codefresh 2.12.15 Helm chart
codefresh-onpremOfficialVerified publisherScored 20 Sept 2026
Helm Chart for Codefresh On-Prem
Version 2.12.15deploys tag 0.1.48 7Artifact Hub
codefresh 2.12.15 deploys 42 container images: us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-hub-platform, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-abac, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-analytics-reporter, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-api-events and 38 more. Across the 8 measured, 1,463 findings — 2 critical, 5 high — 1 on CISA KEV. The highest contribution is BIT-redis-2025-49844 in redis 7.4.3-0, fixed in 6.2.20.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | BIT-mongodb-2025-3084 | mongodb | 5.0.31 |
| Low | BIT-consul-2025-11374 | consul | 1.22.0 |
| Low | GHSA-7g3r-8c6v-hfmr | github.com/ | 1.22.0 |
| Low | DEBIAN-CVE-2026-42015 | gnutls28 | 3.7.9-2+deb12u7 |
| Low | ALPINE-CVE-2026-76642 | util-linux | 2.42.3-r0 |
| Low | DEBIAN-CVE-2026-76642 | util-linux | no fix listed |
| Low | BIT-consul-2025-11375 | consul | 1.22.0 |
| Low | GHSA-qh7p-pfq3-677h | github.com/ | 1.22.0 |
| Low | BIT-mongodb-2026-18701 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-82076 | mongodb | 7.0.41 |
| Low | DEBIAN-CVE-2025-40909 | perl | 5.36.0-7+deb12u3 |
| Low | BIT-consul-2026-19017 | consul | 2.0.3 |
| Low | BIT-mongodb-2026-82053 | mongodb | 7.0.41 |
| Low | BIT-mongodb-2025-13507 | mongodb | 7.0.26 |
| Low | DEBIAN-CVE-2026-48961 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-8458 | curl | no fix listed |
| Low | ALPINE-CVE-2026-63074 | openssl | 3.5.8-r0 |
| Low | DEBIAN-CVE-2026-63074 | openssl | no fix listed |
| Low | BIT-mongodb-2026-13055 | mongodb | 7.0.39 |
| Low | BIT-mongodb-2026-1849 | mongodb | 7.0.29 |
| Low | BIT-mongodb-2026-18695 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-82054 | mongodb | 7.0.41 |
| Low | BIT-mongodb-2026-82058 | mongodb | 7.0.41 |
| Low | BIT-mongodb-2026-82065 | mongodb | 7.0.41 |
| Low | BIT-mongodb-2026-82068 | mongodb | 7.0.41 |
| Low | BIT-mongodb-2026-18688 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-18694 | mongodb | 7.0.40 |
| Low | GHSA-hfvc-g4fc-pqhx | go.opentelemetry.io/ | 1.43.0 |
| Low | BIT-mongodb-2026-13077 | mongodb | 7.0.39 |
| Low | DEBIAN-CVE-2025-14524 | curl | 7.88.1-10+deb12u15 |
| Low | DEBIAN-CVE-2025-14831 | gnutls28 | 3.7.9-2+deb12u6 |
| Low | DEBIAN-CVE-2026-6238 | glibc | no fix listed |
| Low | BIT-mongodb-2026-9746 | mongodb | 7.0.35 |
| Low | BIT-mongodb-2026-9747 | mongodb | 7.0.35 |
| Low | BIT-mongodb-2026-9749 | mongodb | 7.0.35 |
| Low | BIT-mongodb-2026-9752 | mongodb | 7.0.35 |
| Low | BIT-mongodb-2026-13074 | mongodb | 7.0.39 |
| Low | DEBIAN-CVE-2026-25210 | expat | no fix listed |
| Low | BIT-mongodb-2026-18705 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-18690 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-18696 | mongodb | 7.0.40 |
| Low | BIT-mongodb-2026-8199 | mongodb | 7.0.34 |
| Low | GHSA-45gg-vh54-h5m9 | golang.org/ | 0.52.0 |
| Low | DEBIAN-CVE-2026-5435 | glibc | no fix listed |
| Low | BIT-mongodb-2026-6914 | mongodb | 7.0.32 |
| Low | DEBIAN-CVE-2026-54369 | acl | no fix listed |
| Low | BIT-mongodb-2026-1847 | mongodb | 7.0.29 |
| Low | BIT-mongodb-2026-13071 | mongodb | 7.0.39 |
| Low | BIT-mongodb-2026-18693 | mongodb | 7.0.40 |
| Low | GHSA-5cv4-jp36-h3mw | golang.org/ | 0.55.0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.12.15latest | — | 0.1.48 | 252271,229 | 15,557 |
| 2.12.14 | — | 0.1.48 | 252271,229 | 15,557 |
| 2.12.13 | — | 0.1.48 | 252271,229 | 15,557 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.