StackRadar

node-red Helm chart

cloudnativeapp

Scored 14 Sept 2026

Node-RED is flow-based programming for the Internet of Things

Latest 1.2.2 5 years agoapp version 0.19.6 0Artifact Hub

node-red 1.2.2 deploys 1 container image: nodered/node-red-docker. Across them, 303 findings0 critical, 6 high 2 on CISA KEV. The highest contribution is GHSA-c4w7-xm78-47vh in y18n 4.0.0, fixed in 4.0.1.

Radar Score

4,79006119178

303 findings over 1 of 1 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
nodered/node-red-docker0.19.6-v8061191784,790

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

303 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-mpwj-fcr6-x34cyarn@1.12.31.22.13
LowDLA-2285-1librsvg@2.40.16-1+b12.40.21-0+deb9u1
LowDSA-4393-1systemd@232-25+deb9u8232-25+deb9u9
LowDLA-2550-1openjpeg2@2.1.2-1.1+deb9u22.1.2-1.1+deb9u6
LowDLA-2662-1postgresql-9.6@9.6.10-0+deb9u19.6.22-0+deb9u1
LowDLA-2669-1libxml2@2.9.4+dfsg1-2.2+deb9u22.9.4+dfsg1-2.2+deb9u5
LowDLA-2694-1tiff@4.0.8-2+deb9u44.0.8-2+deb9u6
LowGHSA-wc9g-mqfw-jrwmmulter@1.4.12.3.0
LowDLA-2817-1postgresql-9.6@9.6.10-0+deb9u19.6.24-0+deb9u1
LowDLA-3007-1imagemagick@8:6.9.7.4+dfsg-11+deb9u68:6.9.7.4+dfsg-11+deb9u14
LowDSA-4550-1file@1:5.30-1+deb9u21:5.30-1+deb9u3
LowDLA-2701-1openexr@2.2.0-11+b12.2.0-11+deb9u3
LowGHSA-f886-m6hf-6m8vbrace-expansion@1.1.111.1.13
LowGHSA-535w-7cp7-47q4multer@1.4.12.3.0
LowGHSA-72gw-mp4g-v24jmulter@1.4.12.2.0
LowGHSA-v923-w3x8-wh69passport@0.4.00.6.0
LowDLA-2732-1openexr@2.2.0-11+b12.2.0-11+deb9u4
LowDLA-2975-1openjpeg2@2.1.2-1.1+deb9u22.1.2-1.1+deb9u7
LowDLA-2897-1apr@1.5.2-51.5.2-5+deb9u1
LowGHSA-83g3-92jg-28cxtar@2.2.17.5.8
LowGHSA-8w65-xjc5-9w79node-red@0.19.60.20.8
LowGHSA-w8wr-v893-vjvptar@2.2.17.5.18
LowDLA-2691-1libgcrypt20@1.7.6-2+deb9u31.7.6-2+deb9u4
LowGHSA-p6gq-j5cr-w38fnodemailer@1.11.09.0.1
LowDLA-2602-1imagemagick@8:6.9.7.4+dfsg-11+deb9u68:6.9.7.4+dfsg-11+deb9u12
LowGHSA-vvjj-xcjg-gr5gnodemailer@1.11.08.0.5
LowDLA-2932-1tiff@4.0.8-2+deb9u44.0.8-2+deb9u8
LowDSA-4685-1apt@1.4.91.4.10
LowDLA-2295-1curl@7.52.1-5+deb9u87.52.1-5+deb9u11
LowGHSA-cm22-4g7w-348pserve-static@1.13.21.16.0
LowDLA-2491-1openexr@2.2.0-11+b12.2.0-11+deb9u2
LowDLA-2784-1icu@57.1-6+deb9u257.1-6+deb9u5
LowDSA-4428-1systemd@232-25+deb9u8232-25+deb9u11
LowGHSA-p9pc-299p-vxgpyargs-parser@9.0.213.1.2
LowDSA-4622-1postgresql-9.6@9.6.10-0+deb9u19.6.17-0+deb9u1
LowGHSA-gvwx-54wh-qm9jtar@2.2.17.5.17
LowDSA-4535-1e2fsprogs@1.43.4-21.43.4-2+deb9u1
LowGHSA-7gmj-h9xc-mcxcmailparser@0.6.23.9.3
LowDLA-2518-1cairo@1.14.8-11.14.8-1+deb9u1
LowDSA-4439-1postgresql-9.6@9.6.10-0+deb9u19.6.13-0+deb9u1
LowGHSA-m6fv-jmcg-4jfgsend@0.16.20.19.0
LowDLA-2702-1djvulibre@3.5.27.1-73.5.27.1-7+deb9u2
LowDLA-2800-1cups@2.2.1-8+deb9u22.2.1-8+deb9u7
LowDLA-2290-1e2fsprogs@1.43.4-21.43.4-2+deb9u2
LowGHSA-c33w-24p9-8m24configobj@5.0.65.0.9
LowGHSA-qw6h-vgh9-j6wxexpress@4.16.44.20.0
LowGHSA-mh29-5h37-fv8mjs-yaml@3.12.03.14.2
LowGHSA-h67p-54hq-rp68js-yaml@3.12.03.15.0
LowGHSA-3jxr-9vmj-r5cpbrace-expansion@1.1.111.1.16
LowGHSA-vmf3-w455-68vhtar@2.2.17.5.16

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.2.2latest5 years ago0.19.6061191784,790

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cloudnativeapp/node-red.svg)](https://charts.stackradar.io/charts/cloudnativeapp/node-red)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.