kube-acp-stack 2.29.0 Helm chart
cloudentityScored 29 Sept 2026
kube-acp-stack collects acp charts combined with documentation and scripts to provide easy to operate end-to-end Kubernetes cluster
Version 2.29.0 yesterdayApp version not verified against the render 0Artifact Hub
kube-acp-stack 2.29.0 deploys 7 container images: docker.secureauth.com/acp-distroless, cockroachdb/cockroach, library/alpine, bitnamilegacy/redis-cluster and 3 more. Across the 6 measured, 1,815 findings — 10 critical, 21 high — 8 on CISA KEV. The highest contribution is BIT-redis-2025-49844 in redis 7.4.3-0, fixed in 6.2.20.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| docker.secureauth.com/ | 2.29.0 | — | unmeasured |
| cockroachdb/ | v22.2.9 | 362962 | 1,811 |
| library/ | latest | 0000 | 0 |
| bitnamilegacy/ | 7.4.3-debian-12-r0 | 2053197 | 2,857 |
| timescale/ | pg17.2-ts2.18.2 | 34198996 | 13,203 |
| gcr.io/ | 1.3 | 1757182 | 3,296 |
| curlimages/ | 7.87.0 | 1464 | 482 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-vqfr-h8mv-ghfj | h11 | 0.16.0 |
| Medium | UBUNTU-CVE-2026-18924 | curl | 7.81.0-1ubuntu1.29 |
| Medium | GHSA-p782-xgp4-8hr8 | golang.org/ | 0.0.0-20220412211240-33da011f77ad |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.0.19-1~deb12u2 |
| Medium | GHSA-8wv5-x4w7-5gww | github.com/ | 0.24.0 |
| Medium | DEBIAN-CVE-2025-32990 | gnutls28 | 3.7.9-2+deb12u5 |
| Medium | GHSA-vjc4-5qp5-m44j | pillow | 12.3.0 |
| Medium | RHSA-2025:11327 | glib2 | 0:2.56.4-166.el8_10 |
| Medium | UBUNTU-CVE-2026-63385 | libevent | 2.1.12-stable-1ubuntu0.1 |
| Medium | RHBA-2024:5736 | ca-certificates | 0:2024.2.69_v8.0.303-80.0.el8_10 |
| Medium | DEBIAN-CVE-2026-63072 | openssl | 3.0.22-1~deb12u1 |
| Medium | GHSA-2v4p-qf9q-27wj | google.golang.org/ | 1.82.2 |
| Medium | UBUNTU-CVE-2025-69720 | ncurses | 6.3-2ubuntu0.2 |
| Medium | RHSA-2026:51183 | glib2 | 0:2.56.1-13.el7_9 |
| Medium | UBUNTU-CVE-2026-58016 | glib2.0 | 2.72.4-0ubuntu2.10 |
| Medium | PYSEC-2023-254 | cryptography | 41.0.6 |
| Medium | GHSA-4f99-4q7p-p3gh | github.com/ | 1.8.3 |
| Medium | DEBIAN-CVE-2025-9232 | openssl | 3.0.17-1~deb12u3 |
| Medium | DEBIAN-CVE-2026-9076 | openssl | 3.0.20-1~deb12u2 |
| Medium | GO-2021-0101 | github.com/ | 0.13.0 |
| Medium | UBUNTU-CVE-2026-6100 | python3.10 | 3.10.12-1~22.04.16 |
| Medium | DEBIAN-CVE-2025-69421 | openssl | 3.0.18-1~deb12u2 |
| Medium | GHSA-vp52-pcj8-j9qc | google.golang.org/ | 1.83.1 |
| Medium | PYSEC-2026-2098 | aiohttp | 3.13.4 |
| Medium | GHSA-7gcm-g887-7qv7 | protobuf | 5.29.6 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | GHSA-4jcj-7x88-m979 | litellm | 1.84.0 |
| Medium | UBUNTU-CVE-2026-11972 | python3.10 | no fix listed |
| Medium | GHSA-58pv-8j8x-9vj2 | jaraco-context | 6.1.0 |
| Medium | GHSA-jr27-m4p2-rc6r | pyasn1 | 0.6.3 |
| Medium | UBUNTU-CVE-2026-30922 | pyasn1 | 0.4.8-1ubuntu0.2 |
| Medium | GHSA-jm66-cg57-jjv5 | azure-core | 1.38.0 |
| Medium | GHSA-62p4-gmf7-7g93 | pillow | 12.3.0 |
| Medium | GHSA-jqcq-xjh3-6g23 | github.com/ | no fix listed |
| Medium | DEBIAN-CVE-2026-42496 | perl | no fix listed |
| Medium | GHSA-3rq5-2g8h-59hc | dnspython | 2.6.1 |
| Medium | BIT-redis-2025-46819 | redis | 6.2.20 |
| Medium | DEBIAN-CVE-2025-69420 | openssl | 3.0.18-1~deb12u2 |
| Medium | UBUNTU-CVE-2024-1580 | dav1d | no fix listed |
| Medium | UBUNTU-CVE-2026-8927 | curl | 7.81.0-1ubuntu1.25 |
| Medium | RHSA-2026:7667 | nghttp2 | 0:1.33.0-6.el8_10.2 |
| Medium | UBUNTU-CVE-2026-27135 | nghttp2 | 1.43.0-1ubuntu0.3 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.0.20-1~deb12u2 |
| Medium | UBUNTU-CVE-2026-44432 | python-pip | no fix listed |
| Medium | RHSA-2023:4523 | curl | 0:7.61.1-30.el8_8.3 |
| Medium | GHSA-63hw-fmq6-xxg2 | aiohttp | 3.14.1 |
| Medium | UBUNTU-CVE-2019-8396 | hdf5 | no fix listed |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | GHSA-6v2p-p543-phr9 | golang.org/ | 0.27.0 |
| Medium | GHSA-89gr-r52h-f8rx | golang.org/ | 0.52.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.29.0latest | yesterday | — | 10213431,441 | 21,649 |
| 2.28.0 | 2 months ago | — | 10213431,441 | 21,649 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.