StackRadar

passbolt 0.5.2 Helm chart

g0dscookie

Scored 14 Sept 2026

The password manager your team was waiting for. Free, open source, self-hosted, extensible, OpenPGP based.

Version 0.5.2 3 years agoapp version 3.9.0-2 0Artifact Hub

passbolt 0.5.2 deploys 2 container images: library/mariadb and passbolt/passbolt. Across them, 656 findings5 critical, 13 high 4 on CISA KEV. The highest contribution is UBUNTU-CVE-2022-2068 in openssl 1.1.1f-1ubuntu2.17, fixed in 1.1.1f-1ubuntu2.fips.16.

Radar Score

7,94051399539

656 findings over 2 of 2 images measured

KEV ×4 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

2 images
ImageTagVulnerabilitiesRadar Score
library/mariadb×310.759743225,257
passbolt/passbolt3.9.0-2-ce-non-root04252172,683

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

523 distinct across the version’s images
SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-54371attr@1:2.4.48-51:2.4.48-5ubuntu0.1~esm1
LowUBUNTU-CVE-2026-29518rsync@3.1.3-8ubuntu0.53.1.3-8ubuntu0.9+esm1
LowGO-2026-4981stdlib@go1.14.41.25.10
LowGO-2025-3563stdlib@go1.14.41.23.8
LowDLA-4455-1python3.9@3.9.2-13.9.2-1+deb11u5
LowGO-2026-4977stdlib@go1.14.41.25.10
LowGO-2024-2610stdlib@go1.14.41.21.8
LowDLA-4315-1tiff@4.2.0-1+deb11u34.2.0-1+deb11u7
LowGO-2026-4986stdlib@go1.14.41.25.10
LowUBUNTU-CVE-2026-5704tar@1.30+dfsg-7ubuntu0.20.04.31.30+dfsg-7ubuntu0.20.04.4+esm3
LowGO-2026-4918stdlib@go1.14.41.25.10
LowGO-2026-4337stdlib@go1.14.41.24.13
LowUBUNTU-CVE-2021-33294elfutils@0.176-1.1build10.176-1.1ubuntu0.1
LowDLA-3951-1curl@7.74.0-1.3+deb11u57.74.0-1.3+deb11u14
LowGO-2026-4601stdlib@go1.14.41.25.8
LowDLA-3875-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u6
LowUBUNTU-CVE-2026-53798rsync@3.1.3-8ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-78410util-linux@2.34-0.1ubuntu9.3no fix listed
LowDSA-5424-1php7.4@7.4.33-1+deb11u17.4.33-1+deb11u4
LowGO-2026-5026stdlib@go1.14.41.25.13
LowUBUNTU-CVE-2025-14104util-linux@2.34-0.1ubuntu9.3no fix listed
LowDSA-5489-1file@1:5.39-31:5.39-3+deb11u1
LowUBUNTU-CVE-2026-42014gnutls28@3.6.13-2ubuntu1.83.6.13-2ubuntu1.12+esm3
LowGO-2025-3420stdlib@go1.14.41.22.11
LowGO-2026-4342stdlib@go1.14.41.24.12
LowGO-2024-2598stdlib@go1.14.41.21.8
LowGO-2025-3751stdlib@go1.14.41.23.10
LowUBUNTU-CVE-2026-78409util-linux@2.34-0.1ubuntu9.3no fix listed
LowDLA-4492-1gnutls28@3.7.1-5+deb11u23.7.1-5+deb11u9
LowUBUNTU-CVE-2024-13176openssl@1.1.1f-1ubuntu2.171.1.1f-1ubuntu2.24
LowUBUNTU-CVE-2025-52099sqlite3@3.31.1-4ubuntu0.53.31.1-4ubuntu0.7
LowGHSA-m557-wrgg-6rp4phpseclib/phpseclib@3.0.183.0.54
LowUBUNTU-CVE-2020-21047elfutils@0.176-1.1build10.176-1.1ubuntu0.1
LowDSA-5517-1libx11@2:1.7.2-12:1.7.2-1+deb11u2
LowDLA-4146-1libxml2@2.9.10+dfsg-6.7+deb11u32.9.10+dfsg-6.7+deb11u7
LowGO-2026-4870stdlib@go1.14.41.25.9
LowGO-2022-0532stdlib@go1.14.41.17.11
LowGO-2025-4009stdlib@go1.14.41.24.8
LowGO-2026-4947stdlib@go1.14.41.25.9
LowGO-2025-4006stdlib@go1.14.41.24.8
LowDLA-3930-1libsepol@3.1-13.1-1+deb11u1
LowUBUNTU-CVE-2025-29088sqlite3@3.31.1-4ubuntu0.53.31.1-4ubuntu0.7
LowGO-2026-5037stdlib@go1.14.41.25.11
LowUBUNTU-CVE-2026-40225systemd@245.4-4ubuntu3.21245.4-4ubuntu3.24+esm3
LowGO-2026-4971stdlib@go1.14.41.25.10
LowGHSA-2x45-7fc3-mxwqfirebase/php-jwt@v6.3.27.0.0
LowDLA-4092-1libcap2@1:2.44-11:2.44-1+deb11u1
LowGO-2026-5972stdlib@go1.14.41.25.13
LowGO-2026-6088stdlib@go1.14.41.25.13
LowGO-2026-6089stdlib@go1.14.41.25.13

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
0.5.2latest3 years ago3.9.0-2513995397,940

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/g0dscookie/passbolt.svg)](https://charts.stackradar.io/charts/g0dscookie/passbolt)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 7 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.