dawarich 2.9.1 Helm chart
cogitriVerified publisherScored 23 Sept 2026
Self-hosted alternative to Google Location History
Version 2.9.1 yesterdayapp version 1.15.1 1Artifact Hub
dawarich 2.9.1 deploys 3 container images: library/busybox, freikin/dawarich and public.ecr.aws/docker/library/redis. Across them, 590 findings — 0 critical, 2 high. The highest contribution is GHSA-r5fr-rjxr-66jc in lodash 4.17.21, fixed in 4.18.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | latest | 0000 | 0 |
| freikin/ | 1.15.1 | 0269505 | 5,869 |
| public.ecr.aws/ | 8.8.0-alpine | 0048 | 168 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | DEBIAN-CVE-2026-58471 | wget | no fix listed |
| Low | DEBIAN-CVE-2026-58472 | wget | no fix listed |
| Low | DEBIAN-CVE-2026-69186 | c-ares | no fix listed |
| Low | DEBIAN-CVE-2026-93751 | node-uri-js | no fix listed |
| Low | DEBIAN-CVE-2025-15367 | python3.13 | no fix listed |
| Low | DEBIAN-CVE-2026-58042 | nodejs | no fix listed |
| Low | DEBIAN-CVE-2026-59875 | node-tar | no fix listed |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | DEBIAN-CVE-2026-18149 | node-undici | no fix listed |
| Low | DEBIAN-CVE-2026-8368 | libwww-perl | no fix listed |
| Low | DEBIAN-CVE-2026-93750 | node-got | no fix listed |
| Low | DEBIAN-CVE-2026-86142 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2022-0563 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2026-86140 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2026-11979 | libxml2 | no fix listed |
| Low | GHSA-fv7c-fp4j-7gwp | @babel/ | 7.29.4 |
| Low | GHSA-28wg-ghj8-5hjv | nanoid | 5.1.16 |
| Low | DEBIAN-CVE-2026-69153 | node-postcss | no fix listed |
| Low | DEBIAN-CVE-2026-5704 | tar | no fix listed |
| Low | DEBIAN-CVE-2026-85152 | node-undici | no fix listed |
| Low | DEBIAN-CVE-2023-45913 | mesa | no fix listed |
| Low | GHSA-2v37-7h3g-55p8 | nanoid | 5.1.6 |
| Low | DEBIAN-CVE-2026-3441 | binutils | no fix listed |
| Low | DEBIAN-CVE-2026-3184 | util-linux | no fix listed |
| Low | GHSA-87pf-fpwv-p7m7 | net-imap | 0.5.14 |
| Low | GHSA-58qx-3vcg-4xpx | ws | 8.20.1 |
| Low | DEBIAN-CVE-2026-58055 | nghttp2 | no fix listed |
| Low | GHSA-jr45-8vmc-qm54 | undici | 7.29.0 |
| Low | DEBIAN-CVE-2026-19487 | perl | no fix listed |
| Low | DEBIAN-CVE-2026-52492 | tiff | no fix listed |
| Low | DEBIAN-CVE-2026-33672 | node-anymatch | no fix listed |
| Low | GHSA-3v7f-55p6-f55p | picomatch | 2.3.2 |
| Low | DEBIAN-CVE-2025-64718 | node-js-yaml | no fix listed |
| Low | GHSA-mh29-5h37-fv8m | js-yaml | 4.1.1 |
| Low | DEBIAN-CVE-2011-3374 | apt | no fix listed |
| Low | DEBIAN-CVE-2026-44728 | node-babel7 | no fix listed |
| Low | DEBIAN-CVE-2026-86138 | libxml2 | no fix listed |
| Low | DEBIAN-CVE-2013-4392 | systemd | no fix listed |
| Low | DEBIAN-CVE-2023-45919 | mesa | no fix listed |
| Low | DEBIAN-CVE-2026-53550 | node-js-yaml | no fix listed |
| Low | GHSA-h67p-54hq-rp68 | js-yaml | 4.2.0 |
| Low | ALPINE-CVE-2026-78408 | util-linux | 2.41.6-r1 |
| Low | DEBIAN-CVE-2026-78408 | util-linux | no fix listed |
| Low | DEBIAN-CVE-2025-1377 | elfutils | no fix listed |
| Low | GHSA-3jxr-9vmj-r5cp | brace-expansion | 2.1.2 |
| Low | DEBIAN-CVE-2026-86139 | libxml2 | no fix listed |
| Low | GHSA-5c6j-r48x-rmvq | serialize-javascript | 7.0.3 |
| Low | DEBIAN-CVE-2026-9679 | node-undici | no fix listed |
| Low | GHSA-p88m-4jfj-68fv | undici | 7.28.0 |
| Low | DEBIAN-CVE-2026-16729 | node-undici | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.9.1latest | yesterday | 1.15.1 | 0273513 | 6,037 |
| 2.8.4 | 9 days ago | 1.14.5 | 0273513 | 6,037 |
| 2.8.3 | 16 days ago | 1.14.4 | 0048 | 168 |
| 2.8.2 | 19 days ago | 1.14.2 | 0048 | 168 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.