dnation-kubernetes-monitoring-stack 4.0.3 Helm chart
dnationcloudScored 20 Sept 2026
An umbrella helm chart for Kubernetes monitoring based on kube-prometheus-stack, thanos, loki, promtail and dnation-kubernetes-monitoring
Version 4.0.3 2 days agodeploys tag v1.12.1-distroless 0Artifact Hub
dnation-kubernetes-monitoring-stack 4.0.3 deploys 17 container images: quay.io/prometheus/node-exporter, grafana/loki-canary, grafana/promtail, dnationcloud/kubernetes-jsonnet-translator and 13 more. Across them, 2,013 findings — 10 critical, 39 high — 10 on CISA KEV. The highest contribution is RHSA-2024:2722 in glibc 2.28-189.5.el8_6, fixed in 0:2.28-236.el8_9.13.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | v1.12.1-distroless | 00012 | 78 |
| grafana/ | 3.2.0 | 0017122 | 1,315 |
| grafana/ | 3.0.0 | 0214141 | 1,502 |
| dnationcloud/ | 2.0.1 | 0272258 | 3,872 |
| quay.io/ | 2.8.1 | 001025 | 446 |
| grafana/ | 13.1.0 | 0014100 | 1,101 |
| registry.k8s.io/ | v2.19.1 | 00027 | 177 |
| quay.io/ | v0.92.1 | 00025 | 160 |
| nginxinc/ | 1.27-alpine | 012065 | 990 |
| grafana/ | 3.2.0 | 0017128 | 1,370 |
| bitnamilegacy/ | 0.37.1-debian-12-r0 | 0010107 | 978 |
| quay.io/ | RELEASE.2022-10-24T18-35-07Z | 51669243 | 4,995 |
| kiwigrid/ | 1.28.0 | 022144 | 880 |
| library/ | 1.6.32-alpine | 011116 | 382 |
| prom/ | v0.15.0 | 00886 | 783 |
| ghcr.io/ | 1.8.4 | 00011 | 74 |
| quay.io/ | RELEASE.2022-10-20T23-26-33Z | 51564207 | 4,440 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2018-5709 | krb5 | no fix listed |
| Medium | GHSA-xrjj-mj9h-534m | golang.org/ | 0.4.0 |
| Medium | DEBIAN-CVE-2024-28757 | expat | no fix listed |
| Medium | DEBIAN-CVE-2023-2953 | openldap | no fix listed |
| Medium | RHSA-2022:7105 | gnutls | 0:3.6.16-5.el8_6 |
| Medium | RHSA-2024:5312 | krb5 | 0:1.18.2-29.el8_10 |
| Medium | RHSA-2024:5625 | krb5 | 0:1.18.2-16.el8_6.1 |
| Medium | DEBIAN-CVE-2023-52425 | expat | 2.5.0-1+deb12u2 |
| Medium | GHSA-fxg5-wq6x-vr4w | golang.org/ | 0.1.1-0.20221104162952-702349b0e862 |
| Medium | DEBIAN-CVE-2018-6829 | libgcrypt20 | no fix listed |
| Medium | RHSA-2026:20611 | gnutls | 0:3.6.16-8.el8_10.6 |
| Medium | RHSA-2026:30849 | gnutls | 0:3.6.16-5.el8_6.5 |
| Medium | RHSA-2026:30849 | libtasn1 | 0:4.13-3.el8_6.2 |
| Medium | DEBIAN-CVE-2025-32988 | gnutls28 | 3.7.9-2+deb12u5 |
| Medium | RHSA-2024:4264 | openldap | 0:2.4.46-19.el8_10 |
| Medium | RHSA-2024:0627 | gnutls | 0:3.6.16-8.el8_9.1 |
| Medium | RHSA-2024:8922 | bzip2 | 0:1.0.6-27.el8_10 |
| Medium | ALPINE-CVE-2026-18924 | curl | 8.22.0-r0 |
| Medium | DEBIAN-CVE-2026-18924 | curl | no fix listed |
| Medium | RHSA-2022:7108 | sqlite | 0:3.26.0-16.el8_6 |
| Medium | ALPINE-CVE-2025-9230 | openssl | 3.3.5-r0 |
| Medium | DEBIAN-CVE-2025-9230 | openssl | 3.0.17-1~deb12u3 |
| Medium | ALPINE-CVE-2026-11856 | curl | 8.21.0-r0 |
| Medium | DEBIAN-CVE-2026-11856 | curl | no fix listed |
| Medium | PYSEC-2023-192 | urllib3 | 2.0.6 |
| Medium | ALPINE-CVE-2026-8925 | curl | 8.21.0-r0 |
| Medium | ALPINE-CVE-2024-12797 | openssl | 3.3.3-r0 |
| Medium | ALPINE-CVE-2025-49794 | libxml2 | 2.13.9-r0 |
| Medium | RHSA-2025:2513 | libxml2 | 0:2.9.7-13.el8_6.8 |
| Medium | RHSA-2025:2686 | libxml2 | 0:2.9.7-19.el8_10 |
| Medium | ALPINE-CVE-2026-18798 | openssl | 3.5.8-r0 |
| Medium | ALPINE-CVE-2025-9231 | openssl | 3.3.5-r0 |
| Medium | GO-2026-5757 | github.com/ | no fix listed |
| Medium | DEBIAN-CVE-2026-33845 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | DEBIAN-CVE-2011-3389 | gnutls28 | no fix listed |
| Medium | GO-2026-4887 | github.com/ | no fix listed |
| Medium | RHSA-2024:3299 | libxml2 | 0:2.9.7-13.el8_6.5 |
| Medium | ALPINE-CVE-2025-6021 | libxml2 | 2.13.9-r0 |
| Medium | RHSA-2024:3344 | glibc | 0:2.28-251.el8_10.2 |
| Medium | RHSA-2023:1569 | gnutls | 0:3.6.16-6.el8_7 |
| Medium | ALPINE-CVE-2026-63076 | openssl | 3.3.7-r1 |
| Medium | DEBIAN-CVE-2026-63076 | openssl | no fix listed |
| Medium | DEBIAN-CVE-2026-42009 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | ALPINE-CVE-2026-10536 | curl | 8.21.0-r0 |
| Medium | DEBIAN-CVE-2026-10536 | curl | no fix listed |
| Medium | ALPINE-CVE-2024-8176 | expat | 2.7.0-r0 |
| Medium | DEBIAN-CVE-2024-8176 | expat | 2.5.0-1+deb12u2 |
| Medium | ALPINE-CVE-2025-59375 | expat | 2.7.2-r0 |
| Medium | DEBIAN-CVE-2025-59375 | expat | no fix listed |
| Medium | ALPINE-CVE-2026-9079 | curl | 8.21.0-r0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.0.3latest | 2 days ago | v1.12.1-distroless | 10393471,617 | 23,543 |
| 4.0.2 | 19 days ago | v1.12.1-distroless | 10373331,476 | 22,041 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.