StackRadar

node-red 10.3.2 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

Node-RED is low-code programming for event-driven applications

Version 10.3.2 4 years agoapp version 2.2.2 0Artifact Hub

node-red 10.3.2 deploys 1 container image: nodered/node-red. Across them, 128 findings0 critical, 5 high. The highest contribution is ALPINE-CVE-2022-25236 in expat 2.2.10-r1, fixed in 2.2.10-r2. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

2,102054479

128 findings over 1 of 1 images measured

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
nodered/node-red2.2.20544792,102

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

128 distinct across the version’s images
SeverityAdvisoryPackageFixed in
HighALPINE-CVE-2022-25236expat@2.2.10-r12.2.10-r2
HighALPINE-CVE-2022-0778openssl@1.1.1l-r01.1.1n-r0
HighALPINE-CVE-2018-25032zlib@1.2.11-r31.2.12-r0
HighALPINE-CVE-2022-37434zlib@1.2.11-r31.2.12-r2
HighGHSA-w573-4hg7-7wgqdecode-uri-component@0.2.00.2.1
MediumGHSA-hrpp-h998-j3ppqs@6.5.26.5.3
MediumALPINE-CVE-2022-25235expat@2.2.10-r12.2.10-r2
MediumALPINE-CVE-2022-25315expat@2.2.10-r12.2.10-r2
MediumGHSA-2p57-rm9w-gvfpip@1.1.5no fix listed
MediumGHSA-xvch-5gv4-984hminimist@1.2.51.2.6
MediumGHSA-896r-f27r-55mwjson-schema@0.2.30.4.0
MediumALPINE-CVE-2022-1271xz@5.2.5-r05.2.5-r1
MediumALPINE-CVE-2022-28391busybox@1.31.1-r211.31.1-r22
MediumGHSA-8hfj-j24r-96c4moment@2.29.12.29.2
MediumGHSA-wc69-rhjr-hc9gmoment@2.29.12.29.4
MediumALPINE-CVE-2022-25314expat@2.2.10-r12.2.10-r2
MediumGHSA-93q8-gq69-wqmwansi-regex@3.0.03.0.1
MediumGHSA-fjxv-7rqg-78g4form-data@4.0.04.0.4
MediumGHSA-wm7h-9275-46v2dicer@0.2.5no fix listed
MediumGHSA-fqg8-vfv7-8fj8jsonata@1.8.61.8.7
MediumALPINE-CVE-2022-27775curl@7.79.1-r07.79.1-r1
MediumALPINE-CVE-2021-40330git@2.26.3-r02.26.3-r1
MediumGHSA-c2qf-rxjj-qqgwsemver@7.3.57.5.2
MediumGHSA-43fc-jf86-j433axios@0.26.00.30.3
MediumALPINE-CVE-2022-22576curl@7.79.1-r07.79.1-r1
MediumALPINE-CVE-2022-27776curl@7.79.1-r07.79.1-r1
MediumALPINE-CVE-2022-25313expat@2.2.10-r12.2.10-r2
MediumGHSA-f8q6-p94x-37v3minimatch@3.0.43.0.5
MediumGHSA-72xf-g2v4-qvf3tough-cookie@2.4.34.1.3
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@3.8.14.1.1
MediumGHSA-3h5v-q93c-6h6qws@7.5.67.5.10
MediumGHSA-pjwm-pj3p-43mvaxios@0.26.00.32.0
MediumGHSA-66mm-25pp-rfffjsonata@1.8.61.8.8
MediumGHSA-jr5f-v2jv-69x6axios@0.26.00.30.0
MediumGHSA-5528-5vmv-3xc2multer@1.4.42.1.1
MediumGHSA-v52c-386h-88mcmulter@1.4.42.1.0
MediumGHSA-xf7r-hgr6-v32pmulter@1.4.42.1.0
MediumGHSA-8gq3-vp5j-2grpjsonata@1.8.61.8.8
MediumGHSA-37ch-88jc-xwx2path-to-regexp@0.1.70.1.13
MediumGHSA-9wv6-86v2-598jpath-to-regexp@0.1.70.1.10
MediumGHSA-3xgq-45jj-v275cross-spawn@5.1.06.0.6
MediumGHSA-p92q-9vqr-4j8vaxios@0.26.00.32.0
MediumGHSA-pfrx-2q88-qq97got@11.8.311.8.5
MediumGHSA-qwcr-r2fm-qrc7body-parser@1.19.11.20.3
MediumGHSA-2943-5xfg-gq5fjsonata@1.8.61.8.8
MediumGHSA-96hv-2xvq-fx4pws@7.5.67.5.11
MediumGHSA-3ppc-4f35-3m26minimatch@3.1.23.1.3
MediumGHSA-pf86-5x62-jrwfaxios@0.26.00.31.1
MediumGHSA-4pg4-qvpc-4q3hmulter@1.4.42.0.0
LowGHSA-vcc3-ghjq-m6frdecode-uri-component@0.2.00.5.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
10.3.2latest4 years ago2.2.20544792,102

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/node-red.svg)](https://charts.stackradar.io/charts/geek-cookbook/node-red)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.