StackRadar

openkm 4.2.0 Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Version 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,983 findings19 critical, 58 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

27,94919584791,425

1,983 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1119584791,42527,949

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,983 distinct across the version’s images
SeverityAdvisoryPackageFixed in
MediumGHSA-v7wg-cpwc-24m4postgresql@42.2.842.2.25
MediumUBUNTU-CVE-2022-43680expat@2.2.9-1ubuntu0.42.2.9-1ubuntu0.6
MediumUBUNTU-CVE-2020-36277leptonlib@1.79.0-1no fix listed
MediumUBUNTU-CVE-2025-47273setuptools@45.2.0-145.2.0-1ubuntu0.3
MediumUBUNTU-CVE-2026-5121libarchive@3.4.0-2ubuntu1.23.4.0-2ubuntu1.5+esm2
MediumUBUNTU-CVE-2021-20312imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.9
MediumUBUNTU-CVE-2020-36280leptonlib@1.79.0-1no fix listed
MediumUBUNTU-CVE-2021-33560libgcrypt20@1.8.5-5ubuntu1.11.8.5-5ubuntu1.fips.1.1
MediumUBUNTU-CVE-2021-20309imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.9
MediumUBUNTU-CVE-2023-3446openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.20
MediumUBUNTU-CVE-2024-7592python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2024-33871ghostscript@9.50~dfsg-5ubuntu4.59.50~dfsg-5ubuntu4.12
MediumUBUNTU-CVE-2024-34459libxml2@2.9.10+dfsg-5ubuntu0.20.04.42.9.10+dfsg-5ubuntu0.20.04.8
MediumGHSA-r97x-3g8f-gx3mbcprov-jdk15on@1.521.56
MediumUBUNTU-CVE-2024-47540gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2016-20013glibc@2.31-0ubuntu9.9no fix listed
MediumUBUNTU-CVE-2024-6232python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2023-31486perl@5.30.0-9ubuntu0.2no fix listed
MediumUBUNTU-CVE-2024-0985postgresql-12@12.12-0ubuntu0.20.04.112.18-0ubuntu0.20.04.1
MediumUBUNTU-CVE-2023-52356tiff@4.1.0+git191117-2ubuntu0.20.04.34.1.0+git191117-2ubuntu0.20.04.12
MediumUBUNTU-CVE-2022-26307libreoffice@1:6.4.7-0ubuntu0.20.04.41:6.4.7-0ubuntu0.20.04.5
MediumGHSA-68r2-fwcg-qpm8solr-core@3.1.09.8.0
MediumUBUNTU-CVE-2022-3970tiff@4.1.0+git191117-2ubuntu0.20.04.34.1.0+git191117-2ubuntu0.20.04.7
MediumUBUNTU-CVE-2026-2005postgresql-12@12.12-0ubuntu0.20.04.1no fix listed
MediumGHSA-fh5r-crhr-qrrqcxf-core@3.2.63.5.10
MediumUBUNTU-CVE-2024-47537gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumGHSA-2j2x-hx4g-2gf4bcprov-jdk15on@1.521.56
MediumGHSA-w285-wf9q-5w69bcprov-jdk15on@1.521.56
MediumGHSA-rcpf-vj53-7h2mspring-core@3.2.18.RELEASE4.3.17
MediumUBUNTU-CVE-2022-46342xorg-server@2:1.20.13-1ubuntu1~20.04.32:1.20.13-1ubuntu1~20.04.5
MediumUBUNTU-CVE-2024-47597gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2024-47775gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2024-47776gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2024-47777gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2024-31083xorg-server@2:1.20.13-1ubuntu1~20.04.32:1.20.13-1ubuntu1~20.04.17
MediumUBUNTU-CVE-2018-5709krb5@1.17-6ubuntu4.1no fix listed
MediumGHSA-r6j3-px5g-cq3xtomcat-coyote@8.5.698.5.94
MediumGHSA-7c3f-cg9x-f3grjasperreports@6.4.37.0.4
MediumUBUNTU-CVE-2024-47600gst-plugins-base1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.4
MediumUBUNTU-CVE-2024-47613gst-plugins-good1.0@1.16.3-0ubuntu1.11.16.3-0ubuntu1.3
MediumUBUNTU-CVE-2024-28757expat@2.2.9-1ubuntu0.4no fix listed
MediumGHSA-25xr-qj8w-c4vftomcat-coyote@8.5.69no fix listed
MediumUBUNTU-CVE-2024-8088python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.12
MediumUBUNTU-CVE-2026-2004postgresql-12@12.12-0ubuntu0.20.04.1no fix listed
MediumGHSA-hh26-6xwr-ggv7spring-beans@3.2.18.RELEASE5.2.22.RELEASE
MediumUBUNTU-CVE-2023-31484perl@5.30.0-9ubuntu0.25.30.0-9ubuntu0.4
MediumUBUNTU-CVE-2023-2953openldap@2.4.49+dfsg-2ubuntu1.92.4.49+dfsg-2ubuntu1.10
MediumUBUNTU-CVE-2021-20304openexr@2.3.0-6ubuntu0.5no fix listed
MediumUBUNTU-CVE-2022-4883libxpm@1:3.5.12-11:3.5.12-1ubuntu0.20.04.1
MediumUBUNTU-CVE-2017-9937jbigkit@2.1-3.1build12.1-3.1ubuntu0.20.04.1

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1119584791,42527,949

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.