elchi-stack 2.0.4 Helm chart
elchiScored 11 Oct 2026
A comprehensive Helm chart for deploying Elchi proxy management platform with UI, controller, control plane and registry components
Version 2.0.4 yesterdayapp version v1.6.20 1Artifact Hub
elchi-stack 2.0.4 deploys 10 container images: library/busybox, jhonbrownn/elchi-backend, jhonbrownn/elchi-collector, jhonbrownn/elchi and 6 more. Across them, 1,331 findings — 12 critical, 24 high — 1 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.23, fixed in 1.1.1f-1ubuntu2.fips.16. Chart.yaml declares kubeVersion >=1.21.0-0; rendered for Kubernetes 1.21.0.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Container images
| Image | Tag | Vulnerabilities | Radar Score |
|---|---|---|---|
| library/ | 1.28 | 0000 | 0 |
| jhonbrownn/ | v1.6.20-v0.14.0-envoy1.39.3 | 0001 | 4 |
| jhonbrownn/ | v0.1.15 | 0001 | 4 |
| jhonbrownn/ | v1.5.35 | 0005 | 57 |
| envoyproxy/ | v1.39.3 | 123483 | 1,571 |
| grafana/ | 12.2.0 | 1052160 | 2,571 |
| otel/ | 0.89.0 | 2340149 | 2,521 |
| clickhouse/ | 24.8 | 3850147 | 3,095 |
| library/ | 6.0.12 | 38112341 | 6,032 |
| victoriametrics/ | v1.93.5 | 232793 | 1,819 |
Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.
Low findings
Low: findings whose contribution to the Radar Score is 1–14. Show every band
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | UBUNTU-CVE-2026-0968 | libssh | 0.9.6-2ubuntu0.22.04.6 |
| Low | GO-2026-4403 | stdlib | 1.23.9 |
| Low | UBUNTU-CVE-2026-43895 | jq | no fix listed |
| Low | UBUNTU-CVE-2026-77696 | openssl | no fix listed |
| Low | UBUNTU-CVE-2026-27456 | util-linux | no fix listed |
| Low | UBUNTU-CVE-2025-8277 | libssh | 0.9.6-2ubuntu0.22.04.6 |
| Low | USN-8775-1 | sqlite3 | 3.37.2-2ubuntu0.8 |
| Low | UBUNTU-CVE-2026-18508 | tar | no fix listed |
| Low | UBUNTU-CVE-2022-3219 | gnupg2 | no fix listed |
| Low | UBUNTU-CVE-2026-102474 | dash | no fix listed |
| Low | UBUNTU-CVE-2025-4878 | libssh | 0.9.6-2ubuntu0.22.04.4 |
| Low | ALPINE-CVE-2025-69418 | openssl | 3.5.5-r0 |
| Low | UBUNTU-CVE-2025-69418 | openssl | no fix listed |
| Low | UBUNTU-CVE-2024-22412 | clickhouse | no fix listed |
| Low | UBUNTU-CVE-2025-9403 | jq | no fix listed |
| Low | UBUNTU-CVE-2026-89156 | pcre2 | no fix listed |
| Low | UBUNTU-CVE-2026-59846 | libssh | 0.9.6-2ubuntu0.22.04.8 |
| Low | USN-8709-1 | ncurses | 6.2-0ubuntu2.1+esm2 |
| Low | UBUNTU-CVE-2026-18477 | tar | no fix listed |
| Low | GHSA-xjvp-4fhw-gc47 | github.com/ | 1.3.6 |
| Low | ALPINE-CVE-2025-46394 | busybox | 1.37.0-r20 |
| Low | GO-2026-5932 | golang.org/ | no fix listed |
| Low | USN-5495-2 | curl | 7.81.0-1ubuntu1.21 |
| Low | USN-6663-1 | openssl | 3.0.2-0ubuntu1.15 |
| Low | USN-7034-1 | ca-certificates | 20240203~22.04.1 |
| Low | USN-7412-2 | gnupg2 | 2.2.27-3ubuntu2.4 |
| Low | USN-8091-1 | util-linux | 2.34-0.1ubuntu9.6+esm1 |
| Low | USN-8436-1 | ca-certificates | 20260601~22.04.1 |
| Low | USN-8543-2 | wget | 1.20.3-1ubuntu2.1+esm4 |
| Low | USN-8625-1 | openssl | 3.0.2-0ubuntu1.26 |
| Low | USN-8688-1 | pam | 1.3.1-5ubuntu4.7+esm1 |
| Low | UBUNTU-CVE-2026-95818 | glibc | no fix listed |
| Low | GHSA-j88v-2chj-qfwx | github.com/ | no fix listed |
| Low | GHSA-j88v-2chj-qfwx | github.com/ | 5.9.2 |
| Low | UBUNTU-CVE-2026-105712 | gnupg2 | no fix listed |
| Low | GO-2026-5024 | golang.org/ | 0.44.0 |
| Low | UBUNTU-CVE-2026-0965 | libssh | 0.9.6-2ubuntu0.22.04.6 |
| Low | GHSA-4vq8-7jfc-9cvp | github.com/ | 25.0.13 |
| Low | UBUNTU-CVE-2026-89162 | pcre2 | no fix listed |
| Low | GO-2022-0635 | github.com/ | no fix listed |
| Low | UBUNTU-CVE-2026-40228 | systemd | no fix listed |
| Low | ALPINE-CVE-2024-58251 | busybox | 1.37.0-r20 |
| Low | UBUNTU-CVE-2026-0967 | libssh | 0.9.6-2ubuntu0.22.04.6 |
| Low | GO-2026-4602 | stdlib | 1.25.8 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | GHSA-8wmf-6v46-5gfg | go.opentelemetry.io/ | 1.45.0 |
| Low | UBUNTU-CVE-2026-6368 | glibc | no fix listed |
Indexed versions
| Version | Published | App version | Vulnerabilities | Radar Score |
|---|---|---|---|---|
| 2.0.4latest | yesterday | v1.6.20 | 1224315980 | 17,674 |
| 2.0.2 | 2 days ago | v1.6.19 | 12243151,016 | 17,922 |
| 2.0.0 | 17 days ago | v1.6.16 | 12243221,040 | 18,376 |
| 1.13.0 | 2 months ago | v1.6.14 | 11263321,092 | 19,016 |
The latest version and the previous major, as selected nightly from the repository’s index.
README badge
Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.