zammad 4.0.5 Helm chart
devplayer0Verified publisherScored 14 Sept 2026
Zammad is a web based open source helpdesk/customer support system with many features to manage customer communication via several channels like telephone, facebook, twitter, chat and e-mails.
Version 4.0.5 5 years agodeploys tag 1.6.9-debian-10-r169 1Artifact Hub
zammad 4.0.5 deploys 4 container images: bitnami/memcached, zammad/zammad-docker-compose and bitnami/postgresql. Across the 2 measured, 361 findings — 8 critical, 13 high — 4 on CISA KEV. The highest contribution is GHSA-jfh8-c2jp-5v3q in log4j-core 2.11.1, fixed in 2.12.2.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| bitnami/ | 1.6.9-debian-10-r169 | — | unmeasured |
| zammad/ | zammad-elasticsearch-4.1.0-31 | 744164 | 2,394 |
| bitnami/ | 11.12.0-debian-10-r20 | — | unmeasured |
| zammad/ | zammad-4.1.0-31 | 1973162 | 3,716 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Critical | GHSA-jfh8-c2jp-5v3qKEV | log4j-core | 2.12.2 |
| Critical | GHSA-f58c-gq56-vjjf | tika-parsers | 2.0.0 |
| Critical | GHSA-f58c-gq56-vjjf | tika-core | 3.2.2 |
| Critical | GHSA-7rjr-3q55-vv33KEV | log4j-core | 2.12.2 |
| Critical | GHSA-p6xc-xr62-6r2g | log4j-core | 2.12.3 |
| Critical | GHSA-754f-8gm6-c4r2 | ruby-saml | 1.12.4 |
| Critical | GHSA-mjmj-j48q-9wg2 | snakeyaml | 2.0 |
| Critical | GHSA-p72g-pv48-7w9x | tika-parsers | 2.0.0-ALPHA |
| High | GHSA-8489-44mv-ggj8 | log4j-core | 2.12.4 |
| High | GHSA-xr9x-r78c-5hrm | activestorage | 7.2.3.2 |
| High | GHSA-jc36-42cf-vqwj | nokogiri | 1.13.4 |
| High | GHSA-q394-h7f5-7f44 | elasticsearch-rest-client | 7.13.4 |
| High | GHSA-4vc4-m8qh-g8jm | ruby-saml | 1.12.4 |
| High | GHSA-qwrx-45xf-jjf7 | elasticsearch | 7.17.13 |
| High | GHSA-59gp-qqm7-cw4j | nokogiri | 1.13.2 |
| High | GHSA-jw9c-mfg7-9rx2 | ruby-saml | 1.12.3 |
| High | GHSA-jvgm-pfqv-887x | bundler | 2.0.0 |
| High | GHSA-288c-cq4h-88gq | jackson-databind | 2.10.5.1 |
| High | GHSA-pg8v-g4xq-hww9 | rails-html-sanitizer | 1.4.3 |
| High | DLA-3570-1KEV | libwebp | 0.6.1-2+deb10u3 |
| High | DLA-3621-1KEV | nghttp2 | 1.36.0-2+deb10u2 |
| Medium | DSA-5169-1 | openssl | 1.1.1n-0+deb10u3 |
| Medium | DLA-3807-1 | glibc | 2.28-10+deb10u3 |
| Medium | DSA-4963-1 | openssl | 1.1.1d-0+deb10u7 |
| Medium | GHSA-mc84-pj99-q6hh | commons-compress | 1.21 |
| Medium | DLA-3804-1 | nghttp2 | 1.36.0-2+deb10u3 |
| Medium | DSA-5139-1 | openssl | 1.1.1n-0+deb10u2 |
| Medium | GHSA-22f2-v57c-j9cx | rack | 2.2.8.1 |
| Medium | GHSA-crv7-7245-f45f | commons-compress | 1.21 |
| Medium | GHSA-7hfm-57qf-j43q | commons-compress | 1.21 |
| Medium | DLA-3449-1 | openssl | 1.1.1n-0+deb10u5 |
| Medium | DSA-5103-1 | openssl | 1.1.1d-0+deb10u8 |
| Medium | GHSA-xqfj-vm6h-2x34 | commons-compress | 1.21 |
| Medium | GHSA-fp4w-jxhp-m23p | bundler | 2.2.10 |
| Medium | DSA-5140-1 | openldap | 2.4.47+dfsg-3+deb10u7 |
| Medium | GHSA-r4mg-4433-c7g3 | activestorage | 7.1.5.2 |
| Medium | DLA-3325-1 | openssl | 1.1.1n-0+deb10u4 |
| Medium | DSA-5111-1 | zlib | 1:1.2.11.dfsg-1+deb10u1 |
| Medium | GHSA-jphg-qwrw-7w9g | json | 2.3.0 |
| Medium | GHSA-w749-p3v6-hccq | activestorage | 5.2.6.3 |
| Medium | GHSA-9vjp-v76f-g363 | netty-codec | 4.1.68.Final |
| Medium | GHSA-grg4-wf29-r9vv | netty-codec | 4.1.68.Final |
| Medium | DSA-5085-1 | expat | 2.2.6-2+deb10u3 |
| Medium | GHSA-3hhc-qp5v-9p2j | activerecord | 5.2.8.1 |
| Medium | GHSA-v5h6-c2hv-hv3r | stringio | 3.0.1.1 |
| Medium | GHSA-8cr8-4vfw-mr7h | rexml | 3.2.5 |
| Medium | DLA-3085-1 | curl | 7.64.0-4+deb10u3 |
| Medium | GHSA-57j2-w4cx-62h2 | jackson-databind | 2.12.6.1 |
| Medium | GHSA-wq4h-7r42-5hrr | rack | 2.2.3.1 |
| Medium | GHSA-xh29-r2w5-wx8m | nokogiri | 1.13.6 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.0.5latest | 5 years ago | 1.6.9-debian-10-r169 | 813114226 | 6,110 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.