StackRadar

openkm Helm chart

geek-cookbookVerified publisher

Scored 15 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Latest 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,994 findings18 critical, 59 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

28,03918594801,435

1,994 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1118594801,43528,039

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,435 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2026-60747mysql-8.0@8.0.30-0ubuntu0.20.04.2no fix listed
LowUBUNTU-CVE-2026-72522expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-22695libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm2
LowUBUNTU-CVE-2024-56827openjpeg2@2.3.1-1ubuntu4.20.04.12.3.1-1ubuntu4.20.04.4
LowUBUNTU-CVE-2025-30754openjdk-8@8u342-b07-0ubuntu1~20.048u462-ga~us1-0ubuntu2~20.04.2
LowUBUNTU-CVE-2026-56403expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56404expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56405expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56408expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56406expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56407expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56410expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-56411expat@2.2.9-1ubuntu0.4no fix listed
LowGHSA-g9jj-cgmh-9f38mariadb-java-client@2.2.52.7.14
LowUBUNTU-CVE-2026-78410util-linux@2.34-0.1ubuntu9.3no fix listed
LowUBUNTU-CVE-2026-68515openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-12549libsoup2.4@2.70.0-1no fix listed
LowUBUNTU-CVE-2026-22021openjdk-8@8u342-b07-0ubuntu1~20.048u492-ga~us2-0ubuntu1~20.04.1
LowUBUNTU-CVE-2026-47021openjdk-8@8u342-b07-0ubuntu1~20.048u502-ga~us1-0ubuntu1~20.04
LowUBUNTU-CVE-2026-58471wget@1.20.3-1ubuntu21.20.3-1ubuntu2.1+esm2
LowUBUNTU-CVE-2026-58472wget@1.20.3-1ubuntu21.20.3-1ubuntu2.1+esm2
LowGHSA-9cmq-m9j5-mvwwspring-expression@3.2.18.RELEASE5.3.39
LowUBUNTU-CVE-2023-22025openjdk-8@8u342-b07-0ubuntu1~20.048u392-ga-1~20.04
LowUBUNTU-CVE-2026-89161pcre2@10.34-7no fix listed
LowUBUNTU-CVE-2025-4516python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm1
LowUBUNTU-CVE-2025-14104util-linux@2.34-0.1ubuntu9.3no fix listed
LowUBUNTU-CVE-2025-55005imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2025-64505libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm1
LowUBUNTU-CVE-2026-50593graphite2@1.3.13-11build1no fix listed
LowUBUNTU-CVE-2025-6069python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm2
LowUBUNTU-CVE-2026-56109alsa-lib@1.2.2-2.1ubuntu2.5no fix listed
LowUBUNTU-CVE-2026-86142libxml2@2.9.10+dfsg-5ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-42014gnutls28@3.6.13-2ubuntu1.73.6.13-2ubuntu1.12+esm3
LowUBUNTU-CVE-2024-20945openjdk-8@8u342-b07-0ubuntu1~20.048u402-ga-2ubuntu1~20.04
LowUBUNTU-CVE-2026-46917openjdk-8@8u342-b07-0ubuntu1~20.04no fix listed
LowUBUNTU-CVE-2026-47027openjdk-8@8u342-b07-0ubuntu1~20.048u502-ga~us1-0ubuntu1~20.04
LowUBUNTU-CVE-2026-40169imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-78409util-linux@2.34-0.1ubuntu9.3no fix listed
LowUBUNTU-CVE-2024-13176openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.24
LowUBUNTU-CVE-2023-2004freetype@2.10.1-2ubuntu0.22.10.1-2ubuntu0.3
LowUBUNTU-CVE-2025-52099sqlite3@3.31.1-4ubuntu0.33.31.1-4ubuntu0.7
LowUBUNTU-CVE-2018-25306poppler@0.86.1-0ubuntu1no fix listed
LowUBUNTU-CVE-2026-40312imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-21936mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.45-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-21937mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.45-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-21941mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.45-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-21948mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.45-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-21964mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.45-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2023-39327openjpeg2@2.3.1-1ubuntu4.20.04.12.3.1-1ubuntu4.20.04.2
LowGHSA-293q-567p-wmwqspring-security-web@3.2.10.RELEASEno fix listed

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1118594801,43528,039

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.