StackRadar

drogue-cloud-examples Helm chart

drogue-iotVerified publisher

Scored 14 Sept 2026

Installation of examples on top of Drogue IoT Cloud

Latest 0.7.11 3 years agodeploys tag 9.2.4 0Artifact Hub

drogue-cloud-examples 0.7.11 deploys 6 container images: ghcr.io/ctron/kubectl, grafana/grafana, ghcr.io/drogue-iot/postgresql-pusher, ghcr.io/drogue-iot/drogue-event-source and 2 more. Across the 5 measured, 2,299 findings21 critical, 56 high 12 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 3.0.2-0ubuntu1.2, fixed in 3.0.2-0ubuntu1.5. Chart.yaml declares kubeVersion >= 1.22.0-0; rendered for Kubernetes 1.22.0.

Radar Score

30,69921564671,755

2,299 findings over 5 of 6 images measured

KEV ×12 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

6 images
ImageTagVulnerabilitiesRadar Score
ghcr.io/ctron/kubectl1.2526321632,528
grafana/grafana9.2.406371982,839
ghcr.io/drogue-iot/postgresql-pusher0.2.141145662,637
ghcr.io/drogue-iot/drogue-event-source0.2.141145662,637
timescale/timescaledb-ha×2pg14-ts2.6-latest11223081,26220,058
bitnami/postgresql14unmeasured

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,869 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowGO-2025-3814github.com/grafana/grafana@v9.2.4no fix listed
LowRHSA-2026:33126glibc@2.28-236.el8_9.120:2.28-251.el8_10.38
LowUBUNTU-CVE-2023-26965tiff@4.3.0-64.3.0-6ubuntu0.5
LowUBUNTU-CVE-2026-19487perl@5.34.0-3ubuntu15.34.0-3ubuntu1.9
LowRHSA-2026:13285libcap@2.48-6.el8_90:2.48-6.el8_10.1
LowUBUNTU-CVE-2026-4878libcap2@1:2.44-1build31:2.44-1ubuntu0.22.04.3
LowUBUNTU-CVE-2024-21134mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.39-0ubuntu0.22.04.1
LowUBUNTU-CVE-2022-48468protobuf-c@1.3.3-1ubuntu2no fix listed
LowUBUNTU-CVE-2025-2153hdf5@1.10.7+repack-4ubuntu2no fix listed
LowGHSA-9m57-25v3-79x9golang.org/x/crypto@v0.14.00.52.0
LowUBUNTU-CVE-2025-50084mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2025-50086mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowGHSA-65pc-fj4g-8rjxidna@3.33.15
LowUBUNTU-CVE-2026-45409python-idna@3.3-13.3-1ubuntu0.2
LowGO-2023-2041stdlib@go1.19.31.20.8
LowUBUNTU-CVE-2025-2308hdf5@1.10.7+repack-4ubuntu2no fix listed
LowUBUNTU-CVE-2026-86095netcdf@1:4.8.1-1no fix listed
LowGHSA-9wx4-h78v-vm56requests@2.25.12.32.0
LowUBUNTU-CVE-2024-35195requests@2.25.1+dfsg-2no fix listed
LowUBUNTU-CVE-2025-2310hdf5@1.10.7+repack-4ubuntu2no fix listed
LowRHSA-2025:3828glibc@2.28-236.el8_9.120:2.28-251.el8_10.16
LowGO-2023-2043stdlib@go1.19.31.20.8
LowUBUNTU-CVE-2025-4373glib2.0@2.72.1-12.72.4-0ubuntu2.5
LowUBUNTU-CVE-2024-25629c-ares@1.18.1-1build11.18.1-1ubuntu0.22.04.3
LowUBUNTU-CVE-2023-3576tiff@4.3.0-64.3.0-6ubuntu0.7
LowGO-2022-0515stdlib@go1.15.61.17.12
LowGO-2023-2186stdlib@go1.20.101.20.11
LowPYSEC-2025-183pyjwt@2.3.0no fix listed
LowUBUNTU-CVE-2024-4317postgresql-14@14.3-1.pgdg22.04+114.12-0ubuntu0.22.04.1
LowUBUNTU-CVE-2023-25435tiff@4.3.0-64.3.0-6ubuntu0.4
LowUBUNTU-CVE-2025-50094mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2025-53023mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2024-10976postgresql-14@14.3-1.pgdg22.04+114.15-0ubuntu0.22.04.1
LowGO-2024-2848github.com/grafana/grafana@v9.2.4no fix listed
LowRHSA-2026:20587glibc@2.28-236.el8_9.120:2.28-251.el8_10.37
LowUBUNTU-CVE-2023-6135nss@2:3.68.2-0ubuntu12:3.98-0ubuntu0.22.04.1
LowGO-2024-3333golang.org/x/net@v0.17.00.33.0
LowUBUNTU-CVE-2026-33947jq@1.6-2.1ubuntu31.6-2.1ubuntu3.2
LowUBUNTU-CVE-2026-78408util-linux@2.37.2-4ubuntu3no fix listed
LowUBUNTU-CVE-2025-50099mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2025-50102mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2024-56826openjpeg2@2.4.0-62.4.0-6ubuntu0.3
LowGHSA-jpcw-4wr7-c3vqgithub.com/getkin/kin-openapi@v0.94.00.144.0
LowUBUNTU-CVE-2022-21592mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.30-0ubuntu0.22.04.1
LowUBUNTU-CVE-2026-48525pyjwt@2.3.0-1no fix listed
LowUBUNTU-CVE-2025-50097mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowUBUNTU-CVE-2025-50101mysql-8.0@8.0.29-0ubuntu0.22.04.28.0.43-0ubuntu0.22.04.1
LowRHSA-2026:43420acl@2.2.53-1.el80:2.4.0-1.el8_10
LowUBUNTU-CVE-2026-54369acl@2.3.1-1no fix listed
LowUBUNTU-CVE-2026-41989libgcrypt20@1.9.4-3ubuntu31.9.4-3ubuntu3.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.7.11latest3 years ago9.2.421564671,75530,699

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/drogue-iot/drogue-cloud-examples.svg)](https://charts.stackradar.io/charts/drogue-iot/drogue-cloud-examples)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.