codefresh 2.12.19 Helm chart
codefresh-onpremOfficialVerified publisherScored 2 Oct 2026
Helm Chart for Codefresh On-Prem
Version 2.12.19deploys tag 0.1.51 7Artifact Hub
codefresh 2.12.19 deploys 42 container images: us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-hub-platform, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-abac, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-analytics-reporter, us-docker.pkg.dev/codefresh-enterprise/gcr.io/codefresh/argo-platform-api-events and 38 more. Across the 8 measured, 1,589 findings — 6 critical, 1 high — 1 on CISA KEV. The highest contribution is BIT-redis-2025-49844 in redis 7.4.3-0, fixed in 6.2.20.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | BIT-nats-2026-33248 | nats | 2.11.15 |
| Low | DEBIAN-CVE-2026-77696 | openssl | no fix listed |
| Low | DEBIAN-CVE-2026-27456 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-18508 | tar | no fix listed |
| Low | BIT-redis-2025-46686 | redis | 8.0.4 |
| Low | DEBIAN-CVE-2025-68972 | gnupg2 | no fix listed |
| Low | GO-2026-4869 | stdlib | 1.25.9 |
| Low | GO-2026-5622 | github.com/ | no fix listed |
| Low | DEBIAN-CVE-2022-3219 | gnupg2 | no fix listed |
| Low | GO-2026-4887 | github.com/ | no fix listed |
| Low | GO-2026-5024 | golang.org/ | 0.44.0 |
| Low | DEBIAN-CVE-2026-41080 | expat | no fix listed |
| Low | DEBIAN-CVE-2026-102474 | dash | no fix listed |
| Low | DEBIAN-CVE-2023-4016 | procps | no fix listed |
| Low | GO-2026-6179 | golang.org/ | 0.40.0 |
| Low | DEBIAN-CVE-2025-69418 | openssl | 3.0.18-1~deb12u2 |
| Low | DEBIAN-CVE-2007-5686 | shadow | no fix listed |
| Low | GO-2026-4602 | stdlib | 1.25.8 |
| Low | BIT-mongodb-2025-12893 | mongodb | 7.0.26 |
| Low | DEBIAN-CVE-2026-18477 | tar | no fix listed |
| Low | ALPINE-CVE-2026-73281 | openssh | 10.3_p1-r1 |
| Low | GHSA-xhgw-qwwf-pg32 | github.com/ | 0.22.0 |
| Low | DEBIAN-CVE-2026-53613 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-53615 | util-linux | no fix listed |
| Low | GO-2026-5932 | golang.org/ | no fix listed |
| Low | GO-2026-6061 | google.golang.org/ | 1.82.1 |
| Low | DEBIAN-CVE-2026-95818 | glibc | no fix listed |
| Low | ALPINE-CVE-2026-89162 | pcre2 | 10.48-r0 |
| Low | DEBIAN-CVE-2026-40228 | systemd | no fix listed |
| Low | BIT-rabbitmq-2026-66069 | rabbitmq | 4.1.13 |
| Low | DEBIAN-CVE-2026-57062 | gnupg2 | no fix listed |
| Low | BIT-rabbitmq-2026-67224 | rabbitmq | 3.13.15 |
| Low | BIT-rabbitmq-2026-66078 | rabbitmq | 3.13.15 |
| Low | BIT-rabbitmq-2026-66076 | rabbitmq | 3.13.15 |
| Low | BIT-rabbitmq-2026-67218 | rabbitmq | 4.0.22 |
| Low | DEBIAN-CVE-2026-53910 | diffutils | no fix listed |
| Low | DEBIAN-CVE-2026-24515 | expat | 2.5.0-1+deb12u4 |
| Low | BIT-rabbitmq-2026-66075 | rabbitmq | 3.13.15 |
| Low | BIT-rabbitmq-2026-67420 | rabbitmq | 3.13.19 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | ALPINE-CVE-2026-73283 | openssh | 10.3_p1-r1 |
| Low | DEBIAN-CVE-2026-6368 | glibc | no fix listed |
| Low | DEBIAN-CVE-2026-5958 | sed | 4.9-1+deb12u1 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.12.19latest | — | 0.1.51 | 612821,300 | 17,122 |
| 2.12.18 | — | 0.1.48 | 612821,300 | 17,122 |
| 2.12.17 | — | 0.1.48 | 612821,300 | 17,122 |
| 2.12.16 | — | 0.1.48 | 612821,300 | 17,122 |
| 2.12.15 | — | 0.1.48 | 612821,300 | 17,122 |
| 2.12.14 | — | 0.1.48 | 612821,300 | 17,122 |
| 2.12.13 | — | 0.1.48 | 612821,300 | 17,122 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.