StackRadar

galaxy-stable 2.0.0 Helm chart

cloudve

Scored 16 Sept 2026

Galaxy is an open, web-based platform for accessible, reproducible, and transparent computational biomedical research.

Version 2.0.0 5 days agodeploys tag 9.6.5_for_18.01 0Artifact Hub

galaxy-stable 2.0.0 deploys 5 container images: pcm32/galaxy-postgres, galaxy/galaxy-init, library/alpine, galaxy/galaxy-stable and 1 more. Across the 4 measured, 4,450 findings32 critical, 162 high 6 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.0.1f-1ubuntu2.25, fixed in 1.0.1f-1ubuntu2.27+esm10.

Radar Score

70,945321621,4302,826

4,450 findings over 4 of 5 images measured

KEV ×6 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

5 images
ImageTagVulnerabilitiesRadar Score
pcm32/galaxy-postgres9.6.5_for_18.01012440916
galaxy/galaxy-initv18.0115786331,01729,366
library/alpinelatest0046149
galaxy/galaxy-stablev18.0117837691,76340,514
container-registry.phenomenal-h2020.eu/phnmnl/galaxy-proftpdfor_galaxy_v17.09unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

2,910 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-21715nodejs@9.11.1-1nodesource1no fix listed
LowUBUNTU-CVE-2026-56847nodejs@9.11.1-1nodesource1no fix listed
LowGHSA-5239-wwwm-4pmqpygments@2.2.02.20.0
LowUBUNTU-CVE-2026-58039nodejs@9.11.1-1nodesource1no fix listed
LowUBUNTU-CVE-2021-2042mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2026-21716nodejs@9.11.1-1nodesource1no fix listed
LowUBUNTU-CVE-2025-55132nodejs@9.11.1-1nodesource1no fix listed
LowGHSA-c6rq-rjc2-86v2chownr@1.0.11.1.0
LowUBUNTU-CVE-2026-22001mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2026-61081mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2025-66382expat@2.1.0-4ubuntu1.4no fix listed
LowUBUNTU-CVE-2024-21209mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2026-14681postgresql-9.3@9.3.22-0ubuntu0.14.04no fix listed
LowUBUNTU-CVE-2026-48936nodejs@9.11.1-1nodesource1no fix listed
LowUBUNTU-CVE-2025-6170libxml2@2.9.1+dfsg1-3ubuntu4.122.9.1+dfsg1-3ubuntu4.13+esm8
LowUBUNTU-CVE-2026-61096mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowGHSA-r374-rxx8-8654paramiko@1.10.1no fix listed
LowUBUNTU-CVE-2026-44405paramiko@1.10.1-1git1ubuntu0.1no fix listed
LowUBUNTU-CVE-2026-76014busybox@1:1.21.0-1ubuntu1no fix listed
LowUBUNTU-CVE-2026-24515expat@2.1.0-4ubuntu1.42.1.0-4ubuntu1.4+esm11
LowUBUNTU-CVE-2020-1736ansible@2.5.3-1ppa~trustyno fix listed
LowUBUNTU-CVE-2026-40228systemd@204-5ubuntu20.28no fix listed
LowUBUNTU-CVE-2026-32778expat@2.1.0-4ubuntu1.4no fix listed
LowUBUNTU-CVE-2023-4016procps@1:3.3.9-1ubuntu2.3no fix listed
LowUBUNTU-CVE-2023-45733intel-microcode@3.20180425.1~ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2021-35618mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2025-50100mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2025-9165tiff@4.0.3-7ubuntu0.94.0.3-7ubuntu0.11+esm16
LowUBUNTU-CVE-2014-2524readline6@6.3-4ubuntu2no fix listed
LowGHSA-6vgw-5pg2-w6jppip@1.5.426.0
LowUBUNTU-CVE-2026-1703python-pip@1.5.4-1ubuntu4no fix listed
LowUBUNTU-CVE-2014-8991python-pip@1.5.4-1ubuntu4no fix listed
LowUBUNTU-CVE-2026-15310python2.7@2.7.6-8ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-15310python3.4@3.4.3-1ubuntu1~14.04.6no fix listed
LowUBUNTU-CVE-2026-60190mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2026-53910diffutils@1:3.3-11:3.3-1ubuntu0.1~esm1
LowUBUNTU-CVE-2013-0157util-linux@2.20.1-5.1ubuntu20.9no fix listed
LowUBUNTU-CVE-2026-6879python3.4@3.4.3-1ubuntu1~14.04.6no fix listed
LowUBUNTU-CVE-2026-6879python2.7@2.7.6-8ubuntu0.4no fix listed
LowUBUNTU-CVE-2025-8534tiff@4.0.3-7ubuntu0.94.0.3-7ubuntu0.11+esm15
LowUBUNTU-CVE-2026-86137libxml2@2.9.1+dfsg1-3ubuntu4.12no fix listed
LowUBUNTU-CVE-2026-86141libxml2@2.9.1+dfsg1-3ubuntu4.12no fix listed
LowUBUNTU-CVE-2024-58251busybox@1:1.21.0-1ubuntu1no fix listed
LowUBUNTU-CVE-2021-2232mysql-5.5@5.5.60-0ubuntu0.14.04.1no fix listed
LowUBUNTU-CVE-2026-18743popt@1.16-8ubuntu1no fix listed
LowUBUNTU-CVE-2026-61477libvirt@1.2.2-0ubuntu13.1.261.2.2-0ubuntu13.1.28+esm2
LowUBUNTU-CVE-2026-48617nodejs@9.11.1-1nodesource1no fix listed
LowUBUNTU-CVE-2026-18739popt@1.16-8ubuntu1no fix listed
LowUBUNTU-CVE-2026-18503python2.7@2.7.6-8ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-18503python3.4@3.4.3-1ubuntu1~14.04.6no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2.0.0latest5 days ago9.6.5_for_18.01321621,4302,82670,945

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cloudve/galaxy-stable.svg)](https://charts.stackradar.io/charts/cloudve/galaxy-stable)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 16 Sept 2026 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.