StackRadar

openkm Helm chart

geek-cookbookVerified publisher

Scored 15 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Latest 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,994 findings18 critical, 59 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

28,03918594801,435

1,994 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1118594801,43528,039

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,435 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowGHSA-q3v6-hm2v-pw99spring-security-core@3.2.10.RELEASE5.7.14
LowUBUNTU-CVE-2026-22013openjdk-8@8u342-b07-0ubuntu1~20.048u492-ga~us2-0ubuntu1~20.04.1
LowUBUNTU-CVE-2026-70907openjdk-8@8u342-b07-0ubuntu1~20.04no fix listed
LowGHSA-7g45-4rm6-3mm3guava@20.032.0.0-android
LowUBUNTU-CVE-2026-4360python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm7
LowUBUNTU-CVE-2026-22801libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm2
LowUBUNTU-CVE-2024-21210openjdk-8@8u342-b07-0ubuntu1~20.048u432-ga~us1-0ubuntu2~20.04
LowUBUNTU-CVE-2026-25970imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm9
LowUBUNTU-CVE-2026-65979openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-3446python3.8@3.8.10-0ubuntu1~20.04.5no fix listed
LowUBUNTU-CVE-2020-21047elfutils@0.176-1.1build10.176-1.1ubuntu0.1
LowGHSA-qxvw-fvwx-5cp7mariadb-java-client@2.2.52.7.14
LowUBUNTU-CVE-2023-39328openjpeg2@2.3.1-1ubuntu4.20.04.1no fix listed
LowGHSA-25qh-j22f-pwp8logback-core@1.1.31.3.16
LowUBUNTU-CVE-2026-58055nghttp2@1.40.0-1build1no fix listed
LowUBUNTU-CVE-2026-0716libsoup2.4@2.70.0-1no fix listed
LowUBUNTU-CVE-2026-73066tesseract@4.1.1-2build2no fix listed
LowUBUNTU-CVE-2026-6045libreoffice@1:6.4.7-0ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-8356libreoffice@1:6.4.7-0ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-86138libxml2@2.9.10+dfsg-5ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-2297python3.8@3.8.10-0ubuntu1~20.04.5no fix listed
LowUBUNTU-CVE-2026-86143libxml2@2.9.10+dfsg-5ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-28494imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-55371openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2025-49178xorg-server@2:1.20.13-1ubuntu1~20.04.32:1.20.13-1ubuntu1~20.04.20+esm1
LowUBUNTU-CVE-2026-56371imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm14
LowUBUNTU-CVE-2025-29088sqlite3@3.31.1-4ubuntu0.33.31.1-4ubuntu0.7
LowUBUNTU-CVE-2024-21094openjdk-8@8u342-b07-0ubuntu1~20.048u412-ga-1~20.04.1
LowUBUNTU-CVE-2026-21998mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-22002mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-22004mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-22005mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-34267mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-34278mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-34293mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-34304mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-47023mysql-8.0@8.0.30-0ubuntu0.20.04.2no fix listed
LowUBUNTU-CVE-2026-18090gdk-pixbuf@2.40.0+dfsg-3ubuntu0.3no fix listed
LowUBUNTU-CVE-2026-73067tesseract@4.1.1-2build2no fix listed
LowUBUNTU-CVE-2026-40225systemd@245.4-4ubuntu3.17245.4-4ubuntu3.24+esm3
LowUBUNTU-CVE-2026-73433gst-plugins-good1.0@1.16.3-0ubuntu1.1no fix listed
LowUBUNTU-CVE-2025-13837python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm5
LowUBUNTU-CVE-2026-4430libreoffice@1:6.4.7-0ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2025-9714libxml2@2.9.10+dfsg-5ubuntu0.20.04.42.9.10+dfsg-5ubuntu0.20.04.10+esm2
LowUBUNTU-CVE-2025-43718poppler@0.86.1-0ubuntu1no fix listed
LowUBUNTU-CVE-2026-56409expat@2.2.9-1ubuntu0.4no fix listed
LowUBUNTU-CVE-2026-58470wget@1.20.3-1ubuntu21.20.3-1ubuntu2.1+esm2
LowUBUNTU-CVE-2025-8176tiff@4.1.0+git191117-2ubuntu0.20.04.34.1.0+git191117-2ubuntu0.20.04.14+esm1
LowUBUNTU-CVE-2026-28687imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2025-1390libcap2@1:2.32-11:2.32-1ubuntu0.2

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1118594801,43528,039

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.