StackRadar

openkm Helm chart

geek-cookbookVerified publisher

Scored 14 Sept 2026

OpenKM integrates all essential documents management, collaboration and an advanced search functionality into one easy to use solution.

Latest 4.2.0 3 years agodeploys tag 6.3.11 0Artifact Hub

openkm 4.2.0 deploys 1 container image: openkm/openkm-ce. Across them, 1,983 findings19 critical, 58 high 8 on CISA KEV. The highest contribution is GHSA-36p3-wjmg-h94x in spring-beans 3.2.18.RELEASE, fixed in 5.2.20.RELEASE. Chart.yaml declares kubeVersion >=1.16.0-0; rendered for Kubernetes 1.16.0.

Radar Score

27,94919584791,425

1,983 findings over 1 of 1 images measured

KEV ×8 confirmed exploited

Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.

Container images

1 image
ImageTagVulnerabilitiesRadar Score
openkm/openkm-ce6.3.1119584791,42527,949

Rendered with the chart’s default values for linux/amd64. Optional subcharts, images set by operator flags and images inside CRD payloads are not seen and are counted as unmeasured.

Vulnerabilities

1,983 distinct across the version’s images
SeverityAdvisoryPackageFixed in
HighGHSA-f9hv-mg5h-xcw9jackson-databind@2.9.72.9.8
HighGHSA-mx9v-gmh4-mgqwjackson-databind@2.9.72.9.8
HighGHSA-558x-2xjg-6232spring-expression@3.2.18.RELEASE5.2.20.RELEASE
HighGHSA-7w75-32cg-r6g2tomcat-coyote@8.5.698.5.99
HighUBUNTU-CVE-2022-40303libxml2@2.9.10+dfsg-5ubuntu0.20.04.42.9.10+dfsg-5ubuntu0.20.04.5
HighGHSA-j8qw-mwmv-28cgsolr-core@3.1.04.6.0
HighGHSA-mph4-vhrx-mv67jackson-databind@2.9.72.9.9.1
HighGHSA-5ww9-j83m-q7qxjackson-databind@2.9.72.9.9
HighUBUNTU-CVE-2022-35737sqlite3@3.31.1-4ubuntu0.33.31.1-4ubuntu0.5
HighGHSA-3pph-2595-cgfhsolr-core@3.1.06.6.3
HighUBUNTU-CVE-2023-24329python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.8
HighUBUNTU-CVE-2022-4450openssl@1.1.1f-1ubuntu2.161.1.1f-1ubuntu2.17
HighGHSA-2363-cqg2-863cjdom@1.0no fix listed
HighGHSA-vrh8-27q8-fr8fsolr-core@3.1.07.7.0
HighGHSA-gww7-p5w4-wrfvjackson-databind@2.9.72.9.10.2
HighUBUNTU-CVE-2023-1183hsqldb1.8.0@1.8.0.10+dfsg-101.8.0.10+dfsg-10ubuntu0.20.04.1~esm1
HighGHSA-6fpp-rgj9-8rwcjackson-databind@2.9.72.9.9.2
HighGHSA-6hgm-866r-3cjvcommons-collections@3.13.2.2
HighUBUNTU-CVE-2023-34152imagemagick@8:6.9.10.23+dfsg-2.1ubuntu11.4no fix listed
HighGHSA-288c-cq4h-88gqjackson-databind@2.9.72.9.10.7
HighUBUNTU-CVE-2021-23336python3.8@3.8.10-0ubuntu1~20.04.5no fix listed
HighGHSA-g8hw-794c-4j9gspring-core@3.2.18.RELEASE4.3.15
HighGHSA-vmfg-rjjm-rjrjlogback-classic@1.1.31.2.0
HighGHSA-vmfg-rjjm-rjrjlogback-core@1.1.31.2.0
HighUBUNTU-CVE-2024-29510ghostscript@9.50~dfsg-5ubuntu4.59.50~dfsg-5ubuntu4.12
HighGHSA-hwj3-m3p6-hj38dom4j@1.6.12.0.3
HighGHSA-5r5r-6hpj-8gg9jackson-databind@2.9.72.9.10.8
MediumUBUNTU-CVE-2023-28879ghostscript@9.50~dfsg-5ubuntu4.59.50~dfsg-5ubuntu4.7
MediumGHSA-rc2w-r4jq-7pfxxalan@2.7.12.7.2
MediumGHSA-f9xh-2qgp-cq57jackson-databind@2.9.72.9.10.8
MediumGHSA-m6x4-97wx-4q27jackson-databind@2.9.72.9.10.8
MediumGHSA-fqwf-pjwf-7vqvjackson-databind@2.9.72.9.10.4
MediumGHSA-mc84-pj99-q6hhcommons-compress@1.191.21
MediumUBUNTU-CVE-2022-37454python3.8@3.8.10-0ubuntu1~20.04.53.8.10-0ubuntu1~20.04.6
MediumGHSA-3f7h-mf4q-vrm4woodstox-core@5.1.05.4.0
MediumGHSA-c427-hjc3-wrfwswagger-ui@3.17.63.23.11
MediumGHSA-mx7p-6679-8g3qjackson-databind@2.9.72.9.10.1
MediumGHSA-crv7-7245-f45fcommons-compress@1.191.21
MediumUBUNTU-CVE-2023-21887mysql-8.0@8.0.30-0ubuntu0.20.04.28.0.32-0buntu0.20.04.1
MediumGHSA-r3gr-cxrf-hg25jackson-databind@2.9.72.9.10.8
MediumGHSA-gjmw-vf9h-g25vjackson-databind@2.9.72.9.10.1
MediumGHSA-h3cw-g4mq-c5x2jackson-databind@2.9.72.9.10.6
MediumGHSA-7hfm-57qf-j43qcommons-compress@1.191.21
MediumGHSA-24rp-q3w6-vc56postgresql@42.2.842.2.28
MediumGHSA-mw3r-pfmg-xp92xmlbeans@2.6.03.0.0
MediumGHSA-85cw-hj65-qqv9jackson-databind@2.9.72.9.10
MediumGHSA-fmmc-742q-jg75jackson-databind@2.9.72.9.10.1
MediumGHSA-gwp4-hfv6-p7hwjackson-databind@2.9.72.9.9.2
MediumGHSA-j823-4qch-3rgmjackson-databind@2.9.72.9.10.5
MediumGHSA-xqfj-vm6h-2x34commons-compress@1.191.21

Indexed versions

VersionPublishedApp versionVulnerabilitiesRadar Score
4.2.0latest3 years ago6.3.1119584791,42527,949

The latest version and the previous major, as selected nightly from the repository’s index.

README badge
[![Radar Score](https://charts.stackradar.io/badge/geek-cookbook/openkm.svg)](https://charts.stackradar.io/charts/geek-cookbook/openkm)

Markdown. The badge shows the latest version’s band and Radar Score, refreshed daily.

helm v3.16.4 · syft 1.42.1 · rendered 6 Sept 2026 · scanned 14 Sept 2026 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.