StackRadar

openemr 5.2.0 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

OpenEMR is the most popular open source electronic health records and medical practice management solution.

Version 5.2.0 3 years agoapp version 6.1.0 0Artifact Hub

openemr 5.2.0 deploys 1 container image: openemr/openemr. Across them, 455 findings8 critical, 22 high 2 on CISA KEV. The highest contribution is ALPINE-CVE-2023-25690 in apache2 2.4.53-r0, fixed in 2.4.56-r0. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

8,392822203222

455 findings over 1 of 1 images measured

KEV ×2 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openemr/openemr6.1.08222032228,392

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

455 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumALPINE-CVE-2022-2097openssl@1.1.1n-r01.1.1q-r0
MediumGHSA-rc47-6667-2j5jhttp-cache-semantics@4.1.04.1.1
MediumGHSA-j8r2-6x86-q33qrequests@2.26.02.31.0
MediumGHSA-cwmx-hcrq-mhc3guzzlehttp/guzzle@7.4.17.4.3
MediumALPINE-CVE-2022-27446mariadb@10.6.7-r010.6.8-r0
MediumALPINE-CVE-2023-5678openssl@1.1.1n-r01.1.1w-r1
MediumPYSEC-2026-2269pyopenssl@22.0.026.0.0
MediumALPINE-CVE-2022-27455mariadb@10.6.7-r010.6.8-r0
MediumALPINE-CVE-2022-27382mariadb@10.6.7-r010.6.8-r0
MediumALPINE-CVE-2023-23914curl@7.80.0-r07.80.0-r6
MediumALPINE-CVE-2023-43804py3-urllib3@1.26.7-r01.26.17-r0
MediumPYSEC-2023-192urllib3@1.26.72.0.6
MediumALPINE-CVE-2022-27444mariadb@10.6.7-r010.6.8-r0
MediumALPINE-CVE-2023-45802apache2@2.4.53-r02.4.58-r0
MediumGHSA-h6gj-6jjq-h8g9jquery-ui@1.12.11.13.2
MediumGHSA-8xf4-w7qw-pjjwfirebase/php-jwt@v5.5.16.0.0
MediumPYSEC-2024-60idna@3.33.7
MediumALPINE-CVE-2019-6462cairo@1.16.0-r31.16.0-r5
MediumALPINE-CVE-2023-27103libde265@1.0.8-r11.0.11-r1
MediumALPINE-CVE-2023-0361gnutls@3.7.1-r03.7.1-r2
MediumALPINE-CVE-2022-28330apache2@2.4.53-r02.4.54-r0
MediumALPINE-CVE-2023-24807nodejs@16.14.0-r016.19.1-r0
MediumGHSA-q4q6-r8wh-5cghphpoffice/phpspreadsheet@1.21.01.30.3
MediumGHSA-7p85-w9px-jpjptwig/twig@v3.3.83.26.0
MediumALPINE-CVE-2022-0891tiff@4.3.0-r04.3.0-r1
MediumGHSA-65j5-vpm7-6xp4smarty/smarty@v2.6.333.1.33
MediumALPINE-CVE-2023-28320curl@7.80.0-r08.1.0-r0
MediumALPINE-CVE-2023-35945nghttp2@1.46.0-r01.46.0-r1
MediumALPINE-CVE-2022-46285libxpm@3.5.13-r03.5.15-r0
MediumGHSA-9v9h-cgj8-h64pcryptography@36.0.242.0.2
MediumGHSA-78h3-pg4x-j8cvlibxmljs2@0.29.0no fix listed
MediumALPINE-CVE-2022-44617libxpm@3.5.13-r03.5.15-r0
MediumGHSA-wj7q-gjg8-3cpmleague/oauth2-server@8.3.38.4.2
MediumGHSA-rx7m-68vc-ppxhphpoffice/phpspreadsheet@1.21.01.30.0
MediumGHSA-6j75-5wfj-gh66twig/twig@v3.3.83.11.1
MediumALPINE-CVE-2022-43552curl@7.80.0-r07.80.0-r5
MediumGHSA-3rg7-wf37-54rmsymfony/http-foundation@v4.4.375.4.50
MediumGHSA-mjr4-7xg5-pfvhlibxmljs2@0.29.0no fix listed
MediumALPINE-CVE-2023-34241cups@2.3.3-r52.3.3-r8
MediumGHSA-vf2r-cxg9-p7rfadodb/adodb-php@v5.21.45.22.10
MediumGHSA-2xpw-w6gg-jr37urllib3@1.26.72.6.0
MediumGHSA-gm62-xv2j-4w53urllib3@1.26.72.6.0
MediumALPINE-CVE-2022-29458ncurses@6.3_p20211120-r06.3_p20211120-r1
MediumALPINE-CVE-2022-34526tiff@4.3.0-r04.4.0-r3
MediumALPINE-CVE-2022-41409pcre2@10.39-r010.42-r0
MediumGHSA-3ww4-gg4f-jr7fcryptography@36.0.242.0.0
MediumALPINE-CVE-2023-23916curl@7.80.0-r07.80.0-r6
MediumALPINE-CVE-2023-46218curl@7.80.0-r08.5.0-r0
MediumALPINE-CVE-2020-14387rsync@3.2.3-r53.2.4-r0
MediumGHSA-f23m-r3pf-42rhlodash@4.17.214.18.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
5.2.0latest3 years ago6.1.08222032228,392

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openemr.svg)](https://charts.stackradar.io/charts/geek-cookbook/openemr)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.