galaxy-stable Helm chart
cloudveScored 15 Sept 2026
Galaxy is an open, web-based platform for accessible, reproducible, and transparent computational biomedical research.
Latest 2.0.0 4 days agodeploys tag 9.6.5_for_18.01 0Artifact Hub
galaxy-stable 2.0.0 deploys 5 container images: pcm32/galaxy-postgres, galaxy/galaxy-init, library/alpine, galaxy/galaxy-stable and 1 more. Across the 4 measured, 4,454 findings — 32 critical, 162 high — 6 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.0.1f-1ubuntu2.25, fixed in 1.0.1f-1ubuntu2.27+esm10.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| pcm32/ | 9.6.5_for_18.01 | 012440 | 916 |
| galaxy/ | v18.01 | 15786331,019 | 29,378 |
| library/ | latest | 0046 | 149 |
| galaxy/ | v18.01 | 17837691,765 | 40,525 |
| container-registry.phenomenal-h2020.eu/ | for_galaxy_v17.09 | — | unmeasured |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | UBUNTU-CVE-2019-13057 | openldap | 2.4.31-1+nmu2ubuntu8.5+esm1 |
| Medium | GHSA-2h4p-vjrc-8xpq | mako | 1.3.12 |
| Medium | UBUNTU-CVE-2022-41742 | nginx | 1.4.6-1ubuntu3.9+esm4 |
| Medium | UBUNTU-CVE-2018-7170 | ntp | no fix listed |
| Medium | UBUNTU-CVE-2024-32487 | less | 458-2ubuntu0.1~esm1 |
| Medium | GHSA-wj6h-64fc-37mp | ecdsa | no fix listed |
| Medium | UBUNTU-CVE-2026-27651 | nginx | 1.4.6-1ubuntu3.9+esm6 |
| Medium | UBUNTU-CVE-2023-4813 | eglibc | no fix listed |
| Medium | UBUNTU-CVE-2019-2481 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2015-9261 | busybox | 1:1.21.0-1ubuntu1.4 |
| Medium | UBUNTU-CVE-2020-14800 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2026-60005 | nginx | no fix listed |
| Medium | GHSA-wrxv-2j5q-m38w | lxml | 4.9.1 |
| Medium | UBUNTU-CVE-2025-0938 | python3.4 | 3.4.3-1ubuntu1~14.04.7+esm15 |
| Medium | UBUNTU-CVE-2025-0938 | python2.7 | 2.7.6-8ubuntu0.6+esm28 |
| Medium | UBUNTU-CVE-2022-21454 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2017-12132 | eglibc | no fix listed |
| Medium | UBUNTU-CVE-2022-42011 | dbus | 1.6.18-0ubuntu4.5+esm3 |
| Medium | UBUNTU-CVE-2022-42012 | dbus | 1.6.18-0ubuntu4.5+esm3 |
| Medium | UBUNTU-CVE-2019-6129 | libpng | no fix listed |
| Medium | UBUNTU-CVE-2019-2531 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2020-16156 | perl | 5.18.2-2ubuntu1.7+esm4 |
| Medium | UBUNTU-CVE-2018-3063 | mysql-5.5 | 5.5.61-0ubuntu0.14.04.1 |
| Medium | UBUNTU-CVE-2019-2507 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2026-53791 | rsync | no fix listed |
| Medium | UBUNTU-CVE-2026-8927 | curl | 7.35.0-1ubuntu2.20+esm20 |
| Medium | UBUNTU-CVE-2022-3116 | heimdal | 1.6~git20131207+dfsg-1ubuntu1.2+esm1 |
| Medium | UBUNTU-CVE-2023-27043 | python2.7 | 2.7.6-8ubuntu0.6+esm20 |
| Medium | UBUNTU-CVE-2023-27043 | python3.4 | no fix listed |
| Medium | UBUNTU-CVE-2022-21569 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2026-9669 | python3.4 | no fix listed |
| Medium | UBUNTU-CVE-2026-9669 | python2.7 | no fix listed |
| Medium | UBUNTU-CVE-2021-2417 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2026-28388 | openssl | 1.0.1f-1ubuntu2.27+esm13 |
| Medium | UBUNTU-CVE-2022-34480 | nss | 2:3.28.4-0ubuntu0.14.04.5+esm11 |
| Medium | UBUNTU-CVE-2021-2202 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2023-28321 | curl | 7.35.0-1ubuntu2.20+esm16 |
| Medium | UBUNTU-CVE-2025-69421 | openssl | 1.0.1f-1ubuntu2.27+esm12 |
| Medium | UBUNTU-CVE-2016-1238 | perl | no fix listed |
| Medium | GHSA-j569-fghw-f9rx | ansible | 2.5.14 |
| Medium | UBUNTU-CVE-2019-2950 | mysql-5.5 | no fix listed |
| Medium | UBUNTU-CVE-2022-41741 | nginx | 1.4.6-1ubuntu3.9+esm4 |
| Medium | UBUNTU-CVE-2014-5209 | ntp | no fix listed |
| Medium | GHSA-3xgq-45jj-v275 | cross-spawn | 6.0.6 |
| Medium | GHSA-h4m5-qpfp-3mpv | babel | 2.9.1 |
| Medium | UBUNTU-CVE-2021-33113 | linux-firmware | no fix listed |
| Medium | UBUNTU-CVE-2017-18207 | python2.7 | no fix listed |
| Medium | UBUNTU-CVE-2017-18207 | python3.4 | no fix listed |
| Medium | UBUNTU-CVE-2023-39810 | busybox | no fix listed |
| Medium | PYSEC-2023-206 | selenium | 4.14.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.0.0latest | 4 days ago | 9.6.5_for_18.01 | 321621,4302,830 | 70,968 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.