StackRadar

openkm Helm chart

geek-cookbookVerified publisher

Scored 15 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Latest 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,994 findings18 critical, 59 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

28,03918594801,435

1,994 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1118594801,43528,039

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Low findings

1,435 distinct across the version’s images

Low: findings whose contribution to the Radar Score is 1–14. Show every band

SeverityAdvisoryPackageFixed in
LowUBUNTU-CVE-2025-8291python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.18+esm3
LowUBUNTU-CVE-2026-59983openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-59984openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-59985openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-66338libsoup2.4@2.70.0-1no fix listed
LowUBUNTU-CVE-2026-25797imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm10
LowUBUNTU-CVE-2025-59529avahi@0.7-4ubuntu7.1no fix listed
LowUBUNTU-CVE-2026-90781alsa-lib@1.2.2-2.1ubuntu2.5no fix listed
LowUBUNTU-CVE-2026-73434gst-plugins-good1.0@1.16.3-0ubuntu1.1no fix listed
LowUBUNTU-CVE-2026-64685imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-49219imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2025-14017curl@7.68.0-1ubuntu2.137.68.0-1ubuntu2.25+esm2
LowUBUNTU-CVE-2026-12548libsoup2.4@2.70.0-1no fix listed
LowUBUNTU-CVE-2026-32259imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm13
LowUBUNTU-CVE-2025-10911libxslt@1.1.34-4ubuntu0.20.04.1no fix listed
LowUBUNTU-CVE-2026-46557imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2023-30571libarchive@3.4.0-2ubuntu1.2no fix listed
LowUBUNTU-CVE-2026-28692imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.48:6.9.10.23+dfsg-2.1ubuntu11.11+esm11
LowUBUNTU-CVE-2026-35236mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-35237mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-35238mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-35239mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-35240mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.46-0ubuntu0.20.04.1+esm2
LowUBUNTU-CVE-2026-86144libxml2@2.9.10+dfsg-5ubuntu0.20.04.4no fix listed
LowUBUNTU-CVE-2026-23874imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-59183openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-61555openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2026-60189mysql-8.0@8.0.30-0ubuntu0.20.04.2no fix listed
LowUBUNTU-CVE-2026-25966imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowGHSA-cjpg-rgq5-fr37spring-webmvc@3.2.18.RELEASEno fix listed
LowUBUNTU-CVE-2024-10041pam@1.3.1-5ubuntu4.3no fix listed
LowUBUNTU-CVE-2026-59850libssh@0.9.3-2ubuntu2.2no fix listed
LowUBUNTU-CVE-2023-5870postgresql-12@12.12-0ubuntu0.20.04.112.17-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-5745libarchive@3.4.0-2ubuntu1.23.4.0-2ubuntu1.5+esm3
LowUBUNTU-CVE-2026-28689imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2026-53465imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
LowUBUNTU-CVE-2025-8851tiff@4.1.0+git191117-2ubuntu0.20.04.34.1.0+git191117-2ubuntu0.20.04.14+esm1
LowUBUNTU-CVE-2025-60753libarchive@3.4.0-2ubuntu1.23.4.0-2ubuntu1.5+esm1
LowUBUNTU-CVE-2026-50812sqlite3@3.31.1-4ubuntu0.3no fix listed
LowUBUNTU-CVE-2026-18495tiff@4.1.0+git191117-2ubuntu0.20.04.3no fix listed
LowUBUNTU-CVE-2023-4641shadow@1:4.8.1-1ubuntu5.20.04.21:4.8.1-1ubuntu5.20.04.5
LowUBUNTU-CVE-2026-14663postgresql-12@12.12-0ubuntu0.20.04.1no fix listed
LowUBUNTU-CVE-2025-68276avahi@0.7-4ubuntu7.10.7-4ubuntu7.3+esm1
LowUBUNTU-CVE-2026-55373openexr@2.3.0-6ubuntu0.5no fix listed
LowUBUNTU-CVE-2024-21231mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.40-0ubuntu0.20.04.1
LowUBUNTU-CVE-2026-34757libpng1.6@1.6.37-21.6.37-2ubuntu0.1~esm3
LowUBUNTU-CVE-2026-87875cups@2.3.1-9ubuntu1.2no fix listed
LowUBUNTU-CVE-2026-18938p11-kit@0.23.20-1ubuntu0.10.23.20-1ubuntu0.1+esm1
LowUBUNTU-CVE-2026-0989libxml2@2.9.10+dfsg-5ubuntu0.20.04.42.9.10+dfsg-5ubuntu0.20.04.10+esm4
LowGHSA-wf8f-6423-gfxgjackson-core@2.9.72.13.0

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1118594801,43528,039

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 15 Sept 2026 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.