StackRadar

dask-gateway 2026.3.0 Helm chart

dask

Scored 14 Sept 2026

A multi-tenant server for deploying and managing Dask clusters

Version 2026.3.0 5 months agoapp version 2026.3.0 0Artifact Hub

dask-gateway 2026.3.0 deploys 2 container images: ghcr.io/dask/dask-gateway-server and library/traefik. Across them, 209 findings0 critical, 1 high. The highest contribution is ALPINE-CVE-2025-15467 in openssl 3.3.3-r0, fixed in 3.3.6-r0. Chart.yaml declares kubeVersion >=1.30.0-0; rendered for Kubernetes 1.30.0.

Radar Score

1,9940123185

209 findings over 2 of 2 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/dask/dask-gateway-server×22026.3.000127286
library/traefik3.3.501221581,708

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

209 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGHSA-3q9r-p662-5j8mgithub.com/traefik/traefik/v3@v0.0.0-20250331083804-bd4ff81818903.6.22
LowGHSA-g754-hx8w-x2g6github.com/quic-go/quic-go@v0.48.20.57.0
LowGHSA-2464-8j7c-4cjmgithub.com/go-viper/mapstructure/v2@v2.2.12.4.0
LowGO-2026-4981stdlib@go1.23.71.25.10
LowGO-2025-3563stdlib@go1.23.71.23.8
LowGO-2026-4977stdlib@go1.23.71.25.10
LowGO-2026-4986stdlib@go1.23.71.25.10
LowGO-2026-4918stdlib@go1.23.71.25.10
LowGO-2026-4918golang.org/x/net@v0.37.00.53.0
LowGO-2026-4337stdlib@go1.23.71.24.13
LowGHSA-qccp-gfcp-xxvcurllib3@2.6.32.7.0
LowGO-2026-4601stdlib@go1.23.71.25.8
LowGHSA-q82r-2j7m-9rv4github.com/go-acme/lego/v4@v4.22.24.25.2
LowGHSA-4hjq-9h5c-252jgithub.com/traefik/traefik/v3@v0.0.0-20250331083804-bd4ff81818903.6.10
LowGO-2026-5026stdlib@go1.23.71.25.13
LowGO-2026-5026golang.org/x/net@v0.37.00.55.0
LowGO-2026-4342stdlib@go1.23.71.24.12
LowGO-2025-3751stdlib@go1.23.71.23.10
LowGHSA-2v4p-qf9q-27wjgoogle.golang.org/grpc@v1.67.11.82.2
LowGHSA-3wqc-mwfx-672pgithub.com/traefik/traefik/v3@v0.0.0-20250331083804-bd4ff81818903.3.6
LowGHSA-537c-gmf6-5ccfcryptography@46.0.648.0.1
LowGO-2025-4116golang.org/x/crypto@v0.36.00.43.0
LowGO-2026-4870stdlib@go1.23.71.25.9
LowGO-2025-4009stdlib@go1.23.71.24.8
LowGO-2026-4947stdlib@go1.23.71.25.9
LowGHSA-rg2x-37c3-w2rhgithub.com/docker/docker@v27.1.1+incompatibleno fix listed
LowGO-2025-4006stdlib@go1.23.71.24.8
LowGHSA-fw45-f5q2-2p4xgithub.com/traefik/traefik/v3@v0.0.0-20250331083804-bd4ff81818903.6.9
LowGO-2026-5037stdlib@go1.23.71.25.11
LowGO-2026-4971stdlib@go1.23.71.25.10
LowGO-2026-5972stdlib@go1.23.71.25.13
LowGO-2026-6088stdlib@go1.23.71.25.13
LowGO-2026-6089stdlib@go1.23.71.25.13
LowGO-2026-6090stdlib@go1.23.71.25.13
LowALPINE-CVE-2026-27171zlib@1.3.1-r21.3.2-r0
LowGO-2026-5038stdlib@go1.23.71.25.11
LowGO-2026-5942golang.org/x/net@v0.37.00.56.0
LowGO-2025-4012stdlib@go1.23.71.24.8
LowGO-2025-3956stdlib@go1.23.71.23.12
LowGO-2026-4440golang.org/x/net@v0.37.00.45.0
LowGO-2025-4011stdlib@go1.23.71.24.8
LowGO-2025-4015stdlib@go1.23.71.24.8
LowGO-2026-6218stdlib@go1.23.71.25.13
LowGO-2026-4441golang.org/x/net@v0.37.00.45.0
LowGO-2026-5970golang.org/x/text@v0.23.00.39.0
LowGO-2025-4155stdlib@go1.23.71.24.11
LowGHSA-w8rr-5gcm-pp58go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp@v1.28.01.43.0
LowGHSA-w8rr-5gcm-pp58go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploghttp@v0.8.00.19.0
LowGHSA-w8rr-5gcm-pp58go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp@v1.28.01.43.0
LowGO-2025-4008stdlib@go1.23.71.24.8

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
2026.3.0latest5 months ago2026.3.001231851,994

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/dask/dask-gateway.svg)](https://charts.stackradar.io/charts/dask/dask-gateway)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 8 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.