StackRadar

node-red Helm chart

cloudnativeapp

Scored 14 Sept 2026

Node-RED is flow-based programming for the Internet of Things

Latest 1.2.2 5 years agoapp version 0.19.6 0Artifact Hub

node-red 1.2.2 deploys 1 container image: nodered/node-red-docker. Across them, 303 findings0 critical, 6 high 2 on CISA KEV. The highest contribution is GHSA-c4w7-xm78-47vh in y18n 4.0.0, fixed in 4.0.1.

Radar Score

4,79006119178

303 findings over 1 of 1 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
nodered/node-red-docker0.19.6-v8061191784,790

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

303 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-663r-x48j-fg8pjsonata@1.5.41.8.8
LowGHSA-9h6g-pr28-7cqpnodemailer@1.11.06.9.9
LowGHSA-2x7j-588g-ccc2nodemailer@1.11.09.1.0
LowGHSA-5p4m-2wfm-xmqjjs-yaml@3.12.03.15.1
LowGHSA-8j8c-7jfh-h6hxjs-yaml@3.12.03.13.1
LowGHSA-h726-x36v-rx45lodash.merge@4.6.14.6.2
LowGHSA-4mjr-xmp4-gh2gqs@6.5.26.16.0
LowDLA-3029-1cups@2.2.1-8+deb9u22.2.1-8+deb9u8
LowDLA-2361-1libx11@2:1.6.4-3+deb9u12:1.6.4-3+deb9u3
LowDSA-4462-1dbus@1.10.26-0+deb9u11.10.28-0+deb9u1
LowGHSA-93f3-23rq-pjfpnpm@6.4.16.14.6
LowGHSA-r7g4-qg5f-qqm2nodemailer@1.11.08.0.8
LowDLA-2331-1postgresql-9.6@9.6.10-0+deb9u19.6.19-0+deb9u1
LowDLA-2830-1tar@1.29b-1.11.29b-1.1+deb9u1
LowGHSA-268h-hp4c-crq3nodemailer@1.11.08.0.9
LowGHSA-wqvq-jvpq-h66fnodemailer@1.11.08.0.9
LowDLA-2312-1libx11@2:1.6.4-3+deb9u12:1.6.4-3+deb9u2
LowDLA-3063-1systemd@232-25+deb9u8232-25+deb9u14
LowDLA-3047-1avahi@0.6.32-20.6.32-2+deb9u1
LowGHSA-wmmp-3585-3rmpnodemailer@1.11.09.1.0
LowDLA-2487-1apt@1.4.91.4.11
LowGHSA-6rw7-vpxm-498pqs@6.5.26.14.1
LowGHSA-pc5p-h8pf-mvwphttps-proxy-agent@2.2.12.2.3
LowGHSA-v422-hmwv-36x6body-parser@1.18.31.20.6
LowGHSA-2pr6-76vf-7546js-yaml@3.12.03.13.0
LowGHSA-8m3c-c648-2xjjnodemailer@1.11.09.1.1
LowGHSA-v6h2-p8h4-qcjwbrace-expansion@1.1.111.1.12
LowGHSA-v78c-4p63-2j6cmoment-timezone@0.5.230.5.35
LowGHSA-jmqm-f2gx-4fjvnpm-registry-fetch@1.1.04.0.5
LowGHSA-c7w3-x93f-qmm8nodemailer@1.11.08.0.4
LowGHSA-4xcv-9jjx-gfj3mem@1.1.04.0.0
LowGHSA-78xj-cgh5-2h22ip@1.1.51.1.9
LowGHSA-qvfw-j98x-7q72multer@1.4.12.3.0
LowGHSA-76c9-3jph-rj3qon-headers@1.0.11.1.0
LowDLA-2424-1tzdata@2018i-0+deb9u12020d-0+deb9u1
LowDLA-2509-1tzdata@2018i-0+deb9u12020e-0+deb9u1
LowDLA-2542-1tzdata@2018i-0+deb9u12021a-0+deb9u1
LowDLA-2593-1ca-certificates@20161130+nmu1+deb9u120200601~deb9u2
LowDLA-2751-1postgresql-9.6@9.6.10-0+deb9u19.6.23-0+deb9u1
LowDLA-2759-1gnutls28@3.5.8-5+deb9u43.5.8-5+deb9u6
LowDLA-2761-1openssl1.0@1.0.2q-1~deb9u11.0.2u-1~deb9u5
LowDLA-2797-1tzdata@2018i-0+deb9u12021a-0+deb9u2
LowDLA-2948-1debian-archive-keyring@2017.52017.5+deb9u2
LowDLA-2963-1tzdata@2018i-0+deb9u12021a-0+deb9u3
LowDLA-3051-1tzdata@2018i-0+deb9u12021a-0+deb9u4
LowDSA-4509-2subversion@1.9.5-1+deb9u31.9.5-1+deb9u5
LowGHSA-pxg6-pf52-xh8xcookie@0.3.10.7.0
LowGHSA-c6rq-rjc2-86v2chownr@1.0.11.1.0
LowGHSA-4gmj-3p3h-gm8hes5-ext@0.10.480.10.63
LowGHSA-2mj8-pj3j-h362bin-links@1.1.21.1.5

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
1.2.2latest5 years ago0.19.6061191784,790

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cloudnativeapp/node-red.svg)](https://charts.stackradar.io/charts/cloudnativeapp/node-red)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.