StackRadar

dev-code-server 0.0.7 Helm chart

cosmoVerified publisher

Scored 14 Sept 2026

All-in-one code-server image for cosmo development

Version 0.0.7 2 years agoapp version 0.0.3 0Artifact Hub

dev-code-server 0.0.7 deploys 2 container images: ghcr.io/cosmo-workspace/dev-code-server and library/docker. Across them, 1,342 findings2 critical, 7 high 1 on CISA KEV. The highest contribution is DEBIAN-CVE-2025-48384 in git 1:2.39.5-0+deb12u2, fixed in 1:2.39.5-0+deb12u3. Chart.yaml declares kubeVersion >= 1.19.0-0; rendered for Kubernetes 1.19.0.

Radar Score

14,559272081,121

1,342 findings over 2 of 2 images measured

KEV confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/cosmo-workspace/dev-code-serverv0.0.3272071,08714,301
library/dockerdind00134258

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Medium findings

208 distinct across the version’s images

Medium: findings whose contribution to the Radar Score is 15–39. Show every band

SeverityAdvisoryPackageFixed in
MediumGO-2024-2687stdlib@go1.21.81.21.9
MediumDEBIAN-CVE-2020-15778openssh@1:9.2p1-2+deb12u5no fix listed
MediumDEBIAN-CVE-2025-8677bind9@1:9.18.33-1~deb12u21:9.18.41-1~deb12u1
MediumGHSA-765h-qjxv-5f44handlebars@1.0.04.7.7
MediumGHSA-f5f7-6478-qm6pk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.19.15
MediumDEBIAN-CVE-2025-13878bind9@1:9.18.33-1~deb12u21:9.18.44-1~deb12u1
MediumDEBIAN-CVE-2018-6951patch@2.7.6-7no fix listed
MediumDEBIAN-CVE-2018-6952patch@2.7.6-7no fix listed
MediumDSA-6113-1openssl@3.0.15-1~deb12u13.0.18-1~deb12u2
MediumDEBIAN-CVE-2019-1010022glibc@2.36-9+deb12u10no fix listed
MediumDEBIAN-CVE-2023-45853zlib@1:1.2.13.dfsg-1no fix listed
MediumDEBIAN-CVE-2025-55298imagemagick@8:6.9.11.60+dfsg-1.6+deb12u28:6.9.11.60+dfsg-1.6+deb12u4
MediumDEBIAN-CVE-2017-17740openldap@2.5.13+dfsg-5no fix listed
MediumDEBIAN-CVE-2025-32462sudo@1.9.13p3-1+deb12u11.9.13p3-1+deb12u2
MediumGHSA-m5h6-hr3q-22h5npm@1.0.12.15.1
MediumGHSA-wqv3-8cm6-h6wgk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.16.11
MediumGHSA-hq6q-c2x6-hmchk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.25.16
MediumDEBIAN-CVE-2026-45447openssl@3.0.15-1~deb12u13.0.20-1~deb12u2
MediumDEBIAN-CVE-2018-20796glibc@2.36-9+deb12u10no fix listed
MediumDEBIAN-CVE-2017-16232tiff@4.5.0-6+deb12u2no fix listed
MediumDEBIAN-CVE-2015-3276openldap@2.5.13+dfsg-5no fix listed
MediumGHSA-34jx-wx69-9x8vk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.11.9
MediumGHSA-q78c-gwqw-jcmck8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.24.17
MediumDEBIAN-CVE-2019-1010023glibc@2.36-9+deb12u10no fix listed
MediumGHSA-33c5-9fx5-fvjmk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.16.13
MediumDEBIAN-CVE-2019-16227lmdb@0.9.24-1no fix listed
MediumDEBIAN-CVE-2018-16376openjpeg2@2.5.0-2+deb12u1no fix listed
MediumDEBIAN-CVE-2019-16224lmdb@0.9.24-1no fix listed
MediumDEBIAN-CVE-2019-16225lmdb@0.9.24-1no fix listed
MediumDEBIAN-CVE-2009-3546libwmf@0.2.12-5.1no fix listed
MediumGHSA-3cqr-58rm-57f8handlebars@1.0.03.0.8
MediumGHSA-27wf-5967-98gxk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.28.12
MediumGHSA-x8qc-rrcw-4r46npm@1.0.16.13.3
MediumGHSA-m6cx-g6qm-p2cxnpm@1.0.16.13.3
MediumGHSA-g42g-737j-qx6jk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f11.18.18
MediumDEBIAN-CVE-2026-49261mariadb@1:10.11.11-0+deb12u11:10.11.18-0+deb12u1
MediumGHSA-fjxv-7rqg-78g4form-data@4.0.24.0.4
MediumDEBIAN-CVE-2018-15607imagemagick@8:6.9.11.60+dfsg-1.6+deb12u2no fix listed
MediumGHSA-qqgx-2p2h-9c37ini@1.0.01.3.6
MediumDEBIAN-CVE-2016-9580openjpeg2@2.5.0-2+deb12u1no fix listed
MediumGHSA-p493-635q-r6grpug@1.0.03.0.1
MediumDEBIAN-CVE-2016-9581openjpeg2@2.5.0-2+deb12u1no fix listed
MediumGHSA-5j98-mcp5-4vw2glob@10.4.510.5.0
MediumDEBIAN-CVE-2016-9114openjpeg2@2.5.0-2+deb12u1no fix listed
MediumDEBIAN-CVE-2017-11164pcre3@2:8.39-15no fix listed
MediumDEBIAN-CVE-2016-9113openjpeg2@2.5.0-2+deb12u1no fix listed
MediumDEBIAN-CVE-2017-7246pcre3@2:8.39-15no fix listed
MediumDEBIAN-CVE-2019-20838pcre3@2:8.39-15no fix listed
MediumGHSA-3c6g-pvg8-gqw2json@1.0.010.0.0
MediumGHSA-j9wf-vvm6-4r9wk8s.io/kubernetes@v0.0.0-20240716234811-6fc0a69044f1no fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.0.7latest2 years ago0.0.3272081,12114,559

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/cosmo/dev-code-server.svg)](https://charts.stackradar.io/charts/cosmo/dev-code-server)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.