kamaji Helm chart
clastixVerified publisherScored 14 Sept 2026
Kamaji is the Hosted Control Plane Manager for Kubernetes.
Latest 0.0.0+latest 2 days agoapp version latest 0Artifact Hub
kamaji 0.0.0+latest deploys 4 container images: clastix/kamaji, quay.io/coreos/etcd and clastix/kubectl. Across them, 346 findings — 2 critical, 14 high — 3 on CISA KEV. The highest contribution is ALPINE-CVE-2023-38545 in curl 7.80.0-r0, fixed in 8.4.0-r0. Chart.yaml declares kubeVersion >=1.21.0-0; rendered for Kubernetes 1.21.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| clastix/ | latest | 00024 | 164 |
| quay.io/ | v3.6.12 | 00545 | 452 |
| clastix/ | v1.21 | 210299 | 1,472 |
| quay.io/ | v3.5.6 | 0431187 | 2,542 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | ALPINE-CVE-2023-38545 | curl | 8.4.0-r0 |
| Critical | ALPINE-CVE-2023-44487KEV | nghttp2 | 1.46.0-r2 |
| High | ALPINE-CVE-2022-0778 | libretls | 3.3.4-r3 |
| High | ALPINE-CVE-2022-0778 | openssl | 1.1.1n-r0 |
| High | ALPINE-CVE-2023-0286 | openssl | 1.1.1t-r0 |
| High | ALPINE-CVE-2018-25032 | zlib | 1.2.12-r0 |
| High | ALPINE-CVE-2023-2650 | openssl | 1.1.1u-r0 |
| High | GHSA-45x7-px36-x8w8 | golang.org/ | 0.0.0-20231218163308-9d2ee975ef9f |
| High | ALPINE-CVE-2022-37434 | zlib | 1.2.12-r2 |
| High | GHSA-qppj-fm5r-hxr3KEV | golang.org/ | 0.17.0 |
| High | GHSA-4v7x-pqxf-cx7m | golang.org/ | 0.23.0 |
| High | ALPINE-CVE-2022-32206 | curl | 7.80.0-r2 |
| High | ALPINE-CVE-2022-4450 | openssl | 1.1.1t-r0 |
| High | ALPINE-CVE-2022-43551 | curl | 7.80.0-r5 |
| High | ALPINE-CVE-2022-32207 | curl | 7.80.0-r2 |
| High | DSA-5514-1KEV | glibc | 2.31-13+deb11u7 |
| Medium | DLA-3859-1 | systemd | 247.3-7+deb11u6 |
| Medium | DSA-5169-1 | openssl | 1.1.1n-0+deb11u3 |
| Medium | GO-2024-2687 | stdlib | 1.21.9 |
| Medium | DSA-5673-1 | glibc | 2.31-13+deb11u9 |
| Medium | GHSA-5cgq-3rg8-m6cv | golang.org/ | 0.52.0 |
| Medium | DSA-5139-1 | openssl | 1.1.1n-0+deb11u2 |
| Medium | DSA-5417-1 | openssl | 1.1.1n-0+deb11u5 |
| Medium | ALPINE-CVE-2022-32221 | curl | 7.80.0-r4 |
| Medium | DSA-5343-1 | openssl | 1.1.1n-0+deb11u4 |
| Medium | DLA-3942-1 | openssl | 1.1.1n-0+deb11u6 |
| Medium | DLA-3942-2 | openssl | 1.1.1w-0+deb11u2 |
| Medium | ALPINE-CVE-2022-4304 | openssl | 1.1.1t-r0 |
| Medium | DSA-5111-1 | zlib | 1:1.2.11.dfsg-2+deb11u1 |
| Medium | ALPINE-CVE-2022-28391 | busybox | 1.34.1-r5 |
| Medium | GHSA-v778-237x-gjrc | golang.org/ | 0.31.0 |
| Medium | ALPINE-CVE-2022-32205 | curl | 7.80.0-r2 |
| Medium | GHSA-vvpx-j8f3-3w6h | golang.org/ | 0.7.0 |
| Medium | ALPINE-CVE-2023-0215 | openssl | 1.1.1t-r0 |
| Medium | ALPINE-CVE-2022-42915 | curl | 7.80.0-r4 |
| Medium | GHSA-4374-p667-p6c8 | golang.org/ | 0.17.0 |
| Medium | ALPINE-CVE-2023-0464 | openssl | 1.1.1t-r2 |
| Medium | ALPINE-CVE-2023-27534 | curl | 8.0.1-r0 |
| Medium | ALPINE-CVE-2022-32208 | curl | 7.80.0-r2 |
| Medium | GHSA-69cg-p879-7622 | golang.org/ | 0.0.0-20220906165146-f3363e06e74c |
| Medium | ALPINE-CVE-2023-27533 | curl | 8.0.1-r0 |
| Medium | ALPINE-CVE-2022-27775 | curl | 7.80.0-r1 |
| Medium | ALPINE-CVE-2022-27782 | curl | 7.80.0-r2 |
| Medium | GHSA-p77j-4mvh-x3m3 | google.golang.org/ | 1.79.3 |
| Medium | ALPINE-CVE-2022-27781 | curl | 7.80.0-r2 |
| Medium | ALPINE-CVE-2022-22576 | curl | 7.80.0-r1 |
| Medium | DSA-5218-1 | zlib | 1:1.2.11.dfsg-2+deb11u2 |
| Medium | ALPINE-CVE-2023-28319 | curl | 8.1.0-r0 |
| Medium | ALPINE-CVE-2022-27780 | curl | 7.80.0-r2 |
| Medium | ALPINE-CVE-2022-27776 | curl | 7.80.0-r1 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.0.0+latestlatest | 2 days ago | latest | 21465265 | 4,630 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.