438systemd@257.9-1~deb13u1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.19.1latest3 months ago1.10.0041105917,405

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/charon/dv-pod.svg)](https://charts.stackradar.io/charts/charon/dv-pod)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.