dnation-kubernetes-monitoring-stack 4.0.3 Helm chart
dnationcloudScored 20 Sept 2026
An umbrella helm chart for Kubernetes monitoring based on kube-prometheus-stack, thanos, loki, promtail and dnation-kubernetes-monitoring
Version 4.0.3 2 days agodeploys tag v1.12.1-distroless 0Artifact Hub
dnation-kubernetes-monitoring-stack 4.0.3 deploys 17 container images: quay.io/prometheus/node-exporter, grafana/loki-canary, grafana/promtail, dnationcloud/kubernetes-jsonnet-translator and 13 more. Across them, 2,013 findings — 10 critical, 39 high — 10 on CISA KEV. The highest contribution is RHSA-2024:2722 in glibc 2.28-189.5.el8_6, fixed in 0:2.28-236.el8_9.13.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| quay.io/ | v1.12.1-distroless | 00012 | 78 |
| grafana/ | 3.2.0 | 0017122 | 1,315 |
| grafana/ | 3.0.0 | 0214141 | 1,502 |
| dnationcloud/ | 2.0.1 | 0272258 | 3,872 |
| quay.io/ | 2.8.1 | 001025 | 446 |
| grafana/ | 13.1.0 | 0014100 | 1,101 |
| registry.k8s.io/ | v2.19.1 | 00027 | 177 |
| quay.io/ | v0.92.1 | 00025 | 160 |
| nginxinc/ | 1.27-alpine | 012065 | 990 |
| grafana/ | 3.2.0 | 0017128 | 1,370 |
| bitnamilegacy/ | 0.37.1-debian-12-r0 | 0010107 | 978 |
| quay.io/ | RELEASE.2022-10-24T18-35-07Z | 51669243 | 4,995 |
| kiwigrid/ | 1.28.0 | 022144 | 880 |
| library/ | 1.6.32-alpine | 011116 | 382 |
| prom/ | v0.15.0 | 00886 | 783 |
| ghcr.io/ | 1.8.4 | 00011 | 74 |
| quay.io/ | RELEASE.2022-10-20T23-26-33Z | 51564207 | 4,440 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Vulnerabilities
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Medium | GHSA-vgwf-h737-ff37 | golang.org/ | 0.52.0 |
| Medium | RHSA-2023:1140 | curl | 0:7.61.1-25.el8_7.3 |
| Medium | ALPINE-CVE-2024-9143 | openssl | 3.3.2-r1 |
| Medium | DEBIAN-CVE-2024-9143 | openssl | 3.0.15-1~deb12u1 |
| Medium | ALPINE-CVE-2026-34182 | openssl | 3.3.7-r1 |
| Medium | DEBIAN-CVE-2026-34182 | openssl | 3.0.20-1~deb12u2 |
| Medium | GHSA-f5wc-c3c7-36mc | golang.org/ | 0.52.0 |
| Medium | RHSA-2023:0116 | libtasn1 | 0:4.13-4.el8_7 |
| Medium | ALPINE-CVE-2026-33416 | libpng | 1.6.56-r0 |
| Medium | ALPINE-CVE-2026-34183 | openssl | 3.5.7-r0 |
| Medium | RHSA-2023:5249 | ncurses | 0:6.1-9.20180224.el8_8.1 |
| Medium | ALPINE-CVE-2026-31790 | openssl | 3.3.7-r0 |
| Medium | DEBIAN-CVE-2026-31790 | openssl | 3.0.19-1~deb12u2 |
| Medium | DEBIAN-CVE-2025-32990 | gnutls28 | 3.7.9-2+deb12u5 |
| Medium | ALPINE-CVE-2026-34180 | openssl | 3.5.7-r0 |
| Medium | DEBIAN-CVE-2026-34180 | openssl | 3.0.20-1~deb12u2 |
| Medium | RHSA-2025:11327 | glib2 | 0:2.56.4-166.el8_10 |
| Medium | RHSA-2025:14988 | glib2 | 0:2.56.4-158.el8_6.2 |
| Medium | ALPINE-CVE-2025-31115 | xz | 5.6.2-r1 |
| Medium | DEBIAN-CVE-2025-31115 | xz-utils | 5.4.1-1 |
| Medium | RHBA-2024:5736 | ca-certificates | 0:2024.2.69_v8.0.303-80.0.el8_10 |
| Medium | DEBIAN-CVE-2024-2379 | curl | no fix listed |
| Medium | ALPINE-CVE-2026-7383 | openssl | 3.5.7-r0 |
| Medium | DEBIAN-CVE-2026-7383 | openssl | 3.0.20-1~deb12u2 |
| Medium | DEBIAN-CVE-2026-8376 | perl | no fix listed |
| Medium | ALPINE-CVE-2026-14457 | openssl | 3.5.8-r0 |
| Medium | ALPINE-CVE-2025-9232 | openssl | 3.3.5-r0 |
| Medium | DEBIAN-CVE-2025-9232 | openssl | 3.0.17-1~deb12u3 |
| Medium | ALPINE-CVE-2026-66046 | expat | 2.8.4-r0 |
| Medium | DEBIAN-CVE-2026-66046 | expat | no fix listed |
| Medium | DEBIAN-CVE-2026-5260 | gnutls28 | 3.7.9-2+deb12u7 |
| Medium | GHSA-rm3j-f69w-wqmq | golang.org/ | 0.52.0 |
| Medium | RHSA-2023:7409 | glibc | 0:2.28-189.8.el8_6 |
| Medium | ALPINE-CVE-2026-80231 | curl | 8.22.0-r0 |
| Medium | GHSA-58pv-8j8x-9vj2 | jaraco-context | 6.1.0 |
| Medium | GHSA-hcg3-q754-cr77 | golang.org/ | 0.35.0 |
| Medium | RHSA-2026:26354 | libxml2 | 0:2.9.7-21.el8_10.5 |
| Medium | ALPINE-CVE-2026-80229 | curl | 8.22.0-r0 |
| Medium | ALPINE-CVE-2025-69421 | openssl | 3.3.6-r0 |
| Medium | DEBIAN-CVE-2025-69421 | openssl | 3.0.18-1~deb12u2 |
| Medium | ALPINE-CVE-2026-8927 | curl | 8.21.0-r0 |
| Medium | DEBIAN-CVE-2026-8927 | curl | no fix listed |
| Medium | ALPINE-CVE-2026-28388 | openssl | 3.3.7-r0 |
| Medium | DEBIAN-CVE-2026-28388 | openssl | 3.0.19-1~deb12u2 |
| Medium | RHSA-2023:4523 | curl | 0:7.61.1-30.el8_8.3 |
| Medium | GO-2022-1144 | stdlib | 1.18.9 |
| Medium | GHSA-6v2p-p543-phr9 | golang.org/ | 0.27.0 |
| Medium | ALPINE-CVE-2026-28387 | openssl | 3.3.7-r0 |
| Medium | DEBIAN-CVE-2026-28387 | openssl | 3.0.19-1~deb12u2 |
| Medium | RHSA-2025:17415 | gnutls | 0:3.6.16-8.el8_10.4 |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 4.0.3latest | 2 days ago | v1.12.1-distroless | 10393471,617 | 23,543 |
| 4.0.2 | 19 days ago | v1.12.1-distroless | 10373331,476 | 22,041 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.