kamaji-etcd 0.18.0 Helm chart
clastixVerified publisherScored 20 Sept 2026
Helm chart for deploying a multi-tenant `etcd` cluster.
Version 0.18.0 yesterdayapp version 3.6.12 0Artifact Hub
kamaji-etcd 0.18.0 deploys 4 container images: quay.io/coreos/etcd, clastix/kubectl and cfssl/cfssl. Across them, 960 findings — 7 critical, 25 high — 4 on CISA KEV. The highest contribution is ALPINE-CVE-2023-38545 in curl 7.80.0-r0, fixed in 8.4.0-r0. Chart.yaml declares kubeVersion >=1.22.0-0; rendered for Kubernetes 1.22.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | v3.6.12 | 00548 | 466 |
| clastix/ | v1.22 | 210299 | 1,473 |
| cfssl/ | latest | 511111506 | 7,633 |
| quay.io/ | v3.5.6 | 0431187 | 2,551 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GO-2022-1143 | stdlib | 1.18.9 |
| Low | GHSA-qc2q-p7wx-3px3 | google.golang.org/ | 1.83.1 |
| Low | DEBIAN-CVE-2026-22796 | openssl | 3.0.18-1~deb12u2 |
| Low | GO-2023-2382 | stdlib | 1.20.12 |
| Low | DEBIAN-CVE-2026-6429 | curl | no fix listed |
| Low | GHSA-qpw4-5x99-6vjp | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2024-22365 | pam | 1.5.2-6+deb12u2 |
| Low | DEBIAN-CVE-2025-2361 | mercurial | 6.3.2-1+deb12u1 |
| Low | GHSA-f6x5-jh6r-wrfv | golang.org/ | 0.45.0 |
| Low | DEBIAN-CVE-2025-15367 | python3.11 | no fix listed |
| Low | GHSA-78mq-xcr3-xm33 | golang.org/ | 0.52.0 |
| Low | GO-2022-1038 | stdlib | 1.18.7 |
| Low | GO-2024-2599 | stdlib | 1.21.8 |
| Low | DEBIAN-CVE-2025-10148 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2024-26462 | krb5 | 1.20.1-2+deb12u3 |
| Low | GO-2024-3106 | stdlib | 1.22.7 |
| Low | DEBIAN-CVE-2024-2004 | curl | 7.88.1-10+deb12u6 |
| Low | DEBIAN-CVE-2026-1965 | curl | no fix listed |
| Low | GO-2023-1570 | stdlib | 1.19.6 |
| Low | DEBIAN-CVE-2022-0563 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2025-3576 | krb5 | 1.20.1-2+deb12u4 |
| Low | DEBIAN-CVE-2026-7168 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2024-50349 | git | 1:2.39.5-0+deb12u2 |
| Low | GO-2022-0531 | stdlib | 1.17.11 |
| Low | GO-2024-2600 | stdlib | 1.21.8 |
| Low | DEBIAN-CVE-2026-4878 | libcap2 | 1:2.66-4+deb12u3 |
| Low | DEBIAN-CVE-2007-2768 | openssh | no fix listed |
| Low | GHSA-hrxh-6v49-42gf | google.golang.org/ | 1.82.1 |
| Low | DEBIAN-CVE-2026-56404 | expat | 2.5.0-1+deb12u3 |
| Low | DSA-5850-1 | git | 1:2.39.5-0+deb12u2 |
| Low | DEBIAN-CVE-2026-3783 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2026-4873 | curl | no fix listed |
| Low | DEBIAN-CVE-2023-39804 | tar | 1.34+dfsg-1.2+deb12u1 |
| Low | DEBIAN-CVE-2026-56410 | expat | 2.5.0-1+deb12u3 |
| Low | DEBIAN-CVE-2026-56411 | expat | 2.5.0-1+deb12u3 |
| Low | GO-2024-2609 | stdlib | 1.21.8 |
| Low | DEBIAN-CVE-2026-59999 | openssh | no fix listed |
| Low | DEBIAN-CVE-2026-34743 | xz-utils | 5.4.1-1+deb12u1 |
| Low | GO-2024-3107 | stdlib | 1.22.7 |
| Low | DEBIAN-CVE-2026-5704 | tar | no fix listed |
| Low | GO-2023-1751 | stdlib | 1.19.9 |
| Low | GO-2023-1753 | stdlib | 1.19.9 |
| Low | DEBIAN-CVE-2026-3441 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-35387 | openssh | 1:9.2p1-2+deb12u10 |
| Low | DEBIAN-CVE-2026-3184 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2025-27587 | openssl | no fix listed |
| Low | DEBIAN-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | DEBIAN-CVE-2026-7010 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-19487 | perl | no fix listed |
| Low | DEBIAN-CVE-2023-52426 | expat | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 0.18.0latest | yesterday | 3.6.12 | 725176750 | 12,123 |
| 0.17.0 | 2 months ago | 3.6.12 | 725176750 | 12,123 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.