dnation-kubernetes-monitoring-stack 4.0.3 Helm chart
dnationcloudScored 20 Sept 2026
An umbrella helm chart for Kubernetes monitoring based on kube-prometheus-stack, thanos, loki, promtail and dnation-kubernetes-monitoring
Version 4.0.3 2 days agodeploys tag v1.12.1-distroless 0Artifact Hub
dnation-kubernetes-monitoring-stack 4.0.3 deploys 17 container images: quay.io/prometheus/node-exporter, grafana/loki-canary, grafana/promtail, dnationcloud/kubernetes-jsonnet-translator and 13 more. Across them, 2,013 findings — 10 critical, 39 high — 10 on CISA KEV. The highest contribution is RHSA-2024:2722 in glibc 2.28-189.5.el8_6, fixed in 0:2.28-236.el8_9.13.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | v1.12.1-distroless | 00012 | 78 |
| grafana/ | 3.2.0 | 0017122 | 1,315 |
| grafana/ | 3.0.0 | 0214141 | 1,502 |
| dnationcloud/ | 2.0.1 | 0272258 | 3,872 |
| quay.io/ | 2.8.1 | 001025 | 446 |
| grafana/ | 13.1.0 | 0014100 | 1,101 |
| registry.k8s.io/ | v2.19.1 | 00027 | 177 |
| quay.io/ | v0.92.1 | 00025 | 160 |
| nginxinc/ | 1.27-alpine | 012065 | 990 |
| grafana/ | 3.2.0 | 0017128 | 1,370 |
| bitnamilegacy/ | 0.37.1-debian-12-r0 | 0010107 | 978 |
| quay.io/ | RELEASE.2022-10-24T18-35-07Z | 51669243 | 4,995 |
| kiwigrid/ | 1.28.0 | 022144 | 880 |
| library/ | 1.6.32-alpine | 011116 | 382 |
| prom/ | v0.15.0 | 00886 | 783 |
| ghcr.io/ | 1.8.4 | 00011 | 74 |
| quay.io/ | RELEASE.2022-10-20T23-26-33Z | 51564207 | 4,440 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Medium findings
Medium: findings whose contribution to the Radar Score is 15–39. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | DEBIAN-CVE-2026-33846 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | GHSA-8r3f-844c-mc37 | google.golang.org/ | 1.33.0 |
| Medium | RHSA-2026:8534 | libarchive | 0:3.3.3-7.el8_10 |
| Medium | RHSA-2026:8908 | libarchive | 0:3.3.3-6.el8_6.1 |
| Medium | ALPINE-CVE-2026-25646 | libpng | 1.6.55-r0 |
| Medium | RHSA-2023:2963 | curl | 0:7.61.1-30.el8 |
| Medium | RHSA-2024:0428 | curl | 0:7.61.1-22.el8_6.12 |
| Medium | GHSA-x527-x647-q7gg | golang.org/ | 0.52.0 |
| Medium | GHSA-cvx7-x8pj-x2gw | github.com/ | 1.12.2 |
| Medium | ALPINE-CVE-2026-8924 | curl | 8.21.0-r0 |
| Medium | DEBIAN-CVE-2026-8924 | curl | no fix listed |
| Medium | DEBIAN-CVE-2025-0725 | curl | no fix listed |
| Medium | ALPINE-CVE-2026-42764 | openssl | 3.5.7-r0 |
| Medium | GHSA-wf45-q9ch-q8gh | github.com/ | 0.23.0 |
| Medium | DEBIAN-CVE-2023-7104 | sqlite3 | 3.40.1-2+deb12u1 |
| Medium | RHSA-2024:0253 | sqlite | 0:3.26.0-19.el8_9 |
| Medium | DEBIAN-CVE-2025-13151 | libtasn1-6 | no fix listed |
| Medium | RHSA-2023:3018 | libarchive | 0:3.3.3-5.el8 |
| Medium | GHSA-2xpw-w6gg-jr37 | urllib3 | 2.6.0 |
| Medium | GHSA-gm62-xv2j-4w53 | urllib3 | 2.6.0 |
| Medium | DEBIAN-CVE-2024-26461 | krb5 | no fix listed |
| Medium | DEBIAN-CVE-2019-1010024 | glibc | no fix listed |
| Medium | DEBIAN-CVE-2026-5450 | glibc | no fix listed |
| Medium | GHSA-h75p-j8xm-m278 | github.com/ | 1.14.2 |
| Medium | GHSA-vgwf-h737-ff37 | golang.org/ | 0.52.0 |
| Medium | RHSA-2023:1140 | curl | 0:7.61.1-25.el8_7.3 |
| Medium | ALPINE-CVE-2024-9143 | openssl | 3.3.2-r1 |
| Medium | DEBIAN-CVE-2024-9143 | openssl | 3.0.15-1~deb12u1 |
| Medium | ALPINE-CVE-2026-34182 | openssl | 3.3.7-r1 |
| Medium | DEBIAN-CVE-2026-34182 | openssl | 3.0.20-1~deb12u2 |
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | RHSA-2023:0116 | libtasn1 | 0:4.13-4.el8_7 |
| Medium | ALPINE-CVE-2026-33416 | libpng | 1.6.56-r0 |
| Medium | ALPINE-CVE-2026-34183 | openssl | 3.5.7-r0 |
| Medium | RHSA-2023:5249 | ncurses | 0:6.1-9.20180224.el8_8.1 |
| Medium | ALPINE-CVE-2026-31790 | openssl | 3.3.7-r0 |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2025-32990 | gnutls28 | 3.7.9-2+deb12u5 |
| Medium | ALPINE-CVE-2026-34180 | openssl | 3.5.7-r0 |
| Medium | DEBIAN-CVE-2026-34180 | openssl | 3.0.20-1~deb12u2 |
| Medium | RHSA-2025:11327 | glib2 | 0:2.56.4-166.el8_10 |
| Medium | RHSA-2025:14988 | glib2 | 0:2.56.4-158.el8_6.2 |
| Medium | ALPINE-CVE-2025-31115 | xz | 5.6.2-r1 |
| Medium | DEBIAN-CVE-2025-31115 | xz-utils | 5.4.1-1 |
| Medium | RHBA-2024:5736 | ca-certificates | 0:2024.2.69_v8.0.303-80.0.el8_10 |
| Medium | DEBIAN-CVE-2024-2379 | curl | no fix listed |
| Medium | ALPINE-CVE-2026-7383 | openssl | 3.5.7-r0 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.0.20-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-8376 | perl | no fix listed |
| Medium | ALPINE-CVE-2026-14457 | openssl | 3.5.8-r0 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.0.3latest | 2 days ago | v1.12.1-distroless | 10393471,617 | 23,543 |
| 4.0.2 | 19 days ago | v1.12.1-distroless | 10373331,476 | 22,041 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.